IP Library Granted Patent US 11,949,641
Granted Patent B2
US 11,949,641 · App. 18/153,059 · Granted Apr 2, 2024

Verification of selected inbound electronic mail messages

Inventor: Michael J. Flester (Highland, MD)
Assignee: CLOUDFLARE, INC.
H04L51/212G06F21/313
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,949,641
App. No.
18/153,059
Granted
Apr 2, 2024
Kind
B2
Abstract

An email verification system is described. The email verification system stores names and associated email addresses. An email is received that has a sender name and a sender email address. If the email verification system determines that the sender name matches a stored name but the sender email address does not match with an email address associated with the stored name, the email is prevented from being transmitted to its recipient unless the email is verified as being legitimate. The email verification system transmits a request to verify the email via a configured verification method. If a response is received that verifies the email as legitimate, the email is delivered; otherwise the email is blocked.

Claims (50)

1. A method, comprising:

storing, at an email verification system, a plurality of names and a plurality of email addresses, wherein each name of the plurality of names is associated with an email address of the plurality of email addresses;

receiving, at an email verification system, a first email having a first sender name and a first sender email address;

determining that the first sender name of the first email matches a first name of the stored plurality of names, and that the first sender email address of the first email does not match with a first email address of the stored plurality of email addresses associated with the first name, and responsive to this determination, preventing the first email from being transmitted to its recipient unless the first email is verified as being legitimate;

transmitting a first request to verify the first email as being legitimate via a first configured verification method, wherein the first configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the first request to verify the first email as being legitimate includes a second email being sent to the first email address;

receiving a first response to the first request that verifies the first email as being legitimate;

transmitting the first email to its recipient responsive to the receiving the first response;

receiving, at the email verification system, a third email having a second sender name and a second sender email address;

determining that the second sender name of the third email matches a second name of the stored plurality of names, and that the second sender email address of the third email does not match with a second email address of the stored plurality of email addresses associated with the second name, and responsive to this determination, preventing the third email from being transmitted to its recipient unless the third email is verified as being legitimate;

transmitting a second request to verify the third email as being legitimate via a second configured verification method, wherein the second configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the second request to verify the third email as being legitimate includes a fourth email being sent to the second email address;

receiving a second response to the second request that indicates that the third email is not legitimate; and

blocking the third email from being sent to its recipient.

2. The method of claim 1 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in an envelope from field with the first email address.

3. The method of claim 1 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in a from header field with the first email address.

4. The method of claim 1 , wherein the first request to verify the first email as being legitimate includes one or more of: an IP address of the first email, an autonomous system number (ASN) of the first email, a value in an envelope from field of the first email, a date and time of the first email, and a subject of the first email.

5. The method of claim 1 , wherein the first request is transmitted to a device associated with the first email address.

6. A non-transitory computer-readable storage medium that provides instructions that, if executed by a processor, will cause said processor to perform operations comprising:

storing, at an email verification system, a plurality of names and a plurality of email addresses, wherein each name of the plurality of names is associated with an email address of the plurality of email addresses;

receiving, at an email verification system, a first email having a first sender name and a first sender email address;

determining that the first sender name of the first email matches a first name of the stored plurality of names, and that the first sender email address of the first email does not match with a first email address of the stored plurality of email addresses associated with the first name, and responsive to this determination, preventing the first email from being transmitted to its recipient unless the first email is verified as being legitimate;

transmitting a first request to verify the first email as being legitimate via a first configured verification method, wherein the first configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the first request to verify the first email as being legitimate includes a second email being sent to the first email address;

receiving a first response to the first request that verifies the first email as being legitimate;

transmitting the first email to its recipient responsive to the receiving the first response;

receiving, at the email verification system, a third email having a second sender name and a second sender email address;

determining that the second sender name of the third email matches a second name of the stored plurality of names, and that the second sender email address of the third email does not match with a second email address of the stored plurality of email addresses associated with the second name, and responsive to this determination, preventing the third email from being transmitted to its recipient unless the third email is verified as being legitimate;

transmitting a second request to verify the third email as being legitimate via a second configured verification method, wherein the second configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the second request to verify the third email as being legitimate includes a fourth email being sent to the second email address;

receiving a second response to the second request that indicates that the third email is not legitimate; and

blocking the third email from being sent to its recipient.

7. The non-transitory computer-readable storage medium of claim 6 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in an envelope from field with the first email address.

8. The non-transitory computer-readable storage medium of claim 6 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in a from header field with the first email address.

9. The non-transitory computer-readable storage medium of claim 6 , wherein the first request to verify the first email as being legitimate includes one or more of: an IP address of the first email, an autonomous system number (ASN) of the first email, a value in an envelope from field of the first email, a date and time of the first email, and a subject of the first email.

10. The non-transitory computer-readable storage medium of claim 6 , wherein the first request is transmitted to a device associated with the first email address.

11. An apparatus, comprising:

a processor; and

a non-transitory computer-readable storage medium that provides instructions that, if executed by the processor, will cause the apparatus to perform operations including:

storing, at an email verification system, a plurality of names and a plurality of email addresses, wherein each name of the plurality of names is associated with an email address of the plurality of email addresses;

receiving, at an email verification system, a first email having a first sender name and a first sender email address;

determining that the first sender name of the first email matches a first name of the stored plurality of names, and that the first sender email address of the first email does not match with a first email address of the stored plurality of email addresses associated with the first name, and responsive to this determination, preventing the first email from being transmitted to its recipient unless the first email is verified as being legitimate;

transmitting a first request to verify the first email as being legitimate via a first configured verification method, wherein the first configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the first request to verify the first email as being legitimate includes a second email being sent to the first email address;

receiving a first response to the first request that verifies the first email as being legitimate;

transmitting the first email to its recipient responsive to the receiving the first response;

receiving, at the email verification system, a third email having a second sender name and a second sender email address;

determining that the second sender name of the third email matches a second name of the stored plurality of names, and that the second sender email address of the third email does not match with a second email address of the stored plurality of email addresses associated with the second name, and responsive to this determination, preventing the third email from being transmitted to its recipient unless the third email is verified as being legitimate;

transmitting a second request to verify the second third email as being legitimate via a second configured verification method, wherein the second configured verification method is one of: email verification, text message verification, authentication application verification, and phone call verification, and wherein the second request to verify the third email as being legitimate includes a fourth email being sent to the second email address;

receiving a second response to the second request that indicates that the third email is not legitimate; and

blocking the third email from being sent to its recipient.

12. The apparatus of claim 11 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in an envelope from field with the first email address.

13. The apparatus of claim 11 , wherein determining that the first sender email address of the first email does not match with the first email address of the stored plurality of email addresses associated with the first name includes comparing a value in a from header field with the first email address.

14. The apparatus of claim 11 , wherein the first request to verify the first email as being legitimate includes one or more of: an IP address of the first email, an autonomous system number (ASN) of the first email, a value in an envelope from field of the first email, a date and time of the first email, and a subject of the first email.

15. The apparatus of claim 11 , wherein the first request is transmitted to a device associated with the first email address.

Assignments (2)
SECURITY INTEREST Recorded May 20, 2024
From: CLOUDFLARE, INC.
To: CITIBANK, N.A.
Reel/Frame 067472/0246 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 29, 2024
From: FLESTER, MICHAEL J.
To: CLOUDFLARE, INC.
Reel/Frame 066608/0458 →
Continuity (2)
Provisional Application 63298552 · Jan 11, 2022
Related Publication 20230224267A1 · Jul 13, 2023