IP Library Granted Patent US 12,413,616
Granted Patent B2
US 12,413,616 · App. 18/354,779 · Granted Sep 9, 2025

Preventing fraud on smart devices

Inventor: Cesar Augusto Rodriguez Bravo (Alajuela, CR)
Assignee: Kyndryl, Inc.
H04L63/1441H04L63/1416H04L63/1425
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,413,616
App. No.
18/354,779
Granted
Sep 9, 2025
Kind
B2
Abstract

Embodiments relate to preventing fraud on smart devices. In response to receiving a communication, a correlation of the communication to a security threat is determined, and device data of a device is obtained. A determination is made that a combination of the correlation and the device data meets a predefined threshold for the security threat. An alert is audibly output on the device, the audio alert being a warning of the security threat presented by the communication.

Claims (40)

1. A computer-implemented method comprising:

in response to receiving a communication, determining a correlation of the communication to a security threat;

obtaining device data of a device associated with a targeted user;

determining that a combination of the correlation and the device data meets a predefined threshold for the security threat; and

causing an alert to be audibly output on the device during the communication that is ongoing, the alert being a warning of the security threat presented by the communication that is ongoing, wherein:

the alert comprises replaying, during the communication that is ongoing, a portion of the communication in which the portion is intended to defraud the targeted user;

additional data comprises recent calls on the device; and

in response to a determination that a number of the recent calls, related to the targeted user from a potentially malicious caller who has mutually known users associated with the targeted user, reaches a predetermined amount, a scam score of the combination of the correlation and the device data of the targeted user is reduced, where information associated with the mutually known users is from social media applications.

2. The computer-implemented method of claim 1 , wherein: communication a selectable button is displayed on the device indicating that an exception is being made for a caller during the communication that is ongoing, the exception allowing the caller to avoid being subject to fraud and detection monitoring; and in response to the selectable button being selected on the device, the fraud and detection monitoring is discontinued during the communication that is ongoing.

3. The computer-implemented method of claim 1 , wherein, in real time during the communication that is ongoing, the alert comprises recorded audio from a malicious actor causing the security threat, the recorded audio comprising a phrase intended to defraud a listener such that the targeted user recognizes an intent of the malicious actor.

4. The computer-implemented method of claim 1 , wherein the alert comprises a visual indicator displayed on the device during the communication that is ongoing.

5. The computer-implemented method of claim 1 , wherein the alert is executed on the device as an interruption to a microphone function of the device to avoid an exposure of sensitive information.

6. The computer-implemented method of claim 1 , wherein the communication includes an audio recording from a conversation between the targeted user of the device and a malicious actor using another device.

7. A system comprising:

a memory having computer readable instructions; and

one or more processors for executing the computer readable instructions, the computer readable instructions when executed cause the one or more processors to perform operations comprising:

in response to receiving a communication, determining a correlation of the communication to a security threat;

obtaining device data of a device associated with a targeted user;

determining that a combination of the correlation and the device data meets a predefined threshold for the security threat; and

causing an alert to be audibly output during the communication that is ongoing, the alert being a warning of the security threat presented by the communication that is ongoing, wherein:

the alert comprises replaying, during the communication that is ongoing, a portion of the communication in which the portion is intended to defraud the targeted user;

additional data comprises recent calls on the device; and

in response to a determination that a number of the recent calls, related to the targeted user from a potentially malicious caller who has mutually known users associated with the targeted user, reaches a predetermined amount, a scam score of the combination of the correlation and the device data of the targeted user is reduced, where information associated with the mutually known users is from social media applications.

8. The system of claim 7 , wherein: a selectable button is displayed on the device indicating that an exception is being made for a caller during the communication that is ongoing, the exception allowing the caller to avoid being subject to fraud and detection monitoring; and in response to the selectable button being selected on the device, the fraud and detection monitoring is discontinued during the communication that is ongoing.

9. The system of claim 7 , wherein, in real time during the communication that is ongoing, the alert comprises recorded audio from a malicious actor causing the security threat, the recorded audio comprising a phrase intended to defraud a listener such that the targeted user recognizes an intent of the malicious actor.

10. The system of claim 7 , wherein the alert comprises a visual indicator displayed on the device during the communication that is ongoing.

11. The system of claim 7 , wherein the alert is executed on the device as an interruption to a microphone function of the device to avoid an exposure of sensitive information.

12. The system of claim 7 , wherein the communication includes an audio recording from a conversation between the targeted user of the device and a malicious actor using another device.

13. A non-transitory computer readable storage medium having program instructions embodied therewith, the program instructions executable by one or more processors to cause the one or more processors to perform operations comprising:

in response to receiving a communication, determining a correlation of the communication to a security threat;

obtaining device data of a device associated with a targeted user;

determining that a combination of the correlation and the device data meets a predefined threshold for the security threat; and

causing an alert to be audibly output during the communication that is ongoing, the alert being a warning of the security threat presented by the communication that is ongoing, wherein:

the alert comprises replaying, during the communication that is ongoing, a portion of the communication in which the portion is intended to defraud the targeted user;

additional data comprises recent calls on the device; and

in response to a determination that a number of the recent calls, related to the targeted user from a potentially malicious caller who has mutually known users associated with the targeted user, reaches a predetermined amount, a scam score of the combination of the correlation and the device data of the targeted user is reduced, where information associated with the mutually known users is from social media applications.

14. The computer readable storage medium of claim 13 , wherein: a selectable button is displayed on the device indicating that an exception is being made for a caller during the communication that is ongoing, the exception allowing the caller to avoid being subject to fraud and detection monitoring; and in response to the selectable button being selected on the device, the fraud and detection monitoring is discontinued during the communication that is ongoing.

15. The computer readable storage medium of claim 13 , wherein, in real time during the communication that is ongoing, the alert comprises recorded audio from a malicious actor causing the security threat, the recorded audio comprising a phrase intended to defraud a listener such that the targeted user recognizes an intent of the malicious actor.

16. The computer readable storage medium of claim 13 , wherein the alert comprises a visual indicator displayed on a device during the communication that is ongoing.

17. The computer readable storage medium of claim 13 , wherein the alert is executed on the device as an interruption to a microphone function of the device to avoid an exposure of sensitive information.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 19, 2023
From: RODRIGUEZ BRAVO, CESAR AUGUSTO
To: KYNDRYL, INC.
Reel/Frame 064310/0337 →
Continuity (1)
Related Publication 20250030727A1 · Jan 23, 2025
References Cited (13)
US 11811792B1 · Silva · 2023 [cited by examiner]
US 20130162821A1 · Park · 2013 [cited by examiner]
US 20170134574A1 · Winkler · 2017 [cited by examiner]
US 20170293757A1 · Rosenman · 2017 [cited by examiner]
US 20180294959A1 · Traynor et al. · 2018 [cited by applicant]
US 20200035254A1 · Boss · 2020 [cited by examiner]
US 20200067861A1 · Leddy et al. · 2020 [cited by applicant]
US 20220046053A1 · Stolarz · 2022 [cited by examiner]
US 20220303388A1 · Shvetsov · 2022 [cited by examiner]
US 20220319539A1 · Panda · 2022 [cited by examiner]
US 20230008822A1 · Serban · 2023 [cited by examiner]
Derakhshan et al., “Detecting Telephone-based Social Engineering Attacks using Scan Signatures,” IWSPA'21, Session 2: Security Analytics, Apr. 28, 2021, pp. 67-73. [cited by applicant]
Kale et al., “Classification of Fraud Calls by Intent Analysis of Call Transcripts,” IEEE, 12th International Conference on Computing Communication and Networking Technologies, Nov. 3, 2021, 4 pages, Abstract Only. [cited by applicant]