IP Library › Granted Patent US 12,363,093
Granted Patent B2
US 12,363,093 · App. 18/492,618 · Granted Jul 15, 2025

Authentication translation

Inventor: Bjorn Markus Jakobsson (New York, NY)
Assignee: Carbyne Biometrics, LLC
H04L63/0815G06F21/10G06F21/121G06F21/128G06F21/31G06F21/32G06F21/44H04L63/08H04L63/0823H04L63/083H04L63/0861H04L63/10H04L63/20H04L63/0281H04L63/0869
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,363,093
App. No.
18/492,618
Granted
Jul 15, 2025
Kind
B2
Abstract

Authentication translation is disclosed. A request to access a resource is received at an authentication translator, as is an authentication input. The authentication input corresponds to at least one stored record. The stored record is associated at least with the resource. In response to the receiving, a previously stored credential associated with the resource is accessed. The credential is provided to the resource.

Claims (61)

1. A device, comprising a plurality of processors, wherein:

a first processor of the plurality of processors is an application processor;

a second processor of the plurality of processors is a secure processor;

the first processor and the second processor are configured to communicate with each other via an interface; and

the plurality of processors is configured to:

receive input information provided by a user, wherein the input information is associated with at least one of:

a biometric input from the user; or

a credential input from the user;

derive a decryption key from a protected key based on the input information;

receive biometric data from a sensor;

determine whether the biometric data matches a template stored on the device, wherein the template is associated with a vault;

perform a cryptographic operation, when the biometric data is determined to match the template associated with the vault, wherein performing the cryptographic operation comprises having the second processor decrypt at least a portion of the vault using the decryption key;

establish a connection to a service provider external to the device;

facilitate transmission, to the service provider and via the connection, of a message based on a result of the cryptographic operation; and

cause backup of the at least a portion of the vault to a storage that is external to the device.

2. The device of claim 1 , wherein the connection comprises a secure connection.

3. The device of claim 1 , wherein the vault comprises data that is authenticated and encrypted.

4. The device of claim 1 , wherein the biometric input is received at a distinct time from the biometric data.

5. The device of claim 1 , wherein the vault comprises information associated with a domain.

6. The device of claim 1 , wherein the vault comprises information associated with a user identifier.

7. The device of claim 1 , wherein the vault comprises information associated with an additional credential input.

8. The device of claim 1 , wherein the vault comprises information associated with health care data.

9. The device of claim 1 , wherein the device is associated with a plurality of users.

10. The device of claim 1 , wherein the plurality of processors is configured to provide a prompt prior to receiving the biometric data from the sensor.

11. The device of claim 1 , wherein the user is permitted access to a resource associated with the service provider via backup authentication of the user.

12. The device of claim 11 , wherein the backup authentication of the user is based at least in part on providing of an additional credential input.

13. The device of claim 12 , wherein the additional credential input comprises at least one of a password or an account number.

14. The device of claim 1 , wherein:

the biometric data is associated with the user; and

the template is included in a plurality of templates associated with the user associated with the biometric data.

15. The device of claim 1 , wherein the interface is a restricted interface.

16. The device of claim 1 , wherein facilitating the transmission of the message is based, at least in part, on a liveness determination associated with the biometric data.

17. The device of claim 1 , wherein the plurality of processors is configured to cause wiping of the at least a portion of the vault in response to a user request.

18. A method, comprising:

receiving input information provided by a user, using a plurality of processors of a device, wherein the input information is associated with at least one of:

a biometric input from the user; or

a credential input from the user;

deriving, using the plurality of processors of the device, a decryption key from a protected key based on the input information;

receiving, using the plurality of processors of the device, biometric data from a sensor in communication with the plurality of processors, wherein;

a first processor of the plurality of processors is an application processor;

a second processor of the plurality of processors is a secure processor; and

the first processor and the second processor are configured to communicate with each other via an interface;

determining, using the plurality of processors of the device, whether the biometric data matches a template stored on the device, wherein the template is associated with a vault;

performing, using the plurality of processors of the device, a cryptographic operation, when the biometric data is determined to match the template associated with the vault, wherein performing the cryptographic operation comprises having the second processor decrypt at least a portion of the vault using the decryption key;

establishing, using the plurality of processors of the device, a connection to a service provider external to the device;

facilitating transmission, using the plurality of processors of the device, to the service provider and via the connection, of a message based on a result of the cryptographic operation; and

causing, using the plurality of processors of the device, backup of the at least a portion of the vault to a storage that is external to the device.

19. A computer program product embodied in a non-transitory computer readable storage medium, comprising computer instructions for:

receiving input information provided by a user, wherein the input information is associated with at least one of:

a biometric input from the user; or

a credential input from the user;

deriving a decryption key from a protected key based on the input information;

receiving, using a plurality of processors of a device, biometric data from a sensor in communication with the plurality of processors, wherein;

a first processor of the plurality of processors is an application processor;

a second processor of the plurality of processors is a secure processor; and

the first processor and the second processor are configured to communicate with each other via an interface;

determining, using the plurality of processors of the device, whether the biometric data matches a template stored on the device, wherein the template is associated with a vault;

performing, using the plurality of processors of the device, a cryptographic operation, when the biometric data is determined to match the template associated with the vault, wherein performing the cryptographic operation comprises having the second processor decrypt at least a portion of the vault using the decryption key;

establishing, using the plurality of processors of the device, a connection to a service provider external to the device;

facilitating transmission, using the plurality of processors of the device, to the service provider and via the connection, of a message based on a result of the cryptographic operation; and

causing, using the plurality of processors of the device, backup of the at least a portion of the vault to a storage that is external to the device.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2026
From: JAKOBSSON, BJORN MARKUS
To: EXTRICATUS LLC
Reel/Frame 075506/0528 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2026
From: EXTRICATUS LLC
To: BJORN MARKUS JAKOBSSON
Reel/Frame 075506/0686 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2026
From: JAKOBSSON, BJORN MARKUS
To: RIGHTQUESTION, LLC
Reel/Frame 075506/0883 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2026
From: RIGHTQUESTION, LLC
To: CARBYNE LLC
Reel/Frame 075507/0044 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 3, 2026
From: CARBYNE LLC
To: CARBYNE BIOMETRICS, LLC
Reel/Frame 075507/0117 →
Continuity (10)
Continuation 17500837 · Oct 13, 2021
Continuation 17027481 · Sep 21, 2020
Continuation 16773767 · Jan 27, 2020
Continuation 16563715 · Sep 6, 2019
Continuation 16273797 · Feb 12, 2019
Continuation 15042636 · Feb 12, 2016
Continuation 13706254 · Dec 5, 2012
Provisional Application 61587387 · Jan 17, 2012
Provisional Application 61569112 · Dec 9, 2011
Related Publication 20240236072A1 · Jul 11, 2024
References Cited (132)
US 5010571A · Katznelson · 1991 [cited by applicant]
US 5164992A · Turk · 1992 [cited by applicant]
US 5499298A · Narasimhalu · 1996 [cited by applicant]
US 5930804A · Yu · 1999 [cited by applicant]
US 6016476A · Maes · 2000 [cited by applicant]
US 6691232B1 · Wood · 2004 [cited by applicant]
US 7512965B1 · Amdur · 2009 [cited by applicant]
US 7516074B2 · Bilobrov · 2009 [cited by applicant]
US 7697729B2 · Howell · 2010 [cited by applicant]
US 7779268B2 · Draper · 2010 [cited by applicant]
US 7780080B2 · Owen · 2010 [cited by examiner]
US 7814332B2 · Beenau · 2010 [cited by applicant]
US 7856472B2 · Arav · 2010 [cited by applicant]
US 7950051B1 · Spitz · 2011 [cited by applicant]
US 8099789B2 · Challener · 2012 [cited by applicant]
US 8145916B2 · Boshra · 2012 [cited by applicant]
US 8150772B2 · Mardikar · 2012 [cited by applicant]
US 8160877B1 · Nucci · 2012 [cited by applicant]
US 8185646B2 · Headley · 2012 [cited by applicant]
US 8355530B2 · Park · 2013 [cited by applicant]
US 8386620B2 · Chatterjee · 2013 [cited by applicant]
US 8533485B1 · Bansal · 2013 [cited by applicant]
US 8549300B1 · Kumar · 2013 [cited by applicant]
US 8577813B2 · Weiss · 2013 [cited by applicant]
US 8776214B1 · Johansson · 2014 [cited by examiner]
US 8799666B2 · Kesanupalli · 2014 [cited by applicant]
US 8856539B2 · Weiss · 2014 [cited by applicant]
US 8954500B2 · Marlow · 2015 [cited by applicant]
US 8984596B2 · Griffin · 2015 [cited by applicant]
US 9100826B2 · Weiss · 2015 [cited by applicant]
US 9294452B1 · Jakobsson · 2016 [cited by applicant]
US 9652629B2 · Brown · 2017 [cited by applicant]
US 10360351B1 · Jakobsson · 2019 [cited by applicant]
US 10373173B2 · Winner · 2019 [cited by applicant]
US 10521568B1 · Jakobsson · 2019 [cited by applicant]
US 10824696B1 · Jakobsson · 2020 [cited by applicant]
US 10872152B1 · Martel · 2020 [cited by applicant]
US 10929512B1 · Jakobsson · 2021 [cited by applicant]
US 11475105B2 · Jakobsson · 2022 [cited by applicant]
US 11514138B1 · Jakobsson · 2022 [cited by applicant]
US 11556617B2 · Jakobsson · 2023 [cited by applicant]
US 11841929B2 · Jakobsson · 2023 [cited by applicant]
US 12135766B2 · Jakobsson · 2024 [cited by applicant]
US 20040107170A1 · Labrou · 2004 [cited by applicant]
US 20040117636A1 · Cheng · 2004 [cited by applicant]
US 20040236632A1 · Maritzen · 2004 [cited by applicant]
US 20050198348A1 · Yeates · 2005 [cited by applicant]
US 20060085844A1 · Buer · 2006 [cited by applicant]
US 20060158307A1 · Lee · 2006 [cited by applicant]
US 20060271460A1 · Hanif · 2006 [cited by applicant]
US 20060282660A1 · Varghese · 2006 [cited by applicant]
US 20070100913A1 · Sumner · 2007 [cited by applicant]
US 20070257104A1 · Owen · 2007 [cited by applicant]
US 20070266256A1 · Shah · 2007 [cited by applicant]
US 20080059804A1 · Shah · 2008 [cited by applicant]
US 20080098478A1 · Vaidya · 2008 [cited by applicant]
US 20080104416A1 · Challener · 2008 [cited by applicant]
US 20080270038A1 · Partovi · 2008 [cited by applicant]
US 20090100269A1 · Naccache · 2009 [cited by applicant]
US 20090135188A1 · Ding · 2009 [cited by applicant]
US 20090157560A1 · Carter · 2009 [cited by applicant]
US 20090191846A1 · Shi · 2009 [cited by examiner]
US 20090288012A1 · Hertel · 2009 [cited by applicant]
US 20100014720A1 · Hoyos · 2010 [cited by applicant]
US 20100042535A1 · Stone · 2010 [cited by applicant]
US 20100242102A1 · Cross · 2010 [cited by examiner]
US 20100317335A1 · Borovsky · 2010 [cited by applicant]
US 20110078771A1 · Griffin · 2011 [cited by applicant]
US 20110138450A1 · Kesanupalli · 2011 [cited by applicant]
US 20110205016A1 · Al-Azem · 2011 [cited by applicant]
US 20110231651A1 · Bollay · 2011 [cited by examiner]
US 20110238855A1 · Korsunsky · 2011 [cited by applicant]
US 20120110341A1 · Beigi · 2012 [cited by examiner]
US 20120117348A1 · Triantafillou · 2012 [cited by applicant]
US 20120150808A1 · Hubner · 2012 [cited by applicant]
US 20120167193A1 · Gargaro · 2012 [cited by applicant]
US 20140250079A1 · Gardner · 2014 [cited by applicant]
US 20170230179A1 · Mannan · 2017 [cited by applicant]
US 20210173897A1 · Jakobsson · 2021 [cited by applicant]
US 20220067126A1 · Jakobsson · 2022 [cited by applicant]
US 20220342959A1 · Jakobsson · 2022 [cited by applicant]
US 20230376571A1 · Jakobsson · 2023 [cited by applicant]
EP 2079023 · 2009 [cited by applicant]
WO 2004051585 · 2004 [cited by applicant]
WO 2005001751 · 2005 [cited by applicant]
“Managing Authorization and Access Control”, Author: unknown, Published Nov. 3, 2005, pp. 1-12, URL: http://technet.microsoft.com/en-us/library/bb457115.aspx. [cited by applicant]
Batten et al., pStore: A Secure Peer-to-Peer Backup System, LCS Technical Memos (1974-2003), MIT-LCS-TM-632, Oct. 2002, 14 pages, https://dspace.mit.edu/handle/1721.1/149321?show=full. [cited by applicant]
Bhargav-Spantzel et al., Privacy Preserving Multi-Factor Authentication with Biometrics, DIM '06: Proceedings of the second ACM workshop on Digital identity management, Nov. 2006, pp. 63-71. [cited by applicant]
Bidgoli, Handbook of Computer Networks, Distributed Networks, Network Planning, Control, Management, and New Trends and Applications, vol. 3, 2008, 22 pages. [cited by applicant]
Brands et al. Distance-Bounding Protocols. Jan. 28, 1994: https://citeseerx.ist.psu.edu/viewdoc/download?doi=10.1.1.51.6437&rep=rep1&type=pdf. [cited by applicant]
Campbell, Jr., Speaker Recognition: A Tutorial, Proceedings of the IEEE, vol. 85, No. 9, Sep. 1997, pp. 1437-1462. [cited by applicant]
Chervenak et al., Protecting File Systems: A Survey of Backup Techniques, Joint NASA and IEEE Mass Storage Conference, vol. 99, Mar. 23, 1998, pp. 17-32. [cited by applicant]
Derene, How to Restore Your Data After a Hard Drive Crash, Popular Mechanics, New Technology, Best New Gadgets, Aug. 4, 2011, 9 pages, https://www.popularmechanics.com/technology/gadgets/how-to/a6819/how-to-restore-your… [cited by applicant]
Dierks et al., The TLS Protocol Version 1.0, IETF, Jan. 1999, 69 pages, https://www.ietf.org/rfc/rfc2246.txt. [cited by applicant]
Ekler et al., Similarity Management in Phonebook-centric Social Networks, 2009 Fourth International Conference on Internet and Web Applications and Services, Jan. 2009, pp. 273-279, https://www.researchgate.net/publicat… [cited by applicant]
Federal Deposit Insurance Corporation, Authentication in an Internet Banking Environment, FFIEC Guidance, Inactive Financial Institution Letters, Oct. 12, 2005, 2 pages, https://www.fdic.gov/news/inactive-financial-inst… [cited by applicant]
Federal Financial Institutions Examination Council, Authentication in an Internet Banking Environment, Guidance PDF from FFIEC Press Release, Oct. 12, 2005, 14 pages, https://www.ffiec.gov/press/pr101205.htm. [cited by applicant]
Federal Financial Institutions Examination Council, FFIEC Releases Guidance on Authentication in Internet Banking Environment, FFIEC Press Release, Oct. 12, 2005, 2 pages, https://www.ffiec.gov/press/pr101205.htm. [cited by applicant]
Freier et al., The Secure Sockets Layer (SSL) Protocol Version 3.0, IETF Datatracker RFC 6101, Aug. 2011, 67 pages, https://datatracker.ietf.org/doc/html/rfc6101. [cited by applicant]
Germain, IBM Introducing Fingerprint Reader Into Laptop, TechNews World, Security, Oct. 4, 2004, 11 pages, https://www.technewsworld.com/story/ibm-introducing-fingerprint-reader-into-laptop-37017.html. [cited by applicant]
Hammer-Lahav, Ed. “The OAuth 1.0 Protocol”, from https://tools.ietf.org/html/rfc5849, Apr. 2010. [cited by applicant]
Heusch et al., Local Binary Patterns as an Image Preprocessing for Face Authentication, IDIAP Research Report 05-76, Nov. 2005, 12 pages. [cited by applicant]
Infineon, TPM Key Backup and Recovery for Trusted Platforms, Infineon White Paper, V0.95, Sep. 21, 2006, 17 pages, www.infineon.com/TPM. [cited by applicant]
IPR2022-00244 Claim Mapping Table for the '696 Patent. Nov. 30, 2021. [cited by applicant]
IPR2022-00244 Petition for Inter Partes Review of U.S. Pat. No. 10,824,696. Nov. 30, 2021. [cited by applicant]
IPR2022-00251 Claim Mapping Table for the '512 Patent. Dec. 1, 2021. [cited by applicant]
IPR2022-00251 Petition for Inter Partes Review of U.S. Pat. No. 10,929,512. Dec. 1, 2021. [cited by applicant]
IPR2024-00329 Petition for Inter Partes Review of U.S. Pat. No. 9,972,010, Jan. 30, 2024, 104 pages. [cited by applicant]
IPR2024-00330 Petition for Inter Partes Review of U.S. Pat. No. 10,713,656, Jan. 30, 2024, 100 pages. [cited by applicant]
IPR2024-00331 Petition for Inter Partes Review of U.S. Pat. No. 11,526,886, Jan. 30, 2024, 109 pages. [cited by applicant]
IPR2024-00332 Petition for Inter Partes Review of U.S. Pat. No. 10,929,512, Jan. 19, 2024, 86 pages. [cited by applicant]
IPR2024-00333 Petition for Inter Partes Review of U.S. Pat. No. 11,475,105, Jan. 31, 2024, 81 pages. [cited by applicant]
IPR2024-00334 Petition for Inter Partes Review of U.S. Pat. No. 11,514,138, Jan. 19, 2024, 86 pages. [cited by applicant]
IPR2024-00507 Petition for Inter Partes Review of U.S. Pat. No. 11,475,105, Jan. 31, 2024, 86 pages. [cited by applicant]
Jakobsson et al. Proving Without Knowing: On Oblivious, Agnostic and Blindfolded Provers. Jul. 24, 1996: http://markus-jakobsson.com/papers/jakobsson-crypto96.pdf. [cited by applicant]
Kollreider et al., Verifying Liveness by Multiple Experts in Face Biometrics, 2008 IEEE Computer Society Conference on Computer Vision and Pattern Recognition Workshops, Jun. 23-28, 2008, 6 pages. [cited by applicant]
Microsoft Press, Computer Dictionary Second Edition, The Comprehensive Standard For Business, School, Library, and Home, 1994, 8 pages. [cited by applicant]
Monrose et al. Using Voice to Generate Cryptographic Keys. May 13, 2001: https://www.cs.unc.edu/˜fabian/papers/odyssey.pdf. [cited by applicant]
Narayanan, De-anonymizing Social Networks, 2009 30th IEEE Symposium on Security and Privacy, May 17-20, 2009, pp. 173-187. [cited by applicant]
Neuman et al., Kerberos: An Authentication Service for Computer Networks, USC/ISI Technical Report number ISI/RS-94-399, IEEE Communications Magazine, vol. 32, No. 9, Sep. 1994, 10 pages, https://gost.isi.edu/publicatio… [cited by applicant]
Neuman et al., The Kerberos Network Authentication Service (V5), IETF, Jul. 2005, 119 pages, https://www.ietf.org/rfc/rfc4120.txt. [cited by applicant]
Oracle, Oracle Buys Bharosa: Delivers Next-Generation Risk-Based Access Management, Overview and Frequently Asked Questions, 2007, 4 pages. [cited by applicant]
Rescorla, Http Over TLS, IETF Datatracker RFC 2818, May 2000, 7 pages, https://datatracker.ietf.org/doc/html/rfc2818. [cited by applicant]
Scarfone et al., Guide to Bluetooth Security, Recommendations of the National Institute of Standards and Technology, U.S. Department of Commerce, Special Publication 800-121, Sep. 2008, 43 pages. [cited by applicant]
Seshadri et al. Pioneer: Verifying Code Integrity and Enforcing Untampered Code Execution on Legacy Systems. Oct. 23, 2005: https://netsec.ethz.ch/publications/papers/pioneer.pdf. [cited by applicant]
TC Group, ISO/IEC 11889-1:2009(en) Information technology: Trusted Platform Module—Part 1: Overview, May 2009, 6 pages, https://www.iso.org/standard/50970.html. [cited by applicant]
Trusted Computing Group, Enterprise Security: Putting the TPM to Work, White Paper, 2008, 2 pages. [cited by applicant]
Trusted Computing Group, TPM Main Part 3 Commands, Specification Version 1.2, Level 2 Revision 116, Mar. 1, 2011, 339 pages. [cited by applicant]
Tseitlin, Embracing Failure to Improve Resilience and Maximize Availability, The Antifragile Organization, ACM Queue 11, No. 6, Jun. 8, 2013, pp. 1-7. [cited by applicant]
Varshavsky et al., Amigo: Proximity-Based Authentication of Mobile Devices, UbiComp 2007: Ubiquitous Computing, LNCS vol. 4717, 2007, pp. 253-270. [cited by applicant]
Vasalou et al., Avatars in social media: Balancing accuracy, playfulness and embodied messages, ScienceDirect, Int. Journal of Human-Computer Studies 66, May 9, 2008, pp. 801-811. [cited by applicant]
Zeidman, Introduction to Programmable Systems on a Chip, EE Times, Design Lines, Programmable Logic Designline, Jul. 27, 2005, 12 pages, https://www.eetimes.com/introduction-to-programmable-systems-on-a-chip/. [cited by applicant]