IP Library Granted Patent US 8,725,636
Granted Patent B1
US 8,725,636 · App. 13/657,352 · Granted May 13, 2014

Method for detecting fraudulent money transfer

Inventors: Amit Klein (Herzliya, IL); Michael Boodaei (Givatayim, IL)
Assignee: Trusteer Ltd.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,725,636
App. No.
13/657,352
Granted
May 13, 2014
Kind
B1
Abstract

A method detects fraudulent transaction of money transfer to a mule account, according to which a detection software module is injected into a browser or a website to be protected. The detection module traces the content and the activities performed on a webpage of the website and detects any exceptional activity/condition which may be fraudulent online activity performed by malware and waits until all sensitive data to perform a fraud transaction is entered. Then the detection module stores and/or forwards the details of the mule account that has been used for the fraudulent transaction.

Claims (25)

1. A computer implemented method for detecting fraudulent transaction of money transfer to a mule account, comprising:

injecting a detection software module into a browser or a website to be protected, said browser or website running on a computerized device in data communication with a data network;

the detection module performing the following operations:

tracing content and activities performed on a webpage of said website;

detecting an activity or condition that is indicative of fraudulent online activity performed by malware;

waiting until all sensitive data to perform a fraudulent transaction is entered; and

storing or forwarding details of the mule account used for said fraudulent transaction.

2. The method according to claim 1 , further comprising configuring the detection module to mark a current transaction fraudulent that has activity or a condition indicative of fraudulent online activity performed by malware.

3. The method according to claim 2 , further comprising configuring the detection module to perform a preventive action or to report about the fraudulent transaction.

4. The method according to claim 1 , further comprising the detection module aggregating and storing a plurality of mule accounts to be blocked.

5. The method according to claim 1 , wherein a fraudulent transaction is generated by malware using Ajax.

6. The method according to claim 1 , wherein whenever the malware retrieves a mule account in real-time for each transaction from a remote server, the detection module detects the retrieval and marks a current transaction as fraudulent.

7. The method according to claim 1 , wherein whenever the malware automatically fills in fields in a fraudulent transaction form, the detection module detects the automatic filling and marks a current transaction as fraudulent.

8. The method according to claim 1 , wherein the detection module seeks invisible IFrames in a legitimate web page.

9. The method according to claim 1 , wherein the detection module is a JavaScript code snippet that is integrated into a legitimate transaction web page.

10. The method according to claim 1 , wherein the preventive action comprises blocking the transaction.

11. The method according to claim 1 , wherein the details of the mule account that has been used for said fraudulent transaction are stored and forwarded.

12. A system for detecting fraudulent transaction of money transfer to a mule account comprising:

a computerized device in data communication with a data network for performing an online transaction; and

a server for injecting a detection software module into a browser or a website to be protected, said browser or website running on said computerized device;

said detection software module being operable to perform the following functions:

tracing content and activities performed on a webpage of said website;

detecting an activity or condition which is indicative of fraudulent online activity performed by malware;

waiting until all sensitive data to perform a fraudulent transaction is entered; and

storing or forwarding details of the mule account that has been used for said fraudulent transaction.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 11, 2021
From: ARKOSE LABS, INC.
To: ARKOSE LABS HOLDINGS, INC.
Reel/Frame 057455/0455 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 9, 2021
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: ARKOSE LABS, INC.
Reel/Frame 057418/0615 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 23, 2017
From: TRUSTEER, LTD.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 041060/0411 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 11, 2012
From: KLEIN, AMIT; BOODAEI, MICHAEL
To: TRUSTEER LTD.
Reel/Frame 029448/0262 →