IP Library Granted Patent US 8,875,291
Granted Patent B2
US 8,875,291 · App. 13/852,201 · Granted Oct 28, 2014

Network virtual user risk control method and system

Inventor: Sihai Hu (Hangzhou, CN)
Assignee: Alibaba Group Holding Limited
G06F21/552
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,875,291
App. No.
13/852,201
Granted
Oct 28, 2014
Kind
B2
Abstract

Embodiments of the present application relate to a method of controlling user risk, a system for controlling user risk, and a computer program product for controlling user risk. A method is provided. The method includes retrieving association data of a first user and association data of a second user, the association data including multidimensional data, and data relating to each dimension identifying a user and serving as an association dimension, based on the association data, computing an association value between the first user and the second user for an association dimension, gathering the association value to obtain a degree of real association, and determining that the other user is malicious.

Claims (51)

1. A network virtual user risk control method, comprising:

retrieving raw association data of a first virtual user and raw association data of a second virtual user, the raw association data comprising multidimensional data, and data relating to each dimension being capable of identifying a user and serving as an association dimension, wherein one of the first virtual user and the second virtual user is deemed to be a malicious user;

based on the raw association data of the first virtual user and the second virtual user, computing at least one association value between the first virtual user and the second virtual user for an association dimension;

gathering the at least one association value of the association dimension to obtain a degree of real association between the first virtual user and the second virtual user;

determining whether the degree of real association between the first virtual user and the second virtual user exceeds a predetermined threshold value; and

determining that the other of the first and second virtual users is a malicious user.

2. The method as described in claim 1 , wherein the computing of the at least one association value between the first virtual user and the second virtual user for the association dimension comprises:

for the association dimension, computing the at least one association value between the first virtual user and the second virtual user based on a quantity factor, a time factor, and a cascade factor.

3. The method as described in claim 2 , wherein the quantity factor employs a summation function.

4. The method as described in claim 3 , wherein the time factor and the cascade factor both employ an inverse function.

5. The method as described in claim 4 , wherein the at least one association value between the first virtual user and the second virtual user for the association dimension is computed using the following formula:

Σ x Σ level Σ t (1/t)*(1/level), wherein Σ corresponds to the summation function, x corresponds to the association quantity for an association dimension, level corresponds to a cascade level, and t corresponds to time.

6. The method as described in claim 1 , wherein the multidimensional data comprises an IP address, a cookie, a device fingerprint, a mobile phone number, a telephone number, a fax number, an email address, an address, a user name, or any combination thereof.

7. The method as described in claim 1 , wherein the retrieving of the raw association data of the first virtual user and the raw association data of the second virtual user comprises:

retrieving the raw association data of the first virtual user; and

based on the raw association data of the first virtual user, locating the second virtual user associated with the first user and the raw association data of the second virtual user.

8. The method as described in claim 7 , wherein the locating of the second virtual user associated with the first virtual user and the raw association data of the second virtual user comprises:

for each association dimension, finding dimension data used by the first virtual user based on an identifier of the first virtual user;

utilizing the found dimension data to find a user list corresponding to the dimension data; and

removing a duplicate user from the user list found for the each association dimension to identify a user in the user list as the second virtual user associated with the first virtual user.

9. The method as described in claim 1 , wherein the gathering of the at least one association value comprises summing the at least one association value for the association dimension.

10. A network virtual user risk control system, comprising:

at least one processor configured to:

retrieve raw association data of a first virtual user and raw association data of a second virtual user, the raw association data comprising multidimensional data and data relating to each dimension being capable of identifying a user and serving as an association dimension, wherein one of the first virtual user and the second virtual user is deemed to be a malicious user;

based on the raw association data of the first virtual user and the second virtual user, compute at least one association value between the first virtual user and the second virtual user for an association dimension;

gather the at least one association value for the association dimension to obtain a degree of real association between the first virtual user and the second virtual user;

determine whether the degree of real association between the first virtual user and the second virtual user exceeds a predetermined threshold value; and

determine that the other of the first and second virtual users is a malicious user; and

a memory coupled to the at least one processor and configured to provide the at least one processor with instructions.

11. The system as described in claim 10 , wherein the computing of the at least one is association value between the first virtual user and the second virtual user for the association dimension comprises:

for the association dimension, computing the at least one association value between the first virtual user and the second virtual user based on a quantity factor, a time factor and a cascade factor.

12. The system as described in claim 11 , wherein:

the quantity factor employs a summation function;

the time factor and the cascade factor both employ an inverse function; and

the at least one association value between the first virtual user and the second virtual user is computed using the following formula:

Σ x Σ level Σ t (1/t)*(1/level), wherein Σ corresponds to the summation function, x corresponds to the association quantity under an association dimension, level corresponds to a cascade level, and t corresponds to time.

13. The system as described in claim 10 , wherein the multidimensional data comprises an IP address, a cookie, a device fingerprint, a mobile telephone number, a telephone number, a fax number, an email address, an address, a user name, or any combination thereof.

14. A system as described in claim 10 , wherein the retrieving of the raw association data of the first virtual user and the raw association data of the second virtual user comprises:

retrieving the raw association data of the first virtual user; and

based on the raw association data of the first virtual user, locating the second virtual user associated with the first user and the raw association data of the second virtual user.

15. The system as described in claim 14 , wherein the locating of the second virtual user associated with the first virtual user and the raw association data of the second virtual user comprises:

for each association dimension, finding dimension data used by the first virtual user based on an identifier of the first virtual user;

utilizing the found dimension data to find a user list corresponding to the dimension data; and

removing a duplicate user from the user list found for the each association dimension to identify a user in the user list as the second virtual user associated with the first virtual user.

16. The system as described in claim 10 , wherein the gathering of the at least one association value comprises summing the at least one association value for the association dimension.

17. A computer program product for controlling network virtual user risk, the computer program product being embodied in a non-transitory computer readable storage medium and comprising computer instructions for:

retrieving raw association data of a first virtual user and raw association data of a second virtual user, the raw association data comprising multidimensional data, and data relating to each dimension being capable of identifying a user and serving as an association dimension, wherein one of the first virtual user and the second virtual user is deemed to be a malicious user;

based on the raw association data of the first virtual user and the second virtual user, computing at least one association value between the first virtual user and the second virtual user for an association dimension;

gathering the at least one association value of the association dimension to obtain a degree of real association between the first virtual user and the second virtual user;

determining whether the degree of real association between the first virtual user and the second virtual user exceeds a predetermined threshold value; and

determining that the other of the first and second virtual users is a malicious user.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 19, 2024
From: ALIBABA GROUP HOLDING LIMITED
To: ALIBABA SINGAPORE HOLDING PRIVATE LIMITED
Reel/Frame 067168/0867 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 13, 2024
From: ALIBABA GROUP HOLDING LIMITED
To: ALIBABA SINGAPORE HOLDING PRIVATE LIMITED
Reel/Frame 070522/0847 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 2, 2013
From: HU, SIHAI
To: ALIBABA GROUP HOLDING LIMITED
Reel/Frame 030731/0102 →
Priority Claims (1)
CN 2012 1 0096275 · Apr 1, 2012 · national
Continuity (1)
Related Publication 20130276115A1 · Oct 17, 2013