IP Library Granted Patent US 9,148,444
Granted Patent B2
US 9,148,444 · App. 13/406,733 · Granted Sep 29, 2015

Rotation of web site content to prevent e-mail spam/phishing attacks

Inventors: George Hicken (Southampton, GB); Adam Pilkington (Eastleigh, GB)
Assignee: International Business Machines Corporation
H04L63/1483
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,148,444
App. No.
13/406,733
Granted
Sep 29, 2015
Kind
B2
Abstract

A method for phishing attack management through Web site content rotation includes receiving a request for a variation of a component to be incorporated into a Web page from a requesting Web page rendering engine from over a computer communications network. The method also includes comparing the requested variation of the component to a currently configured variation of the component. Finally, the method includes returning both the requested variation of the component and an alert indicating a possible phishing attack in response to the request if the requested variation of the component differs from the currently configured variation of the component.

Claims (27)

1. A method for phishing attack management through Web site content rotation, the method comprising:

providing a set of different variations of a visual Web site component of a page of a Web site;

configuring the page of the Web site to retrieve and to incorporate only a single one of the variations of the visual Web site component;

periodically updating the configuration of the page of the Web site to retrieve and to incorporate a different one of the variations of the visual Web site component from the set;

receiving a request for a variation of the visual Web site component be incorporated into a Web page from a requesting Web page rendering engine from over a computer communications network;

comparing the requested variation of the visual Web site component to a current variation of the visual Web site component to determine whether the requested variation of the visual Web site component differs from the current variation of the visual Web site component; and,

returning both the requested variation of the visual Web site component and also a visual alert indicating a possible phishing attack in response to the request upon determining that the requested variation of the visual Web site component differs from the currently configured variation of the visual Web site component.

2. The method of claim 1 , wherein comparing the requested variation of the visual Web site component to the current variation of the visual Web site component in the configuration, comprises comparing a uniform resource locator (URL) of the requested variation of the visual Web site component to a URL of the current variation of the visual Web site component in the configuration.

3. The method of claim 1 , wherein returning both the requested variation of the visual Web site component and the visual alert indicating the possible phishing attack in response to the request upon determining that the requested variation of the visual Web site component differs from the currently configured variation of the visual Web site component, comprises returning both the requested variation of the visual Web site component and also the visual alert superimposed over the requested variation of the visual Web site component indicating the possible phishing attack in response to the request upon determining that the requested variation of the visual Web site component differs from the current variation of the visual Web site component in the configuration.

4. The method of claim 1 , wherein the visual Web site component is a tool bar for the Web page.

5. The method of claim 1 , wherein the visual Web site component is a menu bar for the Web page.

6. A method for phishing attack management through Web site content rotation, the method comprising:

storing a plurality of different variations of a single visual Web site component of a Web page;

modifying each of the different variations of the single visual Web site component to include a visual alert except for one valid variation of the single visual Web site component; and,

changing a reference in the Web page from a reference for a modified one of the different variations of the single visual Web site component to a reference for the valid variation of the visual single Web site component, where a request for the Web page from a client computer will return a correct variation of the single visual Web site component without the visual alert, but an outdated variation of the single visual Web site component will return the visual alert indicating a possibly phishing attack.

7. The method of claim 6 wherein the reference is a file name of the valid variation of the single visual Web site component.

8. A method for phishing attack management through Web site content rotation, the method comprising:

receiving a request for a variation of the visual Web site component be incorporated into a Web page from a requesting Web page rendering engine from over a computer communications network;

comparing the requested variation of the visual Web site component to a current variation of the visual Web site component to determine whether the requested variation of the visual Web site component differs from the current variation of the visual Web site component; and,

returning both the requested variation of the visual Web site component and also a visual alert superimposed over the requested variation of the visual Web site component indicating a possible phishing attack in response to the request upon determining that the requested variation of the visual Web site component differs from the current variation of the visual Web site component.

9. The method of claim 8 , wherein comparing the requested variation of the visual Web site component to the current variation of the visual Web site component in the configuration, comprises comparing a uniform resource locator (URL) of the requested variation of the visual Web site component to a URL of the current variation of the visual Web site component.

10. The method of claim 8 , wherein the visual Web site component is a tool bar for the Web page.

11. The method of claim 8 , wherein the visual Web site component is a menu bar for the Web page.

12. The method of claim 8 , wherein the visual alert is a warning message.

13. The method of claim 6 , wherein the visual alert is superimposed over the Web page.

14. The method of claim 6 , wherein the single visual Web site component is a menu bar for the Web page.

15. The method of claim 6 , wherein the single visual Web site component is a tool bar for the Web page.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 23, 2021
From: HICKEN, GEORGE; PILKINGTON, ADAM
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 056962/0884 →
Continuity (2)
Division 13117062 · May 26, 2011
Related Publication 20120304291A1 · Nov 29, 2012