IP Library Granted Patent US 10,771,239
Granted Patent B2
US 10,771,239 · App. 15/955,966 · Granted Sep 8, 2020

Biometric threat intelligence processing for blockchains

Inventors: Karthik Nandakumar (Singapore, SG); Nalini K. Ratha (Yorktown Heights, NY); Sharathchandra Pankanti (Fairfield County, CT)
Assignee: International Business Machines Corporation
H04L9/0637G06F21/32G06F21/55H04L9/3231H04L9/3265H04L63/0861
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,771,239
App. No.
15/955,966
Granted
Sep 8, 2020
Kind
B2
Abstract

An example operation may include one or more of detecting a suspected biometric authentication incident, submitting a first blockchain transaction including a first report to a blockchain network, submitting a second blockchain transaction including a second report to the blockchain network, and taking an action, by one or more blockchain nodes, in response to determining one or more of the first and second reports are relevant to the one or more blockchain nodes. The first report includes public and private data corresponding to the suspected biometric authentication incident, and the second report includes one or more of a root cause and mitigation steps for the incident.

Claims (42)

1. A method, comprising:

detecting a suspected biometric authentication incident;

submitting a first blockchain transaction comprising a first report to a blockchain network, the first report comprising public and private data corresponding to the suspected biometric authentication incident;

submitting a second blockchain transaction comprising a second report to the blockchain network, the second report comprising one or more of a root cause and mitigation steps for the incident; and

taking an action, by one or more blockchain nodes, in response to determining one or more of the first and second reports are relevant to the one or more blockchain nodes.

2. The method of claim 1 , wherein each blockchain node comprises a distributed blockchain ledger, the distributed blockchain ledger comprising the first and second reports and one or more of actions taken reports, general threat alerts, and recommendations.

3. The method of claim 1 , wherein prior to detecting the suspected biometric authentication incident, the method further comprising:

creating the blockchain network comprising the one or more blockchain nodes, wherein the one or more blockchain nodes comprises one or more biometric vendors, organizations with deployed biometric systems, security intelligence organizations, and law enforcement or regulatory organizations.

4. The method of claim 3 , wherein the private data comprises one or more of a name of an organization that detected the suspected biometric authentication incident and an identification of a biometric vendor, wherein only the organization that detected the suspected biometric authentication incident and the identified biometric vendor are able to read the private data, wherein the identified biometric vendor is associated with the suspected biometric authentication incident.

5. The method of claim 4 , wherein an organization outside the blockchain network detects the suspected biometric authentication incident and in response notifies the biometric vendor of the incident and the biometric vendor submits the first report.

6. The method of claim 3 , further comprising:

calculating, by the one or more biometric vendors, a trust score based on the first report, the trust score reflecting a perceived plausibility of the incident; and

distributing the trust score to the blockchain network.

7. The method of claim 3 , wherein the public data comprises incident details available to all nodes of the blockchain network, wherein the action is taken to reduce or mitigate a chance of a successful future biometric authentication incident.

8. A system, comprising:

a blockchain network, comprising:

a first blockchain node, configured to:

detect a suspected biometric authentication incident;

submit a first blockchain transaction comprising a first report to the blockchain network, the first report comprising public and private data that corresponds to the suspected biometric authentication incident; and

take an action, in response to a determination of one or more of the first and a second report are relevant to the first blockchain node; and

a second blockchain node, configured to:

submit a second blockchain transaction comprising the second report to the blockchain network, the second report comprising one or more of a root cause and mitigation steps for the incident.

9. The system of claim 8 , wherein each blockchain node comprises a distributed blockchain ledger, the distributed blockchain ledger comprising the first and second reports and one or more of actions taken reports, general threat alerts, and recommendations.

10. The system of claim 8 , wherein the first and second blockchain nodes comprises one or more of biometric vendors, organizations with deployed biometric systems, security intelligence organizations, and law enforcement or regulatory organizations.

11. The system of claim 10 , wherein the private data comprises one or more of a name of an organization that detected the suspected biometric authentication incident and an identification of a biometric vendor, wherein only the organization that detected the suspected biometric authentication incident and the identified biometric vendor are able to read the private data, wherein the identified biometric vendor is associated with the suspected biometric authentication incident.

12. The system of claim 11 , wherein an organization outside the blockchain network detects the suspected biometric authentication incident and in response notifies the biometric vendor of the incident and the biometric vendor submits the first report.

13. The system of claim 10 , wherein a blockchain node of the blockchain network

calculates a trust score based on the first report, the trust score reflecting a perceived plausibility of the incident and distributes the trust score to the blockchain network.

14. The system of claim 10 , wherein the public data comprises incident details available to all nodes of the blockchain network, wherein the action is taken to reduce or mitigate a chance of a successful future biometric authentication incident.

15. A non-transitory computer readable medium comprising instructions, that when read by a processor, cause the processor to perform:

detecting a suspected biometric authentication incident;

submitting a first blockchain transaction comprising a first report to a blockchain network, the first report comprising public and private data corresponding to the suspected biometric authentication incident;

submitting a second blockchain transaction comprising a second report to the blockchain network, the second report comprising one or more of a root cause and mitigation steps for the incident; and

taking an action, by one or more blockchain nodes, in response to determining one or more of the first and second reports are relevant to the one or more blockchain nodes.

16. The non-transitory computer readable medium of claim 15 , wherein prior to detecting the suspected biometric authentication incident, the processor further configured to perform:

creating the blockchain network comprising the one or more blockchain nodes, wherein the one or more blockchain nodes comprises one or more biometric vendors, organizations with deployed biometric systems, security intelligence organizations, and law enforcement or regulatory organizations.

17. The non-transitory computer readable medium of claim 16 , wherein the private data comprises one or more of a name of an organization that detected the suspected biometric authentication incident and an identification of a biometric vendor, wherein only the organization that detected the suspected biometric authentication incident and the identified biometric vendor are able to read the private data, wherein the identified biometric vendor is associated with the suspected biometric authentication incident.

18. The non-transitory computer readable medium of claim 17 , wherein an organization outside the blockchain network detects the suspected biometric authentication incident and in response notifies the biometric vendor of the incident and the biometric vendor submits the first report.

19. The non-transitory computer readable medium of claim 16 , the processor further configured to perform:

calculating, by the one or more biometric vendors, a trust score based on the first report, the trust score reflecting a perceived plausibility of the incident; and

distributing the trust score to the blockchain network.

20. The non-transitory computer readable medium of claim 16 , wherein the public data comprises incident details available to all nodes of the blockchain network, wherein the action is taken to reduce or mitigate a chance of a successful future biometric authentication incident.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 23, 2023
From: INTERNATIONAL BUSINESS MACHINES CORPORATION
To: CROWDSTRIKE, INC.
Reel/Frame 062454/0612 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 18, 2018
From: NANDAKUMAR, KARTHIK; RATHA, NALINI K.; PANKANTI, SHARATHCHANDRA
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 045574/0050 →
Continuity (1)
Related Publication 20190327079A1 · Oct 24, 2019
Cited By (1)
US 12,386,727