IP Library Granted Patent US 11,544,365
Granted Patent B2
US 11,544,365 · App. 16/826,889 · Granted Jan 3, 2023

Authentication system using a visual representation of an authentication challenge

Inventor: Philippe Paris Vachon (New York, NY)
Assignee: Bloomberg Finance L.P.
G06F21/32G06F21/36
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,544,365
App. No.
16/826,889
Granted
Jan 3, 2023
Kind
B2
Abstract

Systems and methods for authenticating a user for accessing a restricted system are provided. A code presented by the restricted system is acquired. The code visually represents an authentication challenge. The authentication challenge is extracted from the code. Authentication information associated with the user for use in the authentication challenge is received. The user is authenticated for accessing the restricted system based on the authentication information.

Claims (49)

1. A method for authenticating a user for accessing a restricted system by an access device, comprising:

in response to the user being authenticated according to a first authentication challenge, receiving a notification prompting the user to open an authentication application for authenticating the user according to a second authentication challenge;

automatically opening the authentication application in response to receiving input from the user interacting with the notification;

acquiring a code presented by the restricted system using the authentication application, the code presented in response to the user being authenticated according to the first authentication challenge and visually representing the second authentication challenge;

extracting the second authentication challenge from the code;

receiving authentication information associated with the user for use in the second authentication challenge;

in response to determining that the access device is in an offline state, displaying a token to the user, wherein the user is authenticated according to the second authentication challenge for accessing the restricted system in response to the displayed token being input into the restricted system; and

in response to determining that the access device is in an online state, transmitting an indication that the user was authenticated according to the same second authentication challenge for accessing the restricted system.

2. The method of claim 1 , wherein the code comprises a QR (quick response) code.

3. The method of claim 1 , wherein the code comprises a bar code.

4. The method of claim 1 , wherein the code comprises a series of intermittent flashing lights.

5. The method of claim 1 , wherein the second authentication challenge is a biometric authentication challenge, and receiving authentication information associated with the user for use in the second authentication challenge comprises:

receiving biometric authentication information associated with the user for the biometric authentication challenge.

6. The method of claim 1 , wherein the first authentication challenge comprises a username and a password.

7. An access device for authenticating a user for accessing a restricted system, comprising:

an image sensor for acquiring a code presented by the restricted system using an authentication application, the code presented in response to the user being authenticated according to a first authentication challenge and the code visually representing a second authentication challenge;

a processor; and

a memory to store computer program instructions, the computer program instructions when executed on the processor cause the processor to perform operations comprising:

in response to the user being authenticated according to the first authentication challenge, receiving a notification prompting the user to open the authentication application for authenticating the user according to the second authentication challenge;

automatically opening the authentication application in response to receiving input from the user interacting with the notification;

extracting the second authentication challenge from the code;

receiving authentication information associated with the user for use in the second authentication challenge;

in response to determining that the access device is in an offline state, displaying a token to the user, wherein the user is authenticated according to the second authentication challenge for accessing the restricted system in response to the displayed token being input into the restricted system; and

in response to determining that the access device is in an online state, transmitting an indication that the user was authenticated according to the same second authentication challenge for accessing the restricted system.

8. The access device of claim 7 , wherein the code comprises a QR (quick response) code.

9. The access device of claim 7 , wherein the code comprises a bar code.

10. A non-transitory computer readable medium storing computer program instructions for authenticating a user for accessing a restricted system by an access device, the computer program instructions when executed by a processor cause the processor to perform operations comprising:

in response to the user being authenticated according to a first authentication challenge, receiving a notification prompting the user to open an authentication application for authenticating the user according to a second authentication challenge;

automatically opening the authentication application in response to receiving input from the user interacting with the notification;

acquiring a code presented by the restricted system using the authentication application, the code presented in response to the user being authenticated according to the first authentication challenge and visually representing the second authentication challenge;

extracting the second authentication challenge from the code;

receiving authentication information associated with the user for use in the second authentication challenge;

in response to determining that the access device is in an offline state, displaying a token to the user, wherein the user is authenticated according to the second authentication challenge for accessing the restricted system in response to the displayed token being input into the restricted system; and

in response to determining that the access device is in an online state, transmitting an indication that the user was authenticated according to the same second authentication challenge for accessing the restricted system.

11. The non-transitory computer readable medium of claim 10 , wherein the code comprises a QR (quick response) code.

12. The non-transitory computer readable medium of claim 10 , wherein the code comprises a series of intermittent flashing lights.

13. The non-transitory computer readable medium of claim 10 , wherein the second authentication challenge is a biometric authentication challenge, and receiving authentication information associated with the user for use in the second authentication challenge comprises:

receiving biometric authentication information associated with the user for use in the biometric authentication challenge.

14. The non-transitory computer readable medium of claim 10 , wherein the first authentication challenge comprises a username and a password.

15. An authentication system, comprising:

a restricted system for presenting a code visually representing a second authentication challenge in response to a user being authenticated according to a first authentication challenge;

an access device for:

in response to the user being authenticated according to the first authentication challenge, receiving a notification prompting the user to open an authentication application for authenticating the user according to the second authentication challenge;

automatically opening the authentication application in response to receiving input from the user interacting with the notification;

acquiring the code presented by the restricted system using the authentication application;

extracting the second authentication challenge from the code;

receiving authentication information associated with the user for use in the second authentication challenge;

in response to determining that the access device is in an offline state, displaying a token to the user, wherein the user is authenticated according to the second authentication challenge for accessing the restricted system in response to the displayed token being input into the restricted system; and

in response to determining that the access device is in an online state, transmitting an indication that the user was authenticated according to the same second authentication challenge for accessing the restricted system.

Assignments (2)
SECURITY INTEREST Recorded Nov 10, 2021
From: BLOOMBERG FINANCE L.P.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 058076/0214 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 23, 2020
From: VACHON, PHILIPPE PARIS
To: BLOOMBERG FINANCE L.P.
Reel/Frame 052198/0358 →
Continuity (2)
Provisional Application 62822280 · Mar 22, 2019
Related Publication 20200302043A1 · Sep 24, 2020