IP Library › Granted Patent US 11,741,200
Granted Patent B2
US 11,741,200 · App. 17/340,188 · Granted Aug 29, 2023

Systems and methods for protection against theft of user credentials

Inventors: Manbinder Pal Singh (Coral Springs, FL); Daniel G. Wing (Truckee, CA)
G06F21/31G06F16/955G06F21/602
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,741,200
App. No.
17/340,188
Filed
Jun 7, 2021
Granted
Aug 29, 2023
Kind
B2
Art Unit
2433
USPC
726/23
Abstract

A computer system is provided. The computer system includes a memory and at least one processor coupled to the memory and configured to receive a sequence of characters within a field of a web browser, the field being associated with a password entry field served to the web browser from a website. The processor is further configured to store the received sequence of characters and send an alternate sequence of characters to the website. The processor is further configured to encrypt the received sequence of characters to generate a received encrypted partial password and compare the received encrypted partial password to one or more entries in a list of encrypted partial passwords. The processor is further configured to, in response to the comparison resulting in a difference, delete the previously sent alternate sequence of characters, and send the stored sequence of characters to the website.

Claims (44)

1. A computer system comprising:

a memory; and

at least one processor coupled to the memory and configured to:

receive a sequence of characters within a field of a web browser, the field being associated with a password entry field served to the web browser from a website;

store the received sequence of characters and send an alternate sequence of characters to the web site;

encrypt the received sequence of characters to generate a received encrypted partial password;

compare the received encrypted partial password to one or more entries in a list of encrypted partial passwords; and

in response to the comparison resulting in a difference, delete the previously sent alternate sequence of characters, and provide a password comprising the stored sequence of characters to the web site.

2. The computer system of claim 1 , wherein the at least one processor is further configured to send a sequence of backspace characters to the website to delete the previously sent alternate sequence of characters.

3. The computer system of claim 1 , wherein the alternate characters are sent to cause a cursor advance associated with each received character.

4. The computer system of claim 1 , wherein the at least one processor is further configured to perform a security action in response to the comparison resulting in a match.

5. The computer system of claim 1 , wherein the at least one processor is further configured to detect passwords provided to visited websites over a selected period of time and encrypt the detected passwords to generate the list of encrypted partial passwords.

6. The computer system of claim 1 , wherein the at least one processor is further configured to identify a uniform resource locator (URL) associated with the website; determine an absence of the URL from a history of visited URLs for which a password has been entered; and recognize the URL as a URL for which protection is to be provided based on the determination.

7. The computer system of claim 1 , wherein the at least one processor is further configured to identify a URL associated with the website; receive a list of suspect URLs generated by a URL reputation manager; match the URL to an entry in the list; and recognize the URL as a URL for which protection is to be provided based on the match.

8. A computer system comprising:

a memory; and

at least one processor coupled to the memory and configured to:

detect login elements served to a web browser from a website, the login elements including a password entry field;

generate an overlay of the login elements;

receive a sequence of characters within a password entry field of the overlay;

encrypt the received sequence of characters to generate a received encrypted partial password;

compare the received encrypted partial password to one or more entries in a list of encrypted partial passwords; and

in response to the comparison resulting in a difference, provide a password comprising the received sequence of characters to the password entry field of the login elements served from the website.

9. The computer system of claim 8 , wherein the at least one processor is further configured to perform a security action in response to the comparison resulting in a match.

10. The computer system of claim 8 , wherein the overlay mimics the login elements served from the website.

11. The computer system of claim 8 , wherein the at least one processor is further configured to detect passwords provided to visited websites over a selected period of time and encrypt the detected passwords to generate the list of encrypted partial passwords.

12. The computer system of claim 8 , wherein the at least one processor is further configured to identify a uniform resource locator (URL) associated with the website; determine an absence of the URL from a history of visited URLs for which a password has been entered; and recognize the URL as a URL for which protection is to be provided based on the determination.

13. The computer system of claim 8 , wherein the at least one processor is further configured to identify a URL associated with the website; receive a list of suspect URLs generated by a URL reputation manager; match the URL to an entry in the list; and recognize the URL as a URL for which protection is to be provided based on the match.

14. A computer system comprising:

a memory;

a user interface; and

at least one processor coupled to the memory and configured to:

receive a message from a remote web browser, the message indicating a change of input focus to a password entry field served to the remote web browser from a website;

receive a sequence of characters from the user interface;

store the received sequence of characters and send an alternate sequence of characters to the remote browser;

encrypt the received sequence of characters to generate a received encrypted partial password;

compare the received encrypted partial password to one or more entries in a list of encrypted partial passwords; and

in response to the comparison resulting in a difference, provide a password comprising the stored sequence of characters to the remote browser.

15. The computer system of claim 14 , wherein the at least one processor is further configured to send a sequence of backspace characters to the website to delete the previously sent alternate sequence of characters, in response to the comparison resulting in a difference.

16. The computer system of claim 14 , wherein the alternate characters are sent to cause a cursor advance associated with each received character.

17. The computer system of claim 14 , wherein the at least one processor is further configured to perform a security action in response to the comparison resulting in a match.

18. The computer system of claim 14 , wherein the at least one processor is further configured to detect passwords provided to visited websites over a selected period of time and encrypt the detected passwords to generate the list of encrypted partial passwords.

19. The computer system of claim 14 , wherein the at least one processor is further configured to identify a uniform resource locator (URL) associated with the website; determine an absence of the URL from a history of visited URLs for which a password has been entered; and recognize the URL as a URL for which protection is to be provided based on the determination.

20. The computer system of claim 14 , wherein the at least one processor is further configured to identify a URL associated with the website; receive a list of suspect URLs generated by a URL reputation manager; match the URL to an entry in the list; and recognize the URL as a URL for which protection is to be provided based on the match.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 7, 2021
From: SINGH, MANBINDER PAL; WING, DANIEL G.
To: CITRIX SYSTEMS, INC.
Reel/Frame 056451/0672 →
Continuity (2)
Continuation In Part 17136518 · Dec 29, 2020
Related Publication 20220207121A1 · Jun 30, 2022