IP Library Granted Patent US 11,757,649
Granted Patent B2
US 11,757,649 · App. 17/402,851 · Granted Sep 12, 2023

Enhanced authentication framework using multi-dimensional hashing

Inventors: Udaya Kumar Raju Ratnakaram (Telangana, IN); Sandeep Kumar Chauhan (Telangana, IN); Sriram Balasubramanian (Chennai, IN)
Assignee: BANK OF AMERICA CORPORATION
H04L9/3236H04L63/0861
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,757,649
App. No.
17/402,851
Filed
Aug 16, 2021
Granted
Sep 12, 2023
Kind
B2
Art Unit
2498
USPC
726/4
Abstract

Systems, computer program products, and methods are described herein for enhanced authentication framework using multi-dimensional hashing. The present invention is configured to electronically receive, from a computing device of a user, a resource transfer request; retrieve, from an authentication database, a multi-dimensional hash for a first set of data files for the user and a user identification artifact; retrieve, from the computing device of the user, a second set of data files matching the user identification artifact; initiate an asynchronous hash processing engine on the second set of data files; generate, using the asynchronous hash processing engine, a multi-dimensional hash for the second set of data files; compare the multi-dimensional hash for the first set of data files with the multi-dimensional hash for the second set of data files to determine a match; and authorize the resource transfer request based on at least determining the match.

Claims (109)

1. A system for enhanced authentication framework using multi-dimensional hashing, the system comprising:

at least one non-transitory storage device; and

at least one processing device coupled to the at least one non-transitory storage device, wherein the at least one processing device is configured to:

electronically receive, from a computing device of a user, a resource transfer request;

retrieve, from an authentication database, a multi-dimensional hash for a first set of data files for the user and a user identification artifact in response to receiving the resource transfer request;

retrieve, from the computing device of the user, a second set of data files matching the user identification artifact;

initiate an asynchronous hash processing engine on the second set of data files;

generate, using the asynchronous hash processing engine, a multi-dimensional hash for the second set of data files;

compare the multi-dimensional hash for the first set of data files with the multi-dimensional hash for the second set of data files to determine a match; and

authorize the resource transfer request based on at least determining the match.

2. The system of claim 1 , wherein the at least one processing device is further configured to:

electronically receive, from the computing device of the user, a registration request to be eligible to initiate the resource transfer request;

electronically receive, from the computing device of the user, the user identification artifact;

crawl one or more databases associated with the computing device of the user to retrieve the first set of data files matching the user identification artifact;

generate, using the asynchronous hash processing engine, the multi-dimensional hash for the first set of data files; and

store the multi-dimensional hash for the first set of data files in the authentication database.

3. The system of claim 2 , wherein retrieving the first set of data files matching the user identification artifact further comprises:

determining that the user identification artifact is associated with an image of the user;

initiating a facial recognition algorithm on the image of the user;

crawling the one or more databases associated with the computing device of the user to retrieve one or more data files; and

determining, using the facial recognition algorithm, the first set of data files from the one or more data files, wherein the first set of data files contain images that match the image of the user.

4. The system of claim 1 , wherein generating the multi-dimensional hash for the first set of data files further comprises:

initiating the asynchronous hash processing engine on the first set of data files;

assigning, using the asynchronous hash processing engine, a unique hash value for each data file associated with the first set of data files; and

generating an array of unique hash values for the first set of data files.

5. The system of claim 1 , wherein the at least one processing device is further configured to:

determine a partial match between the multi-dimensional hash for the first set of data files for the user and the multi-dimensional hash for the second set of data files;

determine that a quantitative measure of the partial match is greater than a predetermined threshold; and

authorize the resource transfer request based on at least determining that the quantitative measure of the partial match is greater than the predetermined threshold.

6. The system of claim 5 , wherein the at least one processing device is further configured to:

determine that the quantitative measure of the partial match is lesser than the predetermined threshold;

initiate an exposure mitigation engine in response to determining that the quantitative measure of the partial match is lesser than the predetermined threshold;

determine, using the exposure mitigation engine, that the user is authorized to initiate the resource transfer request; and

authorize the resource transfer request based on at least determining that the user is authorized to initiate the resource transfer request.

7. The system of claim 6 , wherein determining that the user is authorized to initiate the resource transfer request further comprises:

initiating, via the computing device of the user, a request for one or more authentication credentials to the user;

receiving, via the computing device of the user, the one or more authentication credentials in response to the request;

validating the one or more authentication credentials; and

determining that the user is authorized to initiate the resource transfer request.

8. The system of claim 7 , wherein validating the one or more authentication credentials further comprises:

determining an authorization level of the user based on at least the one or more authentication credentials;

determining an authorization requirement associated with initiating the resource transfer request;

determining that the authorization level of the user meets the authorization requirement associated with initiating the resource transfer request; and

determining that the user is authorized to initiate the resource transfer request based on at least determining that the authorization level of the user meets the authorization requirement associated with initiating the resource transfer request.

9. A computer program product for enhanced authentication framework using multi-dimensional hashing, the computer program product comprising a non-transitory computer-readable medium comprising code causing a first apparatus to:

electronically receive, from a computing device of a user, a resource transfer request;

retrieve, from an authentication database, a multi-dimensional hash for a first set of data files for the user and a user identification artifact in response to receiving the resource transfer request;

retrieve, from the computing device of the user, a second set of data files matching the user identification artifact;

initiate an asynchronous hash processing engine on the second set of data files;

generate, using the asynchronous hash processing engine, a multi-dimensional hash for the second set of data files;

compare the multi-dimensional hash for the first set of data files with the multi-dimensional hash for the second set of data files to determine a match; and

authorize the resource transfer request based on at least determining the match.

10. The computer program product of claim 9 , wherein the first apparatus is further configured to:

electronically receive, from the computing device of the user, a registration request to be eligible to initiate the resource transfer request;

electronically receive, from the computing device of the user, the user identification artifact;

crawl one or more databases associated with the computing device of the user to retrieve the first set of data files matching the user identification artifact;

generate, using the asynchronous hash processing engine, the multi-dimensional hash for the first set of data files; and

store the multi-dimensional hash for the first set of data files in the authentication database.

11. The computer program product of claim 10 , wherein retrieving the first set of data files matching the user identification artifact further comprises:

determining that the user identification artifact is associated with an image of the user;

initiating a facial recognition algorithm on the image of the user;

crawling the one or more databases associated with the computing device of the user to retrieve one or more data files; and

determining, using the facial recognition algorithm, the first set of data files from the one or more data files, wherein the first set of data files contain images that match the image of the user.

12. The computer program product of claim 9 , wherein generating the multi-dimensional hash for the first set of data files further comprises:

initiating the asynchronous hash processing engine on the first set of data files;

assigning, using the asynchronous hash processing engine, a unique hash value for each data file associated with the first set of data files; and

generating an array of unique hash values for the first set of data files.

13. The computer program product of claim 9 , wherein the first apparatus is further configured to:

determine a partial match between the multi-dimensional hash for the first set of data files for the user and the multi-dimensional hash for the second set of data files;

determine that a quantitative measure of the partial match is greater than a predetermined threshold; and

authorize the resource transfer request based on at least determining that the quantitative measure of the partial match is greater than the predetermined threshold.

14. The computer program product of claim 13 , wherein the first apparatus is further configured to:

determine that the quantitative measure of the partial match is lesser than the predetermined threshold;

initiate an exposure mitigation engine in response to determining that the quantitative measure of the partial match is lesser than the predetermined threshold;

determine, using the exposure mitigation engine, that the user is authorized to initiate the resource transfer request; and

authorize the resource transfer request based on at least determining that the user is authorized to initiate the resource transfer request.

15. The computer program product of claim 14 , wherein determining that the user is authorized to initiate the resource transfer request further comprises:

initiating, via the computing device of the user, a request for one or more authentication credentials to the user;

receiving, via the computing device of the user, the one or more authentication credentials in response to the request;

validating the one or more authentication credentials; and

determining that the user is authorized to initiate the resource transfer request.

16. The computer program product of claim 15 , wherein validating the one or more authentication credentials further comprises:

determining an authorization level of the user based on at least the one or more authentication credentials;

determining an authorization requirement associated with initiating the resource transfer request;

determining that the authorization level of the user meets the authorization requirement associated with initiating the resource transfer request; and

determining that the user is authorized to initiate the resource transfer request based on at least determining that the authorization level of the user meets the authorization requirement associated with initiating the resource transfer request.

17. A method for enhanced authentication framework using multi-dimensional hashing, the method comprising:

electronically receive, from a computing device of a user, a resource transfer request;

retrieving, from an authentication database, a multi-dimensional hash for a first set of data files for the user and a user identification artifact in response to receiving the resource transfer request;

retrieving, from the computing device of the user, a second set of data files matching the user identification artifact;

initiating an asynchronous hash processing engine on the second set of data files;

generating, using the asynchronous hash processing engine, a multi-dimensional hash for the second set of data files;

comparing the multi-dimensional hash for the first set of data files with the multi-dimensional hash for the second set of data files to determine a match; and

authorizing the resource transfer request based on at least determining the match.

18. The method of claim 17 , wherein the method further comprises:

electronically receiving, from the computing device of the user, a registration request to be eligible to initiate the resource transfer request;

electronically receiving, from the computing device of the user, the user identification artifact;

crawling one or more databases associated with the computing device of the user to retrieve the first set of data files matching the user identification artifact;

generating, using the asynchronous hash processing engine, the multi-dimensional hash for the first set of data files; and

storing the multi-dimensional hash for the first set of data files in the authentication database.

19. The method of claim 18 , wherein retrieving the first set of data files matching the user identification artifact further comprises:

determining that the user identification artifact is associated with an image of the user;

initiating a facial recognition algorithm on the image of the user;

crawling the one or more databases associated with the computing device of the user to retrieve one or more data files; and

determining, using the facial recognition algorithm, the first set of data files from the one or more data files, wherein the first set of data files contain images that match the image of the user.

20. The method of claim 17 , wherein generating the multi-dimensional hash for the first set of data files further comprises:

initiating the asynchronous hash processing engine on the first set of data files;

assigning, using the asynchronous hash processing engine, a unique hash value for each data file associated with the first set of data files; and

generating an array of unique hash values for the first set of data files.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 16, 2021
From: RATNAKARAM, UDAYA KUMAR RAJU; CHAUHAN, SANDEEP KUMAR; BALASUBRAMANIAN, SRIRAM
To: BANK OF AMERICA CORPORATION
Reel/Frame 057187/0937 →
Continuity (1)
Related Publication 20230047229A1 · Feb 16, 2023