IP Library Granted Patent US 11,843,950
Granted Patent B2
US 11,843,950 · App. 17/482,308 · Granted Dec 12, 2023

Protecting a telecommunications network using network components as blockchain nodes

Inventor: Ahmad Arash Obaidi (San Ramon, CA)
Assignee: T-Mobile USA, Inc.
H04W12/122G06F16/1824H04L63/1466H04W12/06H04W24/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,843,950
App. No.
17/482,308
Granted
Dec 12, 2023
Kind
B2
Abstract

Systems and methods are described herein for providing a telecommunications network, such as a wireless network, LTE (Long Term Evolution) network, and so on, with blockchain nodes, agents, or sub-nodes. The blockchain nodes enable network components to access and maintain a blockchain for the network, such as a distributed ledger that tracks actions, activities, or other transaction associated with the telecommunications network.

Claims (53)

1. A system for identifying compromised network components within a telecommunications network, the system comprising:

a gateway node of the telecommunications network containing a first blockchain node associated with a blockchain that maintains transactions for the telecommunications network;

a cell site containing a second blockchain node associated with the blockchain that maintains transactions for the telecommunications network, wherein the cell site is configured to provide access to the telecommunications network; and

a charging node of the telecommunications network containing a third blockchain node associated with the blockchain that maintains transactions for the telecommunications network, wherein the charging node is configured to regulate and enforce charging decisions for the telecommunications network,

wherein at least one of the blockchain nodes is configured to:

monitor, in real-time, activities of network components within the telecommunications network using the blockchain that tracks the activities of the telecommunications network;

identify, during the real-time monitoring of the network components, atypical activities associated with one or more of the network components; and

determine, based on the identified atypical activities, that the one or more network components are compromised by a cybersecurity attack to the telecommunications network.

2. The system of claim 1 , wherein at least one of the blockchain nodes is configured to:

perform operations comparing activities performed by network components of the telecommunications network to information contained within transactions of the blockchain; and

identify compromised network components based on the performed operations.

3. The system of claim 1 , wherein at least one of the blockchain nodes is configured to:

perform operations comparing activities performed by network components of the telecommunications network to information contained within transactions of the blockchain; and

identify network components operating at sub-standard performance levels based on the performed operations.

4. The system of claim 1 , wherein at least one of the blockchain nodes is configured to:

performing a corrective action to mitigate the cybersecurity attack to the telecommunications network.

5. The system of claim 1 , wherein the transactions comprise information identifying a location of a user or device, one or more device identifiers, one or more user identifiers, biometric information, other biological user identifiers, or physical user identifiers.

6. The system of claim 1 , wherein at least one of the blockchain nodes is configured to:

track and maintain a history of all transactions performed within the telecommunications network by the network components.

7. The system of claim 1 , wherein at least one of the blockchain nodes includes a Javascript script that acts as a blockchain agent.

8. A method performed by a telecommunications network, the method comprising:

provisioning one or more network components each containing a blockchain node associated with a blockchain that tracks transactions of the telecommunications network,

wherein a gateway component node of the telecommunications network contains a first blockchain node associated with the blockchain,

wherein a cell site contains a second blockchain node associated with the blockchain,

wherein the cell site is configured to provide access to the telecommunications network,

wherein a charging component node of the telecommunications network contains a third blockchain node associated with the blockchain, and

wherein the charging node is configured to regulate and enforce charging decisions for the telecommunications network;

monitoring, in real-time, activities of the one or more network components within the telecommunications network using the blockchain that tracks the activities of the telecommunications network;

identifying, during the real-time monitoring of the one or more network components, a transaction comprising information of atypical activities associated with at least one of the network components;

determining, based on the identified atypical activities, that the at least one network component is compromised by an attack to the telecommunications network; and

upon determining that the at least one network component has been compromised by the attack to the telecommunications network, performing an action to modify operation of the at least one network component.

9. The method of claim 8 , wherein the action comprises modifying one or more parameters of the at least one network component that is compromised by the attack to the telecommunications network.

10. The method of claim 8 , wherein the action comprises replacing the at least one network component that is compromised by the attack to the telecommunications network.

11. The method of claim 8 , wherein determining whether the at least one network component has been compromised by the attack to the telecommunications network comprises comparing information within a message received from the at least one network component with information contained by transactions of the blockchain that are associated with the at least one network component.

12. A non-transitory computer-readable medium whose contents, when executed by a network component of a telecommunications network, cause the network component to perform a method, the method comprising:

provisioning one or more network components each containing a blockchain node associated with a blockchain that tracks transactions of the telecommunications network,

wherein a gateway component node of the telecommunications network contains a first blockchain node associated with the blockchain,

wherein a cell site contains a second blockchain node associated with the blockchain,

wherein the cell site is configured to provide access to the telecommunications network,

wherein a charging component node of the telecommunications network contains a third blockchain node associated with the blockchain, and

wherein the charging node is configured to regulate and enforce charging decisions for the telecommunications network;

monitoring, in real-time, activities of the one or more network components within the telecommunications network using the blockchain that tracks the activities of the telecommunications network;

identifying, during the real-time monitoring of the one or more network components, a transaction comprising information of atypical activities associated with at least one of the network components;

determining, based on the identified atypical activities, that the at least one network component is compromised by an attack to the telecommunications network; and

upon determining that the at least one network component has been compromised by the attack to the telecommunications network, performing an action to modify operation of the at least one network component.

13. The non-transitory computer-readable medium of claim 12 , wherein the action comprises modifying one or more parameters of the at least one network component that is compromised by the attack to the telecommunications network.

14. The non-transitory computer-readable medium of claim 12 , wherein determining whether the at least one network component has been compromised by the attack to the telecommunications network comprises comparing information within a message received from the at least one network component with information contained by transactions of the blockchain that are associated with the at least one network component.

15. The method of claim 8 , wherein identifying the transaction comprising information of atypical activities comprises comparing activities performed by the at least one of the network components of the telecommunications network to information contained within the transaction.

16. The method of claim 8 , wherein the transactions comprise information identifying a location of a user or device, one or more device identifiers, one or more user identifiers, biometric information, other biological user identifiers, or physical user identifiers.

17. The method of claim 8 , wherein provisioning the one or more network components comprises determining the one or more network components are uncompromised and operating as predicted within the telecommunications network, and providing the one or more network components with a ledger that tracks and maintains a history of all transactions performed within the telecommunications network by the one or more network components.

18. The non-transitory computer-readable medium of claim 12 , wherein identifying the transaction comprising information of atypical activities comprises comparing activities performed by the at least one of the network components of the telecommunications network to information contained within the transaction.

19. The non-transitory computer-readable medium of claim 12 , wherein the transactions comprise information identifying a location of a user or device, one or more device identifiers, one or more user identifiers, biometric information, other biological user identifiers, or physical user identifiers.

20. The non-transitory computer-readable medium of claim 12 , wherein provisioning the one or more network components comprises determining the one or more network components are uncompromised and operating as predicted within the telecommunications network, and providing the one or more network components with a ledger that tracks and maintains a history of all transactions performed within the telecommunications network by the one or more network components.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 24, 2021
From: OBAIDI, AHMAD ARASH
To: T-MOBILE USA, INC.
Reel/Frame 057592/0300 →
Continuity (2)
Continuation 16237607 · Dec 31, 2018
Related Publication 20220014922A1 · Jan 13, 2022
Cited By (2)
US 12,408,037 US 12,713,243