IP Library Granted Patent US 12,284,172
Granted Patent B1
US 12,284,172 · App. 17/894,941 · Granted Apr 22, 2025

Secure generation of authentication datasets from network activity

Inventors: Thomas E. Bell (San Francisco, CA); Peter Bordow (Fountain Hills, AZ); Julio Jiron (San Bruno, CA); Akhlaq M. Khan (San Francisco, CA); Volkmar Scharf-Katz (San Francisco, CA); Jeff J. Stapleton (Arlington, TX); Richard Orlando Toohey (San Francisco, CA); Ramesh Yarlagadda (San Francisco, CA)
Assignee: Wells Fargo Bank, N.A.
H04L63/083H04L63/102
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,284,172
App. No.
17/894,941
Filed
Aug 24, 2022
Granted
Apr 22, 2025
Kind
B1
Art Unit
2499
USPC
726/6
Abstract

Disclosed are example methods, systems, and devices that allow for secure generation of authentication datasets from network activity. The techniques include accessing secured data sources to generate a first dataset of secured data, and extracting information from one or more unsecured data sources to generate a second dataset comprising a second dataset. A third set of data elements can be generated from the first and second datasets, and may be utilized to authenticate credentials that can be utilized to access secured data via a network. The techniques can transmit indications that credentials are invalid if the credentials fail to satisfy aspects of the third dataset.

Claims (46)

1. A method implemented by a first computing system comprising a server, the method comprising:

generating, by the first computing system, a first dataset comprising security elements corresponding to one or more accounts administered by the first computing system, the one or more accounts comprising a first account, the security elements comprising one or more credentials granting access to the first account via the server;

obtaining, by the first computing system, network access to one or more secured data sources, the one or more secured data sources comprising a second computing system that is unfederated with respect to the first computing system;

accessing, by the first computing system, the one or more secured data sources to generate a second dataset based on data in the second computing system;

extracting, by the first computing system, from one or more unsecured data sources comprising a third computing system that is unfederated with respect to the first computing system, a third dataset based on data in the third computing system;

applying, by the first computing system, a machine-learning model to the second dataset and the third dataset to generate a fourth dataset comprising recurrent data elements, the machine-learning model comprising a natural language processing (NLP) model;

determining, by the first computing system, based on the first dataset and the fourth dataset, that a network security threat corresponding to the first account exceeds a threshold;

receiving, by the server, via a login page of a web portal, a request to access the first account;

transmitting, by the server, an indication that replacement credentials are required to access the first account;

receiving, by the server via the web portal, one or more replacement credentials, and determining that the one or more replacement credentials are acceptable based on the fourth dataset;

registering, by the first computing system, the one or more replacement credentials to the first account; and

granting, by the server, via the web portal, access to the first account based on the one or more replacement credentials.

2. The method of claim 1 , further comprising:

providing, by the server, the web portal with a registration page for registering for a digital security service; and

receiving, via the registration page, a request to register for the digital security service.

3. The method of claim 2 , wherein the network access to the one or more secured data sources is obtained based on inputs received via the registration page of the web portal.

4. The method of claim 1 , wherein the one or more credentials granting access to the first account comprises a passcode.

5. The method of claim 1 , wherein the one or more credentials granting access to the first account comprises a response to a security question corresponding to the first account.

6. The method of claim 1 , wherein the second dataset comprises one or more documents.

7. The method of claim 1 , wherein the second dataset comprises one or more audio recordings.

8. The method of claim 1 , wherein the second dataset comprises one or more video recordings.

9. The method of claim 1 , wherein extracting the third dataset comprises web scraping data from one or more web pages.

10. The method of claim 1 , wherein the third dataset indicates a data breach by a compromised computing system.

11. The method of claim 10 , further comprising determining, by the first computing system, that the compromised computing system likely stored data on a user of the first account.

12. The method of claim 11 , wherein determining that the compromised computing system likely stored data on the user is based at least partly on account activity in the first account.

13. The method of claim 12 , wherein the account activity identifies an electronic transaction with an entity corresponding to the compromised computing system.

14. The method of claim 1 , wherein accessing, by the first computing system, the one or more secured data sources comprises periodically retrieving data from the one or more secured data sources.

15. The method of claim 14 , wherein periodically retrieving data from the one or more secured data sources comprises transmitting, by the first computing system, a plurality of API calls to the second computing system.

16. The method of claim 15 , wherein one or more API calls are transmitted to the second computing system on a weekly basis.

17. The method of claim 16 , wherein the one or more API calls comprise a security token identifying the first computing system.

18. The method of claim 16 , wherein the one or more API calls comprise a security token identifying the first account.

19. A first computing system comprising a server, the first computing system comprising one or more processors configured to:

generate a first dataset comprising security elements corresponding to one or more accounts administered by the first computing system, the one or more accounts comprising a first account, the security elements comprising one or more credentials granting access to the first account via the server;

obtain network access to one or more secured data sources, the one or more secured data sources comprising a second computing system that is unfederated with respect to the first computing system;

access the one or more secured data sources to generate a second dataset based on data in the second computing system;

extract, from one or more unsecured data sources comprising a third computing system that is unfederated with respect to the first computing system, a third dataset based on data in the third computing system;

applying a machine-learning model to the second dataset and the third dataset to generate a fourth dataset comprising recurrent data elements, the machine-learning model comprising a natural language processing (NLP) model;

determine, based on the first dataset and the fourth dataset, that a network security threat corresponding to the first account exceeds a threshold;

receive, by the server, via a login page of a web portal, a request to access the first account;

transmit, by the server, an indication that replacement credentials are required to access the first account;

receive, by the server via the web portal, one or more replacement credentials, and determine that the one or more replacement credentials are acceptable based on the fourth dataset;

register the one or more replacement credentials to the first account; and

grant, by the server, via the web portal, access to the first account based on the one or more replacement credentials.

20. The computing system of claim 19 , the one or more processors further configured to:

provide, by the server, the web portal with a registration page for registering for a digital security service; and

receive, via the registration page, a request to register for the digital security service, wherein the network access to the one or more secured data sources is obtained based on inputs received via the registration page of the web portal.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 3, 2025
From: BELL, THOMAS E.; BORDOW, PETER; JIRON, JULIO; KHAN, AKHLAQ M.; SCHARF-KATZ, VOLKMAR; STAPLETON, JEFF J.; TOOHEY, RICHARD ORLANDO; YARLAGADDA, RAMESH
To: WELLS FARGO BANK, N.A.
Reel/Frame 070091/0853 →
Continuity (1)
Continuation 17893961 · Aug 23, 2022
References Cited (122)
US 7133846B1 · Ginter et al. · 2006 [cited by applicant]
US 7673797B2 · Edwards · 2010 [cited by applicant]
US 8234387B2 · Bradley et al. · 2012 [cited by applicant]
US 8446275B2 · Utter, Ii · 2013 [cited by applicant]
US 8731977B1 · Hardin et al. · 2014 [cited by applicant]
US 8756153B1 · Rolf · 2014 [cited by applicant]
US 8831972B2 · Angell et al. · 2014 [cited by applicant]
US 8965803B2 · Jung et al. · 2015 [cited by applicant]
US 9087058B2 · Neven et al. · 2015 [cited by applicant]
US 9094388B2 · Tkachev · 2015 [cited by applicant]
US 9177257B2 · Kozloski et al. · 2015 [cited by applicant]
US 9443298B2 · Ross et al. · 2016 [cited by applicant]
US 9519783B2 · Pruthi et al. · 2016 [cited by applicant]
US 9558397B2 · Liu et al. · 2017 [cited by applicant]
US 9734290B2 · Srinivas et al. · 2017 [cited by applicant]
US 9864992B1 · Robinson et al. · 2018 [cited by applicant]
US 10024684B2 · Wang · 2018 [cited by applicant]
US 10044700B2 · Gresham et al. · 2018 [cited by applicant]
US 10075445B2 · Chen et al. · 2018 [cited by applicant]
US 10102491B2 · Connolly et al. · 2018 [cited by applicant]
US 10110608B2 · Dureau · 2018 [cited by applicant]
US 10127378B2 · Toth · 2018 [cited by applicant]
US 10142362B2 · Weith et al. · 2018 [cited by applicant]
US 10181032B1 · Sadaghiani et al. · 2019 [cited by applicant]
US 10210527B2 · Radocchia · 2019 [cited by applicant]
US 10313336B2 · Giobbi · 2019 [cited by applicant]
US 10362027B2 · Eramian et al. · 2019 [cited by applicant]
US 10387695B2 · Engels et al. · 2019 [cited by applicant]
US 10505965B2 · Moyle et al. · 2019 [cited by applicant]
US 10552596B2 · Wang et al. · 2020 [cited by applicant]
US 10572778B1 · Robinson et al. · 2020 [cited by applicant]
US 10614302B2 · Withrow · 2020 [cited by applicant]
US 10664581B2 · Hou et al. · 2020 [cited by applicant]
US 10740767B2 · Withrow · 2020 [cited by applicant]
US 10757097B2 · Yocam et al. · 2020 [cited by applicant]
US 10778676B1 · Griffin et al. · 2020 [cited by applicant]
US 10834084B2 · Ouellette et al. · 2020 [cited by applicant]
US 10855679B2 · Rajakumar · 2020 [cited by applicant]
US 10938828B1 · Badawy et al. · 2021 [cited by applicant]
US 10943003B2 · Bingham et al. · 2021 [cited by applicant]
US 10963670B2 · Ross et al. · 2021 [cited by applicant]
US 10977353B2 · Bender et al. · 2021 [cited by applicant]
US 11044267B2 · Jakobsson et al. · 2021 [cited by applicant]
US 11048794B1 · Bordow · 2021 [cited by examiner]
US 11048894B2 · Feldman · 2021 [cited by applicant]
US 11055390B1 · Kragh · 2021 [cited by applicant]
US 11057366B2 · Avetisov et al. · 2021 [cited by applicant]
US 11068909B1 · Land et al. · 2021 [cited by applicant]
US 11075904B2 · Jha et al. · 2021 [cited by applicant]
US 11089014B2 · Buscemi · 2021 [cited by applicant]
US 11093789B2 · Wang et al. · 2021 [cited by applicant]
US 11127092B2 · Kurian · 2021 [cited by applicant]
US 11128467B2 · Chapman et al. · 2021 [cited by applicant]
US 11151550B2 · Prabhu et al. · 2021 [cited by applicant]
US 11157907B1 · Kumar · 2021 [cited by applicant]
US 11163931B2 · Ricci · 2021 [cited by applicant]
US 11200306B1 · Singh · 2021 [cited by applicant]
US 11205011B2 · Jakobsson et al. · 2021 [cited by applicant]
US 11223646B2 · Cunningham et al. · 2022 [cited by applicant]
US 11290448B1 · Bordow · 2022 [cited by examiner]
US 11327992B1 · Batsakis · 2022 [cited by examiner]
US 11451532B2 · Arif Khan · 2022 [cited by examiner]
US 11461298B1 · Shemmer et al. · 2022 [cited by applicant]
US 11514155B1 · Bordow · 2022 [cited by examiner]
US 11522867B2 · Han et al. · 2022 [cited by applicant]
US 11669611B1 · Bordow · 2023 [cited by examiner]
US 12034719B2 · Budman et al. · 2024 [cited by applicant]
US 20060129478A1 · Rees · 2006 [cited by applicant]
US 20070078908A1 · Rohatgi et al. · 2007 [cited by applicant]
US 20080022370A1 · Beedubail et al. · 2008 [cited by applicant]
US 20080120302A1 · Thompson · 2008 [cited by applicant]
US 20090089107A1 · Angell et al. · 2009 [cited by applicant]
US 20090089205A1 · Bayne · 2009 [cited by applicant]
US 20120237908A1 · Fitzgerald et al. · 2012 [cited by applicant]
US 20150112732A1 · Trakru et al. · 2015 [cited by applicant]
US 20150220999A1 · Thornton et al. · 2015 [cited by applicant]
US 20150317728A1 · Nguyen · 2015 [cited by applicant]
US 20160050557A1 · Park · 2016 [cited by examiner]
US 20160162882A1 · McClung, III · 2016 [cited by applicant]
US 20160224773A1 · Ramaci · 2016 [cited by applicant]
US 20160335629A1 · Scott · 2016 [cited by applicant]
US 20170012992A1 · Doctor et al. · 2017 [cited by applicant]
US 20170063831A1 · Arnold · 2017 [cited by examiner]
US 20170063946A1 · Quan et al. · 2017 [cited by applicant]
US 20170111351A1 · Grajek et al. · 2017 [cited by applicant]
US 20170230351A1 · Hallenborg · 2017 [cited by applicant]
US 20180205546A1 · Haque et al. · 2018 [cited by applicant]
US 20190095916A1 · Jackson · 2019 [cited by applicant]
US 20190149539A1 · Scruby · 2019 [cited by applicant]
US 20190163889A1 · Bouse · 2019 [cited by applicant]
US 20190205939A1 · Lal et al. · 2019 [cited by applicant]
US 20200211031A1 · Patil · 2020 [cited by applicant]
US 20200266985A1 · Covaci et al. · 2020 [cited by applicant]
US 20200311678A1 · Fletcher et al. · 2020 [cited by applicant]
US 20200320619A1 · Motaharian et al. · 2020 [cited by applicant]
US 20200374311A1 · Madhu et al. · 2020 [cited by applicant]
US 20200380598A1 · Spector et al. · 2020 [cited by applicant]
US 20210027061A1 · Xu et al. · 2021 [cited by applicant]
US 20210089637A1 · Cummins et al. · 2021 [cited by applicant]
US 20210104008A1 · Ross et al. · 2021 [cited by applicant]
US 20210110004A1 · Ross et al. · 2021 [cited by applicant]
US 20210134434A1 · Riley et al. · 2021 [cited by applicant]
US 20210202067A1 · Williams et al. · 2021 [cited by applicant]
US 20210231706A1 · Pak · 2021 [cited by applicant]
US 20210240837A1 · Tseng et al. · 2021 [cited by applicant]
US 20210258155A1 · Andon et al. · 2021 [cited by applicant]
US 20210279475A1 · Tusch et al. · 2021 [cited by applicant]
US 20210326467A1 · Levy et al. · 2021 [cited by applicant]
US 20210366586A1 · Ryan et al. · 2021 [cited by applicant]
US 20220292396A1 · Biryukov et al. · 2022 [cited by applicant]
US 20240039537A1 · Kumar et al. · 2024 [cited by applicant]
US 20240064135A1 · Sherlock et al. · 2024 [cited by applicant]
US 20240214194A1 · Kapur et al. · 2024 [cited by applicant]
US 20240256878A1 · Palleti et al. · 2024 [cited by applicant]
US 20240346085A1 · Soon-Shiong · 2024 [cited by applicant]
CA 2478548C · 2014 [cited by applicant]
WO WO2011016710A1 · 2011 [cited by applicant]
WO WO2016083987A1 · 2016 [cited by applicant]
WO WO2019013818A1 · 2019 [cited by applicant]
WO WO2019123291A1 · 2019 [cited by applicant]
Jain, et al., A Blockchain-Based distributed network for Secure Credit Scoring, 2019 5th International Conference on Signal Processing, Computing and Control (ISPCC), 306-12, Oct. 2019; ISBN-13: 978-1-7281-3988-3. [cited by applicant]
Yan Zhang et al., Real-time Machine Learning Prediction of an Agent-Based Model for Urban Decision- making, URL: https://ifaamas.org/Proceedings/aamas2018/pdfs/p2171.pdf (Jul. 10-15, 2018). [cited by applicant]
Cited By (1)
US 12,518,109