IP Library Granted Patent US 12,406,038
Granted Patent B1
US 12,406,038 · App. 17/486,733 · Granted Sep 2, 2025

Systems and methods for location-binding authentication

Inventors: Gerard K. Cohen (Oakland, CA); Michelle D. Green (San Francisco, CA); Christopher P. Smith (Marvin, NC); Craig Stuart (San Francisco, CA); Kenneth L. Wright (Charlotte, NC); Michelle M. Young (Houston, TX)
Assignee: Wells Fargo Bank, N.A.
G06F21/31G06F21/6218G06Q20/3224G06Q20/3276G06F2221/2111
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,406,038
App. No.
17/486,733
Granted
Sep 2, 2025
Kind
B1
Abstract

Systems, methods, and apparatuses for authenticating a user based at least in part on a location of the user or a location of a user device are described. A method includes: receiving a login request including a user identifier associated with a user; transmitting a request for location information of a user device associated with the user; causing computer-executable code deployed to the user device to generate a location-based modifiable digital fingerprint comprising a first encoded value based on a unique identifier of the user device and a second encoded value based on a first location information of the user device; receiving the location-based modifiable digital fingerprint from the user device; verifying that the location information from the location-based modifiable digital fingerprint corresponds to a second location; and providing the user access to the computing device.

Claims (51)

1. A method of authenticating a login request at a computing device, the method comprising:

receiving, by a computing device, the login request including a user identifier associated with a user;

transmitting, by the computing device, a request for location information of a user device associated with the user to indicate a first location of the user device;

causing, by the computing device, the user device to execute computer-executable code that is deployed to the user device to cause the user device to:

generate a first encoded value based on a unique identifier of the user device;

generate a second encoded value based on the first location of the user device; and

generate a location-based modifiable digital fingerprint comprising the first encoded value and the second encoded value, wherein the location-based modifiable digital fingerprint changes responsive to changes in location of the user device;

detecting, by the computing device, a change in location of the user device from the first location of the user device to a second location of the user device;

receiving, by the computing device, the location-based modifiable digital fingerprint from the user device based on the change in the location of the user device triggering the user device to change the location-based modifiable digital fingerprint;

verifying, by the computing device, the user device based on the change to the location-based modifiable digital fingerprint including a change to the second encoded value that corresponds to the second location of the user device; and

providing, by the computing device, the user access to the computing device.

2. The method of claim 1 , wherein the login request further comprises a password associated with the user identifier.

3. The method of claim 2 , further comprising verifying, by the computing device, that the user identifier and the password match a known user identifier and a known password.

4. The method of claim 1 , wherein the first location of the user device is determined based on information provided by at least one of a wireless access point or a cellular transceiver in broadcast range of the user device.

5. The method of claim 1 , wherein the first location of the user device is determined based on a code provided to the user device.

6. The method of claim 1 , further comprising, in response to determining that the second encoded value corresponds to a third location of the user device, blacklisting, by the computing device, the user device.

7. The method of claim 6 , further comprising blacklisting, by the computing device, the user device based on an IP address associated with the login request.

8. A system for authenticating a login request, the system comprising:

a computing device comprising a processing circuit configured to:

receive the login request including a user identifier associated with a user;

transmit a request for location information of a user device associated with the user to indicate a first location of the user device;

cause the user device to execute computer-executable code that is deployed to the user device to cause the user device to:

generate a first encoded value on a unique identifier of the user device;

generate a second encoded value based on the first location of the user device; and

generate a location-based modifiable digital fingerprint comprising the first encoded value and the second encoded value, wherein the location-based modifiable digital fingerprint changes responsive to a change in the location of the user device;

detect a change in the location of the user device from the first location of the user device to a second location of the user device;

receive the location-based modifiable digital fingerprint from the user device based on the change in the location of the user device triggering the user device to change the location-based modifiable digital fingerprint;

verify the user device based on the change to the location-based modifiable digital fingerprint including a change to the second encoded value that corresponds to the second location; and

provide the user access to the computing device.

9. The system of claim 8 , wherein the login request further comprises a password associated with the user identifier.

10. The system of claim 9 , wherein the processing circuit is further configured to verify that the user identifier and the password match a known user identifier and a known password.

11. The system of claim 8 , wherein the first location of the user device is determined based on information provided by at least one of a wireless access point and a cellular transceiver in broadcast range of the user device.

12. The system of claim 8 , wherein the first location of the user device is determined based on a code provided to the user device.

13. The system of claim 8 , wherein the processing circuit is configured to, in response to determining that the second encoded value corresponds to a third location of the user device, blacklist the user device.

14. The system of claim 11 , wherein the processing circuit is configured to blacklist the user device based on an IP address associated with the login request.

15. One or more non-transitory computer-readable media comprising instructions stored thereon, the instructions, when executed by a processor of a computing device, configured to cause the computing device to perform operations for authenticating a login request, the operations comprising:

receiving the login request including a user identifier associated with a user;

transmitting a request for location information of a user device associated with the user to indicate a first location of the user device;

causing the user device to execute computer-executable code that is deployed to the user device to cause the user device to:

generate a first encoded value based on a unique identifier of the user device;

generate a second encoded value based on the first location of the user device; and

generate a location-based modifiable digital fingerprint comprising the first encoded value and the second encoded value, wherein the location-based modifiable digital fingerprint changes responsive to changes in location of the user device;

detecting a change in location of the user device from the first location of the user device to a second location of the user device;

receiving the location-based modifiable digital fingerprint from the user device based on the change in the location of the user device triggering the user device to change the location-based modifiable digital fingerprint;

verifying the user device based on the change to the location-based modifiable digital fingerprint including a change to the second encoded value that corresponds to the second location of the user device; and

providing the user access to the computing device.

16. The media of claim 15 , wherein the login request further comprises a password associated with the user identifier.

17. The media of claim 16 , the operations further comprising: verifying that the user identifier and the password match a known user identifier and a known password.

18. The media of claim 15 , wherein the first location of the user device is determined based on information provided by at least one of a wireless access point and a cellular transceiver in broadcast range of the user device.

19. The media of claim 15 , wherein the first location of the user device is determined based on a code provided to the user device.

20. The media of claim 15 , the operations comprising: in response to determining that the second encoded value corresponds to a third location of the user device, blacklisting the user device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2025
From: COHEN, GERARD K.; GREEN, MICHELLE D.; SMITH, CHRISTOPHER P.; STUART, CRAIG; WRIGHT, KENNETH L.; YOUNG, MICHELLE M.
To: WELLS FARGO BANK, N.A.
Reel/Frame 071867/0903 →
Continuity (1)
Continuation 15204649 · Jul 7, 2016
References Cited (74)
US 6832721B2 · Fujii · 2004 [cited by applicant]
US 6907238B2 · Leung · 2005 [cited by applicant]
US 7221949B2 · Clough · 2007 [cited by applicant]
US 7589614B2 · Xydis · 2009 [cited by applicant]
US 7617542B2 · Vataja · 2009 [cited by examiner]
US 7747535B2 · Mikan et al. · 2010 [cited by applicant]
US 8166068B2 · Stevens · 2012 [cited by applicant]
US 8195576B1 · Grigg et al. · 2012 [cited by applicant]
US 8285639B2 · Eden et al. · 2012 [cited by applicant]
US 8395547B2 · Dhanani · 2013 [cited by examiner]
US 8401906B2 · Ruckart · 2013 [cited by applicant]
US 8464063B2 · Agarwal et al. · 2013 [cited by applicant]
US 8566233B2 · Prakash et al. · 2013 [cited by applicant]
US 8646060B1 · Ben Ayed · 2014 [cited by applicant]
US 8776246B2 · Allegri et al. · 2014 [cited by applicant]
US 8818867B2 · Baldwin et al. · 2014 [cited by applicant]
US 8850196B2 · Blanco et al. · 2014 [cited by applicant]
US 8924292B1 · Ellis et al. · 2014 [cited by applicant]
US 8930271B1 · Ellis et al. · 2015 [cited by applicant]
US 8938787B2 · Turgeman · 2015 [cited by applicant]
US 8948791B2 · Shankaranarayanan et al. · 2015 [cited by applicant]
US 8972297B2 · Kay et al. · 2015 [cited by applicant]
US 8977251B2 · Grigg et al. · 2015 [cited by applicant]
US 8996867B2 · Ji et al. · 2015 [cited by applicant]
US 9032498B1 · Ben Ayed · 2015 [cited by applicant]
US 9208301B2 · Grigg · 2015 [cited by examiner]
US 9591035B2 · Kuo · 2017 [cited by examiner]
US 10050962B2 · Grigg · 2018 [cited by examiner]
US 11132425B1 · Cohen · 2021 [cited by examiner]
US 20030069820A1 · Hillmer · 2003 [cited by examiner]
US 20060206709A1 · Labrou · 2006 [cited by examiner]
US 20070162963A1 · Penet et al. · 2007 [cited by applicant]
US 20070174082A1 · Singh · 2007 [cited by applicant]
US 20080120711A1 · Dispensa · 2008 [cited by examiner]
US 20080249939A1 · Veenstra · 2008 [cited by applicant]
US 20100024017A1 · Ashfield et al. · 2010 [cited by applicant]
US 20100333207A1 · Etchegoyen · 2010 [cited by examiner]
US 20110035318A1 · Hargrove et al. · 2011 [cited by applicant]
US 20110208601A1 · Ferguson et al. · 2011 [cited by applicant]
US 20120167170A1 · Shi et al. · 2012 [cited by applicant]
US 20120209686A1 · Horowitz · 2012 [cited by examiner]
US 20130046691A1 · Culton · 2013 [cited by applicant]
US 20130046692A1 · Grigg et al. · 2013 [cited by applicant]
US 20130110715A1 · Buchhop · 2013 [cited by applicant]
US 20130124422A1 · Hubert · 2013 [cited by examiner]
US 20130227651A1 · Schultz et al. · 2013 [cited by applicant]
US 20130275303A1 · Fiore et al. · 2013 [cited by applicant]
US 20140053250A1 · Wethington et al. · 2014 [cited by applicant]
US 20140279490A1 · Calman et al. · 2014 [cited by applicant]
US 20140279503A1 · Bertanzetti et al. · 2014 [cited by applicant]
US 20140289116A1 · Polivanyi · 2014 [cited by applicant]
US 20140337948A1 · Hoyos · 2014 [cited by examiner]
US 20140373114A1 · Franca-Neto et al. · 2014 [cited by applicant]
US 20140375421A1 · Morrison et al. · 2014 [cited by applicant]
US 20140380445A1 · Tunnell et al. · 2014 [cited by applicant]
US 20150106268A1 · Carroll · 2015 [cited by examiner]
US 20150149359A1 · Forte · 2015 [cited by examiner]
US 20150288668A1 · Kupper · 2015 [cited by examiner]
US 20160042263A1 · Gaddam · 2016 [cited by examiner]
US 20170124564A1 · Pi Farias · 2017 [cited by examiner]
US 20170148241A1 · Kerning · 2017 [cited by examiner]
US 20170272155A1 · Olsen · 2017 [cited by examiner]
US 20180300364A1 · Xu · 2018 [cited by examiner]
WO WO2014075162 · 2014 [cited by applicant]
“Indoor location identification with better outlook through Augmented Reality”; Leeladevi B, Rahul Raj CP, SeshuBabu Tolety; 2014 IEEE International Conference on Advanced Communication Control and Computing Technologie… [cited by applicant]
“Mobile User Verification/Identification using Statistical Mobility Profile”; Miao Lin, Hong Cao, Vincent Zheng, Kevin C. Chang, Shonali Krishnaswamy; (Year: 2015). [cited by applicant]
Albatram, et al., A Location-Based Authentication System Leveraging Smartphones, 2014 IEEE 15th International Conference on Mobile Data Management (MDM), vol. 1, Jul. 2014, IEEE, 6 pages. [cited by applicant]
Berbecaru, D., Lrap: A Location-Based Remote Client Authentication Protocol for Mobile Environments, 2011 19th International Euromicro Conference on Parallel, Distributed and Network-Based Processing (PDP), Feb. 2011, I… [cited by applicant]
Bertino, et al., Location-Aware Authentication and Access Control-Concepts and Issues, 2009 International Conference on Advanced Information Networking and Applications, AINA '09, May 2009, IEEE, 6 pages. [cited by applicant]
Fan, et al., On The Security of Password-Based Pairing Protocol in Bluetooth, 13th Asia-Pacific Network Operations and Management Symposium (APNOMS), Sep. 2011, IEEE, 4 pages. [cited by applicant]
Hsieh, et al., Design of a Time and Location Based One-Time Password Authentication Scheme, 2011 7th International Wireless Communications and Mobile Computing Conference (IWCMC), Jul. 2011, IEEE, 6 pages. [cited by applicant]
Hua, et al., A Location Authentication Scheme Based On Adjacent Users, 2014 International Conference on Progress in Informatics and Computing (PIC), May 2014, IEEE, 5 pages. [cited by applicant]
Jaros, et al., New Location-based Authentication Techniques in the Access Management, 2010 6th International Conference on Wireless and Mobile Communications (ICWMC), Sep. 2010, IEEE, 5 pages. [cited by applicant]
Zhang, et al., Location-based Authentication and Authorization Using Smart Phones, 2012 IEEE 11th International Conference on Trust, Security, and Privacy in Computing and Communications (TrustCom), Jun. 2012, IEEE, 8 p… [cited by applicant]