IP Library Granted Patent US 12,501,263
Granted Patent B2
US 12,501,263 · App. 17/733,942 · Granted Dec 16, 2025

Authenticate a user before performing a sensitive operation associated with a UE in communication with a wireless telecommunication network

Inventors: Michael James Engan (Bellevue, WA); Nilesh Ranjan (Sammamish, WA); Julia Chanelle Buis (Bellevue, WA); Anjani Deepthi Nandigam (Bothell, WA); Savitha Venkata Rao (Sammamish, WA)
Assignee: T-Mobile USA, Inc.
H04W12/068G06V30/18019G06V40/172G06V40/20G06V40/40
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,501,263
App. No.
17/733,942
Granted
Dec 16, 2025
Kind
B2
Abstract

The system receives an indication of a sensitive operation. The system obtains a unique ID of a user's UE. Based on the unique ID of the UE, the system retrieves a visual authentication method including a visual ID. The system records the visual ID, and retrieves a corresponding stored visual ID. The system performs a liveness check associated with the visual ID, to determine whether the visual ID is a recording or a live version of the visual ID. Upon determining that the visual ID is the recording, the system refuses to authenticate the user. Upon determining that the visual ID is the live version of the visual ID, the system compares the visual ID and the corresponding stored visual ID to determine whether the visual ID and the corresponding stored visual ID match. Upon determining that the visual ID and the corresponding stored visual ID match, the system authenticates the user.

Claims (131)

1 . At least one computer-readable storage medium, excluding transitory signals and carrying instructions to authenticate a user before performing an eSIM swap in a mobile device associated with a wireless telecommunication network, which, when executed by at least one data processor of a system, cause the system to:

receive an indication of a sensitive operation,

wherein the sensitive operation includes a request to perform the eSIM swap;

obtain a unique ID of a mobile device associated with the user,

wherein the unique ID comprises an IMSI or a phone number associated with the mobile device;

based on the unique ID of the mobile device, retrieve a visual authentication method,

wherein the visual authentication method includes a visual ID,

wherein the visual ID includes an ID associated with the user or the user's face;

record the visual ID;

retrieve a corresponding stored visual ID;

perform a liveness check associated with the visual ID, wherein the liveness check determines whether the visual ID is a recording or a live version of the visual ID, by:

recording a video of the visual ID;

determining whether the visual ID is an image by detecting movements associated with the visual ID within the video; and

upon detecting the movements associated with the visual ID within the video, determine that the visual ID is a live version of the visual ID;

upon determining that the visual ID is the recording, refuse to authenticate the user;

upon determining that the visual ID is the live version of the visual ID, compare the visual ID and the corresponding stored visual ID to determine whether the visual ID and the corresponding stored visual ID match; and

upon determining that the visual ID and the corresponding stored visual ID match, authenticate the user and permit the eSIM swap.

2 . The computer-readable storage medium of claim 1 , comprising instructions to:

receive a visual recording of the ID associated with the user;

perform optical character recognition associated with the visual recording;

based on the optical character recognition, extract information about the user including a name associated with the user, and a visual representation associated with the user;

retrieve a stored name associated with the user, and a stored visual representation associated with the user;

determine whether the name associated with the user and the stored name associated with the user match;

determine whether the visual representation associated with the user and the stored visual representation associated with the user match;

upon determining that the name associated with the user and the stored name associated with the user match, and that the visual representation associated with the user and the stored visual representation associated with the user match, store the visual recording of the ID associated with the user; and

upon determining that the name associated with the user and the stored name associated with the user match, and that the visual representation associated with the user and the stored visual representation associated with the user match, authenticate the user.

3 . The computer-readable storage medium of claim 1 , comprising instructions to:

receive a visual recording of the user's face;

transform the visual recording of the user's face into a mathematical non-reversible model of the user's face;

retrieve a stored mathematical non-reversible model of a face;

determine whether the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face match by comparing the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face; and

upon determining that the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face match, authenticate the user.

4 . The computer-readable storage medium of claim 1 , wherein the instructions to perform a liveness check associated with the visual ID comprise instructions to:

record a video of the visual ID;

determine whether the visual ID is an image by:

instructing the user to perform a predetermined action associated with the user's head;

based on the video, determine whether the user is performing the predetermined action; and

upon determining that the user is performing the predetermined action, determine that the visual ID is the live version of the visual ID.

5 . The computer-readable storage medium of claim 1 , wherein the instructions to perform a liveness check associated with the visual ID comprise instructions to:

record a video of the visual ID;

determine whether the visual ID is an image by detecting a presence of a hologram in the visual ID, wherein the detecting of the presence of a hologram includes:

detecting a shifting glare on a surface of the ID in the video; and

upon detecting the shifting glare on the surface of the ID in the video, determine that the visual ID is a live version of the visual ID.

6 . The computer-readable storage medium of claim 1 , comprising instructions to:

retrieve authenticators associated with the user,

wherein the authenticators include a password, an email address associated with the user, a fingerprint associated with the user, a photo of the ID associated with the user, or a facial representation associated with the user;

enable the user to select at least one of the authenticators associated with the user;

receive an authenticator selection from the user; and

authenticate the user based on the authenticator selection.

7 . A system comprising:

at least one hardware processor; and

at least one non-transitory memory storing instructions, which, when executed by the at least one hardware processor, cause the system to:

receive an indication of a sensitive operation;

obtain a unique ID of a UE associated with a user;

based on the unique ID of the UE, retrieve a visual authentication method,

wherein the visual authentication method includes a visual ID,

wherein the visual ID includes an ID associated with the user or the user's face;

record the visual ID;

retrieve a corresponding stored visual ID;

perform a liveness check associated with the visual ID, wherein the liveness check determines whether the visual ID is a recording or a live version of the visual ID, by:

recording a video of the visual ID;

determining whether the visual ID is an image by detecting movements associated with the visual ID within the video; and

upon detecting the movements associated with the visual ID within the video, determine that the visual ID is a live version of the visual ID;

upon determining that the visual ID is the recording, refuse to authenticate the user;

upon determining that the visual ID is the live version of the visual ID, compare the visual ID and the corresponding stored visual ID to determine whether the visual ID and the corresponding stored visual ID match; and

upon determining that the visual ID and the corresponding stored visual ID match, authenticate the user.

8 . The system of claim 7 , comprising instructions to:

receive a visual recording of the ID associated with the user;

perform optical character recognition associated with the visual recording;

based on the optical character recognition, extract information about the user including a name associated with the user, and a visual representation associated with the user;

retrieve a stored name associated with the user, and a stored visual representation associated with the user;

determine whether the name associated with the user and the stored name associated with the user match;

determine whether the visual representation associated with the user and the stored visual representation associated with the user match;

upon determining that the name associated with the user and the stored name associated with the user match, and that the visual representation associated with the user and the stored visual representation associated with the user match, store the visual recording of the ID associated with the user; and

upon determining that the name associated with the user and the stored name associated with the user match, and that the visual representation associated with the user and the stored visual representation associated with the user match, authenticate the user.

9 . The system of claim 7 , comprising instructions to:

receive a visual recording of the user's face;

transform the visual recording of the user's face into a mathematical non-reversible model of the user's face;

retrieve a stored mathematical non-reversible model of a face;

determine whether the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face match by comparing the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face; and

upon determining that the mathematical non-reversible model of the user's face and the stored mathematical non-reversible model of the face match, authenticate the user.

10 . The system of claim 7 , wherein the instructions to perform a liveness check associated with the visual ID comprise instructions to:

record a video of the visual ID;

determine whether the visual ID is an image by:

instructing the user to perform a predetermined action associated with the user's head;

based on the video, determine whether the user is performing the predetermined action; and

upon determining that the user is performing the predetermined action, determine that the visual ID is the live version of the visual ID.

11 . The system of claim 7 , wherein the instructions to perform a liveness check associated with the visual ID comprise instructions to:

record a video of the visual ID;

determine whether the visual ID is an image by detecting a presence of a hologram in the visual ID, said detecting the presence of a hologram including:

detecting a shifting glare on a surface of the ID in the video; and

upon detecting the shifting glare on the surface of the ID in the video, determine that the visual ID is a live version of the visual ID.

12 . The system of claim 7 , comprising instructions to:

retrieve authenticators associated with the user,

wherein the authenticators include a password, an email address associated with the user, a fingerprint associated with the user, a photo of the ID associated with the user, or a facial representation associated with the user;

enable the user to select at least one of the authenticators associated with the user;

receive an authenticator selection from the user; and

authenticate the user based on the authenticator selection.

13 . A system comprising:

at least one hardware processor; and

at least one non-transitory memory storing instructions, which, when executed by the at least one hardware processor, cause the system to:

receive an indication that a user wants to enroll in an additional authentication program;

obtain a profile associated with the user, wherein the profile includes a first multiplicity of identifiers associated with the user, by:

determining whether the profile associated with the user exists within a wireless telecommunication network; and

upon determining that the profile associated with the user exists within the wireless telecommunication network, authenticate that the user is authorized to modify the profile;

make a recording of an ID associated with the user;

perform optical character recognition associated with the recording of the ID associated with the user;

based on the optical character recognition, generate a second multiplicity of identifiers associated with the user,

wherein the second multiplicity of identifiers at least partially overlaps the first multiplicity of identifiers;

determine whether the ID associated with the user is valid by comparing the first multiplicity of identifiers associated with the user to the second multiplicity of identifiers associated with the user to determine whether the first multiplicity of identifiers matches the second multiplicity of identifiers;

upon determining that the first multiplicity of identifiers matches the second multiplicity of identifiers, determine that the ID associated with the user is valid; and

store the second multiplicity of identifiers in the profile associated with the user.

14 . The system of claim 13 , wherein instructions to obtain a profile associated with the user comprise instructions to:

determine whether the profile associated with the user exists within a wireless telecommunication network; and

upon determining that the profile associated with the user does not exist within the wireless telecommunication network, create a new profile associated with the user.

15 . The system of claim 13 , comprising instructions to:

extract a barcode contained in the recording of the ID;

extract text contained in the recording of the ID;

compare information included in the barcode to information included in the text;

determine whether the information included in the barcode does not match the information included in the text;

upon determining that the information included in the barcode does not match the information included in the text, determine that the ID associated with the user is a fraud; and

upon determining that the information included in the barcode matches the information included in the text, determine that the ID associated with the user is valid.

16 . The system of claim 13 , comprising instructions to:

based on the optical character recognition, determine an entity issuing the ID associated with the user;

retrieve from a database associated with the entity a third multiplicity of identifiers associated with the user;

determine whether the second multiplicity of identifiers and the third multiplicity of identifiers match by comparing the second multiplicity of identifiers associated with the user to the third multiplicity of identifiers associated with the user;

upon determining that the second multiplicity of identifiers and the third multiplicity of identifiers match, determine that the ID associated with the user is valid.

17 . The system of claim 13 , comprising instructions to:

obtain a recording of the user's face;

generate a mathematical non-reversible model of the user's face based on the recording; and

store the mathematical non-reversible model of the user's face in the profile associated with the user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 26, 2023
From: ENGAN, MICHAEL JAMES; RANJAN, NILESH; BUIS, JULIA CHANNELLE; NANDIGAM, ANJANI DEEPTHI; RAO, SAVITHA VENKATA
To: T-MOBILE USA, INC.
Reel/Frame 064059/0068 →
Continuity (1)
Related Publication 20230354027A1 · Nov 2, 2023
References Cited (83)
US 7653818B2 · Serpa · 2010 [cited by applicant]
US 7904478B2 · Yu et al. · 2011 [cited by applicant]
US 7941834B2 · Beck et al. · 2011 [cited by applicant]
US 8261090B1 · Matsuoka · 2012 [cited by examiner]
US 8645993B2 · Perry · 2014 [cited by applicant]
US 8687039B2 · Degrazia et al. · 2014 [cited by applicant]
US 8781079B2 · Hao et al. · 2014 [cited by applicant]
US 8781856B2 · Hanina et al. · 2014 [cited by applicant]
US 8787969B2 · Chava et al. · 2014 [cited by applicant]
US 8793702B2 · Kim et al. · 2014 [cited by applicant]
US 8818081B1 · Lookingbill et al. · 2014 [cited by applicant]
US 8849821B2 · Schloter · 2014 [cited by applicant]
US 8897484B1 · Fredinburg et al. · 2014 [cited by applicant]
US 8941741B1 · Mcdonough et al. · 2015 [cited by applicant]
US 9025016B2 · Wexler et al. · 2015 [cited by applicant]
US 9223589B2 · Young · 2015 [cited by applicant]
US 9223959B2 · Hosabettu et al. · 2015 [cited by applicant]
US 9288226B2 · Ben-itzhak et al. · 2016 [cited by applicant]
US 9432421B1 · Mott et al. · 2016 [cited by applicant]
US 9432633B2 · Martin et al. · 2016 [cited by applicant]
US 9571623B2 · Schultz et al. · 2017 [cited by applicant]
US 9619017B2 · Samanta Singhar · 2017 [cited by applicant]
US 9652745B2 · Taylor et al. · 2017 [cited by applicant]
US 9710128B2 · Kauffmann · 2017 [cited by applicant]
US 9746913B2 · Lam et al. · 2017 [cited by applicant]
US 9792259B2 · Heinz et al. · 2017 [cited by applicant]
US 9870500B2 · Dimitriadis et al. · 2018 [cited by applicant]
US 9888842B2 · White et al. · 2018 [cited by applicant]
US 9965612B2 · Teichman · 2018 [cited by applicant]
US 10069967B2 · Hodge · 2018 [cited by applicant]
US 10108961B2 · Wang et al. · 2018 [cited by applicant]
US 10146923B2 · Pitkänen et al. · 2018 [cited by applicant]
US 10157504B1 · Jain · 2018 [cited by applicant]
US 10169055B2 · Eska · 2019 [cited by applicant]
US 10191957B2 · Lock et al. · 2019 [cited by applicant]
US 10192175B2 · Blyumen · 2019 [cited by applicant]
US 10205643B2 · Fletcher et al. · 2019 [cited by applicant]
US 10235428B2 · Varadarajan et al. · 2019 [cited by applicant]
US 10346605B2 · Narasimhan · 2019 [cited by applicant]
US 10551915B2 · Kristensson et al. · 2020 [cited by applicant]
US 10691946B2 · Zhan et al. · 2020 [cited by applicant]
US 10721192B2 · Wei · 2020 [cited by applicant]
US 10764301B2 · Chen · 2020 [cited by applicant]
US 10896214B2 · Kummamuru et al. · 2021 [cited by applicant]
US 10915520B2 · True et al. · 2021 [cited by applicant]
US 11205220B2 · Sampson et al. · 2021 [cited by applicant]
US 11256914B2 · Le Henaff · 2022 [cited by applicant]
US 20120185393A1 · Atsmon et al. · 2012 [cited by applicant]
US 20120254810A1 · Heck et al. · 2012 [cited by applicant]
US 20150012426A1 · Purves et al. · 2015 [cited by applicant]
US 20150049922A1 · Miller · 2015 [cited by examiner]
US 20150123897A1 · Takahagi et al. · 2015 [cited by applicant]
US 20150289137A1 · Yang · 2015 [cited by examiner]
US 20160057624A1 · Yang · 2016 [cited by examiner]
US 20160139662A1 · Dabhade · 2016 [cited by applicant]
US 20170279957A1 · Abramson et al. · 2017 [cited by applicant]
US 20180261116A1 · Tsyrina · 2018 [cited by applicant]
US 20190014149A1 · Cleveland et al. · 2019 [cited by applicant]
US 20200073483A1 · Berenzweig et al. · 2020 [cited by applicant]
US 20210019541A1 · Wang et al. · 2021 [cited by applicant]
US 20210029389A1 · Zhang et al. · 2021 [cited by applicant]
US 20210201029A1 · Ju et al. · 2021 [cited by applicant]
US 20210280059A1 · Fiszer et al. · 2021 [cited by applicant]
US 20220051301A1 · Forutanpour et al. · 2022 [cited by applicant]
US 20220322083A1 · Kreishan · 2022 [cited by examiner]
CN 106453341A · 2017 [cited by applicant]
CN 111736821A · 2020 [cited by applicant]
DE 102009038879A1 · 2011 [cited by applicant]
DE 102015005731A1 · 2016 [cited by applicant]
EP 2801065A1 · 2014 [cited by applicant]
EP 3099078A1 · 2016 [cited by applicant]
JP 6069378B2 · 2017 [cited by applicant]
JP 6628876B2 · 2019 [cited by applicant]
JP 2020522826A · 2020 [cited by applicant]
KR 101486496B1 · 2015 [cited by applicant]
KR 101759415B1 · 2017 [cited by applicant]
WO 2016004330A1 · 2016 [cited by applicant]
WO 2017218194A1 · 2017 [cited by applicant]
WO 2018092016A1 · 2018 [cited by applicant]
WO 2018104834A1 · 2018 [cited by applicant]
WO 2018175328A1 · 2018 [cited by applicant]
WO 2019014620A1 · 2019 [cited by applicant]
WO 2020148658A2 · 2020 [cited by applicant]