IP Library › Granted Patent US 12,639,417
Granted Patent B2
US 12,639,417 · App. 18/402,177 · Granted May 26, 2026

Automated monitoring and updating of passcodes for applications and web sites/services

Inventors: Maharaj Mukherjee (Poughkeepsie, NY); George Anthony Albero (Charlotte, NC)
Assignee: BANK OF AMERICA CORPORATION
G06F21/46
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,639,417
App. No.
18/402,177
Filed
Jan 2, 2024
Granted
May 26, 2026
Kind
B2
Art Unit
2495
USPC
726/6
Abstract

Automated updating/changing of passcodes based on network, application and/or website specific passcode rules. Passcode rules for passcodes stored in a passcode vault are identified, including passcode structure rules and passcode expiration rules. Subsequently the expiration dates trigger automatic update/change of the passcodes in accordance with the passcode structure rules. Additionally, networks, applications and/or web sites/services associated with the passcodes may be monitored for security threats, which, when detected, trigger automatic update/change of the passcodes in accordance with the passcode structure rules. Such updating/changing of the passcodes may be transparent to the users or the users may receive notification alerts. In further embodiments of the networks, applications and/or web sites services are monitored for changes to their respective passcode rules, such that future automated passcode updates/changes may occur in accordance with the updated passcode rules.

Claims (57)

1 . A system for passcode management, the system comprising:

a computing platform including a memory and one or more computing processor devices in communication with the memory; and

a passcode vault stored in the memory and configured to store a plurality of passcodes, each of the plurality of passcodes associated with one chosen from the group consisting of (i) a computing apparatus, (ii) a network, (iii) an application and (iii) a website or web service; and

a passcode management application stored in the memory, executable by at least one of the one or more computing processor devices and configured to:

identify a passcode stored in the passcode vault, and store passcode rules related to a structure of the passcode and an expiration of the passcode, wherein the passcode is from the plurality of passcodes,

based on the passcode rules related to the expiration of the passcode, monitor for an occurrence of a date associated with expiration of the passcode,

in response to the monitoring resulting in the occurrence of the date associated with the expiration of the passcode, automatically change, in accordance with the passcode rules related to the structure of the passcode, the passcode to a first updated passcode,

replace, in the passcode vault, the passcode with the first updated passcode,

in response to entering the first updated passcode into the passcode vault, identify and store passcode rules related to the structure of the passcode and the expiration of the passcode, wherein the passcode rules related to the structure of the passcode include minimum passcode character length, special character requirements and character case requirements and wherein the passcode rules related to the expiration of the passcode include an expiration period,

in response to authorizing access to the passcode vault for a user, execute one or more machine-learning models trained to learn login patterns for the user to identify, based on at least a computing apparatus identifier, a login pattern that defines an ordered sequence of two or more targets chosen from (i) computing devices, (ii) networks, (iii) applications, and (iv) websites or web services, and, prior to the user initiating access to the ordered sequence of targets, automatically access the ordered sequence of targets and apply, from the passcode vault, corresponding passcodes associated with the ordered sequence of targets to provide pre-access authorization for the user at the ordered sequence of targets absent further user input.

2 . The system of claim 1 , wherein the passcode management application is further configured to identify the passcode rules related to the structure of the passcode and the expiration of the passcode by (i) accessing a corresponding computing apparatus or application or (ii) crawling a corresponding website to obtain the passcode rules.

3 . The system of claim 1 , wherein the passcode management application is further configured to monitor for the occurrence of the date associated with expiration of the passcode, wherein the date associated with expiration of the passcode is a first date coinciding with an end of the expiration period or a second date occurring a predetermined number of days prior to the end of the expiration period.

4 . The system of claim 1 , further comprising a security threat monitoring application stored in the memory, executable by at least one of the one or more computing processor devices and configured to:

monitor at least one of computing devices, applications and websites have corresponding passcodes stored in the passcode vault for occurrences of security threats,

in response to the monitoring resulting in an occurrence of a security threat, invoke the passcode management application to automatically change, in accordance with the passcode rules related to the structure of the passcode, an existing passcode to a second updated passcode that is different than the existing passcode, and

replace, in the passcode vault, the existing passcode with the second updated passcode.

5 . The system of claim 1 , further comprising a passcode rules monitoring application stored in the memory, executable by at least one of the one or more computing processor devices and configured to:

monitor at least one of computing devices, applications and websites have corresponding passcodes stored in the passcode vault for changes to the passcode rules,

in response to the monitoring resulting in changes to the passcode rules, replace the currently stored passcode rules with the updated passcode rules that reflect the changes, and

conduct subsequent changes to an existing passcode in accordance with the updated passcode rules.

6 . The system of claim 1 , wherein the passcode management system is further configured to generate an alert, and initiate communication of the alert to a user, prior to or after a change in the passcode that notifies the user that a passcode change will occur or has occurred.

7 . The system of claim 6 , wherein the passcode management system is further configured to generate and initiate communication of the alert after a change in the passcode, wherein the alert includes a hyperlink that provides a passcode holder access to the passcode.

8 . A computer-implemented method for passcode management, the method being executable by one or more computing processor devices and comprising:

for each passcode stored in a passcode vault, identifying and storing passcode rules related to (i) a structure of the passcode and (ii) an expiration of the passcode, wherein the passcode vault stores one or more passcodes, and wherein the passcode is from the one or more passcodes;

based on the passcode rules related to the expiration of the passcode, for each of the one or more passcodes, monitoring for an occurrence of a date associated with expiration of the passcode;

in response to the monitoring resulting in the occurrence of the date associated with the expiration of the passcode, automatically changing, in accordance with the passcode rules related to the structure of the passcode, the passcode to a first updated passcode;

replacing, in the passcode vault, the passcode with the first updated passcode;

in response to entering the first updated passcode into the passcode vault, identifying and storing passcode rules related to the structure of the passcode and the expiration of the passcode, wherein the passcode rules related to the structure of the passcode include minimum passcode character length, special character requirements and character case requirements and wherein the passcode rules related to the expiration of the passcode include an expiration period; and

in response to authorizing access to the passcode vault for a user, executing one or more machine-learning models trained to learn login patterns for the user to identify, based on at least a computing apparatus identifier, a login pattern that defines an ordered sequence of two or more targets chosen from (i) computing devices, (ii) networks, (iii) applications, and (iv) websites or web services, and, prior to the user initiating access to the ordered sequence of targets, automatically access the ordered sequence of targets and apply, from the passcode vault, corresponding passcodes associated with the ordered sequence of targets to provide pre-access authorization for the user at the ordered sequence of targets absent further user input.

9 . The computer-implemented method of claim 8 , wherein identifying the passcode rules further comprises (i) accessing a corresponding computing apparatus or application to obtain the passcode rules or (ii) crawling a corresponding website to obtain the passcode rules.

10 . The computer-implemented method of claim 8 , wherein monitoring for the occurrence of the date associated with expiration of the passcode further comprises monitoring for at least one a first date coinciding with an end of the expiration period or a second date that is a predetermined number of days prior to the end of the expiration period.

11 . The computer-implemented method of claim 8 , further comprising:

monitoring computing devices, applications and websites have corresponding passcodes stored in the passcode vault for occurrences of security threats;

in response to the monitoring resulting in an occurrence of a security threat, automatically changing, in accordance with the passcode rules related to the structure of the passcode, an existing passcode to a second updated passcode that is different than the existing passcode; and

replacing, in the passcode vault, the existing passcode with the second updated passcode.

12 . The computer-implemented method of claim 8 , further comprising:

monitoring computing devices, applications and websites have corresponding passcodes stored in the passcode vault for changes to the passcode rules;

in response to the monitoring resulting in changes to the passcode rules, replacing the currently stored passcode rules with the updated passcode rules that reflect the changes; and

conducting subsequent changes to an existing passcode in accordance with the updated passcode rules.

13 . A computer program product comprising:

a non-transitory computer-readable medium comprising sets of codes for causing one or more computing devices to:

for each passcode stored in a passcode vault, identify and store passcode rules related to (i) a structure of the passcode and (ii) an expiration of the passcode, wherein the passcode vault stores one or more passcodes, and wherein the passcode is from the one or more passcodes;

based on the passcode rules related to the expiration of the passcode, for each of the one or more passcodes, monitor for an occurrence of a date associated with expiration of the passcode;

in response to the monitoring resulting in the occurrence of the date associated with the expiration of the passcode, automatically change, in accordance with the passcode rules related to the structure of the passcode, the passcode to a first updated passcode;

replace, in the passcode vault, the passcode with the first updated passcode;

in response to entering the first updated passcode into the passcode vault, identifying and storing passcode rules related to the structure of the passcode and the expiration of the passcode, wherein the passcode rules related to the structure of the passcode include minimum passcode character length, special character requirements and character case requirements and wherein the passcode rules related to the expiration of the passcode include an expiration period; and

in response to authorizing access to the passcode vault for a user, execute one or more machine-learning models trained to learn login patterns for the user to identify, based on at least a computing apparatus identifier, a login pattern that defines an ordered sequence of two or more targets chosen from (i) computing devices, (ii) networks, (iii) applications, and (iv) websites or web services, and, prior to the user initiating access to the ordered sequence of targets, automatically access the ordered sequence of targets and apply, from the passcode vault, corresponding passcodes associated with the ordered sequence of targets to provide pre-access authorization for the user at the ordered sequence of targets absent further user input.

14 . The computer program product of claim 13 , wherein the set of codes for causing the one or more computing devices to identify the passcode rules further cause the one or more computing devices to (i) access corresponding computing apparatus or application to obtain the passcode rules or (ii) crawl a corresponding website to obtain the passcode rules.

15 . The computer program product of claim 13 , wherein the set of codes for causing the one or more computing devices to monitor for the occurrence of the date associated with expiration of the passcode further causes the one or more computing devices to monitor for at least one a first date coinciding with an end of the expiration period or a second date that is a predetermined number of days prior to the end of the expiration period.

16 . The computer program product of claim 13 , wherein the sets of codes further comprise sets of codes for causing the one or more computing devices to:

monitor computing devices, applications and websites have corresponding passcodes stored in the passcode vault for occurrences of security threat;

in response to the monitoring resulting in an occurrence of a security threat, automatically change, in accordance with the passcode rules related to the structure of the passcode, an existing passcode to a second updated passcode that is different than the existing passcode; and

replace, in the passcode vault, the existing passcode with the second updated passcode.

17 . The computer program product of claim 13 , wherein the sets of codes further comprise sets of codes for causing the one or more computing devices to:

monitor computing devices, applications and websites have corresponding passcodes stored in the passcode vault for changes to the passcode rules;

in response to the monitoring resulting in changes to the passcode rules, replace the currently stored passcode rules with the updated passcode rules that reflect the changes; and

conduct subsequent changes to an existing passcode in accordance with the updated passcode rules.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 2, 2024
From: MUKHERJEE, MAHARAJ; ALBERO, GEORGE ANTHONY
To: BANK OF AMERICA CORPORATION
Reel/Frame 065995/0805 →
Continuity (1)
Related Publication 20250217471A1 · Jul 3, 2025
References Cited (21)
US 8412931B2 · Vedula · 2013 [cited by examiner]
US 9760697B1 · Walker · 2017 [cited by applicant]
US 9985941B2 · Childress et al. · 2018 [cited by applicant]
US 10108811B1 · Walker · 2018 [cited by applicant]
US 10146931B1 · Kronrod et al. · 2018 [cited by applicant]
US 10169937B1 · Zwink et al. · 2019 [cited by applicant]
US 10530580B1 · Walker · 2020 [cited by applicant]
US 20100031343A1 · Childress · 2010 [cited by examiner]
US 20100325687A1 · Iverson · 2010 [cited by examiner]
US 20130014236A1 · Bingell · 2013 [cited by examiner]
US 20160191477A1 · Kundu · 2016 [cited by examiner]
US 20180004934A1 · Venkataramani · 2018 [cited by examiner]
US 20180322275A1 · Li et al. · 2018 [cited by applicant]
US 20200036705A1 · Lee · 2020 [cited by examiner]
US 20200104500A1 · Martino · 2020 [cited by examiner]
US 20200380115A1 · Knight · 2020 [cited by examiner]
US 20200410086A1 · Harmon · 2020 [cited by applicant]
US 20210334357A1 · Woo · 2021 [cited by examiner]
US 20220237282A1 · Tzur-David et al. · 2022 [cited by applicant]
US 20230169161A1 · Konda · 2023 [cited by examiner]
US 20240031356A1 · Jiang · 2024 [cited by examiner]