AUTOMATED HARDENING OF SENSITIVE TRANSACTIONS
There is disclosed, by way of example, a computing apparatus having a hardware platform having a processor and a memory; and instructions encoded within the memory to: identify an online transaction involving a user; according to a plurality of contextual factors, determine a sensitivity level for the online transaction; and according to the sensitivity level, contextually increase security for the online transaction without altering at least one other online transaction.
1 . A computing apparatus, comprising:
a hardware platform comprising a processor and a memory; and
instructions encoded within the memory to:
identify an online transaction involving a user;
according to a plurality of contextual factors, determine a sensitivity level for the online transaction; and
according to the sensitivity level, contextually increase security for the online transaction without altering at least one other online transaction.
2 . The computing apparatus of claim 1 , wherein the sensitivity level is selected from a set of discrete sensitivity levels.
3 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is a user profile.
4 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is a task type.
5 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is an online service associated with the online transaction.
6 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is a network on which the online transaction occurs.
7 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is a device context.
8 . The computing apparatus of claim 1 , wherein one of the plurality of contextual factors is a browser context.
9 . The computing apparatus of claim 1 , wherein contextually increasing security comprises disabling a key logger or screen grabber.
10 . The computing apparatus of claim 1 , wherein contextually increasing security comprises adding one or more layers of authentication.
11 . The computing apparatus of claim 1 , wherein contextually increasing security comprises auto-filling or clearing at least one field of a web form that calls for personally-identifying information.
12 . The computing apparatus of claim 11 , wherein the at least one field is a non-mandatory field.
13 . The computing apparatus of claim 1 , wherein contextually increasing security comprises hardening a web browser environment.
14 . The computing apparatus of claim 1 , wherein contextually increasing security comprises enabling a VPN tunnel.
15 - 19 . (canceled)
20 . One or more tangible, nontransitory computer-readable storage media having stored thereon executable instructions to:
identify an online transaction for an end-user device, wherein the online transaction is associated with data associated with a user;
compute or receive a plurality of contextual factors associated with the online transaction;
determine a sensitivity level for the online transaction according to the plurality of contextual factors; and
according to the sensitivity level, specifically increase security for the online transaction without affecting security of at least one other online transaction of the end-user device.
21 - 33 . (canceled)
35 . The one or more tangible, nontransitory computer-readable media of claim 20 , wherein contextually increasing security comprises handling the online transaction via a remote cloud-based browser.
36 . The one or more tangible, nontransitory computer-readable media of claim 20 , wherein determining the sensitivity level comprises querying a cloud reputation service for a category of a URL associated with the online transaction.
37 . (canceled)
38 . The one or more tangible, nontransitory computer-readable media of claim 20 , wherein determining the sensitivity level comprises querying a cloud reputation service for a reputation of at least one of a URL, a browser extension, an application, a merchant, or a public network.
39 . A method of providing holistic transaction security on an end-user device, comprising:
identifying, on the end-user device, an online transaction including associated with a user;
computing or receiving a plurality of contextual factors associated with the online transaction;
determining a sensitivity level for the online transaction according to the plurality of contextual factors; and
according to the sensitivity level, specifically increasing security for the online transaction without affecting security of at least one other online transaction of the end-user device.
40 . The method of claim 39 , wherein the sensitivity level is selected from a set of discrete sensitivity levels.
41 - 62 . (canceled)