Method, Device, and System of Detecting Mule Accounts and Accounts used for Money Laundering

    公开(公告)号:US20230153820A1

    公开(公告)日:2023-05-18

    申请号:US18099945

    申请日:2023-01-22

    申请人: BIOCATCH LTD.

    IPC分类号: G06Q20/40 G06Q20/10

    CPC分类号: G06Q20/4016 G06Q20/10

    摘要: Method, device, and system of detecting a mule bank account, or a bank account used for terror funding or money laundering. A method includes: monitoring interactions of a user with a computing device during online access with a bank account; and based on the monitoring, determining that the bank account is utilized as a mule bank account to illegally receive and transfer money, or is used for money laundering or terror funding. The method takes into account one or more indicators, such as, utilization of a remote access channel, utilization of a virtual machine or a proxy server, unique behavior across multiple different accounts, temporal correlation among operations, detection of a set of operations that follow a pre-defined mule account playbook, detection of multiple incoming fund transfers from multiple countries that are followed by a single outgoing fund transfer to a different country, and other indicators.

    System, device, and method of generating and utilizing one-time passwords

    公开(公告)号:US11606353B2

    公开(公告)日:2023-03-14

    申请号:US17382388

    申请日:2021-07-22

    申请人: BioCatch Ltd.

    摘要: System, device, and method of generating and utilizing one-time passwords. A method generates a particular One-Time Password (OTP) string that is based on pre-defined OTP string construction rules. The particular OTP string is not a purely-random string; rather, the particular non-purely-random OTP string provides to a behavioral monitoring unit a capability to extract user-specific behavioral typing patterns from a way in which a user types characters of the particular OTP via a keyboard of an electronic device. The method sends the particular OTP string to the user; monitors the way that the user types the OTP string; extracts from the user interactions, that were performed while the user entered the OTP string, a user-specific behavioral typing characteristic; and based on that user-specific characteristic, determines whether that user is authenticated or non-authenticated, and optionally activates fraud mitigation operations or transaction blocking operations if the user is non-authenticated.

    System, Device, and Method of Detecting Business Email Fraud and Corporate Email Fraud

    公开(公告)号:US20230022070A1

    公开(公告)日:2023-01-26

    申请号:US17381277

    申请日:2021-07-21

    申请人: BioCatch Ltd.

    摘要: System, device, and method of detecting business email fraud and corporate email fraud. A method includes: receiving a user request to perform an online transaction on behalf of a corporate entity; generating a notification that requires the user to indicate whether he obtained managerial authorization for performing that online transaction on behalf of that corporate entity; monitoring user gestures and user interactions in response to that notification; receiving a positive answer from the user; performing an analysis of user gestures and user interactions, and generating a signal indicating a determination that the positive answer from the user is false, based on analyzed metrics that correspond to characteristics of the user gestures and user interactions; blocking or unauthorizing, at least temporarily, that online transaction that was requested on behalf of that corporate entity.

    Method, device, and system of differentiating between a cyber-attacker and a legitimate user

    公开(公告)号:US11425563B2

    公开(公告)日:2022-08-23

    申请号:US17060131

    申请日:2020-10-01

    申请人: BioCatch Ltd.

    摘要: Devices, systems, and methods of detecting user identity, differentiating between users of a computerized service, and detecting a cyber-attacker. A user utilizes a desktop computer, a laptop computer, a smartphone, a tablet, or other electronic device, to interact with a banking website or application, a retailer website or application, or other computerized service. Input-unit interactions are monitored, logged, and analyzed. Based on several types of analysis of the input-unit interactions, a score is generated to reflect fraud-relatedness or attack-relatedness of the input-unit interactions. Based on the score, the system estimates or determines whether the user is an attacker, and initiates attach-mitigation operations or fraud-mitigation operations.

    System, device, and method of detecting vishing attacks

    公开(公告)号:US10970394B2

    公开(公告)日:2021-04-06

    申请号:US15819400

    申请日:2017-11-21

    申请人: BioCatch Ltd.

    摘要: Devices, systems, and methods of detecting a vishing attack, in which an attacker provides to a victim step-by-step over-the-phone instructions that command the victim to log-in to his bank account and to perform a dictated banking transaction. The system monitors transactions, online operations, user interactions, gestures performed via input units, and user engagement with User Interface elements. The system detects that the operations performed by the victim, follow a pre-defined playbook of a vishing attack. The system detects that the victim operates under duress or under dictated instructions, as exhibited in irregular doodling activity, data entry rhythm, typographical error introduction rhythm, unique posture of the user, alternating pattern of listening to phone instructions and performing online operations via a computer, and device orientation changes or spatial changes that characterize a device being used to perform an online transaction while also talking on the phone.

    Device, system, and method of differentiating among users based on detection of hardware components

    公开(公告)号:US10949514B2

    公开(公告)日:2021-03-16

    申请号:US15456608

    申请日:2017-03-13

    申请人: BioCatch Ltd.

    摘要: Devices, systems, and methods of detecting user identity, differentiating between users of a computerized service, detecting a possible attacker, and flagging a particular financial transaction or a particular retail transaction as being possibly-fraudulent. The methods include monitoring of user-side input-unit interactions, in general and in response to an interference introduced to user-interface elements. The monitored interactions are analyzed, and enable extraction of hardware-specific features of a computer mouse, a touchpad, a touch-screen, a keyboard, or other input unit. In some methods, detection of different mouse polling rates or different mouse DPI values, across two different usage sessions in the same financial account, enables the method to detect a possibly-fraudulent transaction.

    METHOD, DEVICE, AND SYSTEM OF DETECTING A LIE OF A USER WHO INPUTS DATA

    公开(公告)号:US20200327212A1

    公开(公告)日:2020-10-15

    申请号:US16914476

    申请日:2020-06-29

    申请人: BioCatch Ltd.

    摘要: Method, device, and system of detecting a lie of a user who inputs data. A method includes monitoring input-unit gestures and interactions of a user that inputs data through an electronic device; and based on analysis of the input-unit gestures and interactions, determining that the user has inputted false data through the electronic device. A particular fillable field, or a particular question, are identified as having untrue input from the user. Optionally, spatial orientation data of the electronic device is taken into account in the determination process. Optionally, contextual analysis is utilized, to determine that the input-unit gestures and interactions reflect an attempt of the user to perform a beautifying modification of a data-item to his benefit.

    Method, system, and device of authenticating identity of a user of an electronic device

    公开(公告)号:US10747305B2

    公开(公告)日:2020-08-18

    申请号:US16416222

    申请日:2019-05-19

    申请人: BioCatch Ltd.

    发明人: Avi Turgeman

    摘要: A method for confirming identity of a user of a mobile electronic device, the method including: receiving touch data from a touch-screen of the mobile electronic device; receiving acceleration data from an accelerometer of the mobile electronic device; correlating between the touch data and the acceleration data; based on the correlating, generating a user-specific trait indicative of said user. The method further includes storing a reference value of the user-specific trait, indicative of said user; in a subsequent usage session of the mobile electronic device, generating a current value of the user-specific trait correlating between touch data and acceleration data; and based on a comparison between the current value of the user-specific trait and the reference value of the user-specific trait, determining whether or not a current user of the mobile electronic device is an authorized user of the mobile electronic device.