Linking channel-specific systems with a user authentication hub to provide omni-channel user authentication

    公开(公告)号:US10666654B2

    公开(公告)日:2020-05-26

    申请号:US15155044

    申请日:2016-05-15

    Abstract: Aspects of the disclosure relate to linking channel-specific systems with a user authentication hub. In some embodiments, a computing platform may receive, from a telephone agent support computer system associated with a telephone agent channel, an authentication request for a user account. The computing platform may generate a set of one or more authentication prompts based on a set of authentication rules defined for the telephone agent channel and may provide the set of one or more authentication prompts generated based on the set of authentication rules defined for the telephone agent channel. Subsequently, the computing platform may validate one or more responses to the set of one or more authentication prompts. Based on validating the one or more responses, the computing platform may provide user account information associated with the user account to the telephone agent support computer system associated with the telephone agent channel.

    Preventing Unauthorized Access to Secured Information Systems Using Tokenized Authentication Techniques

    公开(公告)号:US20180026960A1

    公开(公告)日:2018-01-25

    申请号:US15214972

    申请日:2016-07-20

    Abstract: A computing platform may receive, from a client portal server, a request to authenticate a user to a user account associated with a client portal provided by the client portal server. Based on receiving the request to authenticate, the computing platform may send, to a social messaging server, an authentication token request message. Subsequently, the computing platform may receive, from the social messaging server, an authentication token. Thereafter, the computing platform may validate the authentication token received from the social messaging server. Based on validating the authentication token received from the social messaging server, the computing platform may generate a validation message directing the client portal server to provide the user with access to the user account. Subsequently, the computing platform may send, to the client portal server, the validation message directing the client portal server to provide the user with access to the user account.

    Processing Cardless Transactions at Automated Teller Devices
    5.
    发明申请
    Processing Cardless Transactions at Automated Teller Devices 有权
    自动柜员机处理无纸交易

    公开(公告)号:US20160358139A1

    公开(公告)日:2016-12-08

    申请号:US14728403

    申请日:2015-06-02

    CPC classification number: G06Q20/1085 G06Q20/3223 G06Q20/3821 G06Q20/385

    Abstract: Methods, systems, and computer-readable media for processing cardless transactions at automated teller devices are presented. In some embodiments, a computer system may receive, from an automated teller device associated with a financial institution, login input comprising one or more online banking credentials associated with a customer of the financial institution. Subsequently, the computer system may validate the login input. If the login input is valid, the computer system may generate a one-time passcode. Then, the computer system may send, to a customer mobile device associated with the customer, the one-time passcode. Thereafter, the computer system may receive, from the automated teller device, passcode input. Subsequently, the computer system may validate the passcode input. If the passcode input is valid, the computer system may generate a customer authentication message. Then, the computer system may send, to the automated teller device, the customer authentication message.

    Abstract translation: 提出了用于处理自动柜员设备中的无卡交易的方法,系统和计算机可读介质。 在一些实施例中,计算机系统可以从与金融机构相关联的自动柜员设备接收包括与金融机构的客户相关联的一个或多个在线银行凭证的登录输入。 随后,计算机系统可以验证登录输入。 如果登录输入有效,则计算机系统可能会生成一次性密码。 然后,计算机系统可以将与客户相关联的客户移动设备发送一次性密码。 此后,计算机系统可以从自动柜员机接收密码输入。 随后,计算机系统可以验证密码输入。 如果密码输入有效,则计算机系统可以生成客户认证消息。 然后,计算机系统可以向自动柜员设备发送客户认证消息。

    Providing enhanced user authentication functionalities
    6.
    发明授权
    Providing enhanced user authentication functionalities 有权
    提供增强的用户认证功能

    公开(公告)号:US09407762B2

    公开(公告)日:2016-08-02

    申请号:US14511252

    申请日:2014-10-10

    Abstract: Methods, systems, apparatuses, and computer-readable media for providing enhanced user authentication functionalities are presented. In one or more embodiments, a server computing device may authenticate a user of a user computing device to a customer portal. Subsequently, the server computing device may receive a click-to-call request from the user computing device. In response to receiving the click-to-call request, the server computing device may generate a one-time passcode for the user. Then, the server computing device may provide the one-time passcode to the user. Thereafter, the server computing device may receive one-time-passcode input from an interactive voice response (IVR) server, and such input may be received from a caller. The server computing device then may validate the one-time-passcode input based on the one-time passcode provided to the user. In response to validating the one-time-passcode input, the server computing device may cause the IVR server to authenticate the caller as the user.

    Abstract translation: 提出了用于提供增强的用户认证功能的方法,系统,装置和计算机可读介质。 在一个或多个实施例中,服务器计算设备可以向用户门户认证用户计算设备的用户。 随后,服务器计算设备可以从用户计算设备接收点击呼叫请求。 响应于接收到点击呼叫请求,服务器计算设备可以为用户生成一次性密码。 然后,服务器计算设备可以向用户提供一次性密码。 此后,服务器计算设备可以从交互式语音响应(IVR)服务器接收一次性密码输入,并且可以从呼叫者接收这样的输入。 然后,服务器计算设备可以基于提供给用户的一次性密码来验证一次性密码输入。 响应验证一次性密码输入,服务器计算设备可以使IVR服务器以用户身份认证呼叫者。

    Ensuring Information Security Using One-Time Tokens
    7.
    发明申请
    Ensuring Information Security Using One-Time Tokens 有权
    使用一次性令牌确保信息安全

    公开(公告)号:US20160140550A1

    公开(公告)日:2016-05-19

    申请号:US14542935

    申请日:2014-11-17

    Inventor: Andrew T. Keys

    Abstract: Methods, systems, and computer-readable media for ensuring information security using one-time tokens are presented. In one or more embodiments, a computing platform may receive, from a user device, a request to access an online banking portal using a user account. Based on the request, the computing platform may generate and send a notification to a registered mobile device linked to the user account. After sending the notification, the computing platform may generate a one-time token message that includes a prompt for authorizing the user device to access the online banking portal using the user account. The computing platform then may send the one-time token message to the mobile device and receive token response input from the mobile device. Based on the input, the computing platform may prevent the user device from accessing the online banking portal or, alternatively, may provide the user device with access to the online banking portal.

    Abstract translation: 介绍了使用一次性令牌确保信息安全的方法,系统和计算机可读介质。 在一个或多个实施例中,计算平台可以从用户设备接收使用用户帐户访问在线银行门户的请求。 基于该请求,计算平台可以生成并向与用户帐户链接的注册移动设备发送通知。 在发送通知之后,计算平台可以生成一次令牌消息,该消息包括用户授权用户设备使用该用户账号访问在线银行门户的提示。 然后,计算平台可以向移动设备发送一次性令牌消息,并从移动设备接收令牌响应输入。 基于输入,计算平台可以阻止用户设备访问在线银行门户,或者可以向用户设备提供对在线银行门户的访问。

    Providing Enhanced User Authentication Functionalities
    8.
    发明申请
    Providing Enhanced User Authentication Functionalities 有权
    提供增强的用户验证功能

    公开(公告)号:US20160105546A1

    公开(公告)日:2016-04-14

    申请号:US14511252

    申请日:2014-10-10

    Abstract: Methods, systems, apparatuses, and computer-readable media for providing enhanced user authentication functionalities are presented. In one or more embodiments, a server computing device may authenticate a user of a user computing device to a customer portal. Subsequently, the server computing device may receive a click-to-call request from the user computing device. In response to receiving the click-to-call request, the server computing device may generate a one-time passcode for the user. Then, the server computing device may provide the one-time passcode to the user. Thereafter, the server computing device may receive one-time-passcode input from an interactive voice response (IVR) server, and such input may be received from a caller. The server computing device then may validate the one-time-passcode input based on the one-time passcode provided to the user. In response to validating the one-time-passcode input, the server computing device may cause the IVR server to authenticate the caller as the user.

    Abstract translation: 提出了用于提供增强的用户认证功能的方法,系统,装置和计算机可读介质。 在一个或多个实施例中,服务器计算设备可以向用户门户认证用户计算设备的用户。 随后,服务器计算设备可以从用户计算设备接收点击呼叫请求。 响应于接收到点击呼叫请求,服务器计算设备可以为用户生成一次性密码。 然后,服务器计算设备可以向用户提供一次性密码。 此后,服务器计算设备可以从交互式语音响应(IVR)服务器接收一次性密码输入,并且可以从呼叫者接收这样的输入。 然后,服务器计算设备可以基于提供给用户的一次性密码来验证一次性密码输入。 响应验证一次性密码输入,服务器计算设备可以使IVR服务器以用户身份认证呼叫者。

    Service Channel Authentication Processing Hub
    9.
    发明申请
    Service Channel Authentication Processing Hub 有权
    服务通道认证处理中心

    公开(公告)号:US20150334098A1

    公开(公告)日:2015-11-19

    申请号:US14280818

    申请日:2014-05-19

    Abstract: A computer system receives a service request over a service channel from a user device, initiates a challenge to the user device to provide authentication information based on a set of authenticators, and determines an initial level of authentication. When the initial level of authentication is not sufficient for the service channel or protected resource, the apparatus generates a challenge to the user device with at least one additional authenticator and determines an achieved level of authentication based on the further authentication information. When the achieved level of authentication reaches a target authentication level for the service channel, the apparatus continues processing the service request by the service channel. The computer may transfer the service request to another service channel with the authentication token obtained on the original service channel and further challenges the user device with additional authenticators when a higher level of authentication is necessary.

    Abstract translation: 计算机系统通过用户设备通过服务信道接收服务请求,向用户设备发起质询,以基于一组认证者提供认证信息,并确定认证的初始级别。 当初始级别的认证对于服务信道或受保护的资源不足时,设备利用至少一个附加认证器向用户设备生成挑战,并且基于进一步的认证信息确定所实现的认证级别。 当所实现的认证级别达到服务信道的目标认证级别时,设备继续通过服务信道处理服务请求。 计算机可以使用在原始服务信道上获得的认证令牌将服务请求转移到另一服务信道,并且当需要更高级别的认证时,进一步用附加认证者挑战用户设备。

Patent Agency Ranking