发明名称 Authentication mechanism
摘要 A computer-implemented method for preventing password leakage into a non-password field includes detecting that a user of an electronic device has entered a character in a non-password field appearing on a display associated with the electronic device. The character is echoed to at least the display, and stored to provide a stored character string. The stored character string is compared to a set of valid entries for the non-password field, when length of the stored character string reaches a predetermined threshold value. An alert is transmitted when the stored character string fails to match at least a substring of an element of the set of valid entries for the non-password field.
申请公布号 US9396322(B2) 申请公布日期 2016.07.19
申请号 US201514736334 申请日期 2015.06.11
申请人 International Busines Machines Corporation 发明人 Chougle Abdullah Q.;Chougule Vishal V.;Jain Priyanka P.;Jain Vivek
分类号 H04L29/06;G06F21/45;G06F21/60 主分类号 H04L29/06
代理机构 代理人 Restauro Brian M.;Hayes John
主权项 1. A method for preventing password leakage into a user name field, the method comprising: detecting, by one or more hardware processors, that a user of an electronic device has entered at least a character of a set of characters in a user name field appearing on a display associated with the electronic device; echoing the one or more characters, by one or more processors, to at least the display of the user name field; storing the one or more characters to provide a stored character string, by one or more processors, to provide a stored character string of the user name field; responsive to detecting, each respective character that has been entered into the user name field, incrementing and storing, by one or more hardware processors, a character count; responsive to the stored character string reaching a predetermined threshold value, comparing, by one or more hardware processors, the stored character string to a set of valid user name entries for the user name field; and responsive to the determining that the stored character string fails to match a portion of any of the user name entries in the set of valid user name entries; clearing, by one or more hardware processors, the display of the stored character string,locking out the user, by one or more hardware processors, from the user name field until security has been re-established,transmitting, by one or more hardware processors, a first alert to the display associated with the electronic device, andtransmitting, by one or more hardware processors, a second alert, wherein the second alert is transmitted to a mobile phone number associated with valid user names entries indicating a portion of a user password is at risk of being compromised.
地址 Armonk NY US