发明名称 DEVICE, SYSTEM, AND METHOD OF PASSWORD-LESS USER AUTHENTICATION AND PASSWORD-LESS DETECTION OF USER IDENTITY
摘要 Devices, systems, and methods of detecting user identity, differentiating between users of a computerized service, and detecting possible attackers; as well as password-less user authentication, and password-less detection of user identity. A system or a computing device requires a user to perform a particular unique non-user-defined task, the task optionally being an on-screen connect-the-dots task. The system monitors user interactions, extracts user-specific features that characterizes the manner in which the user performs the tasks; and subsequently relies on such user-specific features as a means for user authentication, optionally without utilizing a password or passphrase. Optionally, a user interface anomaly or interference is intentionally introduced in order to elicit the user to perform corrective gestures, which are optionally used for extraction of additional user-specific features.
申请公布号 US2016197918(A1) 申请公布日期 2016.07.07
申请号 US201615051700 申请日期 2016.02.24
申请人 BioCatch Ltd. 发明人 Turgeman Avi;Moyal Tal;Azizi Yaron
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项 1. A method comprising: differentiating between a first user and a second user of a computerized service, by performing:(a) autonomously selecting a unique and non-user-defined task, that is intended to be performed by a specific user via an input unit of an electronic device;(b) generating the task, and collecting user interactions data via the input unit while the user is performing the task;(c) repeating step (b) for at least N iterations for said specific user, wherein N is a positive integer;(d) during step (b) and during step (c), determining from said user interactions data a user-specific cognitive behavioral biometric profile;(e) storing the user-specific cognitive behavioral profile in a repository;(f) subsequently, generating said task again upon a subsequent request of a user to access said computerized service, and collecting fresh user interactions data from fresh performance of said task;(g) if the fresh user interactions data that was collected from said fresh performance of said task, does not match the previously-stored user-specific cognitive behavioral biometric profile, then un-authorizing access of the user to the computerized service.
地址 Tel Aviv IL