发明名称 Detecting security token reuse in a third party mediated video authentication system
摘要 Aspects relate to determining whether a security token has previously been used in order to gain access to premium content. When a security token is received, the token is evaluated to determine whether the token has been previously received, which indicates an attempt to reuse the token. If the token was previously received, the token is rejected and access to the premium content is denied. If the token was not previously received, the token is analyzed by a third party verification process. If the third party verification process authenticates the token, access to the premium content is granted. With the disclosed aspects, a security vulnerability related to reuse of a security token can be mitigated.
申请公布号 US8881302(B1) 申请公布日期 2014.11.04
申请号 US201213438798 申请日期 2012.04.03
申请人 Google Inc. 发明人 Ace Oleg;Gaunt Robert Christopher
分类号 G06F17/30 主分类号 G06F17/30
代理机构 Amin, Turocy & Watson, LLP 代理人 Amin, Turocy & Watson, LLP
主权项 1. A system, comprising: a memory that stores computer executable components; and a processor that executes the following computer executable components stored in the memory: an obtainment component that receives a security token for access to premium content, the security token is generated based on an access control determined by a third party authentication service;a first data store that retains a first version of a database of security tokens;a second data store that retains a second version of the database of security tokens, wherein the first version and the second version are unsynchronized versions of the database of security tokens;a matching component that compares the security token to the first version or the second version of the database of security tokens previously received for access to the premium content; anda verification component that selectively grants access to the premium content as a result of the comparison by the matching component.
地址 Mountain View CA US