发明名称 System for providing trusted user access of computer systems
摘要 Enables trusted user access of computer systems for example that verifies trusted users and may allow trusted users to bypass challenge-response tests, while limiting access by automated processes and unwanted human challenge-response test solvers. Embodiments may implement an account that may be utilized across websites to enable a valid or trusted user to bypass challenge-response tests. Embodiments of the invention cost time, or cost a nominal fee, or require use of something that may be validated as owned by a user such as a physical address or cell phone, or trusted referral or social graph or any combination thereof, but cost large amounts time or money for spammers using cheap third world labor, thus making it expensive to invoke attacks on sites protected by embodiments of the invention.
申请公布号 US8793778(B2) 申请公布日期 2014.07.29
申请号 US201213602046 申请日期 2012.08.31
申请人 Spamcaptcher Inc. 发明人 Marinov Stefan;Miller Kieran
分类号 G06F21/00;H04L29/06;G06Q30/00;G10L21/00;G06F7/04;G06F15/16;H04W12/06 主分类号 G06F21/00
代理机构 ARC IP Law, PC 代理人 ARC IP Law, PC ;Mayo Joseph J.
主权项 1. A system configured to provide trusted user access of computer systems comprising: a challenge-response database; a trusted user database; and, a server computer configured to accept an IP address of a computer associated with a user or identification of said user; generate a session identifier and provide said session identifier to said computer associated with said user based on said IP address of said computer associated with said user or identification of said user; check if said user is logged in based on said trusted user database; bypass a challenge-response test if said user is logged in and if a number of bypassed challenge-response tests is less than a predefined number of bypasses allowed for said user and optionally if a number of current sessions is less than a predefined session number per time period, to enable said user to bypass said challenge-response test, and otherwise provide a challenge from said challenge-response database to said user and accept a response from said user; validate a session with said user; generate a session validation response; and, send said session validation response to a website computer or other computer system that said user is attempting to access, wherein said session validation response comprises a validity score and enable or disable access to said website computer or other computer based on said validity score; wherein said server computer is further configured to charge a fee for said user to create said account in said trusted user database or ensure that said user requires a predefined amount of time to create said account in said trusted user database or accept an input from an item that said user comprises a finite number of to create said account or wherein said item utilized to create an account costs over a predefined amount or wherein said item is verifiable to create said account or accept a cell phone number from said user to create said account in said trusted database or accept a code input from said user that was obtained from information sent to a physical address to create said account or allow an invited user referred from a trusted user to create said account if the trusted user has a network-of-trust score that is higher than a predefined value or allow a social network user from a social network site to create said account based on the friend identifiers of the social network user in the trusted database; wherein said server computer is further configured to accept a request from said website computer or said other computer system that said user is attempting to access that indicates that said session is associated with undesirable data; and, decrease said predefined number of bypasses associated with said user and optionally any associated accounts if said user has an account in said trusted user database; or lock an account in said trusted user database associated with said user if said validity score is above a score threshold or both decrease said predefined number of bypasses and lock said account.
地址 San Diego CA US