Account take over prevention
US10645074B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Mar 28, 2017 |
| Grant date | May 5, 2020 |
| Priority date | — |
| Expiry date | Jun 5, 2037 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L9/3268
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
A method for monitoring access of users to Internet SaaS applications includes the CISO (company Internet security office) in the configuration and operation of the method, instead of relying only on whatever security the SaaS application implements. Certificates, not accessible to users, are pushed to a user's client. When an access request is received from a client by an application, a gateway requests from the client the certificate. After a notification and approval process with the user, a received certificate is verified, user access to the application is allowed or denied, and the CISO notified of the attempted access.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.