Determining authenticity of reported user action in cybersecurity risk assessment
US10778626B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Feb 4, 2019 |
| Grant date | Sep 15, 2020 |
| Priority date | — |
| Expiry date | Feb 4, 2039 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/1441
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
An electronic device will identify an electronic message received by a messaging client that is associated with a first recipient, and it will analyze the electronic message to determine whether the electronic message is a simulated malicious message. Upon determining that electronic message is a simulated malicious message, the device will identify an actuatable element in the electronic message. The actuatable element will include a service address. The device will modify the electronic message by appending a user identifier of the first recipient to the service address of the actuatable element. Then, when the actutable element is actuated, the system may determine whether the first recipient actuated the actuatable element or an alternate recipient did so based on whether the user identifier of the first recipient is still appended (or is the only user identifier appended) to the actuatable element.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.