Patent · US Active

Unsecured asset detection via correlated authentication anomalies

US8832857B2 · kind B2 · utility

12Cited by
3References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 12, 2012
Grant dateSep 9, 2014
Priority date
Expiry dateSep 4, 2032

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1466
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method, apparatus and computer program product for detecting that a computing device may not be secure based on inconsistent identity associations identified during Federated Single Sign-On (F-SSO). A detection proxy detects when a user with a particular session is accessing an identity provider (IdP) that is associated with an account that is not the current user's account. When a user performs a login to an F-SSO-enabled IdP, the proxy performs an F-SSO, and the results are compared with known aliases for that particular federation partner. If an anomaly is detected (e.g., the in-line device sees that a user logs into a web site as someone else), a workflow is initiated to perform a given action, such as blocking access, issuing an alert, or the like.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.