System and method for identity-based fraud detection
First Claim
1. A method for determining a likelihood of fraud associated with an input identity record, said method being implemented by a processor which executes instructions of computer readable program code stored within a memory operatively coupled to the processor, said method comprising:
- identifying the input identity record, wherein the input identity record comprises one or more identity-related fields associated with a user and is associated with an adjaceny matrix, the adjacency matrix comprising one or more sub-matrices indicating a respective identity-related field of the input identity record;
determining characteristics of the input identity record by examining content of the one or more identity-related fields that is associated with a sub-matrix of the adjacency matrix, wherein determining the characteristics of the input identity record comprises computing one or more nodal features of the input identity record based at least in Dart on the content of the one or more identity-related fields that is associated with the sub-matrix;
retrieving, from the memory, historical identity records related to the input identity record so as to define a set of linked identity records;
computing one or more network-based features of the set of linked identity records based at least in Dart on a decomposition and block diagonalization of one or more adjacency matrices;
generating a non-linear decision model based at least in part on computing the one or more nodal features of the input identity record and computing the one or more network-based features of the set of linked identity records;
determining a fraud score based upon the generated non-linear decision model, wherein the fraud score is based at least in part on a correlation between the one or more nodal features of the input identity record and the one or more network-based features of the set of linked identity records;
generating a reason code based at least in part on determining the fraud score, the reason code comprising an indication of a characteristic of fraud associated with the input identity record;
examining other identity records related to the input identity record subsequent to generating the reason code and issuing a retro-alert with respect to the input identity record when the other identity records are determined to increase a level of fraud-related suspicion attaching to the input identity record, wherein the retro-alert comprises the reason code; and
communicating the retro-alert to an administrator associated with the input identity record.
13 Assignments
0 Petitions
Accused Products
Abstract
A method for determining a likelihood of fraud associated with an input identity record is disclosed herein. The disclosed method contemplates determining characteristics of the input identity record by examining content of one or more fields of the input identity record. Historical identity records related to the input identity record may then be retrieved so as to define a set of linked identity records. The method further includes computing one or more network-based features of the set of linked identity records. A fraud score may then be generated based upon the characteristics of the input identity record and the one or more network-based features.
48 Citations
29 Claims
-
1. A method for determining a likelihood of fraud associated with an input identity record, said method being implemented by a processor which executes instructions of computer readable program code stored within a memory operatively coupled to the processor, said method comprising:
-
identifying the input identity record, wherein the input identity record comprises one or more identity-related fields associated with a user and is associated with an adjaceny matrix, the adjacency matrix comprising one or more sub-matrices indicating a respective identity-related field of the input identity record; determining characteristics of the input identity record by examining content of the one or more identity-related fields that is associated with a sub-matrix of the adjacency matrix, wherein determining the characteristics of the input identity record comprises computing one or more nodal features of the input identity record based at least in Dart on the content of the one or more identity-related fields that is associated with the sub-matrix; retrieving, from the memory, historical identity records related to the input identity record so as to define a set of linked identity records; computing one or more network-based features of the set of linked identity records based at least in Dart on a decomposition and block diagonalization of one or more adjacency matrices; generating a non-linear decision model based at least in part on computing the one or more nodal features of the input identity record and computing the one or more network-based features of the set of linked identity records; determining a fraud score based upon the generated non-linear decision model, wherein the fraud score is based at least in part on a correlation between the one or more nodal features of the input identity record and the one or more network-based features of the set of linked identity records; generating a reason code based at least in part on determining the fraud score, the reason code comprising an indication of a characteristic of fraud associated with the input identity record; examining other identity records related to the input identity record subsequent to generating the reason code and issuing a retro-alert with respect to the input identity record when the other identity records are determined to increase a level of fraud-related suspicion attaching to the input identity record, wherein the retro-alert comprises the reason code; and communicating the retro-alert to an administrator associated with the input identity record. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8)
-
-
9. A method for determining a likelihood of fraud associated with an input identity record, said method being implemented by a processor which executes instructions of computer readable program code stored within a memory operatively coupled to the processor, said method comprising:
-
identifying the input identity record, wherein the input identity record comprises one or more identity-related fields associated with a user and is associated with an adjacency matrix, the adjacency matrix comprising one or more sub-matrices indicating a respective identity-related field of the input identity record; determining characteristics of the input identity record by examining content of the one or more identity-related fields that Is associated with a sub-matrix of the adjacency matrix, wherein determining the characteristics of the input identity record comprises computing one or more nodal features of the input identity record based at least in Dart on the content of the one or more identity-related fields that is associated with the sub-matrix; retrieving, from the memory, historical identity records related to the input identity record so as to define a set of linked identity records; computing one or more nodal features of the input identity record; computing one or more network-based features of the set of linked identity records based at least in Dart on a decomposition and block diagonalization of one or more adjacency matrices; generating a non-linear decision model based at least in part on computing the one or more nodal features of the input identity record and computing the one or more network-based features of the set of linked identity records; determining a fraud score based upon the generated non-linear decision model, wherein the fraud score is based at least in part on a correlation between the one or more nodal features of the input identity record and the one or more network-based features of the set of linked identity records; generating a reason code based at least in part on determining the fraud score, the reason code comprising an indication of a characteristic of fraud associated with the input identity record; examining other identity records related to the input identity record subsequent to generating the reason code and issuing a retro-alert with respect to the input identity record when the other identity records are determined to increase a level of fraud-related suspicion attaching to the input identity record, wherein the retro-alert comprises the reason code; and communicating the retro-alert to an administrator associated with the input identity record. - View Dependent Claims (10, 11, 12, 13, 14, 15, 16, 17)
-
-
18. A method for determining a likelihood of fraud associated with an input identity record, said method being implemented by a processor which executes instructions stored within a memory operatively coupled to the processor, said method comprising:
-
identifying the input identity record, wherein the input identity record comprises one or more identity-related fields associated with a user and is associated with an adjacency matrix, the adjacency matrix comprising one or more sub-matrices indicating a respective identity-related field of the input identity record; determining characteristics of the input identity record by examining content of the one or more identity-related fields that is associated with a sub-matrix of the adjacency matrix, wherein determining the characteristics of the input identity record comprises computing one or more nodal features of the input identity record based at least in Dart on the content of the one or more identity-related fields that is associated with the sub-matrix; retrieving, from the memory, historical identity records related to the input identity record so as to define a set of linked identity records; computing one or more network-based features of the set of linked identity records by generating a connectivity graph comprised of a plurality of nodes connected by a set of links based at least in Dart on a decomposition and block diagonalization of one or more adjacency matrices, each of the nodes corresponding to at least one of the linked identity records and each of the links being representative of the occurrence of a common characteristic within two or more of the linked identity records; generating a non-linear decision model based at least in part on computing the one or more nodal features of the input identity record and computing the one or more network-based features of the set of linked identity records; synthesizing, from the connectivity graph, one or more variables relating to the network-based features; determining a fraud score based upon the generated non-linear decision model, wherein the fraud score is based at least in part on a correlation between the one or more nodal features of the input identity record and the one or more network-based features of the set of linked identity records; generating a reason code based at least in part on determining the fraud score, the reason code comprising an indication of a characteristic of fraud associated with the input identity record; examining other identity records related to the input identity record subsequent to generating the reason code and issuing a retro-alert with respect to the input identity record when the other identity records are determined to increase a level of fraud-related suspicion attaching to the input identity record, wherein the retro-alert comprises the reason code; and communicating the retro-alert to an administrator associated with the input identity record. - View Dependent Claims (19, 20, 21, 22, 23, 24, 25)
-
-
26. A computer-usable medium having computer readable program code physically embodied therein for execution by a processor to perform a method for determining a likelihood of fraud associated with an input identity record, said method comprising:
-
identifying the input identity record, wherein the input identity record comprises one or more identity-related fields associated with a user and is associated with an adjacency matrix, the adjacency matrix comprising one or more sub-matrices indicating a respective identity-related field of the input identity record; determining characteristics of the input identity record by examining content of the one or more identity-related fields that is associated with a sub-matrix of the adjacency matrix, wherein determining the characteristics of the input identity record comprises computing one or more nodal features of the input identity record based at least in Dart on the content of the one or more identity-related fields that is associated with the sub-matrix; retrieving, from the memory, historical identity records related to the input identity record so as to define a set of linked identity records; computing one or more network-based features of the set of linked identity records based at least in Dart on a decomposition and block diagonalization of one or more adjacency matrices; generating a non-linear decision model based at least in part on computing the one or more nodal features of the input identity record and computing the one or more network-based features of the set of linked identity records; synthesizing, from the connectivity graph, one or more variables relating to the network-based features; determining a fraud score based upon the generated non-linear decision model, wherein the fraud score is based at least in part on a correlation between the one or more nodal features of the input identity record and the one or more network-based features of the set of linked identity records; generating a reason code based at least in part on determining the fraud score, the reason code comprising an indication of a characteristic of fraud associated with the input identity record; examining other identity records related to the input identity record subsequent to generating the reason code and issuing a retro-alert with respect to the input identity record when the other identity records are determined to increase a level of fraud-related suspicion attaching to the input identity record, wherein the retro-alert comprises the reason code; and communicating the retro-alert to an administrator associated with the input identity record. - View Dependent Claims (27, 28, 29)
-
Specification