System and method for website authentication using a shared secret
First Claim
Patent Images
1. A method comprising:
- receiving, at a third party authentication server processor via a network, registration data associated with a user, wherein the registration data comprises a distortion template;
receiving, at the third party authentication server processor, a request from a client computer to authenticate a web site, the request comprising information associated with authenticating the web site;
determining whether the web site is authentic using the information in the request; and
providing a user-defined indicator describing whether the web site is authentic to the client computer, the user-defined indicator being based on the registration data that is associated with the user, wherein the user-defined indicator comprises the distortion template applied to a text string that is associated with the user.
5 Assignments
0 Petitions
Accused Products
Abstract
A web site can be authenticated by a third party authentication service. A user designates an authentication device that is a shared secret between the user and the authentication service. A web site page includes a URL that points to the authentication service. The URL includes a digital signature by the web site. When the user receives the page, the user'"'"'s browser issues a request to the authentication service, which attempts to authenticate the digital signature. If the authentication is successful, it sends the authentication device to the user computer.
24 Citations
14 Claims
-
1. A method comprising:
-
receiving, at a third party authentication server processor via a network, registration data associated with a user, wherein the registration data comprises a distortion template; receiving, at the third party authentication server processor, a request from a client computer to authenticate a web site, the request comprising information associated with authenticating the web site; determining whether the web site is authentic using the information in the request; and providing a user-defined indicator describing whether the web site is authentic to the client computer, the user-defined indicator being based on the registration data that is associated with the user, wherein the user-defined indicator comprises the distortion template applied to a text string that is associated with the user. - View Dependent Claims (2, 3, 4, 5)
-
-
6. A system comprising:
-
a processor; a memory coupled to the processor, the memory storing instructions adapted to be executed by the processor to; receive registration data associated with a user, wherein the registration data comprises a distortion template; receive a request from a client computer to authenticate a web site, the request comprising information associated with authenticating the web site; determining whether authenticate the web site is authentic using the information in the request; and provide a user-defined indicator describing whether the web site is authentic to the client computer, the user-defined indicator being based on the registration data that is associated with the user, wherein the user-defined indicator comprises the distortion template applied to a text string that is associated with the user. - View Dependent Claims (7, 8, 9, 10, 11)
-
-
12. A non-transitory computer-readable medium storing instructions adapted to be executed by a processor to perform operations comprising:
-
receiving, at a third party authentication server, registration data associated with a user, wherein the registration data comprises a distortion template; receiving at the third party authentication server a request from a client computer to authenticate a web site, the request comprising information associated with authenticating the web site; determining whether the web site is authentic using the information in the request; and providing a user-defined indicator describing whether the web site is authentic to the client computer, the user-defined indicator being based on the registration data that is associated with the user, wherein the user-defined indicator comprises the distortion template applied to a text string that is associated with the user. - View Dependent Claims (13, 14)
-
Specification