US 11,750,608 B2
Assisted third-party password authentication
David Benko, San Franciso, CA (US); and Michael Chen, Vienna, VA (US)
Assigned to Capital One Services, LLC, McLean, VA (US)
Filed by Capital One Services, LLC, McLean, VA (US)
Filed on Apr. 11, 2022, as Appl. No. 17/717,807.
Application 17/717,807 is a continuation of application No. 16/895,808, filed on Jun. 8, 2020, granted, now 11,303,635.
Prior Publication US 2022/0294784 A1, Sep. 15, 2022
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01); H04L 9/30 (2006.01)
CPC H04L 63/0884 (2013.01) [H04L 9/3073 (2013.01); H04L 63/083 (2013.01); H04L 63/166 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method, comprising:
creating a secure connection from an inline frame associated with a first application on a client device to an authorization server for accessing a second application;
identifying, by the inline frame, one or more events that represent inputs for a user authorization credential;
proxying, by the inline frame, the identified one or more events to the authorization server using the secure connection;
redirecting, by the inline frame, an authorization code to the first application on the client device;
transmitting, to the authorization server, the authorization code to receive an access token for accessing a second application;
generating, by the inline frame, a form for receiving the user authorization credential; and
updating the form with a graphical symbol to avoid interrogation of a document object model (DOM) element associated with the form;
inserting the inline frame in the first application according to a restricted access policy; and
closing the inline frame upon receiving the access token from the authorization server.