US 11,775,623 B2
Processing authentication requests to secured information systems using machine-learned user-account behavior profiles
Michael E. Toth, Charlotte, NC (US); Xianhong Zhang, Seattle, WA (US); Hitesh Shah, Seattle, WA (US); and Srinivasa Rao Goriparthi, Bellevue, WA (US)
Assigned to Bank of America Corporation, Charlotte, NC (US)
Filed by Bank of America Corporation, Charlotte, NC (US)
Filed on May 12, 2021, as Appl. No. 17/317,979.
Application 17/317,979 is a continuation of application No. 16/210,062, filed on Dec. 5, 2018, granted, now 11,036,838.
Prior Publication US 2021/0264005 A1, Aug. 26, 2021
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 21/31 (2013.01); G06F 21/41 (2013.01); G06N 20/00 (2019.01); H04L 9/40 (2022.01); H04W 12/63 (2021.01)
CPC G06F 21/316 (2013.01) [G06F 21/41 (2013.01); G06N 20/00 (2019.01); H04L 63/0876 (2013.01); H04L 63/0892 (2013.01); H04W 12/63 (2021.01)] 20 Claims
OG exemplary drawing
 
1. A computing platform, comprising:
at least one processor;
a communication interface communicatively coupled to the at least one processor; and
memory storing computer-readable instructions that, when executed by the at least one processor, cause the computing platform to:
receive, via the communication interface, a first authentication request corresponding to a request for a first user of a first client computing device to access one or more secured information resources associated with a first user account;
based on receiving the first authentication request, capture one or more behavioral parameters associated with the first client computing device;
capture first activity data associated with one or more interactions by the first client computing device with one or more non-authenticated pages;
evaluate the one or more behavioral parameters associated with the first client computing device and the first activity data based on a first behavioral profile associated with the first user account;
based on evaluating the one or more behavioral parameters associated with the first client computing device and the first activity data, identify the first authentication request as malicious;
based on identifying the first authentication request as malicious, generate one or more denial-of-access commands directing an account portal computing platform to prevent the first client computing device from accessing the one or more secured information resources associated with the first user account; and
send, via the communication interface, to the account portal computing platform, the one or more denial-of-access commands directing the account portal computing platform to prevent the first client computing device from accessing the one or more secured information resources associated with the first user account.