US 12,438,974 B2
User initiated entity verification
Kent Steger, Huntersville, NC (US); Ramakrishna Yannam, The Colony, TX (US); Tao Huang, Issaquah, WA (US); Jorge Kara, Kirkland, WA (US); Sarah M. Fatemi, Los Angeles, CA (US); Ali Salim, Redmond, WA (US); Anuradha Girish Sethuram, Frisco, TX (US); and Christine Co, Renton, WA (US)
Assigned to Bank of America Corporation, Charlotte, NC (US)
Filed by bank of america corporation, Charlotte, NC (US)
Filed on Nov. 2, 2023, as Appl. No. 18/386,434.
Prior Publication US 2025/0150445 A1, May 8, 2025
Int. Cl. H04M 1/663 (2006.01); H04M 3/22 (2006.01)
CPC H04M 1/663 (2013.01) [H04M 3/2281 (2013.01)] 18 Claims
OG exemplary drawing
 
1. Apparatus for detection and remediation of an identified attempt of impersonation of a digital entity, the apparatus comprising:
a user telephone, the user telephone comprising:
a transceiver, the transceiver configured to:
receive telephone calls; and
transmit telephone calls;
a user device, the user device comprising:
a processor, the processor configured to execute one or more applications, the one or more applications comprising an entity-operated web-based application, the entity-operated web-based application comprising:
a first connection, said first connection connecting the entity-operated web-based application to a plurality of entity networks;
a second connection, said second connection connecting the entity-operated web-based application to the user device,
wherein:
the entity-operated web-based application is configured to:
be executable on the user device in response to an initiation by a user;
enable authentication of a telephone call received by the user telephone, the telephone call originating from an entity;
generate a one-time token in response to receiving a user command;
transmit the one-time token to the entity through the first connection;
simultaneous to the transmission of the one-time token from the entity-operated web-based application to the entity, display the one-time token on the user device via the second connection; and
start a predetermined time period from the transmission of the one-time token for the telephone call to be authenticatable as originating from the entity;
wherein:
when the entity-operated web-based application receives a verification indication from the user within the predetermined time period, the entity-operated web-based application is further configured to transmit an alert indication to the user device and/or user telephone that an operator operating the telephone call is verified; and
when the entity-operated web-based application fails to receive a verification indication from the user within the predetermined time period, the entity-operated web-based application is further configured to transmit an alert indication to the user device and/or user telephone that the telephone call is unsecure.