H04W12/66

Server trust evaluation based authentication

Disclosed herein are techniques for enabling a user to activate a new device with a Mobile Network Operator (MNO) without requiring the user to provide MNO authentication credentials that are easily forgotten. The user activates the new device using credentials from an existing device (associated with the user) that is trusted by the MNO and also using a trust score provided by a third-party server that has knowledge of associations between the user and the existing device. The new device can be a supplemental device, such as a wearable device to a cellular phone, where both devices remain capable of accessing services provided by the MNO after the new device is activated with the MNO. The new device can also be a replacement device, such as a new phone, tablet, or wearable device, where the new device supplants access to services provided by the MNO for an existing device.

Method for enabling and/or requesting access by a first network subscriber to a second network subscriber in a network

A method for enabling access by a first network subscriber to a second network subscriber in a network includes receiving a communication request from the first network subscriber and determining whether the second network subscriber has carried out an authentication of the first network subscriber during a first phase. The second network subscriber allows communication with the first network subscriber when the second network subscriber has carried out authentication of the first network subscriber during the first phase. The second network subscriber receives an access request from the first network subscriber and determines a level of trustworthiness of the first network subscriber. The second network subscriber enables access of the first network subscriber based on the determination of the level of trustworthiness of the first network subscriber.

NETWORK CYBER-SECURITY PLATFORM
20210092596 · 2021-03-25 ·

A security platform of a data network is provided that includes security services for computing devices in communication with the data network. The security platform may apply a security policy to the computing devices when accessing the Internet via a home network (or other customer network) and when accessing the Internet via a public or third party network. To provide security services to computing devices via the home network, the security platform may communicate with a security agent application executed on the router (or other gateway device) of the home network. In addition, each of the devices identified by the security profile for the home network may be instructed or otherwise be provided a security agent application for execution on the computing devices. The security agent application may communicate with the security platform when the computing device connects to the Internet over a third party or public access point.

DESIGNATION OF A TRUSTED USER
20210090079 · 2021-03-25 ·

A device receives a request for a trust designation for a user that is to utilize a merchant application to interact with one or more other users, wherein the merchant application includes one or more interfaces that allow the user to interact with the one or more other users while remaining anonymous or partially anonymous. The device obtains user data for the user based on information included in the request. The device determines the trust designation for the user by using a data model that has been trained using machine learning to process the user data. The device permits at least one of the one or more interfaces of the merchant application to display the trust designation, wherein the user remains anonymous or partially anonymous while the trust designation is displayed.

Wireless network slice distributed ledger

A wireless communication network implements a wireless network slice that has a slice configuration. A slice controller signals a Network Function Virtualization (NFV) Management and Orchestration (MANO) to implement a Network Service Descriptor (NSD) for the slice based on the slice configuration. The NFV MANO signals an NFV Infrastructure (NFVI) to execute Virtual Network Functions (VNFs) for the slice based on the NSD. The NFVI executes the VNFs, and the VNFs handle user data for wireless user devices that use the slice. The VNFs generate and transfer slice data responsive to handling the user data. The wireless user devices generate and transfer slice data responsive to using the slice. Wireless access points generate and transfer slice data responsive to serving the user devices. A distributed ledger receives the slice data, forms a consensus for the slice data, and stores the slice data in a distributed ledger format.

Evaluating trustworthiness of data transmitted via unencrypted wireless mobile communications
10932127 · 2021-02-23 · ·

Systems and methods for making local decisions regarding the trustworthiness of V2V communications are provided. According to one embodiment, a vehicle information packet is received by a vehicle connectivity subsystem of a connected car and is indicative of an attribute of a source from which the packet was received. The source purportedly represents a neighboring vehicle in proximity to the connected car. A trustworthiness value for the packet is determined based on the source and coherence of the packet with local information maintained by the connected car. The trustworthiness value is indicative of a likelihood that the source represents a neighboring vehicle in proximity to the connected car from which communications are to be trusted. An action to be taken by the vehicle connectivity subsystem is determined with respect to the source or the packet based on the trustworthiness value. The determined action taken by the vehicle connectivity subsystem.

Active base apparatus

In accordance with some embodiments, an apparatus for privacy protection is provided. The apparatus includes a housing arranged to hold a personal communication device and a peripheral interface supported by the housing, where the peripheral interface is connectable to a supplemental functional device. The apparatus further includes a local communication device coupled to the peripheral interface and supported by the housing, where the local communication device includes a personal communication device interface modem operable to provide a communication channel between the peripheral interface and the personal communication device. The apparatus further includes a controller coupled to the peripheral interface and the local communication device, where the controller is operable to manage the communication channel between the supplemental functional device and the personal communication device.

Wearable device for trusted biometric identity
10963547 · 2021-03-30 · ·

A wearable device may store a biometric token associated with a wearer of the wearable device, the wearable device including: a wireless communications interface; a processing circuitry; a memory configured to store a biometric token associated with a wearer of the wearable device, the biometric token including a device identifier that is associated with the wearable device, a biometric template for each of one or more biometric scans of the wearer of the wearable device, and an indication of whether or not the biometric token is valid, wherein the biometric token, if valid, establishes a trust that wearer identifying information, linked to the biometric token, is associated with the wearer; an invalidating event detector configured to determine if an invalidating event has occurred; wherein the processing circuitry is configured to invalidate the biometric token in response to detecting that an invalidating event has occurred for the biometric token.

METHOD FOR TRANSMITTING DIGITAL INFORMATION
20210051140 · 2021-02-18 ·

A method of secure communication between a computer server and users each having a connected computer system, comprising recording of a unique identifier of the server in the memory of a trusted server, the connected system having first and second digital communication modes, the method further comprising: the transmission of an ASC application to the connected system, the application being installed on the connected system, its execution controlling the automatic opening of a computer session with the trusted server according to the second digital communication mode, the opening of a communication session by the connected system with a server, the opening of a secured communication session by the server with the trusted server, the transmission by the server of an identifier of the connected system, the calculation by the trusted server of a time-stamped code associated with the key, the transmission of the time-stamped code by the trusted server to the connected system corresponding to the identifier transmitted by the server, via a first communication protocol, the acquisition of the time-stamped code by the connected system according to the first protocol, the opening of a communication session by the connected system according to a second protocol, with the trusted server through the application previously loaded and transmission of the acquired code, the verification of the conformity of the code transmitted by the connected system, the transmission to the system connected by the trusted server of a digital validation message including a code conformity indicator and information relating to the server associated with the validated code.

INTUITIVE RESOURCE MANAGEMENT PLATFORM

A system for making specified resource management services available to a user through a mobile application and/or online portal based on the user's determined level of resource management competency. Further, an intuitive platform for resource management is provided that can provide instinctual guidance throughout the entire lifecycle of a user's engagement with the resource management entity, including but, not limited to, onboarding, providing services to the users, allowing the user to conduct resource interactions and the like.