Invention Grant
- Patent Title: Systems and methods for detecting man-in-the-middle attacks
-
Application No.: US14824775Application Date: 2015-08-12
-
Publication No.: US09888035B2Publication Date: 2018-02-06
- Inventor: Srinath Venkataramani , Rosarin Jolly Roy Antonyraj
- Applicant: Symantec Corporation
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: FisherBroyles, LLP
- Priority: IN2500/MUM/2015 20150630
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04W12/12 ; H04W4/02 ; H04L29/08 ; H04W12/06

Abstract:
A computer-implemented method for detecting man-in-the-middle attacks may include (1) registering a mobile device of a user within a computing environment as an authenticated mobile device that corresponds to the user, (2) receiving an authentication request to log into a secure computing resource as the user, (3) transmitting, in response to receiving the authentication request, an out-of-band push authentication prompt to the registered mobile device of the user through a different channel than a channel through which the authentication request was received, (4) comparing a geolocation indicated by the authentication request with a geolocation indicated by the registered mobile device, and (5) performing remedial action in response to detecting a man-in-the-middle attack based on a determination that the geolocation indicated by the authentication request and the geolocation indicated by the registered mobile device do not match. Various other methods, systems, and computer-readable media are also disclosed.
Public/Granted literature
- US20170006060A1 SYSTEMS AND METHODS FOR DETECTING MAN-IN-THE-MIDDLE ATTACKS Public/Granted day:2017-01-05
Information query