FIELD: safety.
SUBSTANCE: present invention relates to computer security. Method for automatic recovery of a service-access password involves the following: receiving a request for password recovery; asking the user the first security question, which is connected to the history of user/web services interaction, wherein the first security question is connected to the first level of hardness; obtaining the user’s first response to the first security question; assigning the first response the first weighting coefficient, which depends on the first level of hardness; asking the user the second security question, which is connected to the history of user/web services interaction, wherein the second security question is connected to the second level of hardness; receiving the user’s second response to the second security question; assigning the user’s second response the second weighting coefficient, which depends on the second level of hardness; adding the first and second weighting coefficients; automatically restoring the password, if the sum of the first and second weighting coefficients exceeds the predetermined threshold; denying automatic recovery of the password, if the sum of the first and second weighting coefficients is less than the predetermined threshold.
EFFECT: technical result: improved reliability of procedure of password recovery.
26 cl, 2 dwg
| Title | Year | Author | Number | 
|---|---|---|---|
| METHOD AND SYSTEM OF USER AUTHENTICATION IN ELECTRONIC SERVICE FOR TRANSFER OF DIGITAL OBJECTS | 2019 | 
 | RU2798361C2 | 
| METHODS AND SYSTEMS FOR DETERMINING NON-STANDARD USER ACTIVITY | 2017 | 
 | RU2670030C2 | 
| EXTERNAL COMBINED DATA CENTRE PROVIDING CLIENT FUNCTIONALITY | 2007 | 
 | RU2451996C2 | 
| METHOD FOR IDENTIFYING ONLINE USER AND DEVICE THEREOF | 2020 | 
 | RU2740308C1 | 
| SYSTEM AND METHOD OF PERFORMING QUEUE OF REQUESTS FOR DIGITAL OBJECTS | 2015 | 
 | RU2609089C2 | 
| METHOD FOR IDENTIFICATION OF AN ONLINE USER AND HIS DEVICE | 2021 | 
 | RU2780029C1 | 
| SYSTEM AND METHOD FOR OUTSIDE CONTROL OF THE CYBERATTACK SURFACE | 2021 | 
 | RU2778635C1 | 
| SYSTEM AND METHODS FOR DETECTING NETWORK FRAUD | 2017 | 
 | RU2744671C2 | 
| ELECTRONIC CERTIFICATION, IDENTIFICATION AND TRANSMISSION OF INFORMATION USING CODED GRAPHIC IMAGES | 2008 | 
 | RU2494455C2 | 
| METHOD OF DETECTING INSIGNIFICANT LEXICAL ITEMS IN TEXT MESSAGES AND COMPUTER | 2014 | 
 | RU2580424C1 | 
Authors
Dates
2017-01-30—Published
2014-09-29—Filed