Invention Grant
- Patent Title: Authentication security via application-specific dynamic token generation
-
Application No.: US15587653Application Date: 2017-05-05
-
Publication No.: US10862880B1Publication Date: 2020-12-08
- Inventor: Matthew William Massicotte
- Applicant: Twitter, Inc.
- Applicant Address: US CA San Francisco
- Assignee: Twitter, Inc.
- Current Assignee: Twitter, Inc.
- Current Assignee Address: US CA San Francisco
- Agency: Fish & Richardson P.C.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
This description relates to techniques for authenticating an application through generation of a dynamic application-specific token. A client application executing on a client device receives a request from a server for a token. The client application accesses a resource file or portion thereof that is accessible to both the client application and authenticator and is known to be accessible to the client application by the authenticator in response to the request for the token and extracts a copy of the resource file or the portion. A token is generated based on the extracted copy and additional information factors if any, some of which may be random or pseudo-random. The token is transmitted to the server for authentication.
Information query