Invention Grant
- Patent Title: Using individualized APIs to block automated attacks on native apps and/or purposely exposed APIs with forced user interaction
-
Application No.: US16553085Application Date: 2019-08-27
-
Publication No.: US11032243B2Publication Date: 2021-06-08
- Inventor: Marc Hansen
- Applicant: Shape Security, Inc.
- Applicant Address: US CA Santa Clara
- Assignee: Shape Security, Inc.
- Current Assignee: Shape Security, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Troutman Pepper Hamilton Sanders LLP (Rochester)
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04W12/084 ; H04W12/086 ; H04W12/122 ; H04W12/126

Abstract:
An API call filtering system filters responses to API call requests received, via a network, from UEs. The API call filtering system is configured to require personalized API call requests wherein each API call (except for some minor exceptions) includes a unique UE identifier (“UEIN”) of the UE making the request. Using the UEIN, the web service or other service protected by the API call filtering system can be secured against excessive request iterations from a set of rogue UEs while allowing for ordinary volumes of requests of requests the UEs, wherein one or more boundaries between what is deemed to be an ordinary volume of requests and what is deemed to be excessive request iterations are determined by predetermined criteria.
Public/Granted literature
Information query