Patents Assigned to Forcepoint, LLC
-
Patent number: 11314787Abstract: A system, method, and computer-readable medium for resolving an identity of an entity, comprising parsing entity identifier information associated with the entity to provide an entity identifier element, the entity identifier information comprising temporal information; classifying the entity identifier element to provide a classified entity identifier element; normalizing the classified entity identifier element to provide a classified and normalized entity identifier element; and, associating the classified and normalized entity identifier element and the temporal information with the entity to resolve the identity of the entity at a particular point in time.Type: GrantFiled: April 18, 2018Date of Patent: April 26, 2022Assignee: Forcepoint, LLCInventors: Christopher Poirel, Russell Snyder, Phillip Bracikowski, William Renner
-
Patent number: 11314871Abstract: A system, method, and computer-readable medium are disclosed for performing a security operation. The security operation includes: monitoring an entity, the monitoring observing at least one electronically-observable data source; deriving an observable based upon the monitoring of the electronically-observable data source; identifying a security related activity of the entity, the security related activity being based upon the observable derived from the electronic data source, the security related activity being of analytic utility; associating the security related activity with a component of a cyber kill chain; and, performing a security operation on the security related activity via a security system, the security operation disrupting performance of the component of the cyber kill chain by affecting performance of the security related activity by the entity.Type: GrantFiled: February 14, 2020Date of Patent: April 26, 2022Assignee: Forcepoint, LLCInventors: Alan Ross, Raffael Marty, Margaret Cunningham, Clifford Charles Wright
-
Patent number: 11297099Abstract: A method, system and computer-usable medium for redisplaying data at a remote access client system from a secure computing environment. The redisplaying data includes receiving a request form the remote access client system for data, inspecting the request for potential unauthorized or malicious retransmission. Modifying the data, by filtering audio data or transforming graphical data prior to sending the requested data is performed to prevent the unauthorized or malicious retransmission.Type: GrantFiled: November 29, 2018Date of Patent: April 5, 2022Assignee: Forcepoint, LLCInventor: Anthony Tong
-
Patent number: 11295023Abstract: A system, method, and computer-readable medium are disclosed for performing an entity behavior cataloging operation. The entity behavior cataloging operation includes: identifying a plurality of security related activities, the plurality of security related activities being based upon an observable from an electronic data source; analyzing the plurality of security related activities, the analyzing identifying a plurality of events of analytic utility associated with the plurality of security related activities; generating a set of entity behavior catalog data based upon the event of analytic utility associated with the security related activity, the set of entity behavior catalog data comprising an associated group of behaviors; and, storing the set of entity behavior data and the associated group of behaviors within an entity behavior catalog, the entity behavior catalog providing an inventory of entity behaviors for use when performing a security operation.Type: GrantFiled: February 14, 2020Date of Patent: April 5, 2022Assignee: Forcepoint, LLCInventors: Alan Ross, Raffael Marty, Margaret Cunningham, Ruchika Pandey
-
Patent number: 11295026Abstract: A method, system and computer-usable medium for detecting an occurrence of visual hacking via a visual hacking detection operation which includes: receiving a surveillance image; processing the surveillance image to generate surveillance image data; and, performing a visual hacking detection operation using the surveillance image data, the visual hacking detection operation determining whether visual hacking has been detected.Type: GrantFiled: November 20, 2018Date of Patent: April 5, 2022Assignee: Forcepoint, LLCInventors: Yacov Schondorf, Michael Elazar, Uri Elias, Gil Vinokoor
-
Patent number: 11295022Abstract: A system, method, and computer-readable medium are disclosed for performing an entity behavior cataloging operation. The entity behavior cataloging operation includes: identifying a security related activity, the security related activity being based upon an observable from an electronic data source; analyzing the security related activity, the analyzing identifying an event of analytic utility associated with the security related activity; generating entity behavior catalog data based upon the event of analytic utility associated with the security related activity; and, storing the entity behavior catalog data within an entity behavior catalog, the entity behavior catalog providing an inventory of entity behaviors for use when performing a security operation.Type: GrantFiled: February 14, 2020Date of Patent: April 5, 2022Assignee: Forcepoint, LLCInventors: Raffael Marty, Alan Ross, Nicolas Christian Fischbach, Matthew P. Moynahan, Chad Anson
-
Publication number: 20220103526Abstract: A system for processing data that includes a first processor configured to operate one or more algorithms to provide a proxy for each of a plurality of external network communications segments and internal network communications segments associated with a specific use, the first processor configured to operate one or more algorithms to provide a firewall agent that performs firewall processing for each of the plurality of external network communications segments and the internal network communications segments and wherein the explicit proxy is installed using a proxy auto configuration file that is associated with the firewall agent.Type: ApplicationFiled: March 3, 2021Publication date: March 31, 2022Applicant: Forcepoint LLCInventors: Olli-Pekka Niemi, Ville K. Mattila
-
Publication number: 20220103527Abstract: A system for processing data is disclosed that includes a first processor configured to operate one or more algorithms to identify a user identity as a function of user metadata and to provide access to a predetermined network resource using a cloud-based explicit proxy as a function of the user identity and one or more service requests, the first processor configured to operate one or more algorithms to detect a change in the one or more service requests and wherein access to the predetermined network resources using the cloud-based explicit proxy is modified as a function of the detected change in the one or more service requests.Type: ApplicationFiled: March 12, 2021Publication date: March 31, 2022Applicant: Forcepoint LLCInventors: Olli-Pekka Niemi, Ville Mattila
-
Publication number: 20220103647Abstract: A system for processing data, comprising a first processor configured to operate one or more algorithms to provide an explicit proxy that directs network communications over a public network to a proxy server. The first processor configured to operate one or more algorithms to provide a firewall agent that verifies the presence of a firewall key prior to allowing data communications over the public network using the explicit proxy. Wherein the explicit proxy is installed using a proxy auto configuration file that is associated with the firewall agent.Type: ApplicationFiled: September 25, 2020Publication date: March 31, 2022Applicant: Forcepoint LLCInventor: Lawrence B. Huston, III
-
Patent number: 11283648Abstract: A system for controlling data services, comprising a plurality of host computers configured to communicate over the network and to request a data tunnel. A plurality of server computers configured to provide data tunnel services to the plurality of host computers. An address allocator operating on one or more processors and configured to implement one or more algorithms that cause a range of addresses to be assigned to each of the server computers, wherein each of the host computers receives one of the addresses for use as part of a data tunnel service request from the host computer to the server computer.Type: GrantFiled: August 15, 2019Date of Patent: March 22, 2022Assignee: FORCEPOINT LLCInventor: Lawrence B. Huston, III
-
Publication number: 20220086182Abstract: A method, system, and computer-usable medium are disclosed for: (i) receiving, from a client device, a request for an Internet Protocol (IP) address associated with a domain name; (ii) determining a risk score associated with the client device; and (iii) responding to the request, wherein the response is based on the risk score, and wherein the response is selected from the group consisting of: transmitting the IP address associated with the domain name, and not transmitting the IP address associated with the domain name.Type: ApplicationFiled: September 14, 2020Publication date: March 17, 2022Applicant: Forcepoint LLCInventor: Mattia MAGGIOLI
-
Patent number: 11258789Abstract: A system for optimization of data transmission, comprising a content protection extraction system configured to operate on a remote processor and to extract content protection data associated with a data file and to transmit the content protection data to a central processor and a content protection confirmation system configured to operate on the central processor and to receive the content protection data and to verify whether the content protection data is associated with an authenticated data file.Type: GrantFiled: December 4, 2018Date of Patent: February 22, 2022Assignee: FORCEPOINT LLCInventors: Gal Itach, Ayval Ron
-
Patent number: 11250158Abstract: A method, system and computer-usable medium for generating session-based security information. Generating the session-based security information includes the steps of monitoring user behavior between an enactor and an entity; detecting user behavior data associated with the user behavior; generating a session using the user behavior data, the session relating to an entity discrete interaction of the enactor; and, associating the session and the session-based security information with the user profile.Type: GrantFiled: May 1, 2020Date of Patent: February 15, 2022Assignee: Forcepoint, LLCInventors: Richard A. Ford, Ann Irvine, Russell Snyder, Adam Reeve
-
Patent number: 11245723Abstract: Disclosed herein is technology that detects potentially deceptive URI (Uniform Resource Identifier) of a homograph attack (e.g., an Internationalized Domain Name (IDN) homograph attack). In one or more implementations, the detection may be accomplished, at least in part, by assessing the likelihood that all of the characters in the URI (e.g., domain name) were typed on a keyboard using a single keyboard map. This Abstract is submitted with the understanding that it will not be used to interpret or limit the scope or meaning of the claims.Type: GrantFiled: November 2, 2018Date of Patent: February 8, 2022Assignee: Forcepoint, LLCInventor: Luke Somerville
-
Patent number: 11244070Abstract: A method, system and computer-usable medium for adaptively remediating multivariate risk, comprising: detecting a violation of a multivariate security policy, the multivariate security policy comprising a plurality of variables; identifying a variable from the plurality of variables associated with a cause of the violation; associating an entity with the variable associated with the cause of the violation; and, adaptively remediating a risk associated with the entity.Type: GrantFiled: May 1, 2020Date of Patent: February 8, 2022Assignee: Forcepoint, LLCInventors: Richard A. Ford, Ann Irvine, Adam Reeve
-
Patent number: 11223646Abstract: A system, method, and computer-readable medium are disclosed for performing a security operation. The security operation includes: monitoring an entity, the monitoring observing at least one electronically-observable data source; deriving an observable based upon the monitoring of the electronically-observable data source; identifying a security related activity, the security related activity being based upon the observable from the electronic data source, the security related activity comprising a concerning behavior, the concerning behavior comprising a security related activity of analytic utility; analyzing the security related activity, the analyzing the security related activity being based upon the concerning behavior; and, performing a security operation in response to the analyzing the security related activity.Type: GrantFiled: April 30, 2020Date of Patent: January 11, 2022Assignee: Forcepoint, LLCInventors: Margaret Cunningham, Clifford Charles Wright
-
Publication number: 20220006782Abstract: A method for filtering data packets at a firewall system is disclosed that includes receiving a data packet having a plurality of fields at a processor, and determining whether a precondition exists, where an action is associated the precondition. The action associated with the precondition is performed if it is determined that the precondition exists. The data packet is processed using a plurality of rules if it is determined that the precondition does not exist for the one or more of the plurality of fields. A user associated with the data packet is identified, and it is determined whether one or more rules are stored in a cache for one or more of a plurality of groups associated with the user. The data packet is processed using the one or more rules stored in the cache if present.Type: ApplicationFiled: September 20, 2021Publication date: January 6, 2022Applicant: Forcepoint LLCInventor: Kari Nurmela
-
Publication number: 20210409257Abstract: A method for migrating a data schema comprising combining a first deterministic finite automaton with a second deterministic finite automaton to generate a modified deterministic finite automation. Identifying a state of the modified deterministic finite automaton without computed followers. Computing a new vector of original states for each state of the modified deterministic finite automaton corresponding to the identified state.Type: ApplicationFiled: September 13, 2021Publication date: December 30, 2021Applicant: Forcepoint LLCInventor: Kari J. Nurmela
-
Patent number: 11212259Abstract: A method, system, and computer-usable medium are disclosed for performing packet processing of network traffic on a master security device of a plurality of security devices, such packet processing including connection tracking for the network traffic, and offloading packet inspection of the network traffic to one or more slave security devices of the plurality of security devices.Type: GrantFiled: February 9, 2018Date of Patent: December 28, 2021Assignee: Forcepoint LLCInventors: Mika Lansirinne, Valtteri Rahkonen, Pekka Riikonen
-
Patent number: 11212191Abstract: A system for network configuration, comprising a graphic user interface system operating on a first processor and configured to allow a user to select one or more hardware infrastructure components and one or more software infrastructure components for use with a first infrastructure. A configuration recording system operating on a second processor and configured to receive two or more objects associated with each of the one or more hardware infrastructure components and each of the one or more software infrastructure components and to store the two or more objects in a template.Type: GrantFiled: January 7, 2020Date of Patent: December 28, 2021Assignee: FORCEPOINT LLCInventor: Lauri Matti Vihervuori