Patents Assigned to Forcepoint, LLC
  • Patent number: 10999324
    Abstract: A method, system and computer-usable medium are disclosed for enforcing a security policy, comprising: determining when an endpoint device initiates a web transaction with a web server, the endpoint device initiating the web transaction with a web-enabled application; establishing a side channel to a security service when the endpoint device initiates the web transaction with the web-enabled application; performing a categorization and policy enforcement operation via the security service in parallel with initiating the web transaction, the categorization and policy enforcement operation determining a security policy result regarding the web transaction; withholding content resulting from performance of the web transaction until the security policy result is provided by the security service, the content being withheld at the endpoint device; and, releasing the content resulting from the web transaction to the web-enabled application of the endpoint device upon receipt of an affirmative policy result from the
    Type: Grant
    Filed: August 1, 2017
    Date of Patent: May 4, 2021
    Assignee: Forcepoint, LLC
    Inventors: Roman Kleiner, Yuen-Pin Yeap, Jason Wieland
  • Patent number: 10999296
    Abstract: A system, method, and computer-readable medium are disclosed for generating a prepopulated adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: receiving a request to generate prepopulated adaptive trust profiles for a plurality of entities within an organization; accessing adaptive trust profile data, the adaptive trust profile data comprising a plurality of adaptive trust profiles, the plurality of adaptive trust profiles being derived from adaptive trust profiles from a similarly situated organization; identifying an adaptive trust profile relevant to each of the plurality of entities; and, generating a respective adaptive trust profile for each of the plurality of entities using the adaptive trust profile relevant to the entity.
    Type: Grant
    Filed: August 30, 2019
    Date of Patent: May 4, 2021
    Assignee: Forcepoint, LLC
    Inventors: Richard A. Ford, Chad Anson
  • Patent number: 10997295
    Abstract: A system, method, and computer-readable medium are disclosed for generating an adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity; converting the electronically-observable action of the entity to electronic information representing the action of the entity; generating an entity profile based upon the action of the entity; and, using the entity profile to generate the adaptive trust profile.
    Type: Grant
    Filed: May 17, 2019
    Date of Patent: May 4, 2021
    Assignee: Forcepoint, LLC
    Inventors: Richard A. Ford, Chad Anson
  • Patent number: 10999297
    Abstract: A system, method, and computer-readable medium are disclosed for generating a prepopulated adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: receiving a request to generate a prepopulated adaptive trust profile for a target entity; accessing adaptive trust profile data, the adaptive trust profile data comprising a plurality of adaptive trust profiles; identifying an adaptive trust profile relevant to the entity from the plurality of adaptive trust profiles, the adaptive trust profile relevant to the entity comprising at least one substantively similar entity characteristic to an entity characteristic of the target entity; and, generating an adaptive trust profile for the target entity using the adaptive trust profile relevant to the target entity.
    Type: Grant
    Filed: August 30, 2019
    Date of Patent: May 4, 2021
    Assignee: Forcepoint, LLC
    Inventors: Richard A. Ford, Chad Anson
  • Publication number: 20210112040
    Abstract: A method, system, and computer-usable medium are disclosed for: (i) determining if a server response from a server received at a security device and intended for a client includes original encryption key information for encrypting identifying information associated with the server; (ii) if the server response includes original encryption key information for encrypting identifying information associated with the server, determining if a network policy provides for decryption of identifying information associated with the server; and (iii) if the network policy provides for decryption of identifying information associated with the server, replacing the original encryption key information with modified encryption key information associated with the security device and communicating the server response to the client with the modified encryption key information associated with the security device.
    Type: Application
    Filed: October 10, 2019
    Publication date: April 15, 2021
    Applicant: Forcepoint LLC
    Inventors: Olli-Pekka NIEMI, Andrew MORTENSEN, Valtteri RAHKONEN
  • Patent number: 10972740
    Abstract: A method, system and computer-usable medium for performing a bandwidth reduction operation, comprising: receiving a plurality of streams of high-density image frames from a respective plurality of monitored devices; storing the plurality of streams of high-density image frames within a monitored content repository; identifying a subset of the plurality of streams of high-density image frames for increased scrutiny; and, presenting a portion of the subset of the plurality of streams of high-density image frames within a scalable viewport.
    Type: Grant
    Filed: March 6, 2018
    Date of Patent: April 6, 2021
    Assignee: Forcepoint, LLC
    Inventors: Alexander Smith, Kevin Crandell, Mark Price, Natalie McMullen
  • Patent number: 10965647
    Abstract: A method for filtering data packets at a firewall system is disclosed that includes receiving a data packet having a plurality of fields at a processor. Determining with the processor whether a precondition exists for one or more of the plurality of fields, where an action is associated with the precondition. Performing the action associated with the precondition on the data packet with the processor if it is determined that the precondition exists for one or more of the plurality of fields. Processing the data packet using a plurality of rules with the processor if it is determined that the precondition does not exist for the one or more of the plurality of fields.
    Type: Grant
    Filed: November 7, 2018
    Date of Patent: March 30, 2021
    Assignee: FORCEPOINT LLC
    Inventor: Kari Nurmela
  • Patent number: 10949428
    Abstract: A method, system and computer-usable medium for performing a streaming scoring operation, comprising: receiving a stream of events, the stream of events comprising a plurality of events; ingesting the plurality of events; extracting features from the plurality of events to provide extracted features; and, generating a streaming scoring value based upon the extracted features.
    Type: Grant
    Filed: July 12, 2018
    Date of Patent: March 16, 2021
    Assignee: Forcepoint, LLC
    Inventors: Christopher Poirel, William Renner, Eduardo Luiggi, Phillip Bracikowski
  • Patent number: 10943019
    Abstract: A system, method, and computer-readable medium are disclosed for generating an adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: monitoring a plurality of electronically-observable actions of an entity, the plurality of electronically-observable actions of the entity corresponding to a respective plurality of events enacted by the entity, the monitoring comprising monitoring at least one of the plurality of electronically-observable actions via a protected endpoint; converting the plurality of electronically-observable actions of the entity to electronic information representing the plurality of actions of the entity; and generating an adaptive trust profile based upon the action of the entity.
    Type: Grant
    Filed: August 2, 2019
    Date of Patent: March 9, 2021
    Assignee: Forcepoint, LLC
    Inventor: Richard A. Ford
  • Patent number: 10944762
    Abstract: A method, system and computer-usable medium for generating a user behavior profile, comprising: monitoring user interactions between a user and an information handling system; converting the user interactions and the information about the user into electronic information representing the user interactions; generating a unique user behavior profile based upon the electronic information representing the user interactions and the information about the user; storing information relating to the unique user behavior profile within a user behavior profile repository; and, storing information referencing the unique user behavior profile in a user behavior blockchain.
    Type: Grant
    Filed: August 6, 2019
    Date of Patent: March 9, 2021
    Assignee: Forcepoint, LLC
    Inventor: Richard A. Ford
  • Patent number: 10944785
    Abstract: A method, system, and computer-usable medium are disclosed for include receiving a first version of content from a resource, generating a first lightweight fingerprint for the first version of the content, receiving a second version of the content from the same resource, generating a second lightweight fingerprint for the second version of the content, comparing the first lightweight fingerprint to the second lightweight fingerprint to determine changes to a non-injectable section of the content and potentially-injected sections of the content between the first version and the second version, and determining the content to include potentially malicious elements responsive to determining that the non-injectable section of the content have remained substantially static between the first version and the second version and determining that potentially-injected sections of the content has substantially changed between the first version and the second version.
    Type: Grant
    Filed: April 23, 2019
    Date of Patent: March 9, 2021
    Assignee: Forcepoint LLC
    Inventor: Mark Haffenden
  • Patent number: 10936333
    Abstract: A system, for managing application specific configuration data, that receives, from a local server, a standardized configuration object, at a configuration engine, for a configurable entity, generates at least one configuration object file for the configuration entity, wherein the standardized configuration object is generated based on the application specific configuration data according to a system wide metadata specification. The system can further write each configuration object file to a shared memory structure associated with a configuration file of a configurable entity. The system receives the configuration object, compares the configuration object with another standardized configuration object, and interfaces the configuration object with the configuration engine. The interfaced configuration object can be a piece of configuration. The system permits read access to the configuration engine to the configuration object, permits read and write access to the management server to the configuration object.
    Type: Grant
    Filed: February 28, 2018
    Date of Patent: March 2, 2021
    Assignee: FORCEPOINT LLC
    Inventors: Tuomo Mickelsson, Kari Nurmela, Marko Niiranen
  • Patent number: 10938778
    Abstract: A method, system, and computer-usable medium are disclosed for responsive to a connection from a client to a server for establishing communications between the client and the server, store information regarding state of the connection and responsive to receiving a reply from the server to the client, route the reply to the client based on the information regarding the state of the connection.
    Type: Grant
    Filed: May 2, 2018
    Date of Patent: March 2, 2021
    Assignee: Forcepoint LLC
    Inventors: Otto Airamo, Ville Mattila, Tuomo Syvänne
  • Patent number: 10931959
    Abstract: A method, system, and computer-usable medium are usable for receiving a video stream of image frames in a video format, decoding image frames of the video stream from the video format, for each respective frame of the image frames, upon completion of decoding of the respective frame, asynchronously encoding the respective frame into a lossless compression format, and asynchronously streaming all of the respective frames as encoded into the lossless compression format as a resulting video stream for display to a video display device.
    Type: Grant
    Filed: May 9, 2018
    Date of Patent: February 23, 2021
    Assignee: Forcepoint LLC
    Inventors: Mark Price, Jason Clinton, Scott Grimes
  • Publication number: 20210051132
    Abstract: A system for controlling a network, comprising a plurality of host computers configured to communicate over the network. A plurality of server computers configured to provide services to the plurality of host computers. An address allocator operating on one or more processors and configured to implement one or more algorithms that cause a range of addresses to be assigned to each of the server computers, wherein each of the host computers receives one of the addresses for use as part of a service request from the host computer to the server computer.
    Type: Application
    Filed: August 16, 2019
    Publication date: February 18, 2021
    Applicant: Forcepoint LLC
    Inventors: Lawrence B. Huston, III, David James Usher, Olli-Pekka Niemi
  • Publication number: 20210051043
    Abstract: A system for controlling data services, comprising a plurality of host computers configured to communicate over the network and to request a data tunnel. A plurality of server computers configured to provide data tunnel services to the plurality of host computers. An address allocator operating on one or more processors and configured to implement one or more algorithms that cause a range of addresses to be assigned to each of the server computers, wherein each of the host computers receives one of the addresses for use as part of a data tunnel service request from the host computer to the server computer.
    Type: Application
    Filed: August 15, 2019
    Publication date: February 18, 2021
    Applicant: Forcepoint LLC
    Inventor: Lawrence B. Huston, III
  • Publication number: 20210051054
    Abstract: A method for migrating a data schema comprising combining a first deterministic finite automaton with a second deterministic finite automaton to generate a modified deterministic finite automation. Identifying a state of the modified deterministic finite automaton without computed followers. Computing a new vector of original states for each state of the modified deterministic finite automaton corresponding to the identified state.
    Type: Application
    Filed: August 15, 2019
    Publication date: February 18, 2021
    Applicant: Forcepoint LLC
    Inventor: Kari J. Nurmela
  • Patent number: 10915643
    Abstract: A system, method, and computer-readable medium are disclosed for generating an adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: monitoring a plurality of electronically-observable actions of an entity, the plurality of electronically-observable actions of the entity corresponding to a respective plurality of events enacted by the entity, the monitoring comprising monitoring at least one of the plurality of electronically-observable actions via a protected endpoint; converting the plurality of electronically-observable actions of the entity to electronic information representing the plurality of actions of the entity; and generating an adaptive trust profile based upon the action of the entity.
    Type: Grant
    Filed: August 2, 2019
    Date of Patent: February 9, 2021
    Assignee: Forcepoint, LLC
    Inventor: Richard A. Ford
  • Patent number: 10917423
    Abstract: A system, method, and computer-readable medium are disclosed for performing an adaptive trust profile generation operation. The adaptive trust profile generation operation includes: monitoring an electronically-observable action of an entity, the electronically-observable action of the entity corresponding to an event enacted by the entity; converting the electronically-observable action of the entity to electronic information representing the action of the entity; and generating the adaptive trust profile based upon the action of the entity, the adaptive trust profile comprising a plurality of adaptive trust profile components.
    Type: Grant
    Filed: August 2, 2019
    Date of Patent: February 9, 2021
    Assignee: Forcepoint, LLC
    Inventor: Richard A. Ford
  • Patent number: 10915644
    Abstract: A system, method, and computer-readable medium are disclosed for generating an adaptive trust profile via an adaptive trust profile operation. In various embodiments the adaptive trust profile operation includes: monitoring a plurality of electronically-observable actions of an entity, the plurality of electronically-observable actions of the entity corresponding to a respective plurality of events enacted by the entity, the monitoring comprising monitoring at least one of the plurality of electronically-observable actions via a protected endpoint; converting the plurality of electronically-observable actions of the entity to electronic information representing the plurality of actions of the entity; and generating an adaptive trust profile based upon the action of the entity.
    Type: Grant
    Filed: August 2, 2019
    Date of Patent: February 9, 2021
    Assignee: Forcepoint, LLC
    Inventor: Richard A. Ford