Patents Examined by Benjamin A Kaplan
-
Patent number: 12682087Abstract: Techniques for secure communication between an operational technology (OT) network and an information technology (IT) network are described. In one aspect, for secure communication, a data diode comprising a transmitting end and a receiving end to facilitate unidirectional communication between a source network and a destination network is provided. The source and destination network are any one of the OT network and the IT network. Further, a folder-based data exchange module communicatively coupled to the receiving end of the data diode is provided to facilitate exchange of data between the source network and the destination network through one or more files, where the one or more files include data to be communicated between the OT network and the IT network. Further, the folder-based data exchange module comprises a first folder to store files designated for the destination network and a second folder to store files designated for the source network.Type: GrantFiled: October 7, 2024Date of Patent: July 14, 2026Assignee: HONEYWELL INTERNATIONAL INC.Inventors: Atul Bassi, Tarun Gupta, Anubhav Misra
-
Patent number: 12676836Abstract: A system for secure packet recordation in multisource virtual environments includes: a computing system having one or more processor and a network connection for operatively connecting the computing system to a modeling server providing a geometric model. The computing system, upon user navigation action directed to the first modeling server, accesses the first geometric model and causes display a three dimensional virtual environment based. An asset indicium representing a virtual asset of the user and a graphical representation of a secure packet are displayed. Upon a deposit request by the user, the first virtual asset is received into the secure packet. Upon user navigation directed away from the first modeling server, display of the three dimensional virtual environment is terminated, for example as a user explores another environment. In the absence of user attention, a content record is maintained including tabulation of at least the first virtual asset.Type: GrantFiled: August 21, 2024Date of Patent: July 7, 2026Assignee: TRUIST BANKInventor: Barath Jayaraman
-
Patent number: 12671574Abstract: A communication apparatus includes a main system configured to perform first authentication processing and a subsystem configured to perform second authentication processing. The main system includes an authentication control unit configured to control the main system or the subsystem to perform authentication processing for connecting to a network. The main system includes a power saving control unit configured to control the main system to transition to a power saving state from a normal state, in which the main system performs the first authentication processing. The subsystem includes a communication unit configured to transmit and receive data through the network. The subsystem includes an event processing unit configured to, in response to occurrence of a predetermined event relating to connection to the network when the main system is in the power saving state, process the predetermined event without controlling the main system to transition to the normal state.Type: GrantFiled: June 27, 2022Date of Patent: June 30, 2026Assignee: RICOH COMPANY, LTD.Inventors: Yusuke Ugajin, Hiroshi Kato, Hajime Takayama, Shu Yanai
-
Patent number: 12652276Abstract: Aspects of the subject technology include determining an association between a first and second user account that comprises a first condition corresponding to a first action to be performed in association with the first user account and a second condition corresponding to a second action to be performed in association with the second user account. Aspects also include generating a first entry based on the association, receiving a first indication indicating completion the first and/or second actions, generating a second entry based on the first indication, wherein the second entry corresponds to the first and/or second conditions, determining whether the first and second condition of the first entry are satisfied based in part on entries in the data structure that correspond to the first and/or second conditions, and transmitting a second indication that the first entry is complete, in response to determining that the first and second condition are satisfied.Type: GrantFiled: June 12, 2023Date of Patent: June 9, 2026Assignee: Stripe, LLCInventors: Ji Huang, Angelica Schwartz, Stefan Gawrys, Alexander Thiemann, Si Wang, Hongshan Zhou, Justin Ahn, Ken Thai, Yue Bu, Tyler Doss
-
Patent number: 12651070Abstract: A verification system includes: a first verification device that verifies integrity of a first verification target; and a second verification device that has a higher security privilege than the first verification device and verifies integrity of the first verification device.Type: GrantFiled: January 15, 2025Date of Patent: June 9, 2026Assignee: PANASONIC AUTOMOTIVE SYSTEMS CO., LTD.Inventors: Takumaru Nagai, Yoshiharu Imamoto, Kaoru Yokota, Yuishi Torisaki
-
Patent number: 12651268Abstract: A method for embedding an Internet of Things Universal Identifier (IoT UID) into one or more Greenfield devices is provided. The method includes manufacturing one or more Greenfield devices, and generating device property data based at least in part on the one or more Greenfield devices. The method further includes transmitting, to an Internet of Things (IoT) device registrar server, a registration request that includes the device property data. The method further includes interpreting one or more Internet of Things Universal Identifiers (IoT UIDs) generated in response to the transmitting of the registration request. The method further includes embedding the one or more IoT UIDs in the one or more Greenfield devices.Type: GrantFiled: April 15, 2022Date of Patent: June 9, 2026Assignee: Somos, Inc.Inventors: Eduardo Correia da Silva Brazao, Steven Norman Brumer, Ian Michael Klein, Li Kong, Marc Rudloff Plante, Sridhar Ramachandran, Kimberly Tashner Shyu, Robert Janusz Sliwa, Jeffrey Scott Smith, Christopher Anton Wendt, Haofang Yu
-
Patent number: 12647310Abstract: Methods, systems, and devices are described for orchestrating server management in a modern IT network. The described techniques may be implemented to manage any number of networked severs, whether local, remote, or both. Server orchestration may leverage a central, cloud-based management system and/or one or more autonomous agents installed on servers with the network. The autonomous agents may each be registered with the supervisory server and may have awareness of one another.Type: GrantFiled: July 11, 2024Date of Patent: June 2, 2026Assignee: JumpCloud, Inc.Inventors: Rajat Bhargava, James Brown, Christopher Marie
-
Patent number: 12641068Abstract: A PLC includes a storage configured to include a master area and a plurality of user areas corresponding to a plurality of users, a user authenticator that authenticates each user of the plurality of users, and a version controller that causes a first dataset created by the user authenticated by the user authenticator to be stored in the storage and implements version control of the first dataset. The version controller causes the first dataset to be stored in the master area or a user area of the plurality of user areas that corresponds to the user authenticated by the user authenticator, in association with a second dataset that is already stored in the storage and that serves as an immediate parent of the first dataset.Type: GrantFiled: June 20, 2023Date of Patent: May 26, 2026Assignee: MITSUBISHI ELECTRIC CORPORATIONInventor: Weihau Lee
-
Patent number: 12634270Abstract: The present disclosure relates generally to systems and methods for providing dynamic access levels based upon permitted provision of client system data. In particular, proactive blocking of access to protected systems, protected services, or both may be implemented when client system electronic data provision requirements of the protected systems, the protected services, or both are not met.Type: GrantFiled: June 27, 2024Date of Patent: May 19, 2026Assignee: United Services Automobile Association (USAA)Inventors: Bradly Jay Billman, Jennifer Hunt Erickson
-
Patent number: 12625931Abstract: Systems and methods of video password based user authentication via machine learning techniques are disclosed. In one embodiment, an exemplary computer-implemented method may comprise: receiving a request to register a video password from a first user; establishing at least one user-specific authentication criterion for the first user based on first video password data; receiving a login attempt from a second computing device associated with a second user who submits to be the first user, the login attempt comprising second video password data; utilizing a trained video password authentication machine learning model to determine a first comparison result and a second comparison result based on the first and second video password data, and accepting or rejecting the login attempt based on at least one of the first comparison result and the second comparison result.Type: GrantFiled: July 15, 2024Date of Patent: May 12, 2026Assignee: Capital One Services, LLCInventors: Lin Ni Lisa Cheng, Tyler Maiman, Joshua Edwards, Shabnam Kousha, Asher Smith-Rose
-
Patent number: 12621282Abstract: Embodiments of the present invention provide a system for identifying and blocking synthetic media based misappropriation attempts associated with electronic communications. The system is configured for identifying initiation of an authentication request from a user device of a user, monitoring and recording user characteristics via the user device, capturing user environment data of the user, via the user device, analyzing the user characteristics and the user environment data of the user, via an artificial intelligence engine, determining, via the artificial intelligence engine, if the authentication request is a misappropriation attempt based on at least one of the user characteristics and the user environment data, and performing an action comprising authenticating the user based on determining that the authentication request is not a misappropriation attempt or denying authentication of the user based on determining that the authentication request is a misappropriation attempt.Type: GrantFiled: June 3, 2024Date of Patent: May 5, 2026Assignee: BANK OF AMERICA CORPORATIONInventors: Sanjay Lohar, George Anthony Albero, Jinna Kim, Olga Kocharyan, Timothy Scott Murphy, Christopher Perez
-
Patent number: 12621280Abstract: This application provides a communication method and apparatus. The method includes: A first network element receives a first request message from a second network element, where the first request message is used to request to perform a first operation on a first terminal device. The first network element determines, based on the first request message, whether the second network element is authorized to request to perform the first operation on the first terminal device. Whether a network element that sends a request message is authorized to request to perform a related operation is verified, to determine whether the network element is an attacker. This reduces impact on a system service resulting from requests of an attacker and improves system security.Type: GrantFiled: August 21, 2023Date of Patent: May 5, 2026Assignee: HUAWEI TECHNOLOGIES CO., LTD.Inventors: He Li, Ao Lei, Rong Wu
-
Patent number: 12603872Abstract: A central computing platform provides users with control over multi-party information involving third-party services during different stages of a travel journey, or while users are provided with data connectivity via different networks or systems. The central computing platform provides a digital ledger on which the multi-party information is recorded. Recording of the multi-party information, as well as modification thereof, requires authentication of each party as well as input (e.g., approval) by the computing platform. The central computing platform can be communicatively coupled with local networks, such as cellular networks, as well as mobile platforms or in-vehicle connectivity systems to which user devices can be connected. As a result, the central computing platform is involved in generation, recording, modification, and fulfillment of multi-party arrangements between users and third-party services.Type: GrantFiled: July 10, 2023Date of Patent: April 14, 2026Assignee: Panasonic Avionics CorporationInventors: Robert Kasody, Faizalsheriff Kalifullah Sheriff, Saeed Pezeshkfar
-
Patent number: 12598219Abstract: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for computerized security platforms. In some implementations, the security platform obtains a resource transmitted from a first external system to a second external system in response to the first external system receiving a request from a client device to transmit the resource to the second external system. The security platform determines a classification of the resource according to a policy applied to the resource by the first external system. In response to determining the classification of the resource, the security platform determines whether to allow the resource to be transmitted. Either i) in response to determining that the resource is allowed to be transmitted, the security platform permits the resource to be transmitted, or ii) in response to determining that the resource is not allowed to be transmitted, the security platform prevents the resource from being transmitted.Type: GrantFiled: May 21, 2025Date of Patent: April 7, 2026Assignee: AurascapeInventors: Liang Li, Nidhi Shah, Xingsi Zhong, Liang Guo, Jean-Luc Nacif Coelho
-
Patent number: 12587560Abstract: A method implemented by a network device is disclosed to detect and mitigate account takeover attempts. The method includes generating a site profile for a site based on analyzing historical login requests to the site, wherein the site profile for the site includes information regarding legitimate login requests to the site and information regarding attacker login requests to the site, intercepting a login request to the site, determining whether the login request is legitimate for the site based on comparing the login request to the site profile for the site, assigning a risk score to the login request based at least in part on a result of the determination of whether the login request is legitimate for the site, determining a mitigation strategy to apply to the login request based on the risk score assigned to the login request, and causing the mitigation strategy to be applied to the login request.Type: GrantFiled: January 31, 2024Date of Patent: March 24, 2026Assignee: Imperva, Inc.Inventors: Ido Romanov, Aiah Lerner, Dmitriy Litvak, Matan Lion
-
Patent number: 12563017Abstract: According to some embodiments, a method of controlling access to network resources includes: receiving an authentication request from a user device to a core security service; if the user is authenticated, authorizing the user device to connect to a private cloud, and connecting the user device with the private cloud and retrieving user-specific segmented firewall rules stored in the private cloud; routing, through the firewall rules, a request by the user device to access an outer resource; evaluating the request against the firewall rules; if the request meets the firewall rules, routing the request through security measures of the firewall; and if the request does not meet the firewall rules, denying the user device access to the outer resource.Type: GrantFiled: May 13, 2024Date of Patent: February 24, 2026Assignee: UAB 360 ITInventors: Carlos Eliseo Salas Lumbreras, Juta Gurinaviciute
-
Patent number: 12547303Abstract: A system and method for investigating trust scores. A trust score is calculated based on peer transfers, a graphical user interface displays actuatable elements associated with a first peer transfer from the peer transfers, in response to receiving an indication the first actuatable element has been actuated, recalculating the trust score without the first peer transfer.Type: GrantFiled: May 17, 2024Date of Patent: February 10, 2026Assignee: PAYPAL, INC.Inventors: Alex Grigoryan, Avinash Gangadharan, Akshay Peshave, Michael Morgan, Rhys Howell
-
Patent number: 12549606Abstract: Embodiments of this application provide a network security management method and an apparatus. The method includes: receiving, by a first network device, a session request sent by a terminal device, where the session request is used to request establishment of a first session with a first data network, the session request includes first authentication information for the first session, and the first authentication information includes identifier information of the first data network; obtaining, by the first network device, second authentication information for a second session of the terminal device, where the second authentication information includes identifier information of a second data network to which the second session is connected; and if the identifier information of the first data network is the same as the identifier information of the second data network, authorizing the terminal device to establish the first session with the first data network.Type: GrantFiled: January 17, 2024Date of Patent: February 10, 2026Assignee: Huawei International Pte. Ltd.Inventors: Zhongding Lei, Lichun Li, Haiguang Wang, Xin Kang
-
Patent number: 12549338Abstract: The described techniques address issues related to secured communications via asymmetrical data communications, e.g. when one of the secured channels has a higher-bandwidth than the other secured channel. The techniques facilitate the detection of an impending expiration of a cryptographic key used for secured communications prior to its actual expiration and, in response, updating the cryptographic key for that secured channel. The updated cryptographic key for one secured channel may then be transmitted via the other secured channel as part of secured (e.g. encrypted) data communications. The techniques also allow for the use of different cryptographic algorithms per secured channel, different key lengths for the cryptographic keys, and/or different software or hardware solutions to be implemented per secured channel.Type: GrantFiled: May 10, 2024Date of Patent: February 10, 2026Assignee: Infineon Technologies AGInventors: Alexander Zeh, Thomas Liebetrau
-
Patent number: 12549531Abstract: The technology disclosed teaches systems, methods, and media for enabling a user to recover from a loss of one or more authentication factors that are required in order to access a service. A pre-registered helper user is able to participate in the authentication journey on behalf of the user and provide an identity validation of the user in order to successfully authenticate the user in order for an authentication journey server to grant the user access to the service. The technology disclosed further teaches systems, methods, and media obtaining secondary approval for a request to initiate a restricted action during a first active session between a user and a service. A pre-registered supervisor user is able to participate in the authentication journey on behalf of the user and provide a secondary approval for the request in order for an authentication journey server to grant the user access to the service.Type: GrantFiled: November 6, 2023Date of Patent: February 10, 2026Assignee: Ping Identity International, Inc.Inventor: Marcin Zimny