Patents Examined by Benjamin A Kaplan
-
Patent number: 12705025Abstract: Systems and methods are presented herein which are configured to provide access to high quality, verifiable random numbers from entropy sources including quantum entropy sources on-demand through application program interfaces (APIs) and other interfaces. A Randomness as a Service (RaaS) provider system can be configured to host an API offering random numbers from a predetermined selection of entropy types and may offer other selections and/or data such as specific entropy source, health check data associated with the random number, source verification data, etc. A RaaS management system can be configured to make requests to one or more RaaS provider systems for random numbers of specific entropy type(s) and then perform cryptographic functions on random numbers and/or pass random numbers to an end user system.Type: GrantFiled: June 12, 2024Date of Patent: August 11, 2026Assignee: QRYPT, INC.Inventors: Denis Mandich, Christopher Knapp
-
Patent number: 12699623Abstract: System, methods, and machine-readable media may facilitate minimally monitored anomaly source detection based on seasonality. Time series data individually corresponding to entities may be obtained. For each entity or for each cluster of entities, statistical parameter fingerprints may be generated. For each entity or cluster, the statistical parameter fingerprints may be updated using a weighted averaging technique that incorporates newly received time series data. The statistical parameter fingerprints for a given entity or cluster may be compared across the time horizons to detect discrepancies indicative of seasonality. Anomaly detection thresholds may be defined for each time horizon based on the corresponding statistical parameter fingerprints. An anomalous value in the time series data of an entity or cluster may be detected by determining that a value falls outside the anomaly detection threshold for at least one time horizon. Automated interventions may be performed based on a severity assessment.Type: GrantFiled: November 12, 2025Date of Patent: August 4, 2026Assignee: The Huntington National BankInventors: Jason W. Black, Cameron J. Conte, Gregory A. McCracken
-
Patent number: 12701146Abstract: This disclosure relates to systems and methods for managing connected devices and associated network connections. In certain embodiments, trust, privacy, safety, and/or security of information communicated between connected devices may be established in part through use of security associations and/or shared group tokens. In some embodiments, these security associations may be used to form an explicit private network associated with the user. A user may add and/or manage devices included in the explicit private network through management of various security associations associated with the network's constituent devices.Type: GrantFiled: June 28, 2024Date of Patent: August 4, 2026Assignee: Intertrust Technologies CorporationInventors: David P. Maher, Gilles Boccon-Gibod
-
Patent number: 12689654Abstract: Techniques and systems for detecting malicious activity within a network are provided herein. A method for detecting malicious activity within a network may include receiving, by a network-based authentication system, a network transaction. The network-based authentication system may identify a first attribute of the network transaction. The method may also include selecting, by the network-based authentication system, a first learning statistical model and a second learning statistical model from a plurality of models for handling the network transaction. Each of the first learning statistical model and the second learning statistical model may create a likelihood that the network transaction is authentic. The first learning statistical model may calculate a first score and the second learning statistical score may calculate a second score. Based on a comparison of the first score to a first threshold and the second score to a second threshold, the network transaction may be authenticated.Type: GrantFiled: August 12, 2024Date of Patent: July 21, 2026Assignee: The Western Union CompanyInventors: Noel Brandt, Robert Enzaldo, Charles Champion, Brent Lemieux
-
Patent number: 12682087Abstract: Techniques for secure communication between an operational technology (OT) network and an information technology (IT) network are described. In one aspect, for secure communication, a data diode comprising a transmitting end and a receiving end to facilitate unidirectional communication between a source network and a destination network is provided. The source and destination network are any one of the OT network and the IT network. Further, a folder-based data exchange module communicatively coupled to the receiving end of the data diode is provided to facilitate exchange of data between the source network and the destination network through one or more files, where the one or more files include data to be communicated between the OT network and the IT network. Further, the folder-based data exchange module comprises a first folder to store files designated for the destination network and a second folder to store files designated for the source network.Type: GrantFiled: October 7, 2024Date of Patent: July 14, 2026Assignee: HONEYWELL INTERNATIONAL INC.Inventors: Atul Bassi, Tarun Gupta, Anubhav Misra
-
Patent number: 12676836Abstract: A system for secure packet recordation in multisource virtual environments includes: a computing system having one or more processor and a network connection for operatively connecting the computing system to a modeling server providing a geometric model. The computing system, upon user navigation action directed to the first modeling server, accesses the first geometric model and causes display a three dimensional virtual environment based. An asset indicium representing a virtual asset of the user and a graphical representation of a secure packet are displayed. Upon a deposit request by the user, the first virtual asset is received into the secure packet. Upon user navigation directed away from the first modeling server, display of the three dimensional virtual environment is terminated, for example as a user explores another environment. In the absence of user attention, a content record is maintained including tabulation of at least the first virtual asset.Type: GrantFiled: August 21, 2024Date of Patent: July 7, 2026Assignee: TRUIST BANKInventor: Barath Jayaraman
-
Patent number: 12671574Abstract: A communication apparatus includes a main system configured to perform first authentication processing and a subsystem configured to perform second authentication processing. The main system includes an authentication control unit configured to control the main system or the subsystem to perform authentication processing for connecting to a network. The main system includes a power saving control unit configured to control the main system to transition to a power saving state from a normal state, in which the main system performs the first authentication processing. The subsystem includes a communication unit configured to transmit and receive data through the network. The subsystem includes an event processing unit configured to, in response to occurrence of a predetermined event relating to connection to the network when the main system is in the power saving state, process the predetermined event without controlling the main system to transition to the normal state.Type: GrantFiled: June 27, 2022Date of Patent: June 30, 2026Assignee: RICOH COMPANY, LTD.Inventors: Yusuke Ugajin, Hiroshi Kato, Hajime Takayama, Shu Yanai
-
Patent number: 12652276Abstract: Aspects of the subject technology include determining an association between a first and second user account that comprises a first condition corresponding to a first action to be performed in association with the first user account and a second condition corresponding to a second action to be performed in association with the second user account. Aspects also include generating a first entry based on the association, receiving a first indication indicating completion the first and/or second actions, generating a second entry based on the first indication, wherein the second entry corresponds to the first and/or second conditions, determining whether the first and second condition of the first entry are satisfied based in part on entries in the data structure that correspond to the first and/or second conditions, and transmitting a second indication that the first entry is complete, in response to determining that the first and second condition are satisfied.Type: GrantFiled: June 12, 2023Date of Patent: June 9, 2026Assignee: Stripe, LLCInventors: Ji Huang, Angelica Schwartz, Stefan Gawrys, Alexander Thiemann, Si Wang, Hongshan Zhou, Justin Ahn, Ken Thai, Yue Bu, Tyler Doss
-
Patent number: 12651070Abstract: A verification system includes: a first verification device that verifies integrity of a first verification target; and a second verification device that has a higher security privilege than the first verification device and verifies integrity of the first verification device.Type: GrantFiled: January 15, 2025Date of Patent: June 9, 2026Assignee: PANASONIC AUTOMOTIVE SYSTEMS CO., LTD.Inventors: Takumaru Nagai, Yoshiharu Imamoto, Kaoru Yokota, Yuishi Torisaki
-
Patent number: 12651268Abstract: A method for embedding an Internet of Things Universal Identifier (IoT UID) into one or more Greenfield devices is provided. The method includes manufacturing one or more Greenfield devices, and generating device property data based at least in part on the one or more Greenfield devices. The method further includes transmitting, to an Internet of Things (IoT) device registrar server, a registration request that includes the device property data. The method further includes interpreting one or more Internet of Things Universal Identifiers (IoT UIDs) generated in response to the transmitting of the registration request. The method further includes embedding the one or more IoT UIDs in the one or more Greenfield devices.Type: GrantFiled: April 15, 2022Date of Patent: June 9, 2026Assignee: Somos, Inc.Inventors: Eduardo Correia da Silva Brazao, Steven Norman Brumer, Ian Michael Klein, Li Kong, Marc Rudloff Plante, Sridhar Ramachandran, Kimberly Tashner Shyu, Robert Janusz Sliwa, Jeffrey Scott Smith, Christopher Anton Wendt, Haofang Yu
-
Patent number: 12647310Abstract: Methods, systems, and devices are described for orchestrating server management in a modern IT network. The described techniques may be implemented to manage any number of networked severs, whether local, remote, or both. Server orchestration may leverage a central, cloud-based management system and/or one or more autonomous agents installed on servers with the network. The autonomous agents may each be registered with the supervisory server and may have awareness of one another.Type: GrantFiled: July 11, 2024Date of Patent: June 2, 2026Assignee: JumpCloud, Inc.Inventors: Rajat Bhargava, James Brown, Christopher Marie
-
Patent number: 12641068Abstract: A PLC includes a storage configured to include a master area and a plurality of user areas corresponding to a plurality of users, a user authenticator that authenticates each user of the plurality of users, and a version controller that causes a first dataset created by the user authenticated by the user authenticator to be stored in the storage and implements version control of the first dataset. The version controller causes the first dataset to be stored in the master area or a user area of the plurality of user areas that corresponds to the user authenticated by the user authenticator, in association with a second dataset that is already stored in the storage and that serves as an immediate parent of the first dataset.Type: GrantFiled: June 20, 2023Date of Patent: May 26, 2026Assignee: MITSUBISHI ELECTRIC CORPORATIONInventor: Weihau Lee
-
Patent number: 12634270Abstract: The present disclosure relates generally to systems and methods for providing dynamic access levels based upon permitted provision of client system data. In particular, proactive blocking of access to protected systems, protected services, or both may be implemented when client system electronic data provision requirements of the protected systems, the protected services, or both are not met.Type: GrantFiled: June 27, 2024Date of Patent: May 19, 2026Assignee: United Services Automobile Association (USAA)Inventors: Bradly Jay Billman, Jennifer Hunt Erickson
-
Patent number: 12625931Abstract: Systems and methods of video password based user authentication via machine learning techniques are disclosed. In one embodiment, an exemplary computer-implemented method may comprise: receiving a request to register a video password from a first user; establishing at least one user-specific authentication criterion for the first user based on first video password data; receiving a login attempt from a second computing device associated with a second user who submits to be the first user, the login attempt comprising second video password data; utilizing a trained video password authentication machine learning model to determine a first comparison result and a second comparison result based on the first and second video password data, and accepting or rejecting the login attempt based on at least one of the first comparison result and the second comparison result.Type: GrantFiled: July 15, 2024Date of Patent: May 12, 2026Assignee: Capital One Services, LLCInventors: Lin Ni Lisa Cheng, Tyler Maiman, Joshua Edwards, Shabnam Kousha, Asher Smith-Rose
-
Patent number: 12621282Abstract: Embodiments of the present invention provide a system for identifying and blocking synthetic media based misappropriation attempts associated with electronic communications. The system is configured for identifying initiation of an authentication request from a user device of a user, monitoring and recording user characteristics via the user device, capturing user environment data of the user, via the user device, analyzing the user characteristics and the user environment data of the user, via an artificial intelligence engine, determining, via the artificial intelligence engine, if the authentication request is a misappropriation attempt based on at least one of the user characteristics and the user environment data, and performing an action comprising authenticating the user based on determining that the authentication request is not a misappropriation attempt or denying authentication of the user based on determining that the authentication request is a misappropriation attempt.Type: GrantFiled: June 3, 2024Date of Patent: May 5, 2026Assignee: BANK OF AMERICA CORPORATIONInventors: Sanjay Lohar, George Anthony Albero, Jinna Kim, Olga Kocharyan, Timothy Scott Murphy, Christopher Perez
-
Patent number: 12621280Abstract: This application provides a communication method and apparatus. The method includes: A first network element receives a first request message from a second network element, where the first request message is used to request to perform a first operation on a first terminal device. The first network element determines, based on the first request message, whether the second network element is authorized to request to perform the first operation on the first terminal device. Whether a network element that sends a request message is authorized to request to perform a related operation is verified, to determine whether the network element is an attacker. This reduces impact on a system service resulting from requests of an attacker and improves system security.Type: GrantFiled: August 21, 2023Date of Patent: May 5, 2026Assignee: HUAWEI TECHNOLOGIES CO., LTD.Inventors: He Li, Ao Lei, Rong Wu
-
Patent number: 12603872Abstract: A central computing platform provides users with control over multi-party information involving third-party services during different stages of a travel journey, or while users are provided with data connectivity via different networks or systems. The central computing platform provides a digital ledger on which the multi-party information is recorded. Recording of the multi-party information, as well as modification thereof, requires authentication of each party as well as input (e.g., approval) by the computing platform. The central computing platform can be communicatively coupled with local networks, such as cellular networks, as well as mobile platforms or in-vehicle connectivity systems to which user devices can be connected. As a result, the central computing platform is involved in generation, recording, modification, and fulfillment of multi-party arrangements between users and third-party services.Type: GrantFiled: July 10, 2023Date of Patent: April 14, 2026Assignee: Panasonic Avionics CorporationInventors: Robert Kasody, Faizalsheriff Kalifullah Sheriff, Saeed Pezeshkfar
-
Patent number: 12598219Abstract: Methods, systems, and apparatus, including computer programs encoded on computer storage media, for computerized security platforms. In some implementations, the security platform obtains a resource transmitted from a first external system to a second external system in response to the first external system receiving a request from a client device to transmit the resource to the second external system. The security platform determines a classification of the resource according to a policy applied to the resource by the first external system. In response to determining the classification of the resource, the security platform determines whether to allow the resource to be transmitted. Either i) in response to determining that the resource is allowed to be transmitted, the security platform permits the resource to be transmitted, or ii) in response to determining that the resource is not allowed to be transmitted, the security platform prevents the resource from being transmitted.Type: GrantFiled: May 21, 2025Date of Patent: April 7, 2026Assignee: AurascapeInventors: Liang Li, Nidhi Shah, Xingsi Zhong, Liang Guo, Jean-Luc Nacif Coelho
-
Patent number: 12587560Abstract: A method implemented by a network device is disclosed to detect and mitigate account takeover attempts. The method includes generating a site profile for a site based on analyzing historical login requests to the site, wherein the site profile for the site includes information regarding legitimate login requests to the site and information regarding attacker login requests to the site, intercepting a login request to the site, determining whether the login request is legitimate for the site based on comparing the login request to the site profile for the site, assigning a risk score to the login request based at least in part on a result of the determination of whether the login request is legitimate for the site, determining a mitigation strategy to apply to the login request based on the risk score assigned to the login request, and causing the mitigation strategy to be applied to the login request.Type: GrantFiled: January 31, 2024Date of Patent: March 24, 2026Assignee: Imperva, Inc.Inventors: Ido Romanov, Aiah Lerner, Dmitriy Litvak, Matan Lion
-
Patent number: 12563017Abstract: According to some embodiments, a method of controlling access to network resources includes: receiving an authentication request from a user device to a core security service; if the user is authenticated, authorizing the user device to connect to a private cloud, and connecting the user device with the private cloud and retrieving user-specific segmented firewall rules stored in the private cloud; routing, through the firewall rules, a request by the user device to access an outer resource; evaluating the request against the firewall rules; if the request meets the firewall rules, routing the request through security measures of the firewall; and if the request does not meet the firewall rules, denying the user device access to the outer resource.Type: GrantFiled: May 13, 2024Date of Patent: February 24, 2026Assignee: UAB 360 ITInventors: Carlos Eliseo Salas Lumbreras, Juta Gurinaviciute