Patents Examined by Brandon Hoffman
-
Patent number: 12711107Abstract: The present technology provides a versatile content management system that can also support bi-directional synchronization of an organization account. The organization account is maintained as a plurality of root directories that can be mounted under an organization directory top-level folder. The organization directory top-level folder can appear in a user account's view of the organization account, by does not actually exist as a directory in the content management system. The organization directory top-level folder can be a folder created on a client device in which root directories of an organization account are mounted, but the organization directory top-level folder is not a synchronized directory. The organization directory top-level folder gives the appearance of a single directory structure for an organization even though the organization content is actually organized into the plurality of root directories.Type: GrantFiled: July 5, 2024Date of Patent: August 18, 2026Assignee: Dropbox, Inc.Inventors: Pratik Nadagouda, Austin Willis, Frank Wang, Yufei Zou, Jessica Miao, Kashif Nadeem, Owen Collins, Bozhen Lyu, Ken Park, Jay Paroline, Akos Albert
-
Patent number: 12712879Abstract: A method includes receiving, by a first device that is included in a first network and a second network, a request from a second device to join the first network. The method also includes making, by the first device, determinations of whether to transmit the second device a first credential corresponding to the first network and whether to transmit the second device a second credential corresponding to the second network. The method also includes using the determinations as a basis to select, as content for a message, the first credential, the second credential, or an indication that the second device is not allowed on the first network and not allowed on the second network. The method also includes transmitting the message that includes the content to the second device.Type: GrantFiled: October 18, 2023Date of Patent: August 18, 2026Assignee: Roku, Inc.Inventors: David Stern, Greg Garner, Robert Caston Curtis, Carl Sassenrath
-
Patent number: 12705382Abstract: A system for protecting source code from unauthorized access is disclosed. The system is configured to scan the source code and identify code segments, including function code. The system may perform code obfuscation, code separation, and code encryption. The system may extract a first set of code features from the function code. The first set of code features indicates a first task associated with the function code. The system accesses a training dataset comprising a sample code that is associated with a second task and a template code. The system compares the first task with the second task. In response to determining that the first task corresponds to the second task, the system obfuscates the function code with the template code. In response, the system updates the source code to include the obfuscated function code.Type: GrantFiled: April 26, 2024Date of Patent: August 11, 2026Assignee: Bank of America CorporationInventors: Pushkar Taneja, Suryanarayana Adivi, Shailendra Singh, Sunilkumar Sriperambudur
-
Patent number: 12696095Abstract: The present disclosure generally relates to predicting and remediating fraudulent activity associated with a roaming SIM card. Systems described herein involve detecting potential fraud signals associated with a roaming SIM card and applying one or more machine learning models to those signals to generate a fraud prediction. In one or more examples, the potential fraud signals are detected in connection with one or more core network components of a 5G telecommunication network and provide unique insight into the network activities of a user equipment where the roaming SIM card is installed. As such, the systems described herein generate fraud predictions that take into account signals that are not necessarily indicative of fraud by themselves. Once fraud is predicted, the systems described herein execute various remediation actions to correct the fraudulent activities.Type: GrantFiled: June 14, 2024Date of Patent: July 28, 2026Assignee: Microsoft Technology Licensing, LLCInventors: Andrew John Robinson Hodges, Edmund Richard James Pringle, Keith Stuart Wansbrough, Martin George Davidson
-
Patent number: 12694130Abstract: A method, computer program product, and computer system for receiving, by a computing device, an indication that a software component is to be released for delivery to a customer. A predefined and non-modifiable industry-standard security profile may be selected defining one or more security scans to be executed in accordance with at least one of an application-security framework and a secure-development standard. The one or more security scans may be executed against the software component using the predefined and non-modifiable industry-standard security profile to identify one or more vulnerabilities. It may be determined that the one or more vulnerabilities that exceeds a remediation threshold has been remediated.Type: GrantFiled: November 7, 2025Date of Patent: July 28, 2026Assignee: Truist BankInventor: Brian Matthew White
-
Patent number: 12688306Abstract: Embodiments herein include generating a safe copy of a first control block for an operating system, recording the safe copy in memory, initiating a test of an authorized service associated with the operating system, identifying a vulnerability for the authorized service that includes comparing a state of the first control block after the test of the authorized service with the safe copy recorded in memory, and initiating an action to alleviate the identified vulnerability.Type: GrantFiled: September 11, 2024Date of Patent: July 21, 2026Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Michael Page Kasper, Bryan Childs, Andrew C. M. Hicks, Diane Marie Stamboni, Joshua David Steen
-
Patent number: 12688321Abstract: Provided is a technology for performing secure computation of a k-means method with high accuracy while keeping data secure. The technology includes: centroid table initialization means that sets a table including a set of a share of a cluster ID j and a share of a centroid of a cluster ID j as a j-th record as an initial value of a centroid table; distance table computation means that computes a distance table including a set of a share of a data ID i, the share of the cluster ID j, a share of a distance dij between data of the data ID i and the centroid of the cluster ID j as an M(j?1)+i-th record; cluster ID table computation means that computes a cluster ID table including a set of the share of the data ID i and a share of a cluster ID k(i) of the cluster to which the data of the data ID i belongs as an i-th record; and centroid table computation means that computes the centroid table.Type: GrantFiled: January 11, 2022Date of Patent: July 21, 2026Assignee: NTT, Inc.Inventors: Ibuki Mishina, Dai Ikarashi, Koki Hamada, Ryo Kikuchi
-
Patent number: 12682097Abstract: A platform we call an R-Cloud Data Protection Platform supports the ability to recover anything “as-a-Service” at a specified level of granularity. The approach splits data catalog information between the R-Cloud platform and R-Cloud Modules. It provides the ability to describe every as-a-Service related configuration and data hierarchy, their attributes, associations, relevance to data resilience and the associated methods required to protect and recover the different parts of the service and data. This enables the unique approach to cover all as-a-Service, from the simple ones like Google CloudSQL to the most complex ones having millions of dynamic and unstructured objects within.Type: GrantFiled: January 30, 2024Date of Patent: July 14, 2026Assignee: HYCU, INC.Inventors: Mladen Brajković, Antal Nemeš, Subbiah Sundaram
-
Patent number: 12683989Abstract: A method for scalable vulnerability detection is provided. The method includes selecting at least a workload of a plurality of workloads deployed in a first cloud environment for inspection, wherein the workload includes a first volume; generating in a remote cluster an inspection node, the inspection node including at least a first disk, wherein the remote cluster provisions inspection nodes in response to demand for inspection nodes; generating a persistent volume (PV) on which the at least a first disk is mounted, wherein the at least a first disk is generated from a snapshot of the first volume; and generating a persistent volume claim (PVC) of the PV for an inspector workload, wherein the inspector workload is configured to inspect the PV for an object, and wherein inspector workloads are provisioned in response to demand for inspector workloads.Type: GrantFiled: May 23, 2024Date of Patent: July 14, 2026Assignee: Wiz, Inc.Inventors: Yarin Miran, Ami Luttwak, Roy Reznik, Avihai Berkovitz, Moran Cohen, Yaniv Shaked, Yaniv Joseph Oliver
-
Patent number: 12682094Abstract: A computer-implemented method, according to one approach, includes using a determined classification of a predetermined file to determine a data compliance ruleset that applies to data of the predetermined file. In response to a determination that the data of the predetermined file is scheduled to be moved and/or replicated from a source node to a target node of an edge computing environment, the determined data compliance ruleset is applied to the data of the predetermined file. The method further includes preventing the scheduled movement and/or replication of the data of the predetermined file from occurring, in response to a determination that the scheduled movement and/or replication of the data of the predetermined file violates at least one rule of the determined data compliance ruleset.Type: GrantFiled: June 9, 2023Date of Patent: July 14, 2026Assignee: International Business Machines CorporationInventors: Christopher J. Vollmar, Joseph W. Dain, Frank N. Lee, Sandeep Ramesh Patil
-
Patent number: 12676837Abstract: Decrypting synthetic transactions with beacon packets is provided. A probe receives, from a client device, a start beacon packet that identifies a test of a service provided by one or more servers. The probe establishes, responsive to receipt of the start beacon packet, a log for the test. The probe stores, in the log established responsive to the start beacon packet, data packets transmitted between the client device and the one or more servers subsequent to the start beacon packet and encrypted with a key using a security protocol. The probe receives, from the client device, key information used to decrypt the data packets of the test encrypted with the key using the security protocol. The probe provides at least one of the data packets for evaluation or decryption using the key information to determine a performance of the service.Type: GrantFiled: August 26, 2024Date of Patent: July 7, 2026Assignee: NetScout Systems, Inc.Inventors: Bruce Kosbab, Bob Vogt, Paul Alexander Barrett, Anil K. Singhal, Ashwani Singhal, Narendra Byrapuram, Colm Toomey, Connor Monk
-
Patent number: 12676840Abstract: Systems and methods for uses and/or improvements to blockchain and blockchain technology, particularly to provide a scalable solution to the aforementioned security and privacy concerns. As one example, systems and methods are described herein for a double-layer restriction subnet architecture that overcomes the technical limitations of conventional blockchains, whether public or permissioned, and subnets thereof. The double-layer restriction subnet architecture comprises a series of permissioned subnets, which provides both the security/privacy benefits of permissioned blockchains but also the scalability of subnet efficiency.Type: GrantFiled: July 25, 2024Date of Patent: July 7, 2026Assignee: Citigroup Technology, Inc.Inventors: Aharon Baruch Haber, Shobhit Maini, Haiping Choo
-
Patent number: 12670283Abstract: Systems and methods for generating location-based application segments include obtaining transactional data for a plurality of users of an enterprise, wherein the transactional data relates to usage of a plurality of applications by the plurality of users; obtaining location data associated with the plurality of applications; and generating one or more application segments based on the transactional data and the location data. In various embodiments, the location data can be leveraged to alter various application segmentation factor thresholds for adapting the likelihood of applications to be grouped together.Type: GrantFiled: May 6, 2024Date of Patent: June 30, 2026Assignee: Zscaler, Inc.Inventors: Chenhui Hu, Kabir Nagpal
-
Patent number: 12670282Abstract: The Abstract of the Disclosure is provided to allow the reader to quickly identify the nature of the technical disclosure. It is submitted with the understanding that it will not be used to interpret or limit the scope or meaning of the claims. In addition, in the foregoing Detailed Description, it can be seen that various features are grouped together in various examples for the purpose of streamlining the disclosure. This method of disclosure is not to be interpreted as reflecting an intention that any claim requires more features than the claim expressly recites. Rather, as the following claims reflect, inventive subject matter lies in less than all features of a single disclosed example. Thus, the following claims are hereby incorporated into the Detailed Description, with each claim standing on its own as a separately claimed subject matter.Type: GrantFiled: April 29, 2024Date of Patent: June 30, 2026Assignee: Microsoft Technology Licensing, LLCInventors: Mohamed Azmil Macksood, Pedro Miguel Lima De Jesus Vieira, Gjorgji Rankovski
-
Patent number: 12665747Abstract: Training an artificial intelligence model to categorize data by sensitivity and for applying the model to selectively protect sensitive portions of multimodal datasets. Sensitive training data can be obfuscated with synthetic noise or randomized errors to preserve confidentiality while enabling the model to learn patterns correlated with sensitivity. The trained model is validated on labeled data and can be refined as classification standards evolve. In operation, the classifier assigns sensitivity levels to data elements and directs tiered protection. Elements assigned to a higher relative sensitivity classification level are protected using post-quantum key establishment, for example a key encapsulation mechanism, combined with symmetric authenticated encryption of payloads, and associated metadata is authenticated using a post-quantum digital signature scheme. Less sensitive elements can be protected using conventional symmetric encryption for efficiency.Type: GrantFiled: October 22, 2025Date of Patent: June 23, 2026Assignee: University of Central Florida Research Foundation, Inc.Inventor: David Metcalf
-
Method and system for securing SCADA and industrial control software through secure-write operations
Patent number: 12664237Abstract: Systems and methods of executing secure write operations within combined supervisory control and data acquisition (SCADA) and programmable logic controller (PLC) systems including receiving an operator interaction at a user interface of a SCADA system, generating an encoded secure write instruction based on the operator interaction in a tamper-resistant secure format at the SCADA system, transmitting the encoded secure write instruction from the SCADA system to a PLC, extracting an operation instruction comprising an operation and a plurality of operation parameters by decoding the encoded secure write instruction at the PLC, and one of executing the operation instruction and rejecting the operating instruction at the PLC.Type: GrantFiled: September 22, 2025Date of Patent: June 23, 2026Inventor: Vijay Madisetti -
Selectively enabling a joint test action group interface on an engine control for an aircraft engine
Patent number: 12657281Abstract: Examples described herein provide a method that includes providing a joint test action group interface of an engine control, the joint test action group interface being in a disabled state to prevent a device connected to the joint test action group interface from communicating with the engine control. The method further includes detecting whether a control access card is inserted into a port of the engine control. The method further includes, responsive to detecting that the control access card is inserted into the port of the engine control, performing an authentication using a credential stored on the control access card. The method further includes, responsive to successfully completing the authentication, enabling the joint test action group interface of the engine control to enable the device connected to the joint test action group interface to communicate with the engine control.Type: GrantFiled: August 19, 2022Date of Patent: June 16, 2026Assignee: RTX CORPORATIONInventors: Paul A. Adamski, Jayashree Rajagopalan -
Patent number: 12659164Abstract: A computer-implemented method, system, and program product is disclosed for anonymized user authentication that dissociates a user's identify from a report submission after successful authentication. The method authenticates field personnel using organization-specific credentials and one-time passcodes, then establishes mathematically anonymous sessions that permanently dissociate user identity from report submissions. Field compliance data including geolocation, equipment status, environmental conditions, and photographic evidence is captured with complete offline capability. The system generates timestamped cryptographic hashes representing each report and records them immutably on distributed ledger networks, while maintaining full report data in encrypted off-chain storage. The system enables regulatory compliance documentation and litigation defense evidence generation, while maintaining complete reporter anonymity through cryptographic guarantees.Type: GrantFiled: September 5, 2025Date of Patent: June 16, 2026Assignee: Fenris LLCInventor: David G. Mangold
-
Patent number: 12659359Abstract: Embodiments of the present invention provide a method and apparatus for remotely accessing a computer system or network to identify storage devices and to retrieve metadata from the storage devices that are respectively unique to files stored in the storage devices. An agent is executed by the computer system and receives scanning instructions from a server. A scanning tool compares the metadata retrieved from the computer system or network to a database or list of known metadata of known restricted content. Metadata retrieved from the computer system or network that matches metadata from the database or list of known restricted content is flagged and the file associated with the matching metadata is flagged and reported as potentially storing restricted content. During the scanning, restricted content itself is not scanned, not copied, not transferred and not stored.Type: GrantFiled: April 16, 2024Date of Patent: June 16, 2026Inventor: Steve Hummel
-
Patent number: 12657297Abstract: An analysis engine receives data characterizing a prompt for ingestion by a generative artificial intelligence (GenAI) model. The analysis engine, using a prompt injection classifier determines whether the prompt comprises or is indicative of malicious content or otherwise elicits malicious actions. The prompt injection classifier can be trained using a dataset generated by populating benign content and malicious content into a plurality of different prompt attack structures at pre-defined locations. Data characterizing the determination is provided to a consuming application or process. Related apparatus, systems, techniques and articles are also described.Type: GrantFiled: September 17, 2024Date of Patent: June 16, 2026Assignee: HiddenLayer, Inc.Inventors: Kenneth Yeung, Tanner Burns, Kwesi Cappel