Patents Examined by Jonathan A Bui
-
Patent number: 12732488Abstract: A server and a device can support secure sessions with both (i) post-quantum cryptography (PQC) key encapsulation mechanisms (KEM) and (ii) session resumption. In an initial secure session, the device and server can mutually generate a first shared secret key K1 from a first KEM based on a device PKI key pair. The device and server can mutually generate a second shared secret key K2 from a second KEM based on a server PKI key pair. The device and server can mutually generate a symmetric ciphering key S2 from both K1 and K2. The server can encrypt an identity for a “pre-shared” secret key (PSK-ID) with S2. The device and server can (i) mutually generate a PSK from both K1 and K2 and (ii) close the initial secure session. The device can transmit a message to resume the session, where the message includes the PSK-ID and a MAC value.Type: GrantFiled: January 6, 2025Date of Patent: September 8, 2026Assignee: ADEIA EMERGING TECHNOLOGIES INC.Inventor: John A. Nix
-
Patent number: 12726343Abstract: A system may include a device that may communicate data associated with the device. The data may include an authentication key generated via a circuit configured to generate the authentication key based on a presence of a signal. The system may also include a sensor device that may output the signal to the device based on a determination of tampering of a housing of the device. The system may also include a server device that may receive a request to publish the data, verify the authentication key, and store the data in a storage component in response to verifying the authentication key.Type: GrantFiled: July 24, 2024Date of Patent: September 1, 2026Assignee: United Services Automobile Association (USAA)Inventors: Benjamin D. Ethington, Soon Fatt Hoo
-
Patent number: 12726475Abstract: A secure inter-cloud authentication system uses time-synchronized tokens for verifying user access requests across multiple cloud providers. By generating an authentication token that includes a timestamp and time-based one-time password (TOTP), synchronized with a Network Time Protocol (NTP) server, the system ensures that each access request is valid only within a specific time window. When a user requests data access, the token is verified by each participating cloud provider against the synchronized timestamp, allowing secure, time-sensitive validation across platforms. An identity provider (IdP) manages token issuance and synchronization, centralizing the authentication process while maintaining precise time alignment across clouds. This time-sync verification reduces the risk of replay attacks and ensures that only legitimate requests are processed, enabling secure, synchronized data access in multi-cloud environments.Type: GrantFiled: January 3, 2025Date of Patent: September 1, 2026Assignee: Bank of America CorporationInventors: Jemlin Lucas, Suryanarayana Adivi, Pushkar Taneja
-
Patent number: 12726355Abstract: A protocol-layer governance system is disclosed for controlling execution of autonomous computational processes at the session layer. The system establishes a non-bypassable enforcement sequence in which behavioral qualification, authorization token issuance, directive propagation, and execution reconciliation occur in a fixed, canonical order. A protocol enforcement boundary ensures that execution requests cannot proceed unless derived from a verified protocol session state, and authorization is bound to behavioral qualification rather than identity or policy inference. The system generates immutable execution lineage records and prevents replay, substitution, privilege escalation, reordering, or parallel execution outside the defined sequence.Type: GrantFiled: February 19, 2026Date of Patent: September 1, 2026Inventor: Peter Meli
-
Patent number: 12717686Abstract: A data storage method and system comprising: at least one encrypted server that comprise a storage volume and configured to run an operating system designated to host data accessible and exposable over a data plane (DP) network, at least one orchestrator configured to interact with each of said server and designated to control a control plane (CP) of said DP network, wherein the orchestrator is configured to manage the encryption by storing at least one key in its database such that the key is stored separately from the server, and wherein the orchestrator is configured to deliver the key to the server using a tunnel without exposing the key to the server.Type: GrantFiled: January 25, 2022Date of Patent: August 25, 2026Assignee: VOLUMEZ TECHNOLOGIES LTD.Inventor: Jonathan Amit
-
Patent number: 12707241Abstract: In an aspect of the disclosure, a method, a computer-readable medium, and an apparatus are provided. The method may be performed by a device. In certain configurations, the device autonomously manages, by a device compute orchestrator (DCO), orchestration of compute resources and network connectivity resources in a network. The device is capable of creating a first cluster for an application executed on the user device and functioning as a master node and a worker node in the first cluster, and joining a second cluster for another application executed on another user device and functioning as a worker node in the second cluster for sharing compute resources and network connectivity resources of the device in the second cluster.Type: GrantFiled: March 26, 2024Date of Patent: August 11, 2026Assignee: MEDIATEK INC.Inventors: Bong Ho Kim, Doru Calin
-
Patent number: 12706983Abstract: It is possible to enable a reception side to easily recognize that metadata is inserted into an audio stream. A metafile including meta information for acquiring an audio stream into which metadata is inserted through a reception device is transmitted. The identification information indicating that the metadata is inserted into the audio stream is inserted into the metafile. At the reception side, it is possible to easily recognize that the metadata is inserted into the audio stream based on the identification information inserted into the metafile.Type: GrantFiled: December 6, 2024Date of Patent: August 11, 2026Assignee: SONY GROUP CORPORATIONInventor: Ikuo Tsukagoshi
-
Patent number: 12705116Abstract: Embodiments of the systems described herein can implement one or more processes remotely delivering customized code to a host application and/or computing device. The host application may be configured as an Application Programming Interface with a customized code processing library that may configure the host application to receive further instructions remotely. The host application may be further configured to execute host code and/or third-party code. The host application may be configured to receive remote application logic, after the host application has been installed on a computing device, and to execute the received application logic to alter the behavior of the host application, such as selectively tracking end user interactions.Type: GrantFiled: December 29, 2023Date of Patent: August 11, 2026Assignee: Tealium, Inc.Inventors: Patrick McWilliams, Jason Lap-Wing Koo, Chad Major Hartman, George Thomas Webster, IV, Son Phi Hoang
-
Patent number: 12696133Abstract: Methods, systems, and devices for wireless communications are described. A user equipment (UE) may receive, at a first modem and from a first device, one or more data packets. Based on an explicit congestion notification (ECN) capable transport (ECT) codepoint indication in respective header portions of the data packets, the UE may route the data packets from the first modem to two or more queues associated with a second modem of the UE. Based on receiving buffer and link state information associated with the second modem, the UE may perform a congestion indication procedure that is associated with congestion of a communication link associated with the UE. The UE may thereafter transmit, to a second device, packet data from the two or more queues associated with the second modem of the UE based on a respective priority associated with the two or more queues.Type: GrantFiled: June 19, 2024Date of Patent: July 28, 2026Assignee: QUALCOMM IncorporatedInventors: Saadallah Kassir, Yih-Hao Lin, Ravi Agarwal, Peerapol Tinnakornsrisuphap
-
Patent number: 12689558Abstract: The present invention is a method for detecting unregistered L2 (Layer-2) switches in a network, comprising of: a first step of collecting switch-port information from L2 switches Sj (1?j) registered in the management table by monitoring apparatus H, wherein, in the management table, the MAC addresses of L2 switches Sj are registered; a second step of detecting MAC addresses M(Zi) (1?j) of one or more unregistered apparatuses existing between L2 switches Sx and Sy registered in the management table based on said switch-port information collected from L2 switches Sx and Sy in the first step, wherein said MAC addresses M(Zi) are detected by identifying the MAC addresses that are contained in the collected switch-port information of both L2 switches Sx and Sy; a third step of identifying MAC addresses M(Xk) (1?k) of one or more L2 switches Xk from among said MAC addresses M(Zi) detected in the second step; a fourth step of registering said MAC addresses M(Xk) identified in the third step in the management tabType: GrantFiled: November 22, 2022Date of Patent: July 21, 2026Inventor: Glenn Mansfield Keeni
-
Patent number: 12683824Abstract: An approach for enhancing class participation is disclosed. The approach comprises establishing a classroom user group including an instructor user and one or more student users. The approach further comprises providing a feed to the one or more student users, wherein the feed relates to a subject designated for the classroom user group. The approach further comprises monitoring for feedback information by each of the one or more student users in response to the feed. The approach also comprises attributing a participation credit to corresponding one or more of the student users based on the feedback information. The approach further comprises generating a participation score for each of the one or more students according to the attributed participation credit.Type: GrantFiled: March 16, 2023Date of Patent: July 14, 2026Assignee: CAMPUSKNOT INC.Inventors: Rahul Gopal, Huey Ngo, Perceus Mody, Hiten Patel
-
Patent number: 12676902Abstract: A conference support device includes: a main conference management unit configured to set a main conference and manage connection of terminal devices participating in the main conference; and an individual conference management unit configured to associate a plurality of individual conferences with the main conference and manage connection of the terminal devices participating in each of the plurality of individual conferences. When first utterance data indicating an utterance content with respect to the main conference has been received from the terminal device, the main conference management unit transmits the first utterance data to the individual conference management unit. When the first utterance data has been received from the main conference management unit, the individual conference management unit transmits the first utterance data to the terminal devices participating in each of the plurality of individual conferences.Type: GrantFiled: September 19, 2024Date of Patent: July 7, 2026Assignee: JVCKENWOOD CorporationInventor: Yuki Miyazaki
-
Patent number: 12676787Abstract: A method of measuring video stream visual stability, the method including receiving a first set of network packets carrying data of the video stream, determining network performance metrics for a session associated with the first set of network packets, retrieving priority fault errors from a packet header of at least one network packet of the first set of the network packets, adding the priority fault errors and the network performance metrics to time series data, and applying a machine learning model to the time series data to obtain a visual stability score for the first set of network packets.Type: GrantFiled: November 4, 2024Date of Patent: July 7, 2026Assignee: iStreamPlanet Co., LLCInventor: Nachiketa Mishra
-
Patent number: 12664241Abstract: An operation control device includes: a brain-information acquiring unit configured to acquire brain information of a user; a determining unit configured to determine whether the brain information acquired by the brain-information acquiring unit includes brain information corresponding to a first command based on a language system, brain information corresponding to a second command based on a system other than the language system, and brain information corresponding to a third command that is a password; and an executing unit configured to execute processing corresponding to the first command when the determining unit determines that the brain information corresponding to the first command, the brain information corresponding to the second command, and the brain information corresponding to the third command are acquired.Type: GrantFiled: March 6, 2024Date of Patent: June 23, 2026Assignee: JVCKENWOOD CorporationInventor: Takayuki Sugahara
-
Patent number: 12665888Abstract: Systems and methods for neutral application programming interfaces are disclosed. In one embodiment, the disclosure relates to a system for neutral application programming interfaces. The system may comprise a device. The device may be configured to receive a request. The request may comprise an outer payload and an inner payload. The device may be further configured to parse the outer payload based on a common definition of the outer payload. The device may be further configured to extract information of an action from the outer payload. The device may be further configured to parse the inner payload based on a definition of the action. The device may be further configured to process the action.Type: GrantFiled: June 12, 2023Date of Patent: June 23, 2026Assignee: UMBRA Technologies Ltd. (UK)Inventor: Joseph E. Rubenstein
-
Patent number: 12659317Abstract: In some embodiments, increasing network security related to accessing network services may be facilitated. In some embodiments, a request to generate a composite hash with composite hash parameters may be received, where the composite hash parameters comprise (i) user information associated with a first user and (ii) a key. Based on the one or more composite hash parameters, a composite hash may be generated. The composite hash may be transmitted to a local auxiliary device, causing storage of the composite hash at the local auxiliary device. A graphical representation of the composite hash may be generated, and the graphical representation may be transmitted to a user device, where the graphical representation enables access to one or more network resources related to the user information associated with the first user.Type: GrantFiled: July 6, 2023Date of Patent: June 16, 2026Assignee: Capital One Services, LLCInventors: Paul Warner, Sam Walczak, Nikhil Srikanth
-
Patent number: 12651065Abstract: A negotiation evaluation system determines that a target computing system is experiencing a computing system attack. The negotiation evaluation system determines a set of attack characteristics associated with the computing system attack. Based on the set of attack characteristics, a negotiation estimation model generates response value data describing potential responses to the attack. Based on the response value data, a negotiation communication model generates reply text data describing a reply to the computing system attack. The negotiation evaluation system provides the reply text data to a malicious computing system that is associated with the computing system attack.Type: GrantFiled: November 16, 2023Date of Patent: June 9, 2026Assignee: Wells Fargo Bank, N.A.Inventors: Edward Heuser, Jerry Joseph Reynolds
-
Patent number: 12645823Abstract: Techniques for identity domain snapshotting and snapshot consumption using versioning are disclosed. A snapshot of an updated identity domain is received and applied to an identity domain to change the active version of the identity domain from a prior current version to the updated version. The snapshot is consumed by loading data objects in a hierarchical manner into an updated identity domain. While data objects belonging to the snapshot are loaded during consumption of the snapshot, client traffic continues to be served by the prior, non-updated version of the identity domain. Once consumption of the snapshot is completed successfully, the updated version of the identity domain becomes the active version. The prior version is then recorded in a cleanup table denoting that cleanup operations shall be performed for entities related to the data objects and associated with the prior version.Type: GrantFiled: June 24, 2024Date of Patent: June 2, 2026Assignee: Oracle International CorporationInventors: Pranjal Sharma, Guhan Ravi, Hitesh Gupta Tumsi Ramesh
-
Patent number: 12632551Abstract: A collaborative content management system identifies an application installed on one or more client devices that is susceptible to an attack by using the API calls of the application. The collaborative content management system obtains API calls made by the application and derives API call features. The collaborative content management system inputs the API call features into a machine learning model and receives, as output from the model, a determination of whether the set of API calls represents a C2 attack. In some embodiments, the collaborative content management system, responsive to determining that the set of API calls represents a C2 attack, may take a security action.Type: GrantFiled: July 20, 2023Date of Patent: May 19, 2026Assignee: Dropbox, Inc.Inventors: Jason Falivene, Ivo Ivanov, Carlos Fuentes Bermejo
-
Patent number: 12627471Abstract: The present disclosure relates to secure deployment of model weights from a generative artificial intelligence (GenAI) platform to a cloud service. The method includes accessing the model metadata and a set of weights of a GenAI model associated with a GenAI platform. These model weights may be encrypted using a first encryption key that may be provided in the model metadata. These encrypted model weights may be decrypted based on the model metadata by utilizing the first encryption key from the model metadata. Each key may be associated with the specific type of GenAI model. Before storing the model weights from the GenAI platform cloud tenancy to a cloud storage in GenAI home region, the model weights may be encrypted again by utilizing a second encryption key. This encryption by the cloud may enable independent control over the sensitive information during transit and storing.Type: GrantFiled: May 28, 2024Date of Patent: May 12, 2026Assignee: Oracle International CorporationInventors: Ming Fang, Simo Lin, Beiwen Guo, Wei Gao