Patents Examined by Michael Pyzocha
-
Patent number: 12719685Abstract: A cryptography administration system facilitates secure, user-friendly and auditable cryptography. The system can generate an encrypted data value from raw data values with a user-selected cryptography algorithm. The encrypted data value can comprise a pointer configured to access a location in storage comprising a cryptography key for decrypting the encrypted data value. The system can generate a license comprising one or more permissions of a user to decrypt the encrypted data value. The system can store the license in the location in storage accessible by the pointer of the encrypted data value.Type: GrantFiled: May 3, 2024Date of Patent: August 25, 2026Assignee: Palantir Technologies Inc.Inventors: Mihir Patil, Hugo Dobbelaere, Yeong Wei Wee, Maia Hamin, Piotr Kraus, Yurii Mashtalir, Hussein Farah, Alexander Galimberti, Caterina Wanka, Lukas Czypulovski, Juraj Micko, Nezihe Pehlivan
-
Patent number: 12712916Abstract: A system and method for comprehensive cybersecurity threat assessment of software applications based on the totality of vulnerabilities from all levels of the software supply chain. The system and method comprising analyzing the code and/or operation of a software application to determine components comprising the software, identifying the source of such components, determining vulnerabilities associated with those components, compiling a list of such components, creating a directed graph of relationships between the components and their sources, and evaluating the overall threat associated with the software application based its software supply chain vulnerabilities.Type: GrantFiled: November 30, 2021Date of Patent: August 18, 2026Assignee: QOMPLX LLCInventors: Jason Crabtree, Andrew Sellers
-
Patent number: 12705345Abstract: A method for defending an LLM against a jailbreaking attack includes receiving an input prompt for generating output from the LLM. The method further includes generating N versions of the input prompt, wherein generating each of the N versions includes perturbing the input prompt to generate N perturbed input prompts. The method further includes providing the N perturbed input prompts as input to the LLM, which generates N responses. The method further includes aggregating the responses by estimating a group effect of the perturbed input prompts on the LLM. The method further includes selecting, as output, one of the N responses corresponding to a perturbed input prompt that causes the LLM to generate a response that agrees with the estimated group effect.Type: GrantFiled: October 4, 2024Date of Patent: August 11, 2026Assignee: The Trustees of the University of PennsylvaniaInventors: George J. Pappas, Alexander Beck Robey, Seyed Hamed Hassani, Eric Wong
-
Patent number: 12699812Abstract: A method for monitoring an Integrated Circuit (IC). The method includes decrypting, by the Root-Of-Trust (ROT) module, an identity package that resides in a non-volatile memory of the IC using a secret accessible by the ROT module. The identity package is configured in a decrypted state at the non-volatile memory by use of the secret. The ROT module is configured to discover, based on monitoring data from a sensor that an attack is at least being attempted on a package of the IC. The ROT determines whether a debug package is present in response to the attack. If the debug package is not present, the ROT module is configured to execute a tamper resistance process to prevent the use of the secret by the ROT module and the identity package from being placed or remaining in a decrypted state in the non-volatile memory of the IC.Type: GrantFiled: February 9, 2024Date of Patent: August 4, 2026Assignee: Cisco Technology, Inc.Inventors: Samir Valjibhai Rajgor, Sachin Agarwal, Srirajkumar Sundararaman, Chirag Shroff
-
Patent number: 12701133Abstract: Vulnerable cloud resource dependencies are identified in codebases. A codebase is scanned for references to one or more cloud resources. Untrusted cloud resources are identified by comparing the referenced cloud resources to an inventory of trusted cloud resources. An untrusted cloud resource is detected to be vulnerable to a cyberattack in response to determining that a subdomain of the untrusted cloud resource cannot be resolved to an Internet Protocol (IP) address by a Domain Name System (DNS) server and can be registered with a cloud service provider.Type: GrantFiled: September 12, 2024Date of Patent: August 4, 2026Assignee: Trend Micro IncorporatedInventor: Nitesh Surana
-
Patent number: 12694151Abstract: An example apparatus includes: accessing, by storage interface circuitry, chip information, the chip information corresponding to a semiconductor chip; removing, by at least one processor circuit, redundant information from the chip information to generate deduplicated chip information; classifying, by the at least one processor circuit, the deduplicated chip information into first classified chip information and second classified chip information, the first classified chip information corresponding to a first access permission, the second classified chip information corresponding to a second access permission; and causing, by the at least one processor circuit, storing (block 808) of the first classified chip information in a first classified file in memory and the second classified chip information in a second classified file in the memory.Type: GrantFiled: April 3, 2024Date of Patent: July 28, 2026Assignee: TEXAS INSTRUMENTS INCORPORATEDInventors: J. Paul Austin Carpenter, Kenyan Degles Burnham, Brady Charles Ramsey, Paul Ian Strathdee Marshall, Daniel Lusk
-
Patent number: 12670284Abstract: Systems and methods are provided for sending and receiving encrypted submessages. A method for sending and receiving encrypted submessages includes generating a first submessage comprising a first portion of content stored onto a first computer, wherein the first submessage includes at least two submessage units; generating a second submessage comprising a second portion of the content; encrypting the at least two submessage units to provide at least two encrypted submessage units; transmitting the first submessage, including the at least two encrypted submessage units, to a second computer via a first path; transmitting the second submessage to the second computer via a second path; and transmitting at least two encryption keys to the second computer, wherein each of the at least two encryption keys respectively corresponds to one of each of the at least two encrypted submessage units.Type: GrantFiled: May 15, 2024Date of Patent: June 30, 2026Assignee: United Services Automobile Association (USAA)Inventors: Reynaldo Medina, III, Arthur Smith
-
Patent number: 12664307Abstract: Systems and methods govern bedside AI inference output finalization on a clinical device. A permit rail intercepts an inference request or a user-interface finalization request for an inference episode, obtains an attested device-state vector, a clinical context envelope, and a clinician identity token, and evaluates a policy graph to compute a permit outcome as a permit value or a non-permit value. A user-interface finalization gate at a commit boundary prevents finalization unless the permit outcome corresponds to the permit value; in certain embodiments, an override indicator or attestation satisfying policy is received and incorporated into policy evaluation.Type: GrantFiled: January 7, 2026Date of Patent: June 23, 2026Assignee: Light & Salt LLCInventor: Yong Bok Lee
-
Patent number: 12651068Abstract: A method for updating firmware of an electronic device includes verifying a first firmware certificate using a first public key, based on at least one of the electronic device being supplied power or the electronic device being reset, verifying a first firmware code included in the first firmware image based on a first hash value included in the first firmware certificate, and operating the electronic device using the first firmware code, based on the verifying of the first firmware certificate and the verifying of the first firmware code being successful. The first firmware certificate being included in a first firmware image stored in a memory of the electronic device.Type: GrantFiled: March 8, 2024Date of Patent: June 9, 2026Assignee: SAMSUNG ELECTRONICS CO., LTD.Inventors: Sewon Kim, Kyung-Woo Noh, Subin Seo
-
Patent number: 12639437Abstract: A kernel monitor can be used to mitigate ransomware activity of a host system. In some aspects, a computing system can use the kernel monitor to monitor a set of system calls generated by the host system within a time window to perform a functionality. The kernel monitor can include a respective kernel program monitoring each system call in the set of system calls. The set of system calls can be filtered by the kernel monitor to identify a subset of system calls associated with encrypting a filesystem of the host system. The computing system can determine that the subset of system calls is indicative of ransomware activity associated with the host system based on the subset of system calls exceeding a predefined threshold. Subsequently, the computing system can perform a mitigation operation to mitigate the ransomware activity.Type: GrantFiled: December 6, 2023Date of Patent: May 26, 2026Assignee: Red Hat, Inc.Inventors: Andrea Cosentino, Paolo Antinori
-
Patent number: 12634125Abstract: The invention provides computer-implemented methods for encrypting data, searching ciphertext, and decrypting ciphertext, and data processing apparatuses, computer programs, and computer readable storage media for achieving the same. Encrypting data comprises salting and then encrypting ciphertext, both processes using a respective exclusive OR operation. Decryption is achieved by the same process in reverse. Searching the ciphertext is achieved by generating a modifier and salted search term, before modifying the ciphertext with the modifier and performing a bytewise comparison between the salted search term and the modified ciphertext.Type: GrantFiled: March 11, 2024Date of Patent: May 19, 2026Assignee: Barclays Execution Services LimitedInventor: George French
-
Patent number: 12625688Abstract: A system performs optimized execution of cells of a notebook by pruning certain cells from execution while evaluating a particular cell, even though the particular cell depends on the pruned cells. The system generates a directed acyclic graph. The system transforms code of a target cell to include code of one or more source cells. The system receives a request to execute at least a portion of the notebook comprising a cell from the sequence of cells. The system identifies a subset of cells of the sequence of cells for execution based on the directed acyclic graph. The system determines based on various factors whether a source cell can be excluded from execution of the notebook based on properties of the source cell. If the system determines that the source cell can be excluded, the system executes the subset of cells without the source cell.Type: GrantFiled: March 29, 2024Date of Patent: May 12, 2026Assignee: Hex Technologies Inc.Inventors: Glen Takahashi, Caitlin Royden Colgrove, Dylan McCoy Scott
-
Patent number: 12619794Abstract: A security method for a computer, comprising: providing a security device having a communication connection to the computer and a separate communication connection to an external device; and, at the security device: receiving a message having the computer as the intended destination from the external device; verifying the message; and if the message is verified as legitimate, sending a corresponding message to the computer; or if the message is not verified as legitimate, not sending a corresponding message to the computerType: GrantFiled: January 24, 2024Date of Patent: May 5, 2026Assignee: Raytheon Systems LimitedInventor: Simon Vincent
-
Patent number: 12621155Abstract: Systems, methods, apparatuses, and computer-readable media for secure management of accounts on display devices using a contactless card. An application executing on a display device may receive a request specifying a service provider. The display device may receive a cryptogram generated a contactless card, and transmit the cryptogram to an authentication server. The authentication server may decrypt the cryptogram and generate a virtual account number associated with the contactless card. The authentication server may transmit the virtual account number to the service provider, which may create an account based at least in part on the virtual account number and the decryption of the cryptogram by the authentication server. The display may receive an authentication token generated by the service provider for the account, and access the account created by the service provider based at least in part on the authentication token.Type: GrantFiled: December 20, 2023Date of Patent: May 5, 2026Assignee: Capital One Services, LLCInventors: Jeffrey Rule, Kevin Osborn
-
Patent number: 12615248Abstract: Systems and methods for pairing a point-of-sale device (POS) to a site controller (SC) are provided. The method includes: (1) transmitting, from the POS to the SC, via a legacy communication channel, a start pairing command; (2) generating, via the SC, a one-time password upon receiving the start pairing command; (3) transmitting, via the legacy communication channel, the one-time password from the SC to the POS; (4) transmitting, from the POS to the SC, a host CSR; (5) transmitting, from the SC to the POS, a host certificate, and an SSH-CA public key; (6) transmitting, from the POS to the SC, a user CSR; (7) transmitting, from the SC to the POS, a user certificate; (8) storing, via a memory of the POS, the host certificate, the user certificate, and the SSH-CA public key; and (9) removing keys corresponding to the legacy communication channel from the POS.Type: GrantFiled: October 26, 2022Date of Patent: April 28, 2026Assignee: VeriFone, Inc.Inventors: David Godwin, Robert J. Hutzenbiler
-
Patent number: 12598080Abstract: A charge control device for a vehicle includes: a controller configured to communicate with a charging facility for a charge authentication, the controller storing a first private key corresponding to a first certificate in a first area of a memory, wherein the controller is configured to: generate a second private key and a public key in response to a request from a certificate issuer; store the second private key in a second area of the memory different from the first area; transmit the public key to the certificate issuer to receive a second certificate issued by the certificate issuer; maintain use of the first private key until an installation completion of the second certificate; and use the second private key upon the installation completion.Type: GrantFiled: March 11, 2024Date of Patent: April 7, 2026Assignee: DENSO TEN LIMITEDInventor: Yoshinori Nagaoka
-
Patent number: 12591681Abstract: A firmware verification method for a management system including a control circuit, a first protection circuit, a second protection circuit, a first memory and a second memory. The first memory includes first firmware including first secondary boot firmware and first primary boot firmware. The second memory includes second firmware including second secondary boot firmware and second primary boot firmware.Type: GrantFiled: September 3, 2024Date of Patent: March 31, 2026Assignee: MITAC COMPUTING TECHNOLOGY CORPORATIONInventor: Shu-Chi Ho
-
Patent number: 12568375Abstract: A method for pairing an electronic accessory provided with one or more motion sensors to a household appliance connected to a computer network.Type: GrantFiled: February 21, 2022Date of Patent: March 3, 2026Assignee: ELECTROLUX APPLIANCES AKTIEBOLAGInventor: Igor Perelygin
-
Patent number: 12568366Abstract: The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Accordingly, embodiments herein disclose a method performed by an application function (AF) server, the method comprises receiving, from a terminal, a first request message including an user equipment (UE) service identifier (ID), transmitting, to an authorization server, a second request message for request association information of the terminal, the second request message including a terminal ID, receiving, from the authorization server, the association information of the terminal, in case that the association information is retrieved based on the terminal ID and performing to verify whether the UE service ID is associated with the terminal ID in the association information of the terminal.Type: GrantFiled: November 17, 2022Date of Patent: March 3, 2026Assignee: Samsung Electronics Co., Ltd.Inventors: Rajavelsamy Rajadurai, Nivedya Parambath Sasi, Rohini Rajendran
-
Patent number: 12566837Abstract: A method of manufacturing a multi-chip includes generating a first authentication certificate in a first die using a private key of the first die, verifying the first authentication certificate in a second die using a public key of the first die, generating a second authentication certificate in the second die using a private key of the second die, and verifying the second authentication certificate using a public key of the second die in a third die.Type: GrantFiled: March 25, 2024Date of Patent: March 3, 2026Assignee: SAMSUNG ELECTRONICS CO., LTD.Inventor: Hyungseuk Kim