Patents Examined by Michael Pyzocha
  • Patent number: 12719685
    Abstract: A cryptography administration system facilitates secure, user-friendly and auditable cryptography. The system can generate an encrypted data value from raw data values with a user-selected cryptography algorithm. The encrypted data value can comprise a pointer configured to access a location in storage comprising a cryptography key for decrypting the encrypted data value. The system can generate a license comprising one or more permissions of a user to decrypt the encrypted data value. The system can store the license in the location in storage accessible by the pointer of the encrypted data value.
    Type: Grant
    Filed: May 3, 2024
    Date of Patent: August 25, 2026
    Assignee: Palantir Technologies Inc.
    Inventors: Mihir Patil, Hugo Dobbelaere, Yeong Wei Wee, Maia Hamin, Piotr Kraus, Yurii Mashtalir, Hussein Farah, Alexander Galimberti, Caterina Wanka, Lukas Czypulovski, Juraj Micko, Nezihe Pehlivan
  • Patent number: 12712916
    Abstract: A system and method for comprehensive cybersecurity threat assessment of software applications based on the totality of vulnerabilities from all levels of the software supply chain. The system and method comprising analyzing the code and/or operation of a software application to determine components comprising the software, identifying the source of such components, determining vulnerabilities associated with those components, compiling a list of such components, creating a directed graph of relationships between the components and their sources, and evaluating the overall threat associated with the software application based its software supply chain vulnerabilities.
    Type: Grant
    Filed: November 30, 2021
    Date of Patent: August 18, 2026
    Assignee: QOMPLX LLC
    Inventors: Jason Crabtree, Andrew Sellers
  • Patent number: 12705345
    Abstract: A method for defending an LLM against a jailbreaking attack includes receiving an input prompt for generating output from the LLM. The method further includes generating N versions of the input prompt, wherein generating each of the N versions includes perturbing the input prompt to generate N perturbed input prompts. The method further includes providing the N perturbed input prompts as input to the LLM, which generates N responses. The method further includes aggregating the responses by estimating a group effect of the perturbed input prompts on the LLM. The method further includes selecting, as output, one of the N responses corresponding to a perturbed input prompt that causes the LLM to generate a response that agrees with the estimated group effect.
    Type: Grant
    Filed: October 4, 2024
    Date of Patent: August 11, 2026
    Assignee: The Trustees of the University of Pennsylvania
    Inventors: George J. Pappas, Alexander Beck Robey, Seyed Hamed Hassani, Eric Wong
  • Patent number: 12699812
    Abstract: A method for monitoring an Integrated Circuit (IC). The method includes decrypting, by the Root-Of-Trust (ROT) module, an identity package that resides in a non-volatile memory of the IC using a secret accessible by the ROT module. The identity package is configured in a decrypted state at the non-volatile memory by use of the secret. The ROT module is configured to discover, based on monitoring data from a sensor that an attack is at least being attempted on a package of the IC. The ROT determines whether a debug package is present in response to the attack. If the debug package is not present, the ROT module is configured to execute a tamper resistance process to prevent the use of the secret by the ROT module and the identity package from being placed or remaining in a decrypted state in the non-volatile memory of the IC.
    Type: Grant
    Filed: February 9, 2024
    Date of Patent: August 4, 2026
    Assignee: Cisco Technology, Inc.
    Inventors: Samir Valjibhai Rajgor, Sachin Agarwal, Srirajkumar Sundararaman, Chirag Shroff
  • Patent number: 12701133
    Abstract: Vulnerable cloud resource dependencies are identified in codebases. A codebase is scanned for references to one or more cloud resources. Untrusted cloud resources are identified by comparing the referenced cloud resources to an inventory of trusted cloud resources. An untrusted cloud resource is detected to be vulnerable to a cyberattack in response to determining that a subdomain of the untrusted cloud resource cannot be resolved to an Internet Protocol (IP) address by a Domain Name System (DNS) server and can be registered with a cloud service provider.
    Type: Grant
    Filed: September 12, 2024
    Date of Patent: August 4, 2026
    Assignee: Trend Micro Incorporated
    Inventor: Nitesh Surana
  • Patent number: 12694151
    Abstract: An example apparatus includes: accessing, by storage interface circuitry, chip information, the chip information corresponding to a semiconductor chip; removing, by at least one processor circuit, redundant information from the chip information to generate deduplicated chip information; classifying, by the at least one processor circuit, the deduplicated chip information into first classified chip information and second classified chip information, the first classified chip information corresponding to a first access permission, the second classified chip information corresponding to a second access permission; and causing, by the at least one processor circuit, storing (block 808) of the first classified chip information in a first classified file in memory and the second classified chip information in a second classified file in the memory.
    Type: Grant
    Filed: April 3, 2024
    Date of Patent: July 28, 2026
    Assignee: TEXAS INSTRUMENTS INCORPORATED
    Inventors: J. Paul Austin Carpenter, Kenyan Degles Burnham, Brady Charles Ramsey, Paul Ian Strathdee Marshall, Daniel Lusk
  • Patent number: 12670284
    Abstract: Systems and methods are provided for sending and receiving encrypted submessages. A method for sending and receiving encrypted submessages includes generating a first submessage comprising a first portion of content stored onto a first computer, wherein the first submessage includes at least two submessage units; generating a second submessage comprising a second portion of the content; encrypting the at least two submessage units to provide at least two encrypted submessage units; transmitting the first submessage, including the at least two encrypted submessage units, to a second computer via a first path; transmitting the second submessage to the second computer via a second path; and transmitting at least two encryption keys to the second computer, wherein each of the at least two encryption keys respectively corresponds to one of each of the at least two encrypted submessage units.
    Type: Grant
    Filed: May 15, 2024
    Date of Patent: June 30, 2026
    Assignee: United Services Automobile Association (USAA)
    Inventors: Reynaldo Medina, III, Arthur Smith
  • Patent number: 12664307
    Abstract: Systems and methods govern bedside AI inference output finalization on a clinical device. A permit rail intercepts an inference request or a user-interface finalization request for an inference episode, obtains an attested device-state vector, a clinical context envelope, and a clinician identity token, and evaluates a policy graph to compute a permit outcome as a permit value or a non-permit value. A user-interface finalization gate at a commit boundary prevents finalization unless the permit outcome corresponds to the permit value; in certain embodiments, an override indicator or attestation satisfying policy is received and incorporated into policy evaluation.
    Type: Grant
    Filed: January 7, 2026
    Date of Patent: June 23, 2026
    Assignee: Light & Salt LLC
    Inventor: Yong Bok Lee
  • Patent number: 12651068
    Abstract: A method for updating firmware of an electronic device includes verifying a first firmware certificate using a first public key, based on at least one of the electronic device being supplied power or the electronic device being reset, verifying a first firmware code included in the first firmware image based on a first hash value included in the first firmware certificate, and operating the electronic device using the first firmware code, based on the verifying of the first firmware certificate and the verifying of the first firmware code being successful. The first firmware certificate being included in a first firmware image stored in a memory of the electronic device.
    Type: Grant
    Filed: March 8, 2024
    Date of Patent: June 9, 2026
    Assignee: SAMSUNG ELECTRONICS CO., LTD.
    Inventors: Sewon Kim, Kyung-Woo Noh, Subin Seo
  • Patent number: 12639437
    Abstract: A kernel monitor can be used to mitigate ransomware activity of a host system. In some aspects, a computing system can use the kernel monitor to monitor a set of system calls generated by the host system within a time window to perform a functionality. The kernel monitor can include a respective kernel program monitoring each system call in the set of system calls. The set of system calls can be filtered by the kernel monitor to identify a subset of system calls associated with encrypting a filesystem of the host system. The computing system can determine that the subset of system calls is indicative of ransomware activity associated with the host system based on the subset of system calls exceeding a predefined threshold. Subsequently, the computing system can perform a mitigation operation to mitigate the ransomware activity.
    Type: Grant
    Filed: December 6, 2023
    Date of Patent: May 26, 2026
    Assignee: Red Hat, Inc.
    Inventors: Andrea Cosentino, Paolo Antinori
  • Patent number: 12634125
    Abstract: The invention provides computer-implemented methods for encrypting data, searching ciphertext, and decrypting ciphertext, and data processing apparatuses, computer programs, and computer readable storage media for achieving the same. Encrypting data comprises salting and then encrypting ciphertext, both processes using a respective exclusive OR operation. Decryption is achieved by the same process in reverse. Searching the ciphertext is achieved by generating a modifier and salted search term, before modifying the ciphertext with the modifier and performing a bytewise comparison between the salted search term and the modified ciphertext.
    Type: Grant
    Filed: March 11, 2024
    Date of Patent: May 19, 2026
    Assignee: Barclays Execution Services Limited
    Inventor: George French
  • Patent number: 12625688
    Abstract: A system performs optimized execution of cells of a notebook by pruning certain cells from execution while evaluating a particular cell, even though the particular cell depends on the pruned cells. The system generates a directed acyclic graph. The system transforms code of a target cell to include code of one or more source cells. The system receives a request to execute at least a portion of the notebook comprising a cell from the sequence of cells. The system identifies a subset of cells of the sequence of cells for execution based on the directed acyclic graph. The system determines based on various factors whether a source cell can be excluded from execution of the notebook based on properties of the source cell. If the system determines that the source cell can be excluded, the system executes the subset of cells without the source cell.
    Type: Grant
    Filed: March 29, 2024
    Date of Patent: May 12, 2026
    Assignee: Hex Technologies Inc.
    Inventors: Glen Takahashi, Caitlin Royden Colgrove, Dylan McCoy Scott
  • Patent number: 12619794
    Abstract: A security method for a computer, comprising: providing a security device having a communication connection to the computer and a separate communication connection to an external device; and, at the security device: receiving a message having the computer as the intended destination from the external device; verifying the message; and if the message is verified as legitimate, sending a corresponding message to the computer; or if the message is not verified as legitimate, not sending a corresponding message to the computer
    Type: Grant
    Filed: January 24, 2024
    Date of Patent: May 5, 2026
    Assignee: Raytheon Systems Limited
    Inventor: Simon Vincent
  • Patent number: 12621155
    Abstract: Systems, methods, apparatuses, and computer-readable media for secure management of accounts on display devices using a contactless card. An application executing on a display device may receive a request specifying a service provider. The display device may receive a cryptogram generated a contactless card, and transmit the cryptogram to an authentication server. The authentication server may decrypt the cryptogram and generate a virtual account number associated with the contactless card. The authentication server may transmit the virtual account number to the service provider, which may create an account based at least in part on the virtual account number and the decryption of the cryptogram by the authentication server. The display may receive an authentication token generated by the service provider for the account, and access the account created by the service provider based at least in part on the authentication token.
    Type: Grant
    Filed: December 20, 2023
    Date of Patent: May 5, 2026
    Assignee: Capital One Services, LLC
    Inventors: Jeffrey Rule, Kevin Osborn
  • Patent number: 12615248
    Abstract: Systems and methods for pairing a point-of-sale device (POS) to a site controller (SC) are provided. The method includes: (1) transmitting, from the POS to the SC, via a legacy communication channel, a start pairing command; (2) generating, via the SC, a one-time password upon receiving the start pairing command; (3) transmitting, via the legacy communication channel, the one-time password from the SC to the POS; (4) transmitting, from the POS to the SC, a host CSR; (5) transmitting, from the SC to the POS, a host certificate, and an SSH-CA public key; (6) transmitting, from the POS to the SC, a user CSR; (7) transmitting, from the SC to the POS, a user certificate; (8) storing, via a memory of the POS, the host certificate, the user certificate, and the SSH-CA public key; and (9) removing keys corresponding to the legacy communication channel from the POS.
    Type: Grant
    Filed: October 26, 2022
    Date of Patent: April 28, 2026
    Assignee: VeriFone, Inc.
    Inventors: David Godwin, Robert J. Hutzenbiler
  • Patent number: 12598080
    Abstract: A charge control device for a vehicle includes: a controller configured to communicate with a charging facility for a charge authentication, the controller storing a first private key corresponding to a first certificate in a first area of a memory, wherein the controller is configured to: generate a second private key and a public key in response to a request from a certificate issuer; store the second private key in a second area of the memory different from the first area; transmit the public key to the certificate issuer to receive a second certificate issued by the certificate issuer; maintain use of the first private key until an installation completion of the second certificate; and use the second private key upon the installation completion.
    Type: Grant
    Filed: March 11, 2024
    Date of Patent: April 7, 2026
    Assignee: DENSO TEN LIMITED
    Inventor: Yoshinori Nagaoka
  • Patent number: 12591681
    Abstract: A firmware verification method for a management system including a control circuit, a first protection circuit, a second protection circuit, a first memory and a second memory. The first memory includes first firmware including first secondary boot firmware and first primary boot firmware. The second memory includes second firmware including second secondary boot firmware and second primary boot firmware.
    Type: Grant
    Filed: September 3, 2024
    Date of Patent: March 31, 2026
    Assignee: MITAC COMPUTING TECHNOLOGY CORPORATION
    Inventor: Shu-Chi Ho
  • Patent number: 12568375
    Abstract: A method for pairing an electronic accessory provided with one or more motion sensors to a household appliance connected to a computer network.
    Type: Grant
    Filed: February 21, 2022
    Date of Patent: March 3, 2026
    Assignee: ELECTROLUX APPLIANCES AKTIEBOLAG
    Inventor: Igor Perelygin
  • Patent number: 12568366
    Abstract: The disclosure relates to a 5G or 6G communication system for supporting a higher data transmission rate. Accordingly, embodiments herein disclose a method performed by an application function (AF) server, the method comprises receiving, from a terminal, a first request message including an user equipment (UE) service identifier (ID), transmitting, to an authorization server, a second request message for request association information of the terminal, the second request message including a terminal ID, receiving, from the authorization server, the association information of the terminal, in case that the association information is retrieved based on the terminal ID and performing to verify whether the UE service ID is associated with the terminal ID in the association information of the terminal.
    Type: Grant
    Filed: November 17, 2022
    Date of Patent: March 3, 2026
    Assignee: Samsung Electronics Co., Ltd.
    Inventors: Rajavelsamy Rajadurai, Nivedya Parambath Sasi, Rohini Rajendran
  • Patent number: 12566837
    Abstract: A method of manufacturing a multi-chip includes generating a first authentication certificate in a first die using a private key of the first die, verifying the first authentication certificate in a second die using a public key of the first die, generating a second authentication certificate in the second die using a private key of the second die, and verifying the second authentication certificate using a public key of the second die in a third die.
    Type: Grant
    Filed: March 25, 2024
    Date of Patent: March 3, 2026
    Assignee: SAMSUNG ELECTRONICS CO., LTD.
    Inventor: Hyungseuk Kim