Patents Examined by Thomas A Carnes
-
Patent number: 12682116Abstract: Methods and systems for determining and reacting to trust relationships in a messaging group are described herein. A computing device may detect text associated with a messaging group comprising a plurality of different users. The computing device may process the text to determine at least one topic, then generate a trust graph comprising a plurality of connections between a user and each of the plurality of different users. Each of the plurality of connections may indicate a degree of trust corresponding to the at least one topic. The computing device may determine, based on the trust graph, that a first degree of trust, associated with at least one of the plurality of different users, satisfies a threshold. The computing device may cause output of a notification comprising an identity of the at least one of the plurality of different users.Type: GrantFiled: September 23, 2021Date of Patent: July 14, 2026Inventors: Dan Hu, Zongpeng Qiao, Ke Xu
-
Patent number: 12675589Abstract: A computing system can execute a continuous integration (CI) pipeline for merging a code commit into a software project. The CI pipeline can include CI phases that can output sets of result data. Each CI phase can generate a respective set of result data among the sets of result data. The computing system can determine delay times associated with the sets of result data, each respective set of result data being assigned a corresponding delay time among the delay times. For each respective delay time, the computing system can prevent a set of users from accessing the respective set of result data prior to an expiration of the corresponding delay time. The computing system can also permit the set of users to access the respective set of result data following the expiration of the corresponding delay time.Type: GrantFiled: January 23, 2023Date of Patent: July 7, 2026Assignee: Red Hat, Inc.Inventors: Avraham Talmor, Arie Bregman
-
Patent number: 12671572Abstract: An encryption processing apparatus processes a ciphertext. The ciphertext is a fully homomorphic ciphertext that has, as a plaintext associated with an integer, a value obtained by adding an error with a predetermined variance to a predetermined value and that is able to be subjected to a predetermined operation between integers without being decrypted. The apparatus includes a processor that performs a process including a calculation process of performing a scalar remainder operation on a ciphertext of a dividend based on a first polynomial obtained from a plaintext of a divisor to obtain a new ciphertext corresponding to a remainder.Type: GrantFiled: April 22, 2024Date of Patent: June 30, 2026Assignee: AXELL CORPORATIONInventors: Yusuke Hoshizuki, Kotaro Matsuoka
-
Patent number: 12619693Abstract: A method for user credential authentication includes receiving real-time logs from a blockchain network that is configured to perform an authentication process of a user. The real-time logs are normalized and bucketized to generate processed real-time logs, which are stored in a block and are added to a blockchain. The processed real-time logs are analyzed to identify the plurality of real-time behavioral patterns of the user. A first authentication score is determined by comparing a first real-time behavioral pattern to a respective first historical behavioral pattern. The first authentication score is compared to a first authentication score threshold, which corresponds to the first real-time behavioral pattern and the respective first historical behavioral pattern. In response to the first authentication score being less than the first authentication score threshold, a first instruction is sent to the blockchain network to temporarily stop the authentication process of the user.Type: GrantFiled: October 18, 2022Date of Patent: May 5, 2026Assignee: Bank of America CorporationInventors: Ashok Kumar, Narsing Raj, Siva Kumar Venkata Lakshmi Sai Devulapalli
-
Patent number: 12619753Abstract: Data access requests are grouped into a plurality of clusters according to an activity count within each of a plurality of time periods. Based on a time separating two clusters in the plurality of clusters, a time window in which a data access policy applies is defined. Using the plurality of data access requests, a forecasting model is trained to predict a volume of future data access requests, the training resulting in a trained forecasting model. A data access policy effective during the time window and conditioned on a threshold related to the volume of future data access requests is generated. Responsive to determining that a new data request meets a criterion of the data access policy, processing of the new data request is allowed.Type: GrantFiled: May 10, 2023Date of Patent: May 5, 2026Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Sai Sree Laya Chukkapalli, Shriti Priya, Julian James Stephen, Arjun Natarajan
-
Patent number: 12615281Abstract: Disclosed herein are systems, methods, and processes for a machine learned alert triaging classification (ATC) system that uses machine learning techniques to generate an alert triage classification model that can be trained and deployed in modern security operation centers to optimize alert triaging and cyber threat classification. A training dataset of classified records is obtained. Each classified record in the training dataset includes detection characteristics data of a set of machines and threat classification results produced by performing alert triage classification of detection messages associated with the set of machines. An ATC model is trained using the training dataset according to a machine learning technique. The training tunes the ATC model to classify, based on at least the detection characteristics data, a new detection message associated with a machine from the set of machines as a threat or as not a threat.Type: GrantFiled: August 6, 2024Date of Patent: April 28, 2026Assignee: Rapid7, Inc.Inventor: Carlos Manuel Pastor Sánchez
-
Patent number: 12556566Abstract: The present disclosure provides systems and methods for substantially continuous and dynamic vulnerability scoring. According to the present disclosure, the method includes detecting one or more vulnerabilities. The method includes determining a contextual prioritization score (CPS) for each of the one or more vulnerabilities based on historical data, the historical data including a series of contextual features corresponding to each one of the one or more vulnerabilities. The method may include, in response to detection of an event, determining a partial CPS score by an agent. The method may include, if a new partial CPS is determined, generating an updated CPS based on the CPS and the new partial CPS and transmitting the updated CPS to each of one or more computing devices.Type: GrantFiled: May 11, 2022Date of Patent: February 17, 2026Assignee: Secureworks Corp.Inventors: Serge-Olivier Paquette, Pierre-David Oriol
-
Patent number: 12538130Abstract: Techniques are described herein for running multiple logical secure elements (LSEs) on the same physical secure element (SE) hardware. For example, embodiments may include running multiple logical Subscriber Identification Modules (SIM) cards on the same physical SIM card or universal integrated circuit card (UICC). Additionally or alternatively, embodiments may include running other secure element applications and services on the same SE hardware. The techniques allow for mobile devices users to access multiple security services, which may originate from different security service providers (SSPs), in a secure manner using the same SE hardware without requiring the integration of multiple physical slots on a mobile device or the physical exchange of different cards within the same slot.Type: GrantFiled: September 20, 2022Date of Patent: January 27, 2026Assignee: Oracle International CorporationInventors: Nicolas Michel Raphaël Ponsini, Patrick Van Haver, Sebastian Jürgen Hans
-
Patent number: 12524566Abstract: A method of securely accessing a database with sensitive data, such as the clinical information of patients, by a client in a privacy-preserving manner, including: communicating with the server to obtain tags for specific attribute-value pairs when the client is authorized to make a query; imposing a tag quota per client and restricting tag generation to authorized query terms with valid digital signatures from a third-party authority; storing the tags and their associated query terms in confidence for future queries; sending a combination of tags that define the terms of a conjunctive query over a secure channel to a proxy; receiving from the proxy encrypted coefficients of a polynomial whose roots are indices to the query results; decrypting the encrypted coefficients in a first protocol with the server; calculating the roots of the polynomial based upon the decrypted coefficients and discarding any superfluous roots; obtaining the encrypted records associated with the calculated roots from the proxy; and dType: GrantFiled: August 21, 2020Date of Patent: January 13, 2026Assignee: Koninklijke Philips N.V.Inventors: Yee Him Cheung, Alex Ryan Mankovich
-
Patent number: 12488141Abstract: A computer-implemented method and a distributed computer system for privacy-preserving distributed training of a global neural network model on distributed datasets. The system has data providers communicatively coupled with each having a respective local training dataset and a vector of output labels for training the global model. Further, it has a cryptographic distributed secret key and a corresponding collective cryptographic public key of a multiparty fully homomorphic encryption scheme, with the weights of the global model being encrypted with the collective public key. Each data provider computes and aggregates, for each layer of the global model, encrypted local gradients using the respective local training dataset and output labels, with forward pass and backpropagation using stochastic gradient descent.Type: GrantFiled: August 27, 2020Date of Patent: December 2, 2025Assignee: Ecole Polytechnique Federale De Lausanne (EPFL)Inventors: Sinem Sav, Juan Ramon Troncoso-Pastoriza, Apostolos Pyrgelis, David Froelicher, Joao Gomes De Sa E Sousa, Jean-Philippe Bossuat, Jean-Pierre Hubaux
-
Patent number: 12401525Abstract: An example operation includes one or more of obtaining, by a server, a certificate from an IoT device associated with a vehicle, determining, by the server, the certificate is not a revoked certificate, assigning, by the server, a temporary certificate to the IoT device, and validating, by the server, the temporary certificate.Type: GrantFiled: September 23, 2022Date of Patent: August 26, 2025Assignees: TOYOTA MOTOR NORTH AMERICA, INC., TOYOTA JIDOSHA KABUSHIKI KAISHAInventor: Ismail Thanickel
-
Patent number: 12367524Abstract: Aspects of the disclosure relate to using machine learning to modify account privacy settings. A computing platform may identify initial account settings for an individual of a plurality of individuals. Using a settings optimization model, the computing platform may identify account data and third party data for the individual. Using the settings optimization model, the computing platform may identify discrepancies between the initial account settings for the first individual and account settings for a subset of the plurality of individuals having common characteristics with the individual. Based on the discrepancies, the computing platform may identify settings modifications for the individual, and may determine that a modification of the settings modifications applies to a detected interaction of the individual. The computing platform may direct an enterprise data source to perform the modification, which may cause the enterprise data source to modify the initial account settings based on the modification.Type: GrantFiled: July 27, 2023Date of Patent: July 22, 2025Assignee: Bank of America CorporationInventors: Crystal M. Sundaramoorthy, Elena Kvochko, Albena N. Fairchild, Jinna Kim
-
Patent number: 12353421Abstract: A data analytics system is disclosed that can include a data repository configured to store data for multiple clients, a metadata repository separate from the data store, an access control system, and a policy store. The data analytics system can automatically generate metadata for data in the data repository using a metadata engine, the metadata including technical metadata and usage metadata, and store the metadata in the metadata repository. The data analytics system can obtain a client policy governing access to the data. The data analytics system can receive a request to provide the data, the request including instructions to create a pipeline to provide the data. The data analytics system can authorize, by the access control system, the request using the policy and usage metadata; create the pipeline using the technical metadata; and provide the data using the pipeline.Type: GrantFiled: October 18, 2023Date of Patent: July 8, 2025Assignee: Fidelity Information Services, LLCInventors: Aaron David Colcord, Kevin Richard Mellott, David Vincente Favela, Jeffrey Chee-Keong Neong
-
Systems and methods facilitating interactions between imposter devices and protected content systems
Patent number: 12326935Abstract: Techniques provided herein employ a device monitoring service to provide task to content consumption devices that are steaming digital media from the streaming infrastructure. The tasks, when implemented by the content consumption devices, may reveal differences in task performance between authorized devices, which have the authorization to access the digital media, and imposter devices, which exploit vulnerabilities in the streaming pipeline to access the digital media. In addition, the techniques provided herein may include a machine learning/artificial intelligence model that is trained to recognize authorized and imposter content consumption devices based on their task performance.Type: GrantFiled: August 23, 2022Date of Patent: June 10, 2025Assignee: NBCUniversal Media, LLCInventors: Robert Glenn Deen, Andrea Elaine Avila Weiler -
Patent number: 12277211Abstract: The present disclosure provides systems, methods, and computer-readable media for implementing security polices at software call stack level. In one example, a method includes generating a call stack classification scheme for an application, detecting a call stack during deployment of the application; using the call stack classification scheme during runtime of the application, classifying the detected call stack as one of an authorized call stack or an unauthorized call stack to yield a classification; and applying a security policy based on the classification.Type: GrantFiled: April 25, 2024Date of Patent: April 15, 2025Assignee: Cisco Technology, Inc.Inventors: Ashutosh Kulshreshtha, Andy Sloane, Hiral Shashikant Patel, Uday Krishnaswamy Chettiar, Oliver Kempe, Bharathwaj Sankara Viswanathan, Navindra Yadav
-
Patent number: 12261937Abstract: The present techniques may provide improved processing and functionality of performance of the 128-bit AES Algorithm, which may provide improved power consumption. For example, in an embodiment, an encryption and decryption apparatus may comprise memory storing a current state matrix of an encryption or decryption process and a plurality of multiplexers configured to receive from the memory current elements of the state matrix stored in the memory, perform a cyclic shift on the received elements of the state matrix, and transmit the shifted elements to the memory for storage as a new state matrix.Type: GrantFiled: November 30, 2023Date of Patent: March 25, 2025Assignee: The Board of Regents of the University of Texas SystemInventors: Alekhya Muthineni, Eugene John
-
Patent number: 12229304Abstract: Secure data analytics is provided via a process that identifies sensitive data fields of an initial dataset and mappings between the sensitive data fields and other data fields of the dataset, where analytics processing is to be performed on the initial dataset, then, based on an expectation of data fields, of the initial data set, to be used in performance of the analytics processing and on the identified sensitive data fields, selects and applies a masking method to the initial dataset to mask the sensitive data fields and produce a masked dataset, provides the masked dataset to an analytics provider with a request for the analytics processing, and receives, in response, a generated analytics function, generated based on the masked dataset, that is configured to perform the analytics processing, and invokes the generated analytics function against the initial dataset to perform the analytics processing on the initial dataset.Type: GrantFiled: May 4, 2021Date of Patent: February 18, 2025Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATIONInventors: Indervir Singh Banipal, Shikhar Kwatra, Park Foreman, Caleb Miles
-
Patent number: 12216796Abstract: Aspects of the disclosure relate to information masking. A user device may receive a request to access information that includes personal identifiable information (PII) and retrieve source data comprising the PII. The user device may mask, within the source data and based on a data management policy, the PII, resulting in masked information. The user device may display the masked information. The user device may receive a request to unmask the masked information and unmask the PII, resulting in unmasked PII. The user device may display the unmasked PII and send unmasking event information to a PII footprint modeling platform, which may cause the PIT footprint modeling platform to: log the request to unmask the masked information in an unmasking event log, 2) apply a machine learning model to the unmasking event log to identify malicious events, and 3) trigger remediation actions based on identification of the malicious events.Type: GrantFiled: April 30, 2024Date of Patent: February 4, 2025Assignee: Bank of America CorporationInventors: Allison Zimmer, Brian H. Corr, Charlene L. Ramsue, Scott Nielsen, Thomas G. Frost, Youshika C. Scott
-
Patent number: 12197585Abstract: A processor can be configured to receive data associated with, and/or access to, a computing system's file system structure. The processor can also be configured to determine file patterns, file path patterns and/or graph patterns associated with the computing system. The processor can also be configured to build a graph structure having nodes and edges, the graph structure representing the file patterns, file path patterns and graph patterns, wherein the nodes of the graph structure represent files and attributes of the files and the edges of the graph structure represent connectivity between the files. The processor can also be configured to train, based on the graph structure, a first machine learning model to learn a feature vector associated with a file. The processor can also be configured to train, based on the feature vector, a second machine learning model to identify a vulnerable ransomware target.Type: GrantFiled: December 7, 2020Date of Patent: January 14, 2025Assignee: International Business Machines CorporationInventors: Mu Qiao, Wenqi Wei, Eric Kevin Butler, Divyesh Jadav
-
Patent number: 12197630Abstract: An aspect of the present disclosure relates to one or more data decryption techniques. In embodiments, an input/output operation (IO) stream including one or more encrypted IOs is received by a storage array. Each encrypted IO is assigned an encryption classification. Further, each encrypted IO is processed based on its assigned encryption classification.Type: GrantFiled: April 13, 2021Date of Patent: January 14, 2025Assignee: EMC IP Holding Company LLCInventors: Ramesh Doddaiah, Malak Alshawabkeh