Patents by Inventor Alemeshet Yismaw Alemu

Alemeshet Yismaw Alemu has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11368361
    Abstract: A system and method for providing stringent tamper resistant protection against changes to key system security features. The tamper protection is configured such that any changes to the policy can only occur from a configuration manager console, thereby preventing local device admin users or other malicious actors from altering the setting. Thus, tamper protection locks the selected service and prevents security settings from being changed through third-party apps and methods. When a system administrator enables the feature for an enterprise's workstations, only administrators will be able to change the service settings across a company's computers. The tamper protection policy is digitally signed in the backend before being deployed to endpoints, and the endpoint verifies the validity and intent of the policy, establishing that it is a signed package that only security operations personnel with the necessary administrator rights can control.
    Type: Grant
    Filed: June 5, 2020
    Date of Patent: June 21, 2022
    Assignee: Microsoft Technology Licensing, LLC
    Inventors: Matthew Ronald Shadbolt, Michael Joseph Healy, Shweta Jha, Gokhan Ozhan, Adrian Mihail Marinescu, Alemeshet Yismaw Alemu, Karthik Selvaraj, Milind Amrutrao Pawar, Vladimir Soroka, Hayk Hovsepyan, Chaohong Ou, Patanjal Digant Vyas, David Torosyan
  • Publication number: 20210385129
    Abstract: A system and method for providing stringent tamper resistant protection against changes to key system security features. The tamper protection is configured such that any changes to the policy can only occur from a configuration manager console, thereby preventing local device admin users or other malicious actors from altering the setting. Thus, tamper protection locks the selected service and prevents security settings from being changed through third-party apps and methods. When a system administrator enables the feature for an enterprise's workstations, only administrators will be able to change the service settings across a company's computers. The tamper protection policy is digitally signed in the backend before being deployed to endpoints, and the endpoint verifies the validity and intent of the policy, establishing that it is a signed package that only security operations personnel with the necessary administrator rights can control.
    Type: Application
    Filed: June 5, 2020
    Publication date: December 9, 2021
    Applicant: MICROSOFT TECHNOLOGY LICENSING, LLC
    Inventors: Matthew Ronald SHADBOLT, Michael Joseph HEALY, Shweta JHA, Gokhan OZHAN, Adrian Mihail MARINESCU, Alemeshet Yismaw ALEMU, Karthik SELVARAJ, Milind Amrutrao PAWAR, Vladimir SOROKA, Hayk HOVSEPYAN, Chaohong OU, Patanjal Digant VYAS, David TOROSYAN
  • Publication number: 20160087993
    Abstract: Selectively wiping data. A method includes identifying a plurality of datasets on a device. The method further includes identifying one or more datasets, on a dataset basis, from among the plurality of datasets that are managed datasets associated with a particular user account by being associated with an account identifier for the particular user account at a data structure external to the device. The managed datasets are associated with a particular user account by being associated with an account identifier for the particular user account. The method further includes receiving an indication that managed data associated with the particular user account should be wiped from the device. The method further includes wiping the one or more datasets that are identified as being managed datasets associated with a particular user account while not wiping datasets from the plurality of datasets that are not associated with the particular user account.
    Type: Application
    Filed: September 19, 2014
    Publication date: March 24, 2016
    Inventors: Meera Jindal, Kristofer Hellick Reierson, Neil Adam Jacobson, Alemeshet Yismaw Alemu, Lidiane Souza Jones
  • Publication number: 20160087863
    Abstract: Determining whether or not a device is managed. A method includes, as part of running a particular application, determining whether or not certain state and/or data (such as a particular specialized font, a particular certificate chain, or particular xml policy setting) is present on the device. When the certain state and/or data is present on the device, the method includes determining that the device is managed, otherwise, determining that the device is not managed.
    Type: Application
    Filed: September 19, 2014
    Publication date: March 24, 2016
    Inventors: Alemeshet Yismaw Alemu, Neil Adam Jacobson, Meera Jindal