Patents by Inventor Arnout GROOTVELD

Arnout GROOTVELD has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20220229916
    Abstract: An example method of dynamic privilege management in a computer system includes: receiving a task name at a service configured to launch a process corresponding to the task name. The method also includes determining the process is associated with an elevated security context based on a policy that associates the task name with the elevated security context. The method also includes launching, by the service, the process using the elevated security context such that the process runs with elevated privileges.
    Type: Application
    Filed: January 21, 2021
    Publication date: July 21, 2022
    Inventors: Sisimon SOMAN, Arnout GROOTVELD
  • Patent number: 10325116
    Abstract: An example method of dynamic privilege management in a computer system includes: detecting launch of an application by a user in a login session of a desktop executing on the computer system; determining identification information for the application; evaluating at least one policy that specifies requirements for privilege elevation using the identification information as parametric input; generating a privilege elevation result for the application, the privilege evaluation result including a positive or negative indication of whether the at least one policy permits privilege elevation of a process created for the application within the login session; and elevating privilege of the process in response to the positive indication in the privilege elevation.
    Type: Grant
    Filed: June 30, 2017
    Date of Patent: June 18, 2019
    Assignee: VMware, Inc.
    Inventors: Sisimon Soman, Arnout Grootveld, Arindam Nag, Matt Conover
  • Publication number: 20190005267
    Abstract: An example method of dynamic privilege management in a computer system includes: detecting launch of an application by a user in a login session of a desktop executing on the computer system; determining identification information for the application; evaluating at least one policy that specifies requirements for privilege elevation using the identification information as parametric input; generating a privilege elevation result for the application, the privilege evaluation result including a positive or negative indication of whether the at least one policy permits privilege elevation of a process created for the application within the login session; and elevating privilege of the process in response to the positive indication in the privilege elevation
    Type: Application
    Filed: June 30, 2017
    Publication date: January 3, 2019
    Inventors: Sisimon SOMAN, Arnout GROOTVELD, Arindam NAG, Matt CONOVER