Patents by Inventor John Goodridge
John Goodridge has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 12664315Abstract: A server device for managing privilege delegation to control execution of commands thereon is described. Execution of a command, according to first privileges, by a remote management (RM) server on the server device is requested from a RM client on a client device. An agent plug-in, chained to a command execution plug-in of the RM server, intercepts the request and forwards related information to an agent service cooperating with an operating system of the server device. The agent service determines whether to execute the command according to second privileges, different from the first privileges and if permitted, delegates the second privileges to the command, and causes, via the agent plug-in chained to the command execution plug-in, the command to be executed according to the second privileges.Type: GrantFiled: May 17, 2022Date of Patent: June 23, 2026Assignee: Avecto LimitedInventors: John Goodridge, Thomas Couser
-
Patent number: 12664271Abstract: A computing device can receive a notification that a process has interacted with the operating system to perform a predetermined operation on the at least one computing device. In response to the notification, the computing device can capture a current access token from the process. The computing device can perform a comparison of the current access token captured from the process against a stored access token. The computing device can determine that an escalation of privilege attack has occurred based on the comparison of the current access token captured from the process against the stored access token.Type: GrantFiled: October 22, 2024Date of Patent: June 23, 2026Assignee: Avecto LimitedInventors: John Goodridge, Thomas Couser
-
Publication number: 20260119717Abstract: A computer device that manages privilege delegation is disclosed. The computing device can insert a custom verb command into a plurality of verb commands corresponding to a file. The computing device can receive a request to execute the custom verb command on the file selected from a context menu for the file, wherein the context menu comprises the plurality of verb commands. The computing device can obtain information related to the request to execute the custom verb command by obtaining a file identifier of the file from the request to create the context menu. The computing device can determine whether to execute the custom verb command on the file based on the information related to the request to execute the custom verb command. The computing device can cause the custom verb command to be executed on the file according to the privileges different from a current user account.Type: ApplicationFiled: December 22, 2025Publication date: April 30, 2026Inventor: John Goodridge
-
Publication number: 20260044630Abstract: A computer device can identify a registry operation requested by a user process. The computer device can perform an evaluation of the registry operation based on at least one registry access rule. The computer device can determine whether to enable access to a particular key in the registry of the operating system to perform the registry operation requested by the user process. The computer device can perform impersonation to gain access to the particular key using an impersonation token in response to determining to enable access.Type: ApplicationFiled: October 15, 2025Publication date: February 12, 2026Inventors: John Goodridge, Ian James McLean
-
Patent number: 12536335Abstract: A computer device that manages privilege delegation is disclosed. The computing device can insert a custom verb command into a plurality of verb commands corresponding to a file. The computing device can intercept a request to execute the custom verb command on the file by intercepting a request to create a context menu. The computer device can obtain information related to the request to execute the custom verb command by obtaining a file identifier of the file from the request to create the context menu. The computer device can determine whether to execute the custom verb command on the file according to second privileges different from the first privileges based on the information related to the request to execute the custom verb command. The computer device can cause the custom verb command to be executed on the file according to the second privileges.Type: GrantFiled: May 17, 2023Date of Patent: January 27, 2026Assignee: Avecto LimitedInventor: John Goodridge
-
Patent number: 12493721Abstract: A computer device that manages privilege delegation is disclosed. The computing device can modify a virtual method table to point to a hooking function associated with an agent plugin. The agent plugin can be configured to intercept requests relating to a file using the hooking function. The computing device can intercept a request in a user account of a logged-in user to execute therein a command on the file according to first privileges assigned thereto. The computing device can obtain information related to the request and forward the information to an agent service cooperating with an operating system. The computing device can determine whether to execute the command on the file in the user account according to second privileges different from the first privileges. The computing device can cause the command to be executed on the file in the user account according to the second privileges.Type: GrantFiled: June 30, 2023Date of Patent: December 9, 2025Assignee: Avecto LimitedInventor: John Goodridge
-
Patent number: 12493720Abstract: A computer device that manages privilege delegation is disclosed. The computing device can insert a particular command into one or more commands corresponding to a file. The computing device can intercept a request to execute the particular command on the file according to first privileges. The computing device can determine to execute the particular command on the file according to second privileges different from the first privileges based on the request to execute the particular command. The computing device can cause the particular command to be executed on the file according to the second privileges.Type: GrantFiled: June 30, 2023Date of Patent: December 9, 2025Assignee: Avecto LimitedInventor: John Goodridge
-
Patent number: 12462064Abstract: A computer device performs operations for managing registry access. The computing device can identify a registry operation requested by a user process. The computing device can perform an evaluation of a registry operation requested by the user process using at least one registry access rule. The computing device can generate a custom message to the user process. The computing device can determine an action based on the evaluation. The action can include one of blocking the registry operation in relation to a particular key in a registry of the operating system, and enabling access to a particular key in the registry of the operating system to perform the requested registry operation.Type: GrantFiled: June 14, 2024Date of Patent: November 4, 2025Assignee: AVECTO LIMITEDInventors: John Goodridge, Ian James McLean
-
Publication number: 20250045390Abstract: A computing device can receive a notification that a process has interacted with the operating system to perform a predetermined operation on the at least one computing device. In response to the notification, the computing device can capture a current access token from the process. The computing device can perform a comparison of the current access token captured from the process against a stored access token. The computing device can determine that an escalation of privilege attack has occurred based on the comparison of the current access token captured from the process against the stored access token.Type: ApplicationFiled: October 22, 2024Publication date: February 6, 2025Inventors: John Goodridge, Thomas Couser
-
Patent number: 12174938Abstract: A computer device, including at least a processor and a memory, can be configured to control process components on a computer device. An agent can intercept a request to instantiate a new process component. The request can originate on the computing device from an instance of a particular process component amongst a set of process components. The agent can determine whether to permit the intercepted request by validating the relationship using a policy with rules as well as and determining a trusted owner is among the set of identified owners. The agent can permit the intercepted if the determination is to permit the intercepted request.Type: GrantFiled: September 15, 2023Date of Patent: December 24, 2024Assignee: Avecto LimitedInventors: John Goodridge, Thomas Couser, James William Maude
-
Patent number: 12153673Abstract: A computing device can capture a current access token of a user process. The computing device can perform a determination of whether the current access token for the user process differs from a particular access token of a parent process of the user process. The computing device can detect whether the user process has been subject to an escalation of privilege attack based on the determination of whether the current access token for the user process differs from the particular access token. The computing device can performing a mitigation action with respect to the user process in response to detecting that the user process has been subject to the escalation of privilege attack.Type: GrantFiled: June 8, 2023Date of Patent: November 26, 2024Assignee: Avecto LimitedInventors: John Goodridge, Thomas Couser
-
Patent number: 12135813Abstract: A computer device for managing privilege delegation to control creation of processes thereon is described. Creation of a process on a computer device is requested according to first privileges. An agent, cooperating with an operating system of the computer device, intercepts the request. The agent determines whether to create the process according to second privileges, different from the first privileges and if permitted, cause the process to be created accordingly. The agent hooks a query provided by the operating system to identify whether a control service is enabled. The agent enquires of the operating system whether to create the process according to the second privileges whereupon the hooked query is invoked. The agent confirms to the operating system that the control service is enabled, such that checks by the operating system are performed as if the operating system were enabled.Type: GrantFiled: October 9, 2023Date of Patent: November 5, 2024Assignee: Avecto LimitedInventors: John Goodridge, Georgina Shippey
-
Publication number: 20240338488Abstract: A computer device performs operations for managing registry access. The computing device can identify a registry operation requested by a user process. The computing device can perform an evaluation of a registry operation requested by the user process using at least one registry access rule. The computing device can generate a custom message to the user process. The computing device can determine an action based on the evaluation. The action can include one of blocking the registry operation in relation to a particular key in a registry of the operating system, and enabling access to a particular key in the registry of the operating system to perform the requested registry operation.Type: ApplicationFiled: June 14, 2024Publication date: October 10, 2024Inventors: John Goodridge, Ian James McLean
-
Patent number: 12039085Abstract: A computer device performs operations for managing registry access. The computing device can determine a set of registry access rules relevant to the user process. The computing device can perform an evaluation of a registry operation requested by the user process using the set of registry access rules. The computing device can determine an action based on the evaluation. The action can include one of blocking the registry operation in relation to a particular key in a registry of the operating system, and enabling access to a particular key in the registry of the operating system to perform the requested registry operation.Type: GrantFiled: June 22, 2023Date of Patent: July 16, 2024Assignee: Avecto LimitedInventors: John Goodridge, Ian James McLean
-
Publication number: 20240037268Abstract: A computer device for managing privilege delegation to control creation of processes thereon is described. Creation of a process on a computer device is requested according to first privileges. An agent, cooperating with an operating system of the computer device, intercepts the request. The agent determines whether to create the process according to second privileges, different from the first privileges and if permitted, cause the process to be created accordingly. The agent hooks a query provided by the operating system to identify whether a control service is enabled. The agent enquires of the operating system whether to create the process according to the second privileges whereupon the hooked query is invoked. The agent confirms to the operating system that the control service is enabled, such that checks by the operating system are performed as if the operating system were enabled.Type: ApplicationFiled: October 9, 2023Publication date: February 1, 2024Inventors: John Goodridge, Georgina Shippey
-
Publication number: 20240004989Abstract: A computer device, including at least a processor and a memory, can be configured to control process components on a computer device. An agent can intercept a request to instantiate a new process component. The request can originate on the computing device from an instance of a particular process component amongst a set of process components. The agent can determine whether to permit the intercepted request by validating the relationship using a policy with rules as well as and determining a trusted owner is among the set of identified owners. The agent can permit the intercepted if the determination is to permit the intercepted request.Type: ApplicationFiled: September 15, 2023Publication date: January 4, 2024Inventors: John Goodridge, Thomas Couser, James William Maude
-
Publication number: 20230342498Abstract: A computer device that manages privilege delegation is disclosed. The computing device can modify a virtual method table to point to a hooking function associated with an agent plugin. The agent plugin can be configured to intercept requests relating to a file using the hooking function. The computing device can intercept a request in a user account of a logged-in user to execute therein a command on the file according to first privileges assigned thereto. The computing device can obtain information related to the request and forward the information to an agent service cooperating with an operating system. The computing device can determine whether to execute the command on the file in the user account according to second privileges different from the first privileges. The computing device can cause the command to be executed on the file in the user account according to the second privileges.Type: ApplicationFiled: June 30, 2023Publication date: October 26, 2023Inventor: John Goodridge
-
Publication number: 20230342497Abstract: A computer device that manages privilege delegation is disclosed. The computing device can insert a particular command into one or more commands corresponding to a file. The computing device can intercept a request to execute the particular command on the file according to first privileges. The computing device can determine to execute the particular command on the file according to second privileges different from the first privileges based on the request to execute the particular command. The computing device can cause the particular command to be executed on the file according to the second privileges.Type: ApplicationFiled: June 30, 2023Publication date: October 26, 2023Inventor: John Goodridge
-
Patent number: 11797664Abstract: A computer device, including at least a processor and a memory, can be configured to control process components on a computer device. An agent can intercept a request to instantiate a new process component in a user account of a logged-in user. The request can originate on the computing device from an instance of a particular process component amongst a set of process components. The user account can be assigned default user privileges by a privilege access management service. The agent can determine whether to permit the intercepted request. The agent can permit the intercepted request if the relationship is validated and if a trusted owner is identified amongst the set of identified owners.Type: GrantFiled: February 24, 2021Date of Patent: October 24, 2023Assignee: Avecto LimitedInventors: John Goodridge, Thomas Couser, James William Maude
-
Patent number: 11797704Abstract: A computing device is disclosed with an agent and operating system executing thereon. The agent can determine that a user account control service is disabled by querying the operating system. In response to determining that the user account control service is disabled, the agent can hook a query provided by the operating system. The agent can receive a request to confirm whether the user account control service is enabled using the query provided by the operating system. The agent can generate a confirmation that the user account control service is enabled. The agent can determine whether to execute a process by performing a privilege check as if the user account control service were enabled based on the confirmation.Type: GrantFiled: November 9, 2021Date of Patent: October 24, 2023Assignee: Avecto LimitedInventors: John Goodridge, Georgina Shippey