Patents by Inventor Nakul Chander

Nakul Chander has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20250209182
    Abstract: A vulnerability with respect to a file in a continuous integration (CI) pipeline can be suppressed according to some aspects described herein. For example, a computing system can determine that the vulnerability is suppressible. In response to determining the vulnerability is suppressible, the computing system can automatically adjust a status of the vulnerability from an observed state that prevents deployment of the file to a suppressed state that allows the deployment of the file. The computing system additionally can determine a security risk of deploying the file. The suppressed state of the vulnerability can exclude the vulnerability from the determination of the security risk. The computing system can deploy the file in the CI pipeline subsequent to automatically adjusting the status of the vulnerability to the suppressed state.
    Type: Application
    Filed: March 10, 2025
    Publication date: June 26, 2025
    Applicant: Red Hat, Inc.
    Inventors: Mandar Darwatkar, Nakul Chander, Saif Chaudhry, Alan Roy, James Scott, Mansur Syed
  • Patent number: 12265629
    Abstract: A vulnerability with respect to an image file in a continuous integration (CI) pipeline can be suppressed according to some aspects described herein. For example, a processor can receive an alert for the vulnerability with the CI pipeline being able to block deployment of the image file in response to the alert. Based on the alert, the processor can determine that the vulnerability of the image file is deferrable. After determining that the vulnerability is deferrable, the processor can automatically adjust a status of the vulnerability from an observed state to a deferred state. The CI pipeline can allow the deployment of the image file based on the status of the vulnerability being in the deferred state. The processor can deploy the image file in the CI pipeline after adjusting the status of the vulnerability to the deferred state.
    Type: Grant
    Filed: December 15, 2022
    Date of Patent: April 1, 2025
    Assignee: Red Hat, Inc.
    Inventors: Mandar Darwatkar, Nakul Chander, Saif Chaudhry, Alan Roy, James Scott, Mansur Syed
  • Publication number: 20240202343
    Abstract: A vulnerability with respect to an image file in a continuous integration (CI) pipeline can be suppressed according to some aspects described herein. For example, a processor can receive an alert for the vulnerability with the CI pipeline being able to block deployment of the image file in response to the alert. Based on the alert, the processor can determine that the vulnerability of the image file is deferrable. After determining that the vulnerability is deferrable, the processor can automatically adjust a status of the vulnerability from an observed state to a deferred state. The CI pipeline can allow the deployment of the image file based on the status of the vulnerability being in the deferred state. The processor can deploy the image file in the CI pipeline after adjusting the status of the vulnerability to the deferred state.
    Type: Application
    Filed: December 15, 2022
    Publication date: June 20, 2024
    Inventors: Mandar Darwatkar, Nakul Chander, Saif Chaudhry, Alan Roy, James Scott, Mansur Syed
  • Patent number: 10432644
    Abstract: Systems and corresponding computer-implemented methods for context-based rule evaluation in an electronic data storage system are described. A request to perform an operation with respect to a resource is received from a client device, with the request including various attributes associated with the client device. At least one set of rules applicable to the operation is identified. The rules can be formed from a combination of primitives arranged to dynamically evaluate attributes associated with the resource and attributes associated with the client device. Based on the evaluation of the rule set(s), an action is identified to be performed with respect to the resource.
    Type: Grant
    Filed: September 27, 2016
    Date of Patent: October 1, 2019
    Assignee: Box, Inc.
    Inventors: Seena Burns, Nakul Chander, Adelbert Chang, Jonathan Shih-Shuo Fan, Divya Jain, Lev Kantorovskiy, Benjamin John Kus, Justin Peng
  • Patent number: 10333936
    Abstract: Techniques are described for separating subdomains as part of a secure login process. For example the subdomains can correspond to an enterprise user or personal user accounts, or both. The login process involves responding to a login request with an assertion, such as for example a redirect based assertion, that includes an encrypted data structure with account and user information necessary for identification of the corresponding subdomain. The encrypted data structure includes browser-, IP address, and user-specific information to thwart a cross-site request forgery (CSRF) security vulnerability, among other things.
    Type: Grant
    Filed: January 24, 2017
    Date of Patent: June 25, 2019
    Assignee: Box, Inc.
    Inventors: Lev Kantorovskiy, Kechen Huang, Nakul Chander, Anil Chaurasia, Benjamin Kus
  • Publication number: 20180212965
    Abstract: Techniques are described for separating subdomains as part of a secure login process. For example the subdomains can correspond to an enterprise user or personal user accounts, or both. The login process involves responding to a login request with an assertion, such as for example a redirect based assertion, that includes an encrypted data structure with account and user information necessary for identification of the corresponding subdomain. The encrypted data structure includes browser-, IP address, and user-specific information to thwart a cross-site request forgery (CSRF) security vulnerability, among other things.
    Type: Application
    Filed: January 24, 2017
    Publication date: July 26, 2018
    Inventors: Lev Kantorovskiy, Kechen Huang, Nakul Chander, Anil Chaurasia, Benjamin Kus
  • Publication number: 20170093867
    Abstract: Systems and corresponding computer-implemented methods for context-based rule evaluation in an electronic data storage system are described. A request to perform an operation with respect to a resource is received from a client device, with the request including various attributes associated with the client device. At least one set of rules applicable to the operation is identified. The rules can be formed from a combination of primitives arranged to dynamically evaluate attributes associated with the resource and attributes associated with the client device. Based on the evaluation of the rule set(s), an action is identified to be performed with respect to the resource.
    Type: Application
    Filed: September 27, 2016
    Publication date: March 30, 2017
    Inventors: Seena Burns, Nakul Chander, Adelbert Chang, Jonathan Shih-Shuo Fan, Divya Jain, Lev Kantorovskiy, Benjamin John Kus, Justin Peng