Patents by Inventor Ngoc-Tu CHAU

Ngoc-Tu CHAU has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 12158965
    Abstract: Provided is a design method for sharing a profile in a container environment, including: extracting a sensitive context defined as information related to system-based access control or a sandboxing policy and an insensitive context defined as information unrelated to security for a profile provided by a developer; extracting the sensitive context and the insensitive context for the profile provided by a host; fetching a max configuration for the sensitive and insensitive contexts from each image layer of the developer; and generating a final profile that is applied to deploy the container by merging the host profile with the max configuration fetched from the developer profile. Accordingly, it is possible to provide an optimal environment to developers and hosts by generating the final profile with a hierarchical model using the host profile and the developer profile.
    Type: Grant
    Filed: July 29, 2022
    Date of Patent: December 3, 2024
    Assignee: FOUNDATION OF SOONGSIL UNIVERSITY-INDUSTRY COOPERATION
    Inventors: Soohwan Jung, Ngoc-Tu Chau, Thien-Phuc Doan, Songi Gwak
  • Patent number: 11874919
    Abstract: Provided is a hybrid trusted execution environment based android security framework, an android device equipped with the same and a method of executing a trusted service in the android device. The hybrid trusted execution environment based android security framework includes a hardware resource that comprises a rich execution environment (REE) where an android operating system (OS) runs, and a secure container which implements a virtualized trusted execution environment (VTEE) that processes a security task in the rich execution environment (REE) when an application running on the rich execution environment requests the security task.
    Type: Grant
    Filed: August 31, 2021
    Date of Patent: January 16, 2024
    Assignee: CROWDSTRIKE, INC.
    Inventors: Souhwan Jung, Jaehyeon Yoon, Ngoc-Tu Chau
  • Publication number: 20230015726
    Abstract: Provided is a design method for sharing a profile in a container environment, including: extracting a sensitive context defined as information related to system-based access control or a sandboxing policy and an insensitive context defined as information unrelated to security for a profile provided by a developer; extracting the sensitive context and the insensitive context for the profile provided by a host; fetching a max configuration for the sensitive and insensitive contexts from each image layer of the developer; and generating a final profile that is applied to deploy the container by merging the host profile with the max configuration fetched from the developer profile. Accordingly, it is possible to provide an optimal environment to developers and hosts by generating the final profile with a hierarchical model using the host profile and the developer profile.
    Type: Application
    Filed: July 29, 2022
    Publication date: January 19, 2023
    Inventors: Soohwan JUNG, Ngoc-Tu CHAU, Thien-Phuc DOAN, Songi GWAK
  • Publication number: 20220405385
    Abstract: Provided is a secure container construction device and method executable by an Android application, and a computer-readable recording medium on which a program thereof is recorded, the device and the method being capable of summoning a container at an application level without root privilege while showing performance that is faster than that of a conventional secure container technology, and thus can be implemented without invading an Android framework.
    Type: Application
    Filed: November 27, 2020
    Publication date: December 22, 2022
    Inventors: Souhwan JUNG, Ngoc-Tu CHAU, Jungsoo PARK
  • Publication number: 20220156052
    Abstract: Provided is a software packaging device, which sets an initial environment, migrates software information used by a target software to the initial environment, collects hardware information from an operation system at which the software is installed, applies the hardware information to the initial environment, and generates a software package from the initial environment to which the software information and the hardware information are applied.
    Type: Application
    Filed: September 13, 2021
    Publication date: May 19, 2022
    Inventors: Souhwan Jung, Ngoc-Tu Chau, Hyunseok Shim
  • Publication number: 20210390175
    Abstract: Provided is a hybrid trusted execution environment based android security framework, an android device equipped with the same and a method of executing a trusted service in the android device. The hybrid trusted execution environment based android security framework includes a hardware resource that comprises a rich execution environment (REE) where an android operating system (OS) runs, and a secure container which implements a virtualized trusted execution environment (VTEE) that processes a security task in the rich execution environment (REE) when an application running on the rich execution environment requests the security task.
    Type: Application
    Filed: August 31, 2021
    Publication date: December 16, 2021
    Inventors: Souhwan Jung, Jaehyeon Yoon, Ngoc-Tu Chau
  • Patent number: 11132440
    Abstract: Provided is a hybrid trusted execution environment based android security framework, an android device equipped with the same and a method of executing a trusted service in the android device. The hybrid trusted execution environment based android security framework includes a hardware resource that comprises a rich execution environment (REE) where an android operating system (OS) runs, and a secure container which implements a virtualized trusted execution environment (VTEE) that processes a security task in the rich execution environment (REE) when an application running on the rich execution environment requests the security task.
    Type: Grant
    Filed: December 31, 2018
    Date of Patent: September 28, 2021
    Assignee: Foundation of Soongsil University-Industry Cooperation
    Inventors: Souhwan Jung, Jaehyeon Yoon, Ngoc-Tu Chau
  • Patent number: 10671729
    Abstract: Provided is an adaptive dynamic analysis method, an adaptive dynamic analysis platform and a device equipped with the same. The adaptive dynamic analysis method for an application running in a container environment of a Linux host includes stopping execution of a first activity of the application, and acquiring analysis information for malicious code diagnosis of the application, conducting dynamic analysis using the analysis information, acquiring environment information to execute a second activity based on the dynamic analysis, and performing an execution environment update of the application by reflecting the environment information, and executing the application to enable the second activity to run.
    Type: Grant
    Filed: January 30, 2018
    Date of Patent: June 2, 2020
    Assignee: FOUNDATION OF SOONGSIL UNIVERSITY-INDUSTRY COOPERATION
    Inventors: Souhwan Jung, Ngoc-Tu Chau, Jungsoo Park
  • Patent number: 10671728
    Abstract: A mobile device having a system for analyzing malicious code is provided. The mobile device includes a container agent generating at least one Android container executing Android malicious code for dynamic analysis in response to a request received from a cloud controller and checking a state of the at least one Android container, a Linux host, a hardware module containing an operating system (OS) for the Linux host, and an analysis agent detecting a problem occurring upon an operation of the Android malicious code in the at least one Android container through the Linux host, and transmitting information of kernel-related malicious code behavior to an analysis server.
    Type: Grant
    Filed: June 23, 2017
    Date of Patent: June 2, 2020
    Assignee: FOUNDATION OF SOONGSIL UNIVERSITY-INDUSTRY COOPERATION
    Inventors: Souhwan Jung, Ngoc-Tu Chau, Jungsoo Park
  • Publication number: 20200143041
    Abstract: Provided is a hybrid trusted execution environment based android security framework, an android device equipped with the same and a method of executing a trusted service in the android device. The hybrid trusted execution environment based android security framework includes a hardware resource that comprises a rich execution environment (REE) where an android operating system (OS) runs, and a secure container which implements a virtualized trusted execution environment (VTEE) that processes a security task in the rich execution environment (REE) when an application running on the rich execution environment requests the security task.
    Type: Application
    Filed: December 31, 2018
    Publication date: May 7, 2020
    Inventors: Souhwan Jung, Jaehyeon Yoon, Ngoc-Tu Chau
  • Patent number: 10474845
    Abstract: A duo operating system (OS) for Android security is provided. The duo operating system includes an Android kernel providing drivers for a hardware and an interface of a mobile device, a security platform storing a security key of an integrity check when a kernel is booted in a Linux space, a first layer containing a Linux-based operating system executing a mobile device monitoring and a mobile device security examination, and a second layer containing one or more container-based Android operating systems being a user space layer interacting with users through Android applications.
    Type: Grant
    Filed: June 23, 2017
    Date of Patent: November 12, 2019
    Assignee: FOUNDATION OF SOONGSIL UNIVERSITY-INDUSTRY COOPERATION
    Inventors: Souhwan Jung, Ngoc-Tu Chau, Jungsoo Park
  • Publication number: 20190156035
    Abstract: Provided is an adaptive dynamic analysis method, an adaptive dynamic analysis platform and a device equipped with the same. The adaptive dynamic analysis method for an application running in a container environment of a Linux host includes stopping execution of a first activity of the application, and acquiring analysis information for malicious code diagnosis of the application, conducting dynamic analysis using the analysis information, acquiring environment information to execute a second activity based on the dynamic analysis, and performing an execution environment update of the application by reflecting the environment information, and executing the application to enable the second activity to run.
    Type: Application
    Filed: January 30, 2018
    Publication date: May 23, 2019
    Inventors: Souhwan Jung, Ngoc-Tu Chau, Jungsoo Park
  • Publication number: 20180204001
    Abstract: A mobile device having a system for analyzing malicious code is provided. The mobile device includes a container agent generating at least one Android container executing Android malicious code for dynamic analysis in response to a request received from a cloud controller and checking a state of the at least one Android container, a Linux host, a hardware module containing an operating system (OS) for the Linux host, and an analysis agent detecting a problem occurring upon an operation of the Android malicious code in the at least one Android container through the Linux host, and transmitting information of kernel-related malicious code behavior to an analysis server.
    Type: Application
    Filed: June 23, 2017
    Publication date: July 19, 2018
    Inventors: Souhwan JUNG, Ngoc-Tu CHAU, Jungsoo PARK
  • Publication number: 20180137308
    Abstract: A duo operating system (OS) for Android security is provided. The duo operating system includes an Android kernel providing drivers for a hardware and an interface of a mobile device, a security platform storing a security key of an integrity check when a kernel is booted in a Linux space, a first layer containing a Linux-based operating system executing a mobile device monitoring and a mobile device security examination, and a second layer containing one or more container-based Android operating systems being a user space layer interacting with users through Android applications.
    Type: Application
    Filed: June 23, 2017
    Publication date: May 17, 2018
    Inventors: Souhwan JUNG, Ngoc-Tu CHAU, Jungsoo PARK