Patents by Inventor Paul Gassoway

Paul Gassoway has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 8806211
    Abstract: Methods and systems for maintaining computer security are provided. The method for maintaining security of a computer system comprises determining an initial system certainty value for the computer system, providing access to a database of signatures, each signature including a signature certainty value, receiving data, comparing the received data with the database of signatures, increasing the system certainty value if the received data does not match a signature in the database, decreasing the system certainty value if the received data matches a signature in the database and filtering the data based on the system certainty value and the signature certainty value of a signature matching the received data.
    Type: Grant
    Filed: May 19, 2004
    Date of Patent: August 12, 2014
    Assignee: CA, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8719928
    Abstract: The present disclosure is directed to a method and system for detecting malware using a remote server. In accordance with a particular embodiment of the present disclosure a hash value for a file is generated. The hash value is transmitted to a remote server. A notification is received from the remote server indicating whether the file comprises malware. At least one operation on the file is prevented if the notification indicates the file comprises malware.
    Type: Grant
    Filed: May 16, 2011
    Date of Patent: May 6, 2014
    Assignee: CA, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8572371
    Abstract: A system and method are provided for detecting kernel level rootkits including scanning a kernel memory using a kernel level detector. The kernel level detector includes kernel level code executing in kernel space. The kernel memory is compared to at least one rootkit signature file to determine if a rootkit signature corresponding to the rootkit signature file is present in the kernel memory.
    Type: Grant
    Filed: October 5, 2005
    Date of Patent: October 29, 2013
    Assignee: CA, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8493972
    Abstract: A method for detecting malicious packets includes comparing a sequence number of an input packet with sequence numbers of one or more previously input packets and detecting a malicious packet when the sequence number of the input packet matches at least one of the sequence numbers of the previously input packets.
    Type: Grant
    Filed: May 18, 2005
    Date of Patent: July 23, 2013
    Assignee: CA, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8452015
    Abstract: A method for key distribution includes steps or acts of: deprecating a first key on a server; receiving a request from a client wherein the client request includes the deprecated key; verifying the client request by using the deprecated key provided in the client request to decrypt the client request; and sending a communication to the client advising that the first key has been updated. An additional step of sending instructions to the client on obtaining the updated key may also be provided. Additionally, instructions on obtaining the updated key may be sent to the client.
    Type: Grant
    Filed: May 10, 2007
    Date of Patent: May 28, 2013
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8407792
    Abstract: A method for maintaining computer security comprises receiving an incoming email destined for an email server, determining whether the received incoming email is infected with malicious code and blocking the incoming email determined to be infected with malicious code from reaching the email server.
    Type: Grant
    Filed: May 19, 2004
    Date of Patent: March 26, 2013
    Assignee: CA, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8402278
    Abstract: The present invention is directed to a method and system for protecting data. In accordance with a particular embodiment of the present invention a new file is created. Key information is retrieved for the file from a keyserver. The key information includes, a key, a key identifier, and encryption algorithm information. The file is encrypted using the encryption algorithm. The key identifier is stored in a data repository. The data repository relates the key identifier to the encrypted file.
    Type: Grant
    Filed: April 13, 2007
    Date of Patent: March 19, 2013
    Assignee: CA, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8239946
    Abstract: A method for maintaining computer security, includes providing a database of known good software, opening a file, identifying the file being opened, determining whether an entry exists in the database of known good software for the identified file and performing at least one of allowing and preventing the opening of the file from continuing based on the result of the determination.
    Type: Grant
    Filed: April 22, 2004
    Date of Patent: August 7, 2012
    Assignee: CA, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8234503
    Abstract: A method for maintaining computer security includes detecting a connection failure, storing information relating to the connection failure, determining a number of connection failures and determining whether a machine is infected with malicious code based on the determined number of connection failures.
    Type: Grant
    Filed: May 18, 2005
    Date of Patent: July 31, 2012
    Assignee: CA, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8225394
    Abstract: The present disclosure is directed to a method and system for detecting malware using a secure operating system mode. In accordance with a particular embodiment of the present disclosure a file is received. The file is stored in a secure directory. At least one operation is prevented on the file. A secure operating system mode is started to detect whether the file comprises malware.
    Type: Grant
    Filed: April 13, 2007
    Date of Patent: July 17, 2012
    Assignee: CA, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 8149723
    Abstract: A method for discovering computers connected to a computer network, including receiving a packet containing address information of a computer connected to the computer network that sent the packet, extracting the address information from the packet, and adding the address information to a database of discovered computers connected to the computer network.
    Type: Grant
    Filed: May 20, 2005
    Date of Patent: April 3, 2012
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8060867
    Abstract: A method for blocking the execution of prohibited files, includes requesting execution of a file to be executed, identifying the file to be executed, comparing the identified file to be executed to a list of files that are prohibited and executing the identified file to be executed when the identified file to be executed does not match a file listed in the list of files that are prohibited.
    Type: Grant
    Filed: May 18, 2005
    Date of Patent: November 15, 2011
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Patent number: 8042180
    Abstract: A method for combating malicious programs including monitoring network traffic from one or more devices, analyzing the network traffic to determine the presence of a malicious program in the one or more devices and disabling transmission of the network traffic for those of the one or more devices determined to have the malicious program present.
    Type: Grant
    Filed: May 20, 2005
    Date of Patent: October 18, 2011
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Publication number: 20110219238
    Abstract: The present disclosure is directed to a method and system for detecting malware using a remote server. In accordance with a particular embodiment of the present disclosure a hash value for a file is generated. The hash value is transmitted to a remote server. A notification is received from the remote server indicating whether the file comprises malware. At least one operation on the file is prevented if the notification indicates the file comprises malware.
    Type: Application
    Filed: May 16, 2011
    Publication date: September 8, 2011
    Applicant: Computer Associates Think, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 7945787
    Abstract: The present disclosure is directed to a method and system for detecting malware using a remote server. In accordance with a particular embodiment of the present disclosure a hash value for a file is generated. The hash value is transmitted to a remote server. A notification is received from the remote server indicating whether the file comprises malware. At least one operation on the file is prevented if the notification indicates the file comprises malware.
    Type: Grant
    Filed: April 13, 2007
    Date of Patent: May 17, 2011
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 7900199
    Abstract: A method for creating a reusable library, including providing one or more functions, providing a function table for the provided one or more functions, and providing a configuration structure for communicating values between the provided one or more functions and a program that calls the reusable library. The program that calls the reusable library communicates a function table structure to the reusable library containing information as to which of the one or more functions are desirable. When those of the one or more functions that are not desirable contain dependencies, those dependencies are canceled.
    Type: Grant
    Filed: May 20, 2005
    Date of Patent: March 1, 2011
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Patent number: 7895344
    Abstract: A method for remote management communication is provided. A bind message including a new protocol identifier is sent from a source node to a destination node. A response message is received by the source node from the destination node. The source node sends one or more additional messages to the destination node, using a protocol corresponding to the new protocol identifier, if the response message from the destination node is an acknowledgement message.
    Type: Grant
    Filed: May 18, 2005
    Date of Patent: February 22, 2011
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Patent number: 7841006
    Abstract: In accordance with a particular embodiment of the present invention, a method of detecting kernel level rootkits includes requesting first information from a kernel level process, the first information including first contents. The first information is received at a user level process. The method also includes compiling second information at kernel level, the second information including second contents corresponding to an expected first contents of the first information. The first contents are compared to the second contents.
    Type: Grant
    Filed: October 5, 2005
    Date of Patent: November 23, 2010
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul A. Gassoway
  • Patent number: 7761919
    Abstract: A method for detecting malicious programs within a computer network includes monitoring at least one first packet of data communicated over the network, analyzing the at least one first packet of data to detect the presence of a malicious program, generating a signature of the at least one first packet of data when a malicious program is detected, monitoring at least one second packet of data communicated over the network and detecting evidence of the malicious program in the at least one second packet of data utilizing the generated signature.
    Type: Grant
    Filed: May 18, 2005
    Date of Patent: July 20, 2010
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul Gassoway
  • Patent number: 7757287
    Abstract: A method and system for maintaining computer security including providing a signature file; receiving an incoming message from at least one client computer; comparing the received incoming message with the signature file to determine whether the incoming message is malicious; and blocking the incoming messages determined to be malicious from reaching a web server.
    Type: Grant
    Filed: April 19, 2004
    Date of Patent: July 13, 2010
    Assignee: Computer Associates Think, Inc.
    Inventor: Paul A. Gassoway