Patents by Inventor Paul Melson

Paul Melson has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240022603
    Abstract: A website vulnerability test is performed by automatically checking that a website has not been compromised by malicious third party scripts. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. A set of rules are applied against a log of dynamic behavior of the website, as well as static code of the website, to identify potential compromise by malicious scripts. Some rules can be configured for detecting modification of a third party script, or modified behavior of a third party script, in an attempt to detect security monitoring activity against the script and hide its presence from the security monitoring activity.
    Type: Application
    Filed: September 29, 2023
    Publication date: January 18, 2024
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch
  • Patent number: 11811824
    Abstract: A website vulnerability test is performed by automatically checking that a website has not been compromised by malicious third party scripts. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. A set of rules are applied against a log of dynamic behavior of the website, as well as static code of the website, to identify potential compromise by malicious scripts. Some rules can be configured for detecting modification of a third party script, or modified behavior of a third party script, in an attempt to detect security monitoring activity against the script and hide its presence from the security monitoring activity.
    Type: Grant
    Filed: June 8, 2021
    Date of Patent: November 7, 2023
    Assignee: Target Brands, Inc.
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch
  • Patent number: 11595436
    Abstract: A website anomaly test is performed by automatically checking that a website has not been compromised by malicious code. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. A set of rules are applied against a log of dynamic behavior of the website, as well as static code of the website, to identify potential compromise by malicious scripts.
    Type: Grant
    Filed: January 25, 2021
    Date of Patent: February 28, 2023
    Assignee: Target Brands, Inc.
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch
  • Patent number: 11533323
    Abstract: This document generally describes computer systems, processes, program products, and devices for the rapid and automated collection, storage, and analysis of network events to provide improved and enhanced security analysis. The system can include an extensible framework for pipelines to process, normalize, and decorate network events created in response to network activity, which can permit the system to readily scale up and down to ingest large volumes and variations in network activity. For example, pipeline can match data in the network events with stored Indicators of Compromise (IoCs) and decorate the network events with the IoCs before the network events are stored and subsequently analyzed.
    Type: Grant
    Filed: September 1, 2020
    Date of Patent: December 20, 2022
    Assignee: Target Brands, Inc.
    Inventors: Chris Carlson, Paul Melson, Paul Dokas, Justice Renée Bovee, Adam Lesperance
  • Patent number: 11444970
    Abstract: A website vulnerability test is performed by automatically checking that a website has not been compromised by malicious third party scripts. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. Instead of merely analyzing static code of a website, the system automatically tests the website in their runtime environments for the presence of malicious third party scripts.
    Type: Grant
    Filed: September 1, 2020
    Date of Patent: September 13, 2022
    Assignee: Target Brands, Inc.
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch, Richard Agostino
  • Patent number: 11374948
    Abstract: A plurality of network sensors are configured to sense the operations of a data network and, responsive to sensing the operations of the data network, generate event data objects that record the operations of the data network. One or more decorator pipelines are configured to decorate the event data objects with data other than from operations of the data network. A security frontend is configured to generate a graphical user interface (GUI) configured to provide, to a user, query-authoring tools, receiving a query in a structured language, provide responsive to receiving the query, results to the query from historic event data that was decorated before the query was received, receive approval for the query, and later execute the query on new event data that has been decorated after the approval for the query is received.
    Type: Grant
    Filed: January 24, 2020
    Date of Patent: June 28, 2022
    Assignee: Target Brands, Inc.
    Inventors: Eric Brandel, Chris Carlson, Paul Melson, Caleb Walch, Adam Lesperance
  • Publication number: 20210385245
    Abstract: A website vulnerability test is performed by automatically checking that a website has not been compromised by malicious third party scripts. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. A set of rules are applied against a log of dynamic behavior of the website, as well as static code of the website, to identify potential compromise by malicious scripts. Some rules can be configured for detecting modification of a third party script, or modified behavior of a third party script, in an attempt to detect security monitoring activity against the script and hide its presence from the security monitoring activity.
    Type: Application
    Filed: June 8, 2021
    Publication date: December 9, 2021
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch
  • Publication number: 20210314353
    Abstract: A website anomaly test is performed by automatically checking that a website has not been compromised by malicious code. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. A set of rules are applied against a log of dynamic behavior of the website, as well as static code of the website, to identify potential compromise by malicious scripts.
    Type: Application
    Filed: January 25, 2021
    Publication date: October 7, 2021
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch
  • Publication number: 20210112082
    Abstract: This document generally describes computer systems, processes, program products, and devices for the rapid and automated collection, storage, and analysis of network events to provide improved and enhanced security analysis. The system can include an extensible framework for pipelines to process, normalize, and decorate network events created in response to network activity, which can permit the system to readily scale up and down to ingest large volumes and variations in network activity. For example, pipeline can match data in the network events with stored Indicators of Compromise (IoCs) and decorate the network events with the IoCs before the network events are stored and subsequently analyzed.
    Type: Application
    Filed: September 1, 2020
    Publication date: April 15, 2021
    Inventors: Chris Carlson, Paul Melson, Paul Dokas, Justin Bovee, Adam Lesperance
  • Publication number: 20210092146
    Abstract: A website vulnerability test is performed by automatically checking that a website has not been compromised by malicious third party scripts. A system can test a dynamic behavior of a website that indicates a functional user flow through the website. Instead of merely analyzing static code of a website, the system automatically tests the website in their runtime environments for the presence of malicious third party scripts.
    Type: Application
    Filed: September 1, 2020
    Publication date: March 25, 2021
    Inventors: Paul Melson, Chris Carlson, Eric Brandel, Caleb Walch, Richard Agostino
  • Publication number: 20200244680
    Abstract: A plurality of network sensors are configured to sense the operations of a data network and, responsive to sensing the operations of the data network, generate event data objects that record the operations of the data network. One or more decorator pipelines are configured to decorate the event data objects with data other than from operations of the data network. A security frontend is configured to generate a graphical user interface (GUI) configured to provide, to a user, query-authoring tools, receiving a query in a structured language, provide responsive to receiving the query, results to the query from historic event data that was decorated before the query was received, receive approval for the query, and later execute the query on new event data that has been decorated after the approval for the query is received.
    Type: Application
    Filed: January 24, 2020
    Publication date: July 30, 2020
    Inventors: Eric Brandel, Chris Carlson, Paul Melson, Caleb Walch, Adam Lesperance