Patents by Inventor Randy Clayton

Randy Clayton has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240064159
    Abstract: A system and methods for detecting and mitigating SAML forgery and manipulation attacks against services is provided, comprising a policy manager configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a unique identifier for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid unique identifier.
    Type: Application
    Filed: October 28, 2023
    Publication date: February 22, 2024
    Inventors: Jason Crabtree, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh, Randy Clayton, Luka Jurukovski
  • Patent number: 11818150
    Abstract: A system and methods for detecting and mitigating golden SAML attacks against federated services is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a security cookie for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid security cookie.
    Type: Grant
    Filed: October 27, 2022
    Date of Patent: November 14, 2023
    Assignee: QOMPLX LLC
    Inventors: Randy Clayton, Jason Crabtree, Luka Jurukovski, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh
  • Publication number: 20230156022
    Abstract: A system and methods for detecting and mitigating golden SAML attacks against federated services is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a security cookie for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid security cookie.
    Type: Application
    Filed: January 9, 2023
    Publication date: May 18, 2023
    Inventors: Randy Clayton, Jason Crabtree, Luka Jurukovski, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh
  • Publication number: 20230118726
    Abstract: A system and methods for detecting and mitigating golden SAML attacks against federated services is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a security cookie for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid security cookie.
    Type: Application
    Filed: October 27, 2022
    Publication date: April 20, 2023
    Inventors: Randy Clayton, Jason Crabtree, Luka Jurukovski, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh
  • Patent number: 11552968
    Abstract: A system and methods for detecting and mitigating golden SAML attacks against federated services is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a security cookie for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid security cookie.
    Type: Grant
    Filed: January 29, 2021
    Date of Patent: January 10, 2023
    Assignee: QOMPLX, INC.
    Inventors: Randy Clayton, Jason Crabtree, Luka Jurukovski, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh
  • Publication number: 20220368726
    Abstract: A system and method for privilege assurance protection of computer networks that remedies the deficiencies of the current directory service structure. The system uses a software agent to collect and store snapshots of all network resources on a computer network by identifying network domains, searching the directory service of each domain for network resources, and periodically querying the network resources for changes. The software agent communicates with a backend server which provides searching, querying, storage, administrative and other functionality to the agent via remote procedure calls.
    Type: Application
    Filed: July 31, 2021
    Publication date: November 17, 2022
    Inventors: Gandhi Balasubramaniam, Randy Clayton, Jason Crabtree, Rich Kelley, Artem Panasenkov, Andrew Sellers
  • Patent number: 11494665
    Abstract: A system and method for a high-performance, scalable, multi-tenant, dynamically specifiable, knowledge graph information storage and utilization. The system uses an in-memory associative array for high-performance graph storage and access, with a non-volatile distributed database for scalable backup storage, a scalable, distributed graph service for graph creation, an indexing search engine to increase searching performance, and a graph crawler for graph traversal. One or more of these components may be in the form of a cloud-based service, and in some embodiments the cloud-based services may be containerized to allow for multi-tenant co-existence with no possibility of data leakage or cross-over.
    Type: Grant
    Filed: April 30, 2020
    Date of Patent: November 8, 2022
    Assignee: QOMPLX, INC.
    Inventors: Jason Crabtree, Andrew Sellers, Randy Clayton, Angad Salaria, Antony Pegg, Bhashit Parikh, Luka Jurukovski, Stuart Baurmann, Paolo Angioletti
  • Publication number: 20220060510
    Abstract: A system and method for a flexible, high-speed Managed Detection and Response platform that ingests, parses, normalizes, monitors, and correlates nearly any log source or security tool output. The MDR comprising of a declarative connector service that tags events with appropriate data source labels to facilitating data isolation, proper handling, and provenance across multiple customers and security products but otherwise aggregate alerts into a single data stream for consumption by the MDR SOC operators. A connector service further provides a programmatic (API-based) means to interchange data securely across environments. Event data is aggregated by the Managed Detection and Response platform that then utilizes enhanced log ingest capabilities to process the data allowing SOC operators to be able to write rules against the alerts.
    Type: Application
    Filed: July 30, 2021
    Publication date: February 24, 2022
    Inventors: Randy Clayton, Jason Crabtree, Angadbir Salaria, Andrew Sellers, Marian Trnkus
  • Publication number: 20210258329
    Abstract: A system and methods for detecting and mitigating golden SAML attacks against federated services is provided, comprising an authentication object inspector configured to observe a new authentication object generated by an identity provider, and retrieve the new authentication object; and a hashing engine configured to create a security cookie for each valid authentication session; wherein subsequent access requests accompanied by authentication objects are validated by checking for a valid security cookie.
    Type: Application
    Filed: January 29, 2021
    Publication date: August 19, 2021
    Inventors: Randy Clayton, Jason Crabtree, Luka Jurukovski, Richard Kelley, Angadbir Singh Salaria, Andrew Sellers, Farooq Israr Ahmed Shaikh
  • Publication number: 20210136120
    Abstract: A system and method for universalization and contextualization of computing assets that utilizes structure, organization, and ontologically-related metadata to unify computing assets into a common data model combined with provenance-related metadata to contextualize the assets for suitability in a given situation. The system and method include an asset registry that contains provenance information and ontological information about available computing assets, a provenance manager which tracks the provenance of each asset for data validation and contextual analysis purposes, an ontology manager that uses ontological relationships among assets to determine other domains in which an asset may be useful, and an interoperability manager which combines the provenance and ontology outputs to suggest computing assets that may be useful in a given context.
    Type: Application
    Filed: July 31, 2020
    Publication date: May 6, 2021
    Inventors: Jason Crabtree, Andrew Sellers, Randy Clayton, Angad Salaria, Roman Tejada
  • Publication number: 20200364584
    Abstract: A system and method for a high-performance, scalable, multi-tenant, dynamically specifiable, knowledge graph information storage and utilization. The system uses an in-memory associative array for high-performance graph storage and access, with a non-volatile distributed database for scalable backup storage, a scalable, distributed graph service for graph creation, an indexing search engine to increase searching performance, and a graph crawler for graph traversal. One or more of these components may be in the form of a cloud-based service, and in some embodiments the cloud-based services may be containerized to allow for multi-tenant co-existence with no possibility of data leakage or cross-over.
    Type: Application
    Filed: April 30, 2020
    Publication date: November 19, 2020
    Inventors: Jason Crabtree, Andrew Sellers, Randy Clayton, Angad Salaria, Antony Pegg, Bhashit Parikh, Luka Jurukovski, Stuart Baurmann, Paolo Angioletti
  • Patent number: 10261503
    Abstract: A building control and management system including an automation controller and a plurality of peripheral devices configured to perform building control-management system functions. The automation controller and peripheral devices communicate wirelessly and the peripheral devices may be enabled and disabled as wireless repeaters in a network formed by the automation controller and the peripheral devices. The automation controller may monitor the communication traffic levels in the wireless network and enable or disable peripheral devices as wireless repeaters to increase or decrease the communication traffic in the network.
    Type: Grant
    Filed: March 3, 2017
    Date of Patent: April 16, 2019
    Assignee: Autani, LLC
    Inventor: Randy Clayton
  • Patent number: 9767249
    Abstract: An automation system including a plurality of peripheral devices, each configured to perform at least one function relating to energy consumption in a facility and an automation controller in communication with the plurality of peripheral devices and providing for the control of the performance of the function by each device. An external network resource such as at least a virtual private network server is configured to enable communication with the automation controller. The automation controller is configured, such as by executing virtual private network software, to establish and maintain a secure data link with the virtual private network server and to enable oversight and/or control of the automation controller via the virtual private network server.
    Type: Grant
    Filed: May 6, 2013
    Date of Patent: September 19, 2017
    Assignee: Autani, LLC
    Inventors: Robert Belz, Randy Clayton
  • Publication number: 20170205812
    Abstract: A building control and management system including an automation controller and a plurality of peripheral devices configured to perform building control-management system functions. The automation controller and peripheral devices communicate wirelessly and the peripheral devices may be enabled and disabled as wireless repeaters in a network formed by the automation controller and the peripheral devices. The automation controller may monitor the communication traffic levels in the wireless network and enable or disable peripheral devices as wireless repeaters to increase or decrease the communication traffic in the network.
    Type: Application
    Filed: March 3, 2017
    Publication date: July 20, 2017
    Applicant: Autani, LLC
    Inventor: Randy Clayton
  • Patent number: 9588506
    Abstract: A building control and management system including an automation controller and a plurality of peripheral devices configured to perform building control-management system functions. The automation controller and peripheral devices communicate wirelessly and the peripheral devices can be enabled and disabled as wireless repeaters in a network formed by the automation controller and the peripheral devices. The automation controller can monitor the communication traffic levels in the wireless network and enable or disable peripheral devices as wireless repeaters to increase or decrease the communication traffic in the network.
    Type: Grant
    Filed: October 10, 2012
    Date of Patent: March 7, 2017
    Assignee: Autani, LLC
    Inventor: Randy Clayton
  • Patent number: 9575472
    Abstract: An automation system including a plurality of peripheral devices, each configured to perform at least one function relating to energy consumption in a facility and an automation controller in communication with the plurality of peripheral devices and providing for the control of the performance of the function by each device, wherein the automation controller includes a compiler configured to take high level rules and information about the peripheral devices and produce at least one program that will respond to data from the peripheral devices and to timer, calendar, clock, and preprogrammed events and a server component that provides the data as input to the at least one program and takes actions based on the output of the program.
    Type: Grant
    Filed: December 19, 2012
    Date of Patent: February 21, 2017
    Assignee: Autani, LLC
    Inventors: Randy Clayton, Kenneth Noppinger
  • Publication number: 20140225528
    Abstract: The present invention provides, among other things, a reconfigurable, lighting and building control system. The system includes an area controller designed as a removable panel ceiling panel replacement positioned in or proximate an area being controlled. The area controller controls the operation of the lighting fixtures wirelessly or via the low voltage/control wiring based on at least one of day and time, occupancy, and light intensity in the area.
    Type: Application
    Filed: March 14, 2014
    Publication date: August 14, 2014
    Inventor: Randy Clayton
  • Publication number: 20140217905
    Abstract: A multi-level automation control architecture, methods, and systems are disclosed, which provide enhanced scalability, functionality, and cost effectiveness for energy, access, and control. The systems include various combinations of automation controllers, remote controllers and peripheral devices that are used to provide monitoring and control functionality over the various systems in a structure, such as HVAC, water, lighting, etc. In various embodiments, the automation controller and various peripheral devices are implemented to provide an integrated energy management system for the structure. The system allows the user to manage energy based on the day, time, the presence of people, and the availability of natural lighting and heating, as well as prioritize and participate in demand-response program.
    Type: Application
    Filed: August 5, 2013
    Publication date: August 7, 2014
    Applicant: AUTANI CORPORATION
    Inventors: RANDY CLAYTON, MICHAEL ANTONE
  • Patent number: 8581439
    Abstract: An automation system including a plurality of peripheral devices, each configured to perform at least one function relating to energy consumption in a facility and an automation controller in communication with the plurality of peripheral devices and providing for the control of the performance of the function by each device, wherein the system includes a configurable transfer switch that enables the system to control the flow and/or source of electricity provided to circuits in a facility.
    Type: Grant
    Filed: October 22, 2010
    Date of Patent: November 12, 2013
    Assignee: Autani Corporation
    Inventors: Randy Clayton, Henry Martin
  • Patent number: D727853
    Type: Grant
    Filed: May 7, 2012
    Date of Patent: April 28, 2015
    Assignee: Autani
    Inventor: Randy Clayton