Patents by Inventor Thibault Candebat
Thibault Candebat has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 10431228Abstract: A robust digital fingerprint of a file ensures that one able to produce the robust digital fingerprint has possession of the file. A client obtains information that is unpredictable to the client and uses that information to modify the file and generate a robust digital fingerprint from the modified file. A server, with access to the same unpredictable information, verifies the generated robust digital fingerprint. An algorithm for generating the robust digital fingerprint has a property that different representations of the same content will produce matching digital fingerprints.Type: GrantFiled: October 24, 2017Date of Patent: October 1, 2019Assignee: Amazon Technologies, Inc.Inventor: Thibault Candebat
-
Patent number: 10129278Abstract: Disclosed are various systems, methods, and other embodiments directed to detection of malware in content items. To detect the malware, for example, one or more content items are identified in association with the rendering of a network page in a simulated environment. A plurality of tests are applied to the one or more content items to detect an existence of malware associated with the content items.Type: GrantFiled: May 16, 2016Date of Patent: November 13, 2018Assignee: Amazon Technologies, Inc.Inventors: Jon A. McClintock, Eric J. Martin, Karl A. McCabe, Thibault Candebat, Adam J. Cecchetti, David Erdmann
-
Patent number: 10044728Abstract: A secure and efficient technique to prevent cross-site scripting attacks based on segregating the content within a given content page among independent endpoints, or servers, where static content is provided from one endpoint and active content is provided from another endpoint. Together, the different endpoints make up an endpoint segregation system. Further, security features of HTTP/HTML are used to restrict sources from which active content may be executed according to the division of static and active content among the endpoints of the endpoint segregation system.Type: GrantFiled: July 6, 2015Date of Patent: August 7, 2018Assignee: Amazon Technologies, Inc.Inventors: Aridaman Tripathi, Thibault Candebat
-
Patent number: 9942267Abstract: A secure and efficient technique to prevent cross-site scripting attacks based on segregating the content within a given content page among independent endpoints, or servers, where static content is provided from one endpoint, active content for downloading a filtering component to enforce filtering of content passed to active content methods is provided from a loader endpoint, and active content is provided from an active content endpoint. Together, the different endpoints make up an endpoint segregation system. Further, security features of HTTP/HTML are used to restrict sources from which active content may be executed according to the division of static and active content among the endpoints of the endpoint segregation system.Type: GrantFiled: July 6, 2015Date of Patent: April 10, 2018Assignee: Amazon Technologies, Inc.Inventors: Aridaman Tripathi, Thibault Candebat
-
Publication number: 20180047399Abstract: A robust digital fingerprint of a file ensures that one able to produce the robust digital fingerprint has possession of the file. A client obtains information that is unpredictable to the client and uses that information to modify the file and generate a robust digital fingerprint from the modified file. A server, with access to the same unpredictable information, verifies the generated robust digital fingerprint. An algorithm for generating the robust digital fingerprint has a property that different representations of the same content will produce matching digital fingerprints.Type: ApplicationFiled: October 24, 2017Publication date: February 15, 2018Inventor: Thibault Candebat
-
Patent number: 9812138Abstract: A robust digital fingerprint of a file ensures that one able to produce the robust digital fingerprint has possession of the file. A client obtains information that is unpredictable to the client and uses that information to modify the file and generate a robust digital fingerprint from the modified file. A server, with access to the same unpredictable information, verifies the generated robust digital fingerprint. An algorithm for generating the robust digital fingerprint has a property that different representations of the same content will produce matching digital fingerprints.Type: GrantFiled: September 3, 2014Date of Patent: November 7, 2017Assignee: Amazon Technologies, Inc.Inventor: Thibault Candebat
-
Patent number: 9575979Abstract: Techniques are described for automatically determining application composition and application ownership of an application that may include a plurality of files deployed to a plurality of host devices. The determination of application composition may be based on analyzing various types of metadata that may provide evidence of associations between deployed files, such as metadata describing the deployment of files to host devices, metadata describing the files tracked within a source control system, or other types of metadata. The determination of application ownership may also be based on analyzing the various types of metadata that provide evidence of associations between files and individuals or groups of individuals within an organization.Type: GrantFiled: December 16, 2013Date of Patent: February 21, 2017Assignee: Amazon Technologies, Inc.Inventors: Jon Arron McClintock, Shailendra Batra, Thibault Candebat, Scott Gerard Carmack, Sachin Purushottam Joglekar, Alun Mark Jones, William Frederick Kruse, Narasimha Rao Lakkakula, Sunu Aby Mathew
-
Patent number: 9465942Abstract: Techniques are described for identifying security credentials or other sensitive information by creating a dictionary of data elements included in documents such as source code files, object code files, or other types of files. The data elements may be identified for inclusion in the dictionary based on parsing the documents for delimiter characters, and based on the context of the data elements within the documents. The data elements may also be identified through an entropy-based analysis to detect portions of the documents exhibiting a high degree of entropy compared to a baseline entropy for the documents. The dictionary may be used in a dictionary attack against various systems to determine whether any of the data elements included in the dictionary enable access the systems. The data elements that enable access may be designated as sensitive information hard-coded into the documents.Type: GrantFiled: August 13, 2014Date of Patent: October 11, 2016Assignee: Amazon Technologies, Inc.Inventors: David James Kane-Parry, Thibault Candebat, Nima Sharifi Mehr
-
Publication number: 20160261623Abstract: Disclosed are various systems, methods, and other embodiments directed to detection of malware in content items. To detect the malware, for example, one or more content items are identified in association with the rendering of a network page in a simulated environment. A plurality of tests are applied to the one or more content items to detect an existence of malware associated with the content items.Type: ApplicationFiled: May 16, 2016Publication date: September 8, 2016Inventors: Jon A. McClintock, Eric J. Martin, Karl A. McCabe, Thibault Candebat, Adam J. Cecchetti, David Erdmann
-
Patent number: 9348977Abstract: Disclosed are various systems, methods, and other embodiments directed to detection of malware in content items. To detect the malware, for example, one or more content items are identified in association with the rendering of a network page in a simulated environment. A plurality of tests are applied to the one or more content items to detect an existence of malware associated with the content items.Type: GrantFiled: May 26, 2009Date of Patent: May 24, 2016Assignee: Amazon Technologies, Inc.Inventors: Jon A. McClintock, Eric J. Martin, Karl A. McCabe, Thibault Candebat, Adam J. Cecchetti, David Erdmann
-
Patent number: 9336381Abstract: Techniques are described for identifying security credentials or other sensitive information based on an entropy-based analysis of information included in documents such as source code files, object code files, or other types of files. A baseline information entropy may be determined for one or more documents, indicating a baseline level of randomness for information in the document(s). One or more of the documents may be analyzed to identify the presence of high entropy portions that have an information entropy above a threshold value. The threshold value may be based on the baseline information entropy, or based on other criteria such as a programming language of the document(s). Because security credentials may have a higher level of information entropy than the surrounding code, any high entropy portions of the document(s) may be identified as potential security risks.Type: GrantFiled: April 8, 2013Date of Patent: May 10, 2016Assignee: Amazon Technologies, Inc.Inventors: David James Kane-Parry, Thibault Candebat
-
Patent number: 8621613Abstract: Disclosed are various systems, methods, and other embodiments directed to detection of malware in content items. To detect the malware, for example, an environment is simulated in a computing device configured to render a network page having a container for content placement. The existence of malware in a content item is detected in the computing device by implementing a rendering of the network page in the environment with the content item inserted in the container to detect an unauthorized action by the content item.Type: GrantFiled: May 26, 2009Date of Patent: December 31, 2013Assignee: Amazon Technologies, Inc.Inventors: Jon A. McClintock, Eric J. Martin, Karl A. McCabe, Thibault Candebat, Adam J. Cecchetti, David Erdmann