Patents by Inventor Thomas E. Hamilton, III

Thomas E. Hamilton, III has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9881304
    Abstract: An API transaction risk assessment equipment is disclosed that receives an API transaction request through a data network from an application processed by a source node, and generates a risk assessment score based on context information that characterizes the API transaction request. The risk assessment score indicates a level of trustworthiness of the API transaction request for processing by an application on a destination node. The API transaction risk assessment equipment then controls deliverability of the API transaction request through the data network to the destination node for processing based on the risk assessment score. Corresponding methods by API transaction risk assessment equipment are disclosed.
    Type: Grant
    Filed: January 24, 2014
    Date of Patent: January 30, 2018
    Assignee: CA, Inc.
    Inventors: Kenneth William Scott Morrison, Thomas E. Hamilton, III, James D. Reno
  • Patent number: 9769167
    Abstract: A method includes authenticating a user of a client device and sending a response to the client device. The response includes browser code configured to retrieve respective first values for a plurality of device properties from the client device. The method also includes storing session information for the user in a memory. The session information includes the first values and criteria for triggering validation of the client device. The method further includes receiving a request, sent from a requesting device, to access a protected resource and determining whether the request is authenticated by determining that the request is associated with the session information and determining that the criteria has been met. Determining whether the request is authenticated also includes retrieving respective second values for the plurality of device properties from the requesting device, and determining whether the second values match the first values to authenticate the request.
    Type: Grant
    Filed: June 18, 2014
    Date of Patent: September 19, 2017
    Assignee: CA, Inc.
    Inventors: David Arthur Mary, Herbert Paul Mehlhorn, Thomas E. Hamilton, III, Ganesh Gudaru, Rohit Ganda, Chavvakula Ravikanth
  • Patent number: 9661013
    Abstract: Methods of operating an application programming interface (API) request risk assessment system include receiving an API request from a source computer application that is directed to a destination computer application. A risk assessment score is generated based on a characteristic of the API request. The risk assessment score indicates a level of trustworthiness of the source computer application. Deliverability of the API request to the destination computer application is controlled based on the risk assessment score. Related methods of operating a source computer and related operations by API request risk assessment systems and source computers are disclosed.
    Type: Grant
    Filed: May 30, 2014
    Date of Patent: May 23, 2017
    Assignee: CA, INC.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Patent number: 9462011
    Abstract: A method includes receiving an application programming interface (API) request from a source computer application that is directed to a destination computer application. An attack response message that is configured to trigger operation of a defined action by the source computer application is sent to the source computer application. Deliverability of the API request to the destination computer application is controlled based on whether the attack response message triggered operation of the defined action. Related operations by API request risk assessment systems are disclosed.
    Type: Grant
    Filed: May 30, 2014
    Date of Patent: October 4, 2016
    Assignee: CA, Inc.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Patent number: 9386078
    Abstract: Some aspects of the present disclosure operate an application programming interface (API) risk assessment equipment. An API transaction request is received from an application processed by a source node. A risk assessment score is generated based on comparison of content of the API transaction request to content of earlier API transaction requests. The risk assessment score indicates trustworthiness of the API transaction request. Deliverability of the API transaction request to a destination node for processing is controlled based on the risk assessment score.
    Type: Grant
    Filed: May 30, 2014
    Date of Patent: July 5, 2016
    Assignee: CA, Inc.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Publication number: 20150373015
    Abstract: A method includes authenticating a user of a client device and sending a response to the client device. The response includes browser code configured to retrieve respective first values for a plurality of device properties from the client device. The method also includes storing session information for the user in a memory. The session information includes the first values and criteria for triggering validation of the client device. The method further includes receiving a request, sent from a requesting device, to access a protected resource and determining whether the request is authenticated by determining that the request is associated with the session information and determining that the criteria has been met. Determining whether the request is authenticated also includes retrieving respective second values for the plurality of device properties from the requesting device, and determining whether the second values match the first values to authenticate the request.
    Type: Application
    Filed: June 18, 2014
    Publication date: December 24, 2015
    Applicant: CA, INC.
    Inventors: David Arthur Mary, Herbert Paul Mehlhorn, Thomas E. Hamilton, III, Ganesh Gudaru, Rohit Ganda, Chavvakula Ravikanth
  • Publication number: 20150350249
    Abstract: A method includes receiving an application programming interface (API) request from a source computer application that is directed to a destination computer application. An attack response message that is configured to trigger operation of a defined action by the source computer application is sent to the source computer application. Deliverability of the API request to the destination computer application is controlled based on whether the attack response message triggered operation of the defined action. Related operations by API request risk assessment systems are disclosed.
    Type: Application
    Filed: May 30, 2014
    Publication date: December 3, 2015
    Applicant: CA, Inc.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Publication number: 20150350234
    Abstract: Methods of operating an application programming interface (API) request risk assessment system include receiving an API request from a source computer application that is directed to a destination computer application. A risk assessment score is generated based on a characteristic of the API request. The risk assessment score indicates a level of trustworthiness of the source computer application. Deliverability of the API request to the destination computer application is controlled based on the risk assessment score. Related methods of operating a source computer and related operations by API request risk assessment systems and source computers are disclosed.
    Type: Application
    Filed: May 30, 2014
    Publication date: December 3, 2015
    Applicant: CA, Inc.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Publication number: 20150350174
    Abstract: Some aspects of the present disclosure operate an application programming interface (API) risk assessment equipment. An API transaction request is received from an application processed by a source node. A risk assessment score is generated based on comparison of content of the API transaction request to content of earlier API transaction requests. The risk assessment score indicates trustworthiness of the API transaction request. Deliverability of the API transaction request to a destination node for processing is controlled based on the risk assessment score.
    Type: Application
    Filed: May 30, 2014
    Publication date: December 3, 2015
    Applicant: CA, Inc.
    Inventors: James D. Reno, Thomas E. Hamilton, III, Kenneth William Scott Morrison
  • Publication number: 20150213449
    Abstract: An API transaction risk assessment equipment is disclosed that receives an API transaction request through a data network from an application processed by a source node, and generates a risk assessment score based on context information that characterizes the API transaction request. The risk assessment score indicates a level of trustworthiness of the API transaction request for processing by an application on a destination node. The API transaction risk assessment equipment then controls deliverability of the API transaction request through the data network to the destination node for processing based on the risk assessment score. Corresponding methods by API transaction risk assessment equipment are disclosed.
    Type: Application
    Filed: January 24, 2014
    Publication date: July 30, 2015
    Applicant: CA, Inc.
    Inventors: Kenneth William Scott Morrison, Thomas E. Hamilton, III, James D. Reno