IP Library Granted Patent US 8,620,266
Granted Patent B2
US 8,620,266 · App. 10/895,353 · Granted Dec 31, 2013

Security for mobile communications device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,620,266
App. No.
10/895,353
Granted
Dec 31, 2013
Kind
B2
Abstract

A mobile communications device for communicating with a wireless network, including an electronic storage having data stored thereon, a processor connected to the storage for accessing the data, a communications sub-system connected to the processor for exchanging signals with the wireless network and with the processor, a user input interface connected to send user input signals to the processor in response to user action, and a security module associated with the processor for detecting a trigger condition and automatically taking a security action if a bypass user action is not detected after detection of the trigger condition.

Claims (34)

1. A mobile communications device for communicating with a wireless network, comprising:

an electronic storage haying data stored thereon;

a processor coupled to the storage for accessing the data;

a communications sub-system coupled to the processor for exchanging signals with the wireless network and with the processor;

a user input interface configured to send user input signals to the processor in response to user action; and

a security module that configures the processor to:

monitor for an expiration of a duration of time during which the device has been out of communication with the wireless network; and

upon expiration of the duration of time,

when a successful user authentication at the device does not occur within a fuse time following the expiration of the duration of time during which the device has been out of communication with the wireless network, perform a security action in which all or part of the data from the storage is at least one of erased and encrypted, and

when the successful user authentication occurs at the device within the fuse time following the expiration of the duration of time during which the device has been out of communication with the wireless network, continue processing without performing the security action in which all or part of the data from the storage is at least one of erased and encrypted.

2. The mobile communications device of claim 1 , wherein the data comprises service data usable by the device to successfully communicate over the wireless network.

3. The mobile communications device of claim 1 , wherein the security action comprises disabling an ability of the device to communicate with the wireless network.

4. The mobile communications device of claim 1 , wherein the user authentication comprises receipt of a password or shared secret via the user input interface.

5. The mobile communications device of claim 1 , wherein the device comprises a user output device for issuing a prompt for the user authentication in response to the expiration of the duration of time during which the device has been out of communication with the wireless network.

6. The mobile communications device of claim 1 , wherein the device does not issue a prompt for the user authentication in response to the expiration of the duration of time during which the device has been out of communication with the wireless network.

7. The mobile communications device of claim 1 , wherein the device refuses attempted user actions other than the user authentication during the fuse time.

8. The mobile communications device of claim 1 , wherein the data comprises at least one of: one or more e-mail messages, one or more contact lists, one or more address book lists, calendar information, scheduling information, one or more notepad documents, one or more image files, one or more text files, or user information.

9. A method of providing security for a mobile communication device configured to communicate over a wireless network, the method comprising:

monitoring for an expiration of a duration of time during which the device has been out of communication with the wireless network; and

upon expiration of the duration of time,

when a successful user authentication does not occur within a fuse of time following the expiration of the duration of time during which the device has been out of communication with the wireless network, performing a security action in which all or part of the data stored on an electronic storage is at least one of erased and encrypted, and

when the successful user authentication occurs within the fuse time following the expiration of the duration of time during which the device has been out of communication with the wireless network, continue processing without performing the security action in which all or part of the data from the storage is at least one of erased and encrypted.

10. The method of claim 9 , wherein the data comprises service data usable by the device to successfully communicate over the wireless network.

11. The method of claim 9 , wherein the security action comprises disabling an ability of the device to communicate with the wireless network.

12. The method of claim 9 , wherein the user authentication comprises receipt of a password or shared secret via the user input interface.

13. The method of claim 9 , further comprising issuing a prompt for the user authentication in response to the expiration of the duration of time during which the device has been out of communication with the wireless network.

14. The method of claim 9 , wherein the device does not issue a prompt for the user authentication in response to the expiration of the duration of time during which the device has been out of communication with the wireless network.

15. The method of claim 9 , further comprising refusing attempted user actions other than the user authentication during the fuse time.

16. The method of claim 9 , wherein the data comprises at least one of; one or more e-mail messages, one or more contact lists, one or more address book lists, calendar information, scheduling information, one or more notepad documents, one or more image files, one or more text files, or user information.

17. A non-transitory computer-readable medium comprising instructions for providing security for a mobile communication device configured to communicate over a wireless network, wherein the instructions, when executed by a processor of the device, configure the processor to;

monitor for expiration of a duration of time during which the device has been out of communication with the wireless network; and

upon expiration of the first duration of time,

when a successful user authentication does not occur within a fuse time following the expiration of the duration of time during which the device has been out of communication with the wireless network, perform a security action in which all or part of the data stored on an electronic storage is at least one of erased and encrypted, and

when the successful user authentication occurs within the fuse time following the expiration of the duration of time during which the device has been out of communication with the wireless network, continue processing without performing the security action in which all or part of the data from the storage is at least one of erased and encrypted.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 26, 2020
From: BLACKBERRY LIMITED
To: HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 054855/0388 →
CHANGE OF NAME Recorded Nov 13, 2013
From: RESEARCH IN MOTION LIMITED
To: BLACKBERRY LIMITED
Reel/Frame 031627/0152 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 21, 2004
From: ROBERTSON, IAN M.
To: RESEARCH IN MOTION LIMITED
Reel/Frame 015600/0284 →