IP Library Granted Patent US 7,818,809
Granted Patent B1
US 7,818,809 · App. 10/958,477 · Granted Oct 19, 2010

Confidential data protection through usage scoping

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,818,809
App. No.
10/958,477
Granted
Oct 19, 2010
Kind
B1
Abstract

Methods, apparatuses, and computer-readable media for protecting confidential data on a network. An embodiment of the inventive method comprises the steps of: monitoring 110 data directed to a website; identifying 120 a data string having at least one confidential characteristic; categorizing the data string with a categorization level; examining 140 the website for at least one characteristic consistent with confidential data; creating 155 a website characteristic profile; comparing 170 the website characteristic profile with the data string's categorization level for compatibility; and determining 180 whether the data string can be communicated to the website.

Claims (46)

1. A computer-implemented method for protecting confidential data, the method executed by a computer and comprising:

using the computer to monitor data a user attempts to enter into a website;

identifying within the monitored data a data string;

categorizing the data string with a type of confidential data represented by the data string and a description that describes the user's pattern of previous usage of the data string with other websites;

locating a website characteristic profile for the website, the web site characteristic profile describing the user's pattern of previous usage of the website;

comparing the website characteristic profile with the data string's categorization to determine whether the user's pattern of previous usage of the data string matches the user's pattern of previous usage of the website;

responsive to the comparison indicating that the user's pattern of previous usage of the data string matches the user's pattern of previous usage of the website, communicating the data string to the website; and

responsive to the comparison indicating that the user's pattern of previous usage of the data string does not match the user's pattern of previous usage of the website, blocking communication of the data string to the website.

2. The method of claim 1 wherein the using the computer to monitor data comprises tracking user inputs.

3. The method of claim 1 wherein the data string comprises financial information.

4. The method of claim 1 wherein the data string comprises personal information.

5. The method of claim 1 wherein the data string comprises security information.

6. The method of claim 1 wherein the categorizing the data string further comprises categorizing the data string with a categorization of requiring transmission via secure communication.

7. The method of claim 1 wherein the categorizing the data string further comprises categorizing the data string with a categorization of requiring transmission to certified websites.

8. The method of claim 1 wherein the categorizing the data string further comprises retrieving a predetermined data string categorization list.

9. The method of claim 8 , wherein the categorizing comprises adding the data string to the predetermined data string categorization list.

10. The method of claim 1 wherein the categorizing the identified data string further comprises selecting a default categorization based on usage of the data string.

11. The method of claim 1 wherein the categorizing the data string further comprises categorizing the data string using a user specified categorization.

12. The method of claim 1 , further comprising:

generating a data string categorization list comprising a plurality of data strings, each data string having an associated categorization describing a type of confidential data represented by the data string and a description of the user's usage of the data string with other websites; and

updating the categorization of each data string in the data string categorization list based on the user's pattern of usage of the data string within the website.

13. The method of claim 1 wherein the website characteristic profile comprises geo-location data associated with the website.

14. The method of claim 1 wherein the website characteristic profile for the website describes characteristics of intended usage of the website by the user.

15. The method of claim 1 , wherein the monitored data comprises data entered by the user into a form of a web page provided by the website for making financial transactions in the website.

16. At least one non-transitory computer-readable medium containing computer program instructions for protecting confidential information, the computer program instructions performing the steps of:

monitoring data a user attempts to enter into a website;

identifying within the monitored data a data string;

categorizing the data string with a type of confidential data represented by the data string and a description that describes of the user's pattern of previous usage of the data string with other websites;

locating a website characteristic profile for the website, the web site characteristic profile describing the user's pattern of previous usage of the website;

comparing the website characteristic profile with the data string's categorization to determine whether the user's pattern of previous usage of the data string matches the user's pattern of previous usage of the website;

responsive to the comparison indicating that the user's pattern of previous usage of the data string matches the user's pattern of previous usage of the website, communicating the data string to the website; and

responsive to the comparison indicating that the user's pattern of previous usage of the data string does not match the user's pattern of previous usage of the website, blocking communication of the data string to the website.

17. The at least one non-transitory computer-readable medium of claim 16 wherein the categorizing the data string further comprises retrieving a predetermined data string categorization list.

18. The at least one non-transitory computer-readable medium of claim 17 wherein the categorizing comprises adding the data string to the predetermined data string categorization list.

19. The at least one non-transitory computer-readable medium of claim 16 wherein the categorizing the data string further comprises selecting a default categorization based on usage of the data string.

20. The at least one non-transitory computer-readable medium of claim 16 further comprising:

generating a data string categorization list comprising a plurality of data strings, each data string having an associated categorization describing a type of confidential data represented by the data string and a description of the user's usage of the data string with other websites; and

updating the categorization of each data string in the data string categorization list based on the user's pattern of usage of the data string.

21. A computer-implemented method for protecting confidential data, the method performed by a computer and comprising:

using the computer to monitor data a user attempts to enter into a website;

identifying within the monitored data a data string;

categorizing the data string with a type of confidential data represented by the data string and a description of a product previously purchased by the user from other websites using the data string;

locating a website characteristic profile for the website, the web site characteristic profile describing a product previously purchased from the website by the user;

comparing the website characteristic profile with the data string's categorization to determine whether the website characteristic profile matches the data string's categorization;

responsive to the comparison indicating that the website characteristic profile matches the data string's categorization, communicating the data string to the website; and

responsive to the comparison indicating that the website characteristic profile does not match the data string's categorization, blocking communication of the data string to the website.

Assignments (4)
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Jun 18, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 053306/0878 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →