IP Library Granted Patent US 8,533,350
Granted Patent B2
US 8,533,350 · App. 11/590,083 · Granted Sep 10, 2013

Method and apparatus for storing information in a browser storage area of a client device

Inventors: Bjorn Markus Jakobsson (Bloomington, IN); Ari Juels (Brookline, MA)
Assignee: RavenWhite Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,533,350
App. No.
11/590,083
Granted
Sep 10, 2013
Kind
B2
Abstract

Disclosed is a method and apparatus for performing steps to cause encoded information to be stored at a client device during a first network session between a server and the client device. To cause encoded information to be stored at a client device, the server first determines a set of network resource requests that encode the information. These network resource requests may include requests for one or more specific URLs and/or requests for one or more files. The server then causes the client device to initiate the network resource requests. The server may cause this initiation by, for example, redirecting the client device to the network resources. The client device initiating the network resource requests causes data representative of the network resource requests to be stored at the client device.

Claims (59)

1. A method, comprising:

receiving, at a first server, a request for content, from a first client;

determining, at the first server, information including at least one network resource for which a request, when made by the first client, is usable to identify the first client;

sending, by the first server to the first client, a web page that includes a reference to the at least one network resource, wherein, when the first client attempts to load the web page, the first client will initiate a request for the at least one network resource;

receiving, at a second server, a request for the at least one network resource from the first client; and

in response to receiving the request for the at least one network resource, identifying, by the second server, the first client, and withholding the at least one network resource from the first client.

2. The method of claim 1 wherein said at least one network resource is expressed at least in part as a Uniform Resource Locator (URL).

3. The method of claim 1 wherein said at least one network resource is associated, at least in part, with a Temporary Internet File.

4. The method of claim 1 wherein said first and second servers are the same.

5. The method of claim 1 wherein said first and second servers are different servers.

6. The method of claim 1 wherein at least one of said first server and said second server comprises a plurality of servers.

7. The method of claim 1 further comprising transmitting, by said first server, a first message to said first client, said first message causing said first client to send the request to said second server.

8. The method of claim 1 wherein said first client reveals a first portion of an identity of said first client to the second server, said identity comprising said first portion and a second portion.

9. The method of claim 8 wherein the second server causes said first client to initiate a set of network resource requests to reveal said second portion of said identity of said first client to said second server.

10. The method of claim 1 further comprising causing at least one resource identifier to be stored at a secret address.

11. The method of claim 1 wherein identifying the first client comprises identifying a user of said first client.

12. The method of claim 11 wherein said identifying comprises authenticating at least one of said first client and said user of said first client.

13. The method of claim 1 wherein the web page includes a plurality of elements, and wherein at least some of the elements are provided to the first client and wherein at least some of the elements are not provided to the first client, and wherein the identifying includes determining which elements are stored at the first client.

14. A system, comprising:

a first processor configured to:

receive, at a first server, a request for content, from a first client;

determine, at the first server, information including at least one network resource for which a request, when made by the first client, is usable to identify the first client;

send, by the first server to the first client, a web page that includes a reference to the at least one network resource, wherein, when the first client attempts to load the web page, the first client will initiate a request for the at least one network resource; and

a second processor configured to:

receive, at a second server, a request for the at least one network resource from the first client; and

in response to receiving the request for the at least one network resource, identify, by the second server, the first client, and withhold the at least one network resource from the first client; and

at least one memory coupled to the first processor and configured to provide the first processor with instructions.

15. The system of claim 14 wherein the web page includes a plurality of elements, and wherein at least some of the elements are provided to the first client and wherein at least some of the elements are not provided to the first client, and wherein the identifying includes determining which elements are stored at the first client.

16. The system of claim 14 wherein at least one of said first server and said second server comprises a plurality of servers.

17. The system of claim 14 wherein the first processor is further configured to transmit a first message to said first client, said first message causing said first client to send the request to said second server.

18. The system of claim 14 wherein said first client reveals a first portion of an identity of said first client to the second server, said identity comprising said first portion and a second portion.

19. The system of claim 18 wherein said second server causes said first client to initiate a set of network resource requests to reveal said second portion of said identity of said first client to said second server.

20. The system of claim 14 wherein the first processor is further configured to cause at least one resource identifier to be stored at a secret address.

21. The system of claim 14 wherein identifying said first client comprises identifying a user of said first client.

22. The system of claim 14 wherein said identifying comprises authenticating at least one of said first client and said user of said first client.

23. A method, comprising:

transmitting, by a first client to a first server, a request for content;

receiving, at the first client, a web page that includes a reference to a network resource;

attempting, by the first client, to render the page, including by initiating a request for the network resource from a second server;

wherein, in response to the second server receiving the request from the first client, the first client is identified by the second server and the network resource is withheld from the first client; and

receiving access to the second server in response to the request.

24. The method of claim 23 wherein attempting to render the web page includes determining that the resource is not present in a local browser cache.

25. The method of claim 23 wherein the first and second remote servers are the same.

26. The method of claim 23 wherein the web page includes a plurality of elements, and wherein at least some of the elements are provided to the first client and wherein at least some of the elements are not provided to the first client, and wherein the identifying includes determining which elements are stored at the first client.

27. The method of claim 23 wherein the network resource comprises a picture.

28. The method of claim 23 wherein the network resource comprises HTML.

29. A system, comprising:

a processor configured to:

transmit, by a first client to a first server, a request for content;

receive, at the first client, a web page that includes a reference to a network resource;

attempt, by the first client, to render the page, including by initiating a request for the network resource from a second server;

wherein, in response to the second server receiving the request from the first client, the first client is identified by the second server and the network resource is withheld from the first client; and

receive access to the second server in response to the request; and

a memory coupled to the processor and configured to provide the processor with instructions.

30. The system of claim 29 wherein attempting to render the web page includes determining that the resource is not present in a local browser cache.

31. The system of claim 29 wherein the first and second servers are the same.

32. The system of claim 29 wherein the web page includes a plurality of elements, and wherein at least some of the elements are received and wherein at least some of the elements are not.

33. The system of claim 29 wherein the network resource comprises a picture.

34. The system of claim 29 wherein the network resource comprises HTML.

Assignments (4)
CHANGE OF NAME Recorded May 24, 2019
From: RAVENWHITE INC.
To: RAVENWHITE SECURITY, INC.
Reel/Frame 049287/0025 →
CHANGE OF NAME Recorded May 3, 2019
From: RAVENWHITE INC.
To: RAVENWHITE SECURITY, INC.
Reel/Frame 050260/0821 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 11, 2010
From: JAKOBSSON, BJORN MARKUS; JUELS, ARI
To: RAVENWHITE INC.
Reel/Frame 024071/0617 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 16, 2007
From: JAKOBSSON, BJORN MARKUS; JUELS, ARI
To: RAVENWHITE, INC.
Reel/Frame 018799/0956 →
Continuity (2)
Provisional Application 60732025 · Nov 1, 2005
Related Publication 20070106748A1 · May 10, 2007