IP Library Granted Patent US 8,407,766
Granted Patent B1
US 8,407,766 · App. 12/054,103 · Granted Mar 26, 2013

Method and apparatus for monitoring sensitive data on a computer network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,407,766
App. No.
12/054,103
Granted
Mar 26, 2013
Kind
B1
Abstract

A method and apparatus for monitoring sensitive data on a computer network is described. In one embodiment, a method for protecting sensitive data from being leaked to a computer network comprises monitoring data related to a user that is presented on one or more web pages through a common interface, which enables a search for sensitive data on the one or more web pages of the one or more web sites and determining a disclosure of the sensitive data on a web page of one or more web pages.

Claims (32)

1. A method of protecting sensitive data associated with a first user from being leaked to a computer network, comprising:

identifying login information used by a second user to access one or more websites;

monitoring, using at least one computer processor, data related to the second user that is presented on at least one web page associated with one of the one or more websites through a common interface using the login information, wherein the common interface enables a search for sensitive data associated with the first user on the at least one web page associated with the one of the one or more websites, wherein monitoring the data related to the second user comprises parsing the at least one web page and generating a search query to be communicated to the one of the one or more websites through the common interface; and

determining a disclosure of the sensitive data associated with the first user on the at least one web page associated with the one of the one or more websites.

2. The method of claim 1 further comprising notifying the first user regarding the disclosure of the sensitive data.

3. The method of claim 1 further comprising removing the disclosed sensitive data from the web page.

4. The method of claim 1 , wherein the login information comprises at least one of a login name, a password, a profile name, an email address or a real name.

5. The method of claim 1 , wherein monitoring the data related to the second user further comprising:

examining the parsed at least one web page to identify the sensitive data.

6. The method of claim 1 , wherein monitoring the data related to the second user further comprising:

processing a response to the search query from the one of the one or more websites.

7. The method of claim 1 , wherein monitoring the one of the one or more websites further comprising:

translating a first search query in a first query language into a second search query in a second query language, wherein the second query language is used at the one of the one or more websites;

communicating the second search query to the one of the one or more websites; and

examining a response to the second search query from the one of the one or more websites.

8. The method of claim 1 , wherein monitoring the data related to the second user further comprises using a plug-in associated with a web site to search a web page associated with the web site for the sensitive data, wherein the plug-in indicates a format associated with at least one of the web page or a web API used at the web site.

9. An apparatus for protecting sensitive data associated with a first user from being leaked to a computer network, comprising:

a web access engine operating on at least one processor to generate a common interface for examining at least one web site for sensitive data associated with the first user using login information used by a second user to access the at least one web site; and

a data polling component for using the common interface to identify the sensitive data associated with the first user presented on a web page of the at least one web site, wherein identifying the data associated with the first user comprises parsing the at least one web page and generating a search query to be communicated to the web page of the at least one web site through the common interface.

10. The apparatus of claim 9 further comprising an agent for monitoring web activity associated with the at least one web site to identify login information used at the at least one web site to generate configuration information.

11. The apparatus of claim 9 further comprising a first plug-in for indicating a query language used at a web site of the at least one web site.

12. The apparatus of claim 9 further comprising a second plug-in for indicating a format associated with at least one of the web page or a web API used at a web site of the at least one web site.

13. The apparatus of claim 9 further comprising a data leakage protection component for receiving the sensitive data, the at least one web site and login information to produce configuration information.

14. A system for protecting sensitive data associated with a first user from being leaked to a computer network, comprising:

a client computer, comprising a data leakage protection component for processing sensitive data associated with the first user, at least one web site and login information used by a second user to access the at least one web site to produce configuration information; and

a server, comprising:

a web access engine for generating a common interface, wherein the common interface enables a search for the sensitive data associated with the first user on at least one web page of the at least one web site,

a data polling component for accessing at least one web site using the login information associated with the second user of the at least one web site, monitoring data related to the second user that is presented on the at least one web page through the common interface, and determining a disclosure of the sensitive data associated with the first user on the at least one web page of the at least one web site, wherein monitoring the data associated with the second user comprises parsing the at least one web page and generating a search query to be communicated to the at least one web page through the common interface.

15. The system of claim 14 further comprising an agent for collecting the configuration information from a web history.

16. The system of claim 14 further comprising plug-in information regarding a plurality of plug-ins for searching the at least one web page.

17. The system of claim 16 , wherein at least one plug-in provides information regarding the at least one web page to parse the at least one web page.

18. The system of claim 17 , wherein at least one plug-in accesses at least one Application Programming Interface associated with the at least one web site to search the at least one web page.

Assignments (4)
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 25, 2008
From: NEWSTADT, KEITH; SCHEPIS, ADAM P.; COOLEY, SHAUN
To: SYMANTEC CORPORATION
Reel/Frame 020694/0895 →