IP Library Granted Patent US 9,148,445
Granted Patent B2
US 9,148,445 · App. 12/436,380 · Granted Sep 29, 2015

Method and system for misuse detection

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,148,445
App. No.
12/436,380
Granted
Sep 29, 2015
Kind
B2
Abstract

A method and system for discovering inappropriate and/or illegitimate use of Web page content, comprising: monitoring access to a first Web page by a user; comparing information from the first Web page to information from a second known legitimate Web page; and determining whether the first Web page is legitimate based on the compared information.

Claims (31)

1. A method for discovering whether a web page or web page content has been acquired inappropriately or illegitimately from a legitimate web page by one or more individuals attempting to copy, clone, spoof, or otherwise replicate the legitimate web page or web page content, or to deceive users into visiting the illegitimate, inauthentic or otherwise fraudulent web page resembling the legitimate web page or the legitimate web page content, comprising:

installing a portion of code into source code of the legitimate web page, wherein the portion of code sends at least one query to request an attribute of the legitimate web page, including at least one of an IP address, URL or domain name belonging to the legitimate web page; causing a processor to compare the legitimate web page attribute to a web page attribute of the web page issuing the at least one query; determining if the attribute from the legitimate web page matches the attribute from the querying web page; and causing an action to occur based on an outcome of the determination.

2. The method of claim 1 , further comprising: configuring a web page server or a security server to return a valid element to a web browser, indicating that the querying web page is not being used in an illegitimate, fraudulent or otherwise deceptive manner based on whether the attribute information received by the querying web page matches the attribute information from the legitimate web page.

3. The method of claim 1 , further comprising: configuring a web page server or a security server to return a non-valid element to a web browser, indicating that the querying web page is being used in an illegitimate, fraudulent or otherwise deceptive manner based on whether the attribute information received by the querying web page matches the attribute information from the legitimate web page.

4. The method of claim 1 , further comprising: configuring a web page server or the a security server to return a non-valid stealth element to a web browser, indicating that the querying web page is being used in an illegitimate, fraudulent or otherwise deceptive manner based on whether the attribute information received by the querying web page does not match the attribute information from the legitimate web page.

5. The method of claim 3 , further comprising configuring the web page server or the security server to display the at least one non-valid element on the querying web page if it is determined that the querying web page is being used in an illegitimate, fraudulent or otherwise deceptive manner.

6. A system for discovering has been acquired inappropriately or illegitimately from a legitimate web page by one or more individuals attempting to copy, clone, spoof, or otherwise replicate the legitimate web page or web page content, or to deceive users into visiting the illegitimate, inauthentic or otherwise fraudulent web page resembling the legitimate web page or the legitimate web page content, comprising:

at least one web page or security server coupled to at least one network; at least one user terminal coupled to the at least one network; and

at least one application coupled to the at least one server and/or the at least one user terminal, wherein the at least one application is configured for:

installing a portion of code into source code of the legitimate web page, wherein the portion of code sends queries to determine a legitimate web page attribute, including at least one of an IP address, URL or domain name belonging to the legitimate web page; causing a processor to compare the legitimate web page attribute to an attribute of the querying web page; determining if the attributes match; and

causing an action to occur based on an outcome of the determination, comprising:

installing a portion of code into source code of the legitimate web page, wherein the portion of code sends at least one query to request an attribute of the legitimate web page, including at least one of an IP address, URL or domain name belonging to the legitimate web page; causing a processor to compare the legitimate web page attribute to a web page attribute of the web page issuing the at least one query; determining if the attribute from the legitimate web page matches the attribute from the querying web page; and causing an action to occur based on an outcome of the determination.

7. The system of claim 6 , wherein the application is further configured to configure the web page server or the security server to return a valid element representing the attribute to a web browser, indicating the querying web page is not being used in an illegitimate, fraudulent or otherwise deceptive manner based on whether the attribute information received matches the attribute information from the legitimate web page.

8. The system of claim 6 , wherein the at least one application is further configured for configuring a web page server or a security server to return a non-valid element to a web browser, indicating that the querying web page is being used in an illegitimate, fraudulent or otherwise deceptive manner based on whether the attribute information received matches the attribute information from the legitimate web page.

9. The system of claim 6 , configuring a web page server or a security server to return a non-valid stealth element to a web browser if the attribute information received does not match the attribute information from the legitimate web page.

10. The system of claim 8 , wherein the web page server, security server, or application is further configured to display the non-valid element on the querying web page if it is determined that the querying web page is being used in an illegitimate, fraudulent or otherwise deceptive manner.

11. A system for detecting whether a web page or web page content has been copied inappropriately or illegitimately from a legitimate web page by one or more individuals attempting to copy, clone, spoof, or otherwise replicate the legitimate web page or web page content, or to deceive users into visiting the illegitimate, inauthentic or otherwise fraudulent web page resembling the legitimate web page, the system comprising:

a processor; and

a memory system that includes one or more computer-readable media configured to store instructions that, when executed by the processor, cause the system to perform the operations of:

installing a portion of code into source code of the legitimate web page, wherein the portion of code sends queries to request verification based on a legitimate web page attribute, including at least one of an IP address, URL or domain name of the legitimate web page; and, configuring a processor to compare the legitimate web

page attribute to a web page attribute of the web page issuing the query automatically, in response to the query, by a web browser, and transmitting information from the querying web page to a web page server or a security server that compares the web page attributes to determine a legitimacy of the querying web page; and causing the processor to perform an action in response to a result from the comparison of the web page attributes.

12. The system of claim 11 , wherein the memory system that includes one or more computer-readable media is configured to store instructions that, when executed by the processor, cause the system to perform the operations of configuring the web page server or the security server to transmit a valid element to the web browser if the legitimacy of the querying web page attribute information is determined.

13. The system of claim 11 , wherein the memory system that includes one or more computer-readable media is configured to store instructions that, when executed by the processor, cause the system to perform the operations of transmitting, by the web server or security server, a non-valid element to the web browser if the legitimacy of the web attribute information is not determined.

14. The system of claim 13 , wherein transmitting the non-valid element includes transmitting a non-valid stealth element to the web browser.

15. The system of claim 12 , wherein transmitting the valid element includes displaying the valid element on the web browser.

16. The system of claim 14 , wherein transmitting the non-valid element includes displaying the non-valid element on the web browser.

17. A computer program product comprising a non-transitory computer readable medium having computer readable program code embodied in the medium for causing an application program to execute on a computer that detects whether a web page or web page content has been copied inappropriately or illegitimately from a legitimate web page by one or more individuals attempting to copy, clone, spoof, or otherwise replicate the legitimate web page or web page content, or to deceive users into visiting the illegitimate, inauthentic or otherwise fraudulent web page resembling the legitimate web page, the computer readable program code being saved in a memory and executed by a processor, the computer readable program code comprising:

a first computer readable program code for causing the computer to install a portion of code into source code of the legitimate web page, wherein the portion of code sends queries to request verification based on a legitimate web page attribute, including at least one of an IP address, URL or domain name of the legitimate web page; and a second computer readable program code for causing the security application to

transmit, in response to querying the web page by a web browser, attribute information from the web page to a web page server or security server that compares the querying web page attribute information to the legitimate web page attribute information and determines the legitimacy of the querying web page based on the attribute information, wherein a processor performs an action in response to the determination of the legitimacy of the querying web page.

18. The computer program product of claim 17 , further comprising a third computer readable program code for causing the computer to transmit a valid element to the web browser if the legitimacy of the web page querying web page attribute information is determined.

19. The computer program product of claim 17 , further comprising a fourth computer readable program code for causing the computer to transmit a non-valid element to the web browser if the legitimacy of the querying web page attribute information is not determined.

Assignments (10)
RELEASE OF SECURITY INTEREST Recorded May 16, 2024
From: STIFEL BANK
To: ZEROFOX, INC.
Reel/Frame 067429/0328 →
SECURITY INTEREST Recorded May 13, 2024
From: ZEROFOX, INC.; LOOKINGGLASS CYBER SOLUTIONS, LLC; IDENTITY THEFT GUARD SOLUTIONS, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC
Reel/Frame 067396/0304 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: VIGILANTEATI, INC.
Reel/Frame 060821/0137 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: ZEROFOX, INC.
Reel/Frame 060821/0173 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNOR AND ASSIGNEE'S INFORMATION ON THE COVER SHEET PREVIOUSLY RECORDED AT REEL: 054878 FRAME: 0117. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Jan 6, 2022
From: HERCULES CAPITAL, INC.
To: ZEROFOX, INC.
Reel/Frame 058652/0754 →
SECURITY INTEREST Recorded Jun 8, 2021
From: ZEROFOX, INC.
To: ORIX GROWTH CAPITAL, LLC
Reel/Frame 056471/0629 →
SECURITY INTEREST Recorded Jan 28, 2021
From: ZEROFOX, INC.
To: STIFEL BANK
Reel/Frame 055066/0916 →
RELEASE OF SECURITY INTEREST Recorded Jan 11, 2021
From: ZEROFOX, INC.
To: HERCULES CAPITAL, INC.
Reel/Frame 054878/0117 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 2, 2020
From: LOOKINGGLASS CYBER SOLUTIONS, INC.; CYVEILLANCE, INC.
To: ZEROFOX, INC.
Reel/Frame 054513/0854 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 17, 2009
From: SMITH, STEVE; SERBAN, VLAD; WALKER, ANDY; OGOREK, GREG
To: CYVEILLANCE INC.
Reel/Frame 022836/0590 →