IP Library Granted Patent US 8,813,224
Granted Patent B2
US 8,813,224 · App. 12/471,193 · Granted Aug 19, 2014

Remote DOM access

Inventors: Amit Klein (Herzliya, IL); Eldan Ben-Haim (Tel Aviv, IL); Oleg Izmerly (Ramat Gan, IL); Shmuel Regev (Tel Aviv, IL); Michael Boodaei (Givatayim, IL)
Assignee: Trusteer Ltd.
G06F21/55H04L63/168H04L63/1441G06F2221/2119H04L63/0263G06F21/52H04L63/0281
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,813,224
App. No.
12/471,193
Granted
Aug 19, 2014
Kind
B2
Abstract

A method for protecting a browser from malicious processes, comprises providing at least one process-proxy object and at least a browser-proxy object, interposed between the browser and a process, such that when the process invokes one of the DOM entry points, the process-proxy object isolates it from the real browser implementation and executes the process-proxy object's code instead.

Claims (10)

1. A method for protecting a real browser running on a computer from malicious external processes, running externally to said real browser and on said computer, comprising:

providing at least one process-proxy object emulating said external process and at least a browser-proxy object emulating said real browser;

isolating said real browser from said external process by interposing said process-proxy object and said browser-proxy object between an interface exposed by said real browser to external processes and said external process;

whenever said external process attempts to access internal data of the real browser or invokes one Document Object Model (DOM) entry point into said real browser via said interface, isolating said real browser from said external process by said process-proxy object via said interface;

executing the process-proxy object's code, which returns a browser-proxy object; and

allowing said browser-proxy object to access said real browser according to predetermined security rules;

wherein neither said real browser sees the external process directly nor the external process sees said real browser directly.

2. A method according to claim 1 , wherein protection for said real browser is defined per website, per page, per process and per field of a form.

3. A method according to claim 1 , comprising providing control means to allow the user of said real browser to choose which data said real browser sends to a process.

4. A method according to claim 1 , comprising providing an embedded proxy emulating said real browser, thereby to protect said real browser from direct interaction originating from malicious processes.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 23, 2017
From: TRUSTEER, LTD.
To: INTERNATIONAL BUSINESS MACHINES CORPORATION
Reel/Frame 041060/0411 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 12, 2009
From: KLEIN, AMIT; BEN-HAIM, ELDAN; IZMERLY, OLEG; REGEV, SHMUEL; BOODAEI, MICHAEL
To: TRUSTEER LTD.
Reel/Frame 022821/0169 →
Continuity (3)
Continuation In Part 12189444 · Aug 11, 2008
Provisional Application 61056048 · May 26, 2008
Related Publication 20090293102A1 · Nov 26, 2009