IP Library Granted Patent US 8,271,555
Granted Patent B2
US 8,271,555 · App. 12/615,332 · Granted Sep 18, 2012

Method and application for a reactive defense against illegal distribution of multimedia content in file sharing networks

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,271,555
App. No.
12/615,332
Granted
Sep 18, 2012
Kind
B2
Abstract

A system for external monitoring of networked digital file sharing to track predetermined data content, the system comprising: at least one surveillance element for deployment over said network, said surveillance elements comprising: surveillance functionality for searching said digital file sharing and identification functionality associated with said search functionality for identification of said predetermined data content, therewith to determine whether a given file sharing system is distributing said predetermined data content.

Claims (53)

1. A system for external monitoring of networked digital file sharing to track predetermined data content, the system implemented on an electronic processor, the system comprising:

at least one surveillance element for distribution over said network and monitoring at said electronic processor, said surveillance elements comprising:

search functionality for nodewise searching of said networked digital file sharing; and

identification functionality associated with said search functionality for identification of said predetermined data content, therewith to determine whether a given file sharing system is distributing said predetermined data content, said search functionality being operable to carry out searching at one member of the group consisting of a low level of a network protocol, a high level of a network protocol and an application level, wherein said surveillance element comprises a second surveillance element and comprises interception functionality for intercepting data transport on said network, and wherein said identification functionality is associated with said interception functionality for finding an indication of said data content within said intercepted data transport.

2. A system according to claim 1 , wherein said surveillance element is a first surveillance element and said search functionality comprises functionality for operating search features of said networked digital file sharing, wherein said identification functionality comprises use of a signature of said predetermined content, wherein said signature comprises one member of the group consisting of a title of said predetermined content, a derivative of said title, and a statistical processing result carried out on said content and a description of said content, and a derivative of a description of said content.

3. A system according to claim 2 , wherein said content comprises binary data and said signature comprises a derivation of said binary data.

4. A system according to claim 3 , said derivation being a hash function of said binary data.

5. A system according to claim 3 , said derivation being function of metadata of said content.

6. A system according to claim 1 , wherein said identification functionality comprises a signature of said predetermined content for comparison with data of said intercepted message to determine whether said message contains said evidence of said data content, wherein said surveillance element is a first surveillance element and said search functionality comprises functionality for operating search features of said networked digital file sharing, and wherein said content comprises alphanumeric data and said signature is a derivation of said alphanumeric data.

7. A system according to claim 1 , wherein said identification functionality comprises use of a signature of said predetermined content, said signature comprises a statistical processing result carried out on said content, and wherein said signature comprises a derivative of the title of the said data content, or a description of said content.

8. A system according to claim 1 , wherein said surveillance element further comprises input/output functionality for receiving commands from said system and sending results of said search.

9. A system according to claim 8 , further comprising a co-ordination element for interacting with said distributed input/output functionality to control deployment of said surveillance elements over said network and to monitor results from a plurality of said surveillance elements.

10. A system according to claim 9 , said co-ordination element further being operable to interact with reaction elements by providing said reaction elements with details of locations of said predetermined content obtained from said surveillance elements, thereby to prompt said reaction elements to react against said locations.

11. A system according to claim 1 , wherein said file sharing comprises a document exchange system and said surveillance element further comprises functionality for representing itself as a host server for said system, thereby to obtain data of documents on said system for said search functionality.

12. A system according to claim 1 , comprising:

at least two first surveillance elements, each first surveillance element comprising functionality for operating search features of said networked digital file sharing,

at least two second surveillance elements, each said second surveillance element comprising interception functionality for intercepting messaging on said network, and wherein said identification functionality is associated with said interception functionality for identifying evidences of said data content within said intercepted messages, and

at least one control element for deploying said surveillance elements around said network and obtaining search results from said surveillance elements.

13. A system according to claim 1 , wherein said at least one surveillance element further comprises a first surveillance element and said search functionality comprises functionality for operating search features of said networked digital file sharing.

14. A system according to claim 1 , wherein said identification functionality is operable to receive input from a comparator associated with a signature holder for holding a signature of said predetermined content, said comparator being operable to compare said content against said signature thereby to indicate to said input functionality the presence of said content.

15. A system according to claim 14 , further comprising a co-ordination element for interacting with said distributed input/output functionality to control deployment of said surveillance elements over said network and to monitor results from a plurality of said surveillance elements, said co-ordination element further being operable to interact with said attack elements by providing said attack elements with details of locations of said predetermined content obtained from said surveillance elements, thereby to prompt said attack elements to attack said locations.

16. A system according to claim 14 , comprising:

at least two first surveillance elements, each first search element comprising functionality for operating search features of said networked digital file sharing,

at least two second surveillance elements, each said second surveillance element comprising interception functionality for intercepting messaging on said network, and wherein said identification functionality is associated with said interception functionality for identifying evidences of said data content within said intercepted messages,

at least two of said attack elements, and

at least one control element for distributing said surveillance and attack elements around said network, obtaining surveillance results from said surveillance elements, and coordinating activity of said attack elements to carry out a coordinated multiple point attack on said file sharing system.

17. A system according to claim 1 , further comprising interception functionality for intercepting messaging on said network, and wherein said identification functionality is associated with said interception functionality for identifying evidences of said data content within said intercepted messages.

18. A system according to claim 17 , operable to co-ordinate download requests between a plurality of said attack elements distributed over said network.

19. A system according to claim 1 , said identification functionality being operable to identify items in said document exchange system comprising said predetermined content.

20. A system according to claim 19 , further comprising an attack element, said attack element comprising functionality to send to said system a delete command to delete said item throughout said system.

21. A system according to claim 20 , wherein said attack element comprises repetitive output functionality for repeatedly sending response requests to said file sharing system.

22. A system according to claim 21 , wherein said response requests comprise download requests.

23. A system according to claim 21 , operable to co-ordinate response requests between a plurality of attack elements distributed over said network.

24. A system according to claim 19 , wherein said transport interference functionality comprises exchange functionality for exchanging said predetermined message content in said messaging with other message content.

25. A system according to claim 1 , comprising a third surveillance element, said third surveillance element comprising network protocol scan functionality operable to intercept and analyze network communication items of a predetermined network traffic, thereby to find protected content in transport.

26. A system according to claim 1 , comprising at least one attack element wherein said attack functionality is operable to utilize features of said file sharing in said attack.

27. A system according to claim 1 , comprising at least one attack element wherein said attack functionality comprises transport interference functionality for interfering with messaging over said network.

28. A system for external monitoring of networked digital file sharing to track predetermined data content, the system implemented on an electronic processor and comprising:

at least one surveillance element for distribution over said network and monitoring at said electronic processor, said surveillance elements comprising:

search functionality for nodewise searching of said networked digital file sharing; and

identification functionality associated with said search functionality for identification of said predetermined data content, therewith to determine whether a given file sharing system is distributing said predetermined data content, said search functionality being operable to carry out searching at one member of the group consisting of a low level of a network protocol, a high level of a network protocol and an application level, wherein said file sharing comprises a document exchange system and said surveillance element further comprises functionality for representing itself as a host server for said system, thereby to obtain data of said file sharing for said search functionality.

29. A system for external monitoring and control of networked digital file sharing to track predetermined data content and limit distribution thereof, the system implemented on an electronic processor and comprising:

at least one surveillance element for distribution over said network and monitoring at said electronic processor, said surveillance element comprising:

surveillance functionality for searching said digital file sharing, and

identification input functionality associated with said search functionality for receiving an indication of the presence of said predetermined content; and

at least one attack element, comprising:

input functionality for receiving identification data of a file sharing system found to be distributing said predetermined content, and

attack functionality for applying an attack to said file sharing system to reduce said file sharing system's ability to distribute said predetermined data content.

30. A method of externally scanning a distributed network comprising a plurality of nodes, to search for predetermined content available for distribution from said nodes, the method implemented on an electronic processor, the method comprising:

distributing at least one surveillance element to said network and monitoring said surveillance element at said electronic processor, said surveillance element comprising:

search functionality for nodewise searching of said networked digital file sharing, and

identification functionality associated with said search functionality for identification of said predetermined data content, therewith to determine whether a given file sharing system is distributing said predetermined data content; and

wherein said surveillance element comprises a second surveillance element and interception functionality for intercepting data transport on said network, and wherein said identification functionality is associated with said interception functionality for finding an indication of said data content within said intercepted data transport.

Assignments (18)
RELEASE OF SECURITY INTEREST Recorded Apr 2, 2025
From: UBS AG, STAMFORD BRANCH
To: FORCEPOINT, LLC; BITGLASS, LLC
Reel/Frame 070706/0263 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 18, 2021
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: FORCEPOINT LLC
Reel/Frame 056272/0475 →
CHANGE OF NAME Recorded May 10, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056183/0265 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, LLC (FKA PORTAUTHORITY TECHNOLOGIES, INC.); RAYTHEON OAKLEY SYSTEMS, LLC; FORCEPOINT FEDERAL LLC (FKA RAYTHEON CYBER PRODUCTS, LLC, FKA RAYTHEON CYBER PRODUCTS, INC.)
Reel/Frame 055492/0146 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 1, 2017
From: PORTAUTHORITY TECHNOLOGIES, LLC
To: FORCEPOINT LLC
Reel/Frame 043156/0759 →
CHANGE OF NAME Recorded Aug 8, 2016
From: PORTAUTHORITY TECHNOLOGIES, INC.
To: PORTAUTHORITY TECHNOLOGIES, LLC
Reel/Frame 039609/0877 →
PATENT SECURITY AGREEMENT Recorded Jun 9, 2015
From: WEBSENSE, INC.; RAYTHEON OAKLEY SYSTEMS, LLC; RAYTHEON CYBER PRODUCTS, LLC (FORMERLY KNOWN AS RAYTHEON CYBER PRODUCTS, INC.); PORT AUTHORITY TECHNOLOGIES, INC.
To: RAYTHEON COMPANY
Reel/Frame 035859/0282 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME: 030694/0615 Recorded May 29, 2015
From: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
To: WEBSENSE, INC.; PORT AUTHORITY TECHNOLOGIES, INC.
Reel/Frame 035858/0680 →
RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME: 30704/0374 Recorded May 29, 2015
From: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
To: WEBSENSE, INC.; PORT AUTHORITY TECHNOLOGIES, INC.
Reel/Frame 035801/0689 →
ASSIGNMENT OF SECURITY INTEREST Recorded Apr 10, 2014
From: JPMORGAN CHASE BANK, N.A., AS EXISTING COLLATERAL AGENT
To: ROYAL BANK OF CANADA, AS SUCCESSOR COLLATERAL AGENT
Reel/Frame 032716/0916 →
SECOND LIEN SECURITY AGREEMENT Recorded Jun 27, 2013
From: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, INC.
To: ROYAL BANK OF CANADA
Reel/Frame 030704/0374 →
FIRST LIEN SECURITY AGREEMENT Recorded Jun 26, 2013
From: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 030694/0615 →
RELEASE OF SECURITY INTEREST Recorded Jun 26, 2013
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: PORTAUTHORITY TECHNOLOGIES, INC.
Reel/Frame 030692/0510 →
CORRECTIVE ASSIGNMENT TO CORRECT THE INCOMPLETE NAME CHANGE OF PORTAUTHORITY TECHNOLOGIES INC. PREVIOUSLY RECORDED ON REEL 025328 FRAME 0804. ASSIGNOR(S) HEREBY CONFIRMS THE NAME CHANGE INDICATING THE COMPLETE NAME OF PORTAUTHORITY TECHNOLOGIES, INC. Recorded Jun 24, 2013
From: VIDIUS INC.
To: PORTAUTHORITY TECHNOLOGIES, INC.
Reel/Frame 030667/0972 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Dec 16, 2010
From: PORTAUTHORITY TECHNOLOGIES, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 025503/0919 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 7, 2010
From: PELED, ARIEL; CARNY, OFIR; BARATZ, ARIK; ARBEL, ODED; TROYANSKY, LIDROR
To: VIDIUS INC.
Reel/Frame 025328/0787 →
CHANGE OF NAME Recorded Nov 7, 2010
From: VIDIUS INC.
To: PORTAUTHORITY TECHNOLOGIES INC.
Reel/Frame 025328/0804 →