IP Library Granted Patent US 8,856,269
Granted Patent B2
US 8,856,269 · App. 12/643,198 · Granted Oct 7, 2014

System and method for identifying a masked IP address

Inventor: Rajendra A. Gopalakrishna (Fremont, CA)
Assignee: CA, Inc.
H04L67/02H04L69/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,856,269
App. No.
12/643,198
Granted
Oct 7, 2014
Kind
B2
Abstract

A system identifies a real Internet Protocol (IP) address of a computer device having a browser and software for masking the real IP address. The system includes a server in communication with the device through an Anonymous Proxy Server (APS), an algorithm, and a website with embedded dynamic web content from the server. The algorithm identifies the real IP address, and executes the dynamic web content on the browser to open a direct network connection between the server and device. The network connection identifies the real IP address. A method for identifying the real IP address includes embedding dynamic web content within the website, executing the content within the browser when the device accesses the website via a first network connection, thereby opening a second network connection between the server and device. The real IP address is identified over the second network connection, and a security action may be executed.

Claims (29)

1. A system for identifying a real Internet Protocol (IP) address of a computer device having a web browser and a real IP address which is masked using at least one Anonymous Proxy Server (APS) to create a masked IP address, the system comprising:

a server hosting a target website with an embedded set of dynamic web content, wherein the server is in remote network communication with the computer device through the at least one APS; and

an algorithm, executable by the server from memory of the server, for identifying the real IP address, wherein the server is configured to execute the algorithm when the computer device accesses the target website with the masked IP address over a first network connection through the at least one APS, including:

automatically downloading the set of dynamic web content to the computer device via the web browser over the first network connection;

executing the set of dynamic web content within the web browser;

opening a second network connection directly between the server and the computer device that bypasses the at least one APS; and

using the direct network connection to identify the real IP address resident on the computer device.

2. The system of claim 1 , wherein the server is further configured for executing at least one security action upon identifying the real IP address.

3. The system of claim 2 , wherein the at least one security action includes at least one of: remotely retrieving the real IP address from the computer device, recording the real IP address, displaying the real IP address on a display screen, and tracking the real IP address.

4. The system of claim 1 , wherein the dynamic web content communicates with the server without the server providing notice to a user of the computer device.

5. The system of claim 1 , further comprising a host machine in communication with the server, wherein the host machine is configured for generating the dynamic web content offline from the server.

6. A system for identifying a real Internet Protocol (IP) address of a computer device having a web browser and software for masking the real IP address via a daisy-chain of Anonymous Proxy Servers (APSs), the system comprising:

a server hosting a target website, wherein the server is in remote network communication with the computer device through the daisy-chain of APSs and wherein the target website includes embedded dynamic web content; and

an algorithm, executable by the server from memory of the server, for identifying the real IP address of the computer device, wherein the computer device uses a masked IP address which is masked by each APS in the daisy-chain of APSs to access the server over a first network connection;

wherein the server is configured to automatically download and execute the dynamic web content to the computer device via the web browser over the first network connection as one of an applet and a streaming media file when the computer device accesses the server over the first network connection to thereby open one of a direct socket connection and a direct TCP/IP connection between the server and the computer device bypassing the daisy-chain of APSs, and is further configured for using the direct socket connection or the direct TCP/IP connection as a second network connection to identify the real IP address.

7. The system of claim 6 , wherein the server is further configured for executing at least one security action upon identifying the real IP address.

8. The system of claim 6 , further comprising a host machine in communication with the server, wherein the host machine is configured for generating the dynamic web content offline from the server.

9. The system of claim 8 , wherein the at least one security action includes at least one of: remotely retrieving the real IP address from the computer device, recording the real IP address, displaying the real IP address on a display screen, and tracking the real IP address.

10. A method for identifying a real Internet Protocol (IP) address of a computer device having a web browser and software for masking the real IP address via at least one Anonymous Proxy Server (APS) to create a masked IP address, the method comprising:

embedding a set of dynamic web content into a target website hosted by a server;

downloading and executing the set of dynamic web content within the web browser of the computer device, using the server, when the computer device accesses the target website via a first network connection with the masked IP address, wherein executing the set of dynamic web content automatically opens a second network connection directly between the server and the computer device that bypasses the at least one APS; and

identifying the real IP address over the second network connection using the server after downloading and executing the set of dynamic web content.

11. The method of claim 10 , further comprising: executing at least one security action via the server in response to detecting the real IP address.

12. The method of claim 11 , wherein executing at least one security action includes at least one of: remotely retrieving the real IP address from the computer device, recording the real IP address, displaying the real IP address on a display screen, and tracking the real IP address.

13. The method of claim 10 , wherein the second network connection is one of a socket connection and a TCP/IP connection.

14. The method of claim 10 , further comprising: generating the dynamic web content offline from the server using a host machine.

15. The method of claim 10 , further comprising: using the dynamic web content to detect at least one of an internal IP address and a hostname of the computer device.

16. The method of claim 10 , further comprising: processing the real IP address to determine a true location of a user of the computer device.

17. The method of claim 10 , wherein the at least one APS includes a daisy-chain of APSs.

Assignments (3)
MERGER Recorded Sep 10, 2013
From: COMPUTER ASSOCIATES THINK, INC.
To: CA, INC.
Reel/Frame 031170/0747 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 23, 2011
From: ARCOT SYSTEMS, INC.
To: COMPUTER ASSOCIATES THINK, INC.
Reel/Frame 026488/0240 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 21, 2009
From: GOPALAKRISHNA, RAJENDRA A.
To: ARCOT SYSTEMS, INC.
Reel/Frame 023687/0582 →
Continuity (2)
Provisional Application 61154242 · Feb 20, 2009
Related Publication 20100217825A1 · Aug 26, 2010