IP Library Granted Patent US 9,780,951
Granted Patent B2
US 9,780,951 · App. 13/931,120 · Granted Oct 3, 2017

Prevention of forgery of web requests to a server

Inventors: Simon Hunt (Naples, FL); Balbir Singh (Gurgaon, IN); Nitin Munjal (Gurgaon, IN); Nitin Jaglan (New Delhi, IN)
Assignee: McAfee, Inc.
H04L9/3223H04L63/0428H04L63/08H04L63/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,780,951
App. No.
13/931,120
Granted
Oct 3, 2017
Kind
B2
Abstract

Technologies for prevention of forgery of a network communication request to a server include a system for security of a network communication request. The system includes a communication module configured to receive the network communication request from a client. The network communication request may have a content parameter. The communication module may be configured to generate a string of content parameters comprising the content parameters and a hash of the content parameter, and communicate portions of a result of the network communication request to the client incorporating the encrypted string of content parameters. Furthermore, the communication module may receive a subsequent request from the client. The subsequent request may be associated with the network communication request. As a result of authenticating the subsequent request, the communication module may complete the network communication request.

Claims (41)

1. A system for security of a network communication request comprising a processor, a memory, an encrypt/decrypt module, and a communication module, the system configured to:

receive the network communication request from a client, the network communication request having a content parameter;

generate a hash of the content parameter;

subsequent to generation of the hash of the content parameter, append the hash of the content parameter to the content parameter to generate a string of content parameters comprising the content parameter and the hash of the content parameter;

generate a session variable that is unique to the client, wherein the session variable is a random variable, and wherein only the communication module is provided access to the session variable;

encrypt the string of content parameters using the session variable;

communicate portions of a result of the network communication request to the client incorporating the encrypted string of content parameters;

receive a subsequent request from the client, the subsequent request associated with the network communication request;

authenticate the subsequent request by verifying that the encrypted string of content parameters returns with the subsequent request; and

as a result of authenticating the subsequent request, complete the network communication request.

2. The system of claim 1 , wherein the network communication request is a web request.

3. The system of claim 1 , wherein the session variable is further associated with the network communication request.

4. The system of claim 1 , wherein the subsequent request is an asynchronous JavaScript and extensible markup language (AJAX) request.

5. The system of claim 1 , wherein the hash is a cryptographic hash.

6. A method for network communications, comprising:

receiving, at a server, a network communication request from a client, the network communication request comprising a request for a content parameter;

generating a hash of the content parameter;

subsequent to generating the hash of the content parameter, appending the hash of the content parameter to the content parameter to generate, at the server, a string of content parameters comprising the content parameter and the hash of the content parameter;

generating, at the server, a session variable that is unique to the client, wherein the session variable is a random variable, and wherein only the server is provided access to the session variable;

encrypting, at the server, the string of content parameters using the session variable;

communicating portions of a result of the network communication request to the client incorporating the encrypted string of content parameters;

receiving, at the server, a subsequent request from the client, the subsequent request associated with the network communication request;

authenticating the subsequent request by verifying that the encrypted string of content parameters returns with the subsequent request; and

as a result of authenticating the subsequent request, completing the network communication request.

7. The method of claim 6 , wherein the network communication request is a web request.

8. The method of claim 6 , wherein the session variable is further associated with the network communication request.

9. The method of claim 6 , wherein the subsequent request is an asynchronous JavaScript and extensible markup language (AJAX) request.

10. The method of claim 6 , wherein the hash is a cryptographic hash.

11. One or more non-transitory computer readable storage medium, comprising computer-executable instructions carried on the one or more computer readable storage medium, the instructions readable by a processor, the instructions, when read and executed, causing the processor to:

receive a network communication request from a client, the network communication request comprising a request for a content parameter;

generate a hash of the content parameter;

subsequent to generation of the hash of the content parameter, append the hash of the content parameter to the content parameter to generate a string of content parameters comprising the content parameter and the hash of the content parameter;

generate a session variable that is unique to the client, wherein the session variable is a random variable, and wherein only the processor is provided access to the session variable;

encrypt the string of content parameters using the session variable;

communicate portions of a result of the network communication request to the client incorporating the encrypted string of content parameters;

receive a subsequent request from the client, the subsequent request associated with the network communication request;

authenticate the subsequent request by verifying that the encrypted string of content parameters returns with the subsequent request; and

as a result of authenticating the subsequent request, complete the network communication request.

12. The medium of claim 11 , wherein the network communication request is a web request.

13. The medium of claim 11 , wherein the session variable is further associated with the network communication request.

14. The medium of claim 11 , wherein the subsequent request is an asynchronous JavaScript and extensible markup language (AJAX) request.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 18, 2013
From: HUNT, SIMON; SINGH, BALBIR; MUNJAL, NITIN; JAGLAN, NITIN
To: MCAFEE, INC.
Reel/Frame 031430/0397 →
Priority Claims (1)
IN 741/DEL/2013 · Mar 14, 2013 · national
Continuity (1)
Related Publication 20140281492A1 · Sep 18, 2014