IP Library Granted Patent US 9,055,097
Granted Patent B1
US 9,055,097 · App. 14/218,522 · Granted Jun 9, 2015

Social network scanning

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,055,097
App. No.
14/218,522
Filed
Mar 18, 2014
Granted
Jun 9, 2015
Kind
B1
Art Unit
2498
USPC
726/26
Abstract

A method includes identifying data on a social network that is associated with a social entity, and determining one or more characteristics of the identified data. A reference to the identified data is generated for each of the one or more characteristic and the one or more references to the identified data is stored in one or more databases that are accessible to a security analysis engine.

Claims (49)

1. A method comprising:

scanning data that is maintained on multiple social networks, wherein scanning comprises identifying, by one or more processors, data that is associated with a social entity;

wherein, scanning data is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

storing one or more references to the identified data in one or more databases that are accessible to a security analysis engine;

algorithmically comparing the one or more generated references to one or more known references, wherein the one or more known references are references to characteristics of identified data that have been assigned a level of risk, and wherein the one or more known references are stored in the one or more databases accessible to the security analysis engine;

determining, a social risk score for the social entity, based on the algorithmic comparison;

comparing the social risk score for the social entity to a social risk threshold;

initiating a security action if the social risk score exceeds the social risk threshold, wherein initiating the security action comprises providing an alert to a user whose profile is spoofed by the social entity.

2. The method of claim 1 wherein the one or more known references to characteristics of identified data that have been assigned a level of risk, are assigned the level of risk by the security analysis engine.

3. The method of claim 1 , wherein identifying an association between the social entity and the identified data comprises identifying that the associated data originated with, or was supplied, created, or referenced by, the social entity.

4. The method of claim 1 , wherein the one or more characteristics of the data are selected from the group consisting of contextual, lexical, visual, audio, profile, URL, network, destination content, domain, host, and application characteristics.

5. The method of claim 1 further comprising:

receiving data associated with the social entity from a third party.

6. The method of claim 5 , wherein receiving data associated with the social entity comprises receiving data through an application programming interface (API).

7. The method of claim 1 , further comprising detecting an action by the social entity, wherein the social risk score for the social entity is compared to the social risk threshold in response to detecting the action by the social entity.

8. The method of claim 1 , further comprising determining that the social entity is an unknown social entity, wherein the social risk score for the social entity is compared to the social risk threshold in response to determining that the social entity is an unknown social entity.

9. The method of claim 1 wherein the one or more references to the identified data are stored separately from the identified data.

10. The method of claim 1 wherein scanning data that is maintained on multiple social networks comprises scanning data that is maintained on a first social network and data that is maintained on a second social network.

11. A system comprising:

one or more processing devices; and

one or more non-transitory computer-readable media coupled to the one or more processing devices having instructions stored thereon which, when executed by the one or more processing devices, cause the one or more processing devices to perform operations comprising:

scanning data that is maintained on multiple social networks, wherein scanning comprises identifying, by one or more processors, data that is associated with a social entity;

wherein, scanning data is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

storing one or more references to the identified data in one or more databases that are accessible to a security analysis engine;

algorithmically comparing the one or more generated references to one or more known references, wherein the one or more known references are references to characteristics of identified data that have been assigned a level of risk, and wherein the one or more known references are stored in the one or more databases accessible to the security analysis engine;

determining, a social risk score for the social entity, based on the algorithmic comparison;

comparing the social risk score for the social entity to a social risk threshold;

initiating a security action if the social risk score exceeds the social risk threshold, wherein initiating the security action comprises providing an alert to a user whose profile is spoofed by the social entity.

12. The system of claim 11 wherein the one or more known references to characteristics of identified data that have been assigned a level of risk, are assigned the level of risk by the security analysis engine.

13. The system of claim 11 , wherein identifying an association between the social entity and the identified data comprises identifying that the associated data originated with, or was supplied, created, or referenced by, the social entity.

14. The system of claim 11 , wherein the one or more characteristics of the data are selected from the group consisting of contextual, lexical, visual, audio, profile, URL, network, destination content, domain, host, and application characteristics.

15. The system of claim 11 further comprising:

receiving data associated with the social entity from a third party.

16. The system of claim 11 , wherein receiving data associated with the social entity comprises receiving data through an application programming interface (API).

17. A non-transitory computer-readable storage device encoded with a computer program, the program comprising instructions that when executed by a data processing apparatus cause the data processing apparatus to perform operations comprising:

scanning data that is maintained on multiple social networks, wherein scanning comprises identifying, by one or more processors, data that is associated with a social entity;

wherein, scanning data is performed on a continuous basis, without user initiation;

determining one or more characteristics of the identified data;

generating, for each of the one or more characteristics, a reference to the identified data that indicates the characteristic;

storing one or more references to the identified data in one or more databases that are accessible to a security analysis engine;

algorithmically comparing the one or more generated references to one or more known references, wherein the one or more known references are references to characteristics of identified data that have been assigned a level of risk, and wherein the one or more known references are stored in the one or more databases accessible to the security analysis engine;

determining, a social risk score for the social entity, based on the algorithmic comparison;

comparing the social risk score for the social entity to a social risk threshold;

initiating a security action if the social risk score exceeds the social risk threshold, wherein initiating the security action comprises providing an alert to a user whose profile is spoofed by the social entity.

18. The medium of claim 17 wherein the one or more known references to characteristics of identified data that have been assigned a level of risk, are assigned the level of risk by the security analysis engine.

Assignments (12)
RELEASE OF SECURITY INTEREST Recorded May 16, 2024
From: STIFEL BANK
To: ZEROFOX, INC.
Reel/Frame 067429/0328 →
SECURITY INTEREST Recorded May 13, 2024
From: ZEROFOX, INC.; LOOKINGGLASS CYBER SOLUTIONS, LLC; IDENTITY THEFT GUARD SOLUTIONS, INC.
To: MONROE CAPITAL MANAGEMENT ADVISORS, LLC
Reel/Frame 067396/0304 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: VIGILANTEATI, INC.
Reel/Frame 060821/0137 →
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2022
From: ORIX GROWTH CAPITAL, LLC
To: ZEROFOX, INC.
Reel/Frame 060821/0173 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNOR AND ASSIGNEE'S INFORMATION ON THE COVER SHEET PREVIOUSLY RECORDED AT REEL: 054878 FRAME: 0117. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Jan 6, 2022
From: HERCULES CAPITAL, INC.
To: ZEROFOX, INC.
Reel/Frame 058652/0754 →
SECURITY INTEREST Recorded Jan 28, 2021
From: ZEROFOX, INC.
To: STIFEL BANK
Reel/Frame 055066/0916 →
SECURITY INTEREST Recorded Jan 13, 2021
From: ZEROFOX, INC.
To: ORIX GROWTH CAPITAL, LLC
Reel/Frame 054906/0449 →
RELEASE OF SECURITY INTEREST Recorded Jan 11, 2021
From: ZEROFOX, INC.
To: HERCULES CAPITAL, INC.
Reel/Frame 054878/0117 →
RELEASE OF SECURITY INTEREST Recorded Jun 27, 2019
From: SILVER LAKE WATERMAN FUND II, L.P.
To: ZEROFOX, INC.
Reel/Frame 049607/0961 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Jun 26, 2019
From: ZEROFOX, INC.
To: HERCULES CAPITAL, INC., AS AGENT
Reel/Frame 049602/0173 →
SECURITY INTEREST Recorded Jun 1, 2017
From: ZEROFOX, INC.
To: SILVER LAKE WATERMAN FUND II, L.P., AS AGENT
Reel/Frame 042568/0264 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 21, 2014
From: FOSTER, JAMES C.; CULLISON, CHRISTOPHER B.; FRANCIS, ROBERT; BLAIR, EVAN
To: ZEROFOX, INC.
Reel/Frame 033988/0333 →