IP Library Granted Patent US 9,473,533
Granted Patent B2
US 9,473,533 · App. 14/267,399 · Granted Oct 18, 2016

Secure mobile framework

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,473,533
App. No.
14/267,399
Granted
Oct 18, 2016
Kind
B2
Abstract

Systems and methods for a secure mobile framework to securely connect applications running on mobile devices to services within an enterprise are provided. Various embodiments provide mechanisms of securitizing data and communication between mobile devices and end point services accessed from a gateway of responsible authorization, authentication, anomaly detection, fraud detection, and policy management. Some embodiments provide for the integration of server and client side security mechanisms, binding of a user/application/device to an endpoint service along with multiple encryption mechanisms. For example, the secure mobile framework provides a secure container on the mobile device, secure files, a virtual file system partition, a multiple level authentication approach (e.g., to access a secure container on the mobile device and to access enterprise services), and a server side fraud detection system.

Claims (18)

1. A system comprising:

a gateway server, providing remote devices with access to services of an enterprise, wherein each remote device has stored in memory one or more applications managed by the enterprise;

an authenticator, accessible by the gateway server, and including a processor configured to:

determine if a user of one of the remote devices is authorized to access the enterprise; and

construct policies regarding the management of the one or more applications, wherein the policies are based on the services that the user of the one of the remote devices is authorized to access on the one of the remote devices;

a token generator accessible by the gateway and including a processor configured to: generate one or more tokens for creating secure connections between the one or more applications managed by the enterprise and the services, wherein the one or more tokens includes a user binding token comprising an amalgamated, unique representation of a user identifier of the user, a device identifier of the remote device of the user, an application family associated with the one or more applications, and a device type associated with the device identifier; and

a communications module including a processor configured to communicate the policies to the remote devices.

2. The system of claim 1 , further comprising a discovery service to determine which of the services of the enterprise to connect with the one or more applications.

3. The system of claim 2 , wherein the discovery service selects which of the services to connect with the one or more applications based on the user and a set of associated privileges.

4. The system of claim 1 , wherein the token generator generates an enterprise authentication token and a framework authentication token.

5. The system of claim 4 , wherein framework authentication token includes the enterprise authentication token, the user binding token, and a framework authentication token expiration date.

6. The system of claim 4 , wherein the user binding token is generated based on a user identifier, a device identifier, device type identifier, and an application family identifier.

7. The system of claim 1 , further comprising an anomaly detector to monitor activity between the remote devices and the services and generate an anomaly indicator, and wherein the anomaly detector further determines a reaction to the anomaly indicator.

8. The system of claim 1 , wherein the gateway server includes multiple levels each of which provides isolated authentication protocols and activity logging.

9. The system of claim 8 , wherein the multiple levels include a perimeter gateway and an intermediate gateway.

10. The system of claim 9 , wherein the intermediate gateway uses mobile device telemetry and configuration settings to generate indicators of fraud or anomaly detection.

11. The system of claim 1 , wherein the policies constructed regarding the management of the one or more applications include a unique policy for each of the one or more applications.

12. The system of claim 1 , wherein the policies constructed regarding the management of the one or more applications include a common policy for a subset of the one or more applications that share access to authorization and authentication information.

Assignments (9)
SECURITY INTEREST Recorded May 29, 2026
From: SYNCHRONOSS TECHNOLOGIES INC.
To: ROYAL BANK OF CANADA, AS ADMINISTRATIVE AGENT
Reel/Frame 074795/0700 →
RELEASE OF SECURITY INTEREST Recorded Apr 15, 2026
From: BGC LENDER REP LLC, AS ADMINISTRATIVE AGENT
To: SYNCHRONOSS TECHNOLOGIES, INC.; SYNCHRONOSS SOFTWARE IRELAND LIMITED
Reel/Frame 074370/0226 →
RELEASE OF SECURITY INTEREST AT REEL/FRAME 067964/0628 Recorded Feb 13, 2026
From: BGC LENDER REP LLC, AS ADMINISTRATIVE AGENT
To: SYNCHRONOSS TECHNOLOGIES, INC.; SYNCHRONOSS SOFTWARE IRELAND LIMITED
Reel/Frame 074858/0327 →
RELEASE OF SECURITY INTEREST Recorded Apr 7, 2025
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: CITIZENS BANK, N.A.
Reel/Frame 071224/0279 →
SECURITY AGREEMENT Recorded Jun 28, 2024
From: SYNCHRONOSS TECHNOLOGIES, INC.; SYNCHRONOSS SOFTWARE IRELAND LIMITED
To: BGC LENDER REP LLC, AS ADMINISTRATIVE AGENT
Reel/Frame 067964/0628 →
SECURITY INTEREST Recorded Oct 29, 2019
From: SYNCHRONOSS TECHNOLOGIES, INC.
To: CITIZENS BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 050854/0913 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2019
From: SNCR, LLC
To: SYNCHRONOSS TECHNOLOGIES, INC
Reel/Frame 048998/0199 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 18, 2015
From: GOLDMAN, SACHS & CO.
To: SNCR, LLC
Reel/Frame 037072/0027 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 31, 2015
From: FALTYN, DANIEL; SMITH, ANDREW J.R.
To: GOLDMAN, SACHS & CO.
Reel/Frame 035298/0659 →