IP Library Granted Patent US 10,462,156
Granted Patent B2
US 10,462,156 · App. 14/494,723 · Granted Oct 29, 2019

Determining a reputation of data using a data visa

Inventors: Michael Schneider (Paderborn, DE); Paul Gartside (Buckinghamshire, GB); David Oxley (Aylesbury, GB); Ramon Peypoch (San Carlos, CA)
Assignee: McAfee, LLC
H04L63/1408G06F21/562
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,462,156
App. No.
14/494,723
Granted
Oct 29, 2019
Kind
B2
Abstract

Particular embodiments described herein provide for an electronic device that can be configured to receive data in a data flow, extract a data visa from the data flow, wherein the data visa is related to the data, and determine a reputation of the data from the data visa. The data visa can include reputation determination information obtained by previous network elements in the data flow. In addition, the electronic device can update the data visa, and communicate the updated data visa and data to a next network element in the data flow.

Claims (65)

1. At least one computer-readable medium comprising one or more instructions that, when executed by at least one processor, perform a method comprising:

receiving data in a data flow;

extracting a data visa from the data flow, wherein the data visa travels with the data through the data flow and includes reputation determination information from at least one previous hop network element in the data flow;

bypassing a security filter based on the reputation determination information;

determining a reputation of the data based on the data and the reputation determination information, wherein the reputation of the data is determined from meta data included in the data visa, and the meta data includes a title or role of a user, a geo-location of the user, or a historic data use profile of the user;

storing the reputation of the data in the data visa; and

communicating the data visa and the data to a next network element in the data flow.

2. The at least one computer-readable medium of claim 1 , wherein the data visa includes information related to the data flow including an origin, a destination, and chain of the data flow.

3. The at least one computer-readable medium of claim 1 , the method further comprising:

synchronizing the data visa with previous known data visas to validate the data visa.

4. The at least one computer-readable medium of claim 1 , the method further comprising:

determining, for the data visa, a context indicating whether a server that communicated the data has an operating system is vulnerable.

5. The at least one computer-readable medium of claim 1 , wherein the data visa includes reputation determination information obtained by a plurality of previous hop network elements in the data flow.

6. The at least one computer-readable medium of claim 1 , the method further comprising:

removing the data from the data flow based on the determined reputation of the data from the data visa.

7. The at least one computer-readable medium of claim 1 , the method further comprising:

validating the data visa.

8. The at least one computer-readable medium of claim 1 , the method further comprising:

determining the next network element in the data flow;

updating the data visa to include information related to the next network element; and

redetermining a new reputation of the data from the updated data visa.

9. An apparatus comprising:

a processor; and

a data reputation module configured to cause the processor to

extract a data visa from a data flow, wherein the data visa travels with data in the data flow through the data flow and includes reputation determination information from at least one previous hop network element in the data flow;

bypass a security filter based on the reputation determination information;

determine a reputation of the data based on the data and the reputation determination information, wherein the reputation of the data is determined from meta data included in the data visa, and the meta data includes a title or role of a user, a geo-location of the user, or a historic data use profile of the user;

store the reputation of the data in the data visa; and

communicate the data visa and the data to a next network element in the data flow.

10. The apparatus of claim 9 , wherein the data reputation module is further configured to:

remove the data from the data flow based on the determined reputation of the data from the data visa.

11. The apparatus of claim 9 , wherein the data visa is validated.

12. The apparatus of claim 9 , wherein attributes of the data visa are correlated with known attributes of known data visas.

13. The apparatus of claim 9 , wherein the data reputation module is further configured to:

determine the next network element in the data flow;

update the data visa to include information related to the next network element; and

redetermine a new reputation of the data from the updated data visa.

14. A method comprising:

receiving data in a data flow;

extracting a data visa from the data flow, wherein the data visa travels with the data through the data flow and includes reputation determination information from at least one previous hop network element in the data flow;

bypassing a security filter based on the reputation determination information;

determining a reputation of the data based on the data and the reputation determination information, wherein the reputation of the data is determined from meta data included in the data visa, and the meta data includes a title or role of a user, a geo-location of the user, or a historic data use profile of the user;

storing the reputation of the data in the data visa; and

communicating the data visa and the data to a next network element in the data flow.

15. The method of claim 14 , wherein the data visa includes reputation determination information obtained by a plurality of previous hop network elements in the data flow.

16. The method of claim 14 , further comprising:

removing the data from the data flow based on the determined reputation of the data from the data visa.

17. The method of claim 14 , wherein the data visa is validated.

18. The method of claim 14 , further comprising:

determining the next network element in the data flow;

updating the data visa to include information related to the next network element; and

redetermining a new reputation of the data from the updated data visa.

19. A system for determining a reputation of data, the system comprising:

a processor;

memory that includes one or more instructions; and

a data reputation module to execute the one or more instructions, the data reputation module configured for

receiving the data in a data flow;

extracting a data visa from the data flow, wherein the data visa travels with the data through the data flow, wherein the data visa includes reputation determination information from at least one previous hop network element in the data flow;

bypassing a security filter based on the reputation determination information;

determining a reputation of the data based on the data and the reputation determination information, wherein the reputation of the data is determined from meta data included in the data visa, and the meta data includes a title or role of a user, a geo-location of the user, or a historic data use profile of the user;

storing the reputation of the data in the data visa; and

communicating the data visa and the data to a next network element in the data flow.

20. The system of claim 19 , wherein the meta data includes the title or role of the user, the geo-location of the user, and the historic data use profile of the user.

21. The system of claim 19 , wherein the data reputation module rates the data before performing a data content scanning defined by data loss prevention (DLP) or virus scanning.

22. The system of claim 19 , wherein the system encrypts the data or puts a passcode lock on the data prior to the communicating.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 7, 2014
From: SCHNEIDER, MICHAEL; GARTSIDE, PAUL; OXLEY, DAVID; PEYPOCH, RAMON
To: MCAFEE, INC.
Reel/Frame 034126/0214 →