IP Library Granted Patent US 9,311,485
Granted Patent B2
US 9,311,485 · App. 14/510,965 · Granted Apr 12, 2016

Device reputation management

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,311,485
App. No.
14/510,965
Granted
Apr 12, 2016
Kind
B2
Abstract

A device reputation server recognizes malicious devices used in prior attacks and prevents further attacks by the malicious devices. Server computers require a digital fingerprint of any client devices prior to providing any service to such client devices. Logging of network activity include the digital fingerprint of the device perpetrating the attack. When an attack is detected or discovered, the attacked server reports the attack and the digital fingerprint of the perpetrating device to a device reputation server. The device reputation server uses the report to improve future assessments of the reputation of the device associated with the reported digital fingerprint.

Claims (36)

1. A method for determining the trustworthiness of a remotely located, subject device, the method comprising:

receiving data representing one or more attacks by one or more perpetrating devices;

receiving a request for a reputation of the subject device through a computer network;

determining whether the subject device is one of the perpetrating devices;

retrieving data representing one or more of the attacks that are associated with the subject device;

quantifying a measure of trustworthiness of the subject device from the data representing one or more of the attacks that are associated with the subject device; and

sending data representing the measure of trustworthiness of the subject device in response to the request.

2. The method of claim 1 wherein the subject device and the perpetrating devices are each identified by respective digital fingerprints.

3. The method of claim 1 wherein the data representing one or more attacks by one or more perpetrating devices includes digital fingerprints of the perpetrating devices.

4. The method of claim 1 wherein the data representing one or more attacks by one or more perpetrating devices includes excerpts of logs of network activity.

5. The method of claim 1 wherein the data representing one or more attacks by one or more perpetrating devices includes time stamps indicating the time of each of the attacks.

6. A non-transitory computer readable medium useful in association with a computer which includes one or more processors and a memory, the non-transitory computer readable medium including computer instructions which are configured to cause the computer, by execution of the computer instructions in the one or more processors from the memory, to determine the trustworthiness of a remotely located, subject device by at least:

receiving data representing one or more attacks by one or more perpetrating devices;

receiving a request for a reputation of the subject device through a computer network;

determining whether the subject device is one of the perpetrating devices;

retrieving data representing one or more of the attacks that are associated with the subject device;

quantifying a measure of trustworthiness of the subject device from the data representing one or more of the attacks that are associated with the subject device; and

sending data representing the measure of trustworthiness of the subject device in response to the request.

7. The non-transitory computer readable medium of claim 6 wherein the subject device and the perpetrating devices are each identified by respective digital fingerprints.

8. The non-transitory computer readable medium of claim 6 wherein the data representing one or more attacks by one or more perpetrating devices includes digital fingerprints of the perpetrating devices.

9. The non-transitory computer readable medium of claim 6 wherein the data representing one or more attacks by one or more perpetrating devices includes excerpts of logs of network activity.

10. The non-transitory computer readable medium of claim 6 wherein the data representing one or more attacks by one or more perpetrating devices includes time stamps indicating the time of each of the attacks.

11. A computer system comprising:

at least one processor;

a computer readable medium that is operatively coupled to the processor; and

device reputation management logic (i) that executes in the processor from the computer readable medium and (ii) that, when executed by the processor, causes the computer to determine the trustworthiness of a remotely located, subject device by at least:

receiving data representing one or more attacks by one or more perpetrating devices;

receiving a request for a reputation of the subject device through a computer network;

determining whether the subject device is one of the perpetrating devices;

retrieving data representing one or more of the attacks that are associated with the subject device;

quantifying a measure of trustworthiness of the subject device from the data representing one or more of the attacks that are associated with the subject device; and

sending data representing the measure of trustworthiness of the subject device in response to the request.

12. The computer system of claim 11 wherein the subject device and the perpetrating devices are each identified by respective digital fingerprints.

13. The computer system of claim 11 wherein the data representing one or more attacks by one or more perpetrating devices includes digital fingerprints of the perpetrating devices.

14. The computer system of claim 11 wherein the data representing one or more attacks by one or more perpetrating devices includes excerpts of logs of network activity.

15. The computer system of claim 11 wherein the data representing one or more attacks by one or more perpetrating devices includes time stamps indicating the time of each of the attacks.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 12, 2018
From: UNILOC LUXEMBOURG S.A.
To: UNILOC 2017 LLC
Reel/Frame 046532/0088 →
SECURITY INTEREST Recorded Jan 9, 2015
From: UNILOC LUXEMBOURG, S.A.; UNILOC CORPORATION PTY LIMITED; UNILOC USA, INC.
To: FORTRESS CREDIT CO LLC
Reel/Frame 034747/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 9, 2014
From: ETCHEGOYEN, CRAIG S.
To: UNILOC LUXEMBOURG S.A.
Reel/Frame 034438/0492 →