IP Library Granted Patent US 10,200,345
Granted Patent B2
US 10,200,345 · App. 14/524,939 · Granted Feb 5, 2019

Electronic mail sender verification

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,200,345
App. No.
14/524,939
Granted
Feb 5, 2019
Kind
B2
Abstract

An e-mail server decrypts attachments of an e-mail message with a key associated with a sending device such that failure of the decryption indicates the e-mail message can be harmful. The sending device inserts its device identifier into the e-mail message as a header and uses an encryption key associated with the device identifier and a digital fingerprint of the sending device to encrypt all attachments of the e-mail message. The delivering e-mail server processes the e-mail message. If the e-mail message contains no identifier, if no key is associated with the parsed identifier, or if attempted encryption fails, the e-mail server determines that the e-mail message is potentially harmful and disarms the e-mail message.

Claims (46)

1. A method for verifying a purported sender of an e-mail message, the method comprising:

retrieving an encryption key associated with a device from which the e-mail message originated;

attempting decryption of one or more components of the e-mail message using the encryption key;

determining that the decryption fails;

in response to determining that the decryption fails, disarming but not deleting the e-mail message to form a disarmed e-mail message;

delivering the disarmed e-mail message in place of the e-mail message;

parsing a transaction identifier from the e-mail message, wherein the transaction identifier identifies a mail submission transaction by which the e-mail message was submitted; and

comparing the transaction identifier to one or more previously stored transaction identifiers associated with the purported sender of the e-mail.

2. The method of claim 1 wherein the encryption key is derived from a digital fingerprint of the device.

3. The method of claim 1 further comprising:

parsing an identifier of the device from the e-mail message; and

wherein retrieving the encryption key associated with the device includes using the identifier.

4. The method of claim 1 wherein disarming the e-mail message comprises:

stripping one or more attachments from the e-mail message.

5. A non-transitory tangible computer readable medium useful in association with a computer that includes one or more processors and a memory, the non-transitory computer readable medium including computer instructions that are configured to cause the computer, by execution of the computer instructions in the one or more processors from the memory, to verify a purported sender of an e-mail message by at least:

retrieving an encryption key associated with a device from which the e-mail message originated;

attempting decryption of one or more components of the e-mail message using the encryption key;

determining that the decryption fails;

in response to determining that the decryption fails, disarming but not deleting the e-mail message to form a disarmed e-mail message;

delivering the disarmed e-mail message in place of the e-mail message;

parsing a transaction identifier from the e-mail message, wherein the transaction identifier identifies a mail submission transaction by which the e-mail message was submitted; and

comparing the transaction identifier to one or more previously stored transaction identifiers associated with the purported sender of the e-mail.

6. The computer readable medium of claim 5 wherein the encryption key is derived from a digital fingerprint of the device.

7. The computer readable medium of claim 5 wherein the computer instructions are configured to cause the computer to verify a purported sender of an e-mail message by at least also:

parsing an identifier of the device from the e-mail message; and

wherein retrieving the encryption key associated with the device includes using the identifier.

8. The computer readable medium of claim 5 wherein disarming the e-mail message comprises:

stripping one or more attachments from the e-mail message.

9. A computer system comprising:

at least one processor;

a computer readable medium that is operatively coupled to the processor;

network access circuitry that is operatively coupled to the processor; and

sender verification logic (i) that executes at least in part in the processor from the computer readable medium and (ii) that, when executed, causes the processor to verify a purported sender of an e-mail message by at least:

retrieving an encryption key associated with a device from which the e-mail message originated;

attempting decryption of one or more components of the e-mail message using the encryption key;

determining that the decryption fails;

in response to determining that the decryption fails, disarming but not deleting the e-mail message to form a disarmed e-mail message;

delivering the disarmed e-mail message in place of the e-mail message;

parsing a transaction identifier from the e-mail message, wherein the transaction identifier identifies a mail submission transaction by which the e-mail message was submitted; and

comparing the transaction identifier to one or more previously stored transaction identifiers associated with the purported sender of the e-mail.

10. The computer system of claim 9 wherein the encryption key is derived from a digital fingerprint of the device.

11. The computer system of claim 9 wherein the sender verification logic causes the processor to verify a purported sender of an e-mail message by at least also:

parsing an identifier of the device from the e-mail message; and

wherein retrieving the encryption key associated with the device includes using the identifier.

12. The computer system of claim 9 wherein disarming the e-mail message comprises:

stripping one or more attachments from the e-mail message.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 12, 2018
From: UNILOC LUXEMBOURG S.A.
To: UNILOC 2017 LLC
Reel/Frame 046532/0088 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 6, 2015
From: HARJANTO, DONO; ETCHEGOYEN, CRAIG
To: UNILOC LUXEMBOURG S.A.
Reel/Frame 034907/0772 →
SECURITY INTEREST Recorded Jan 9, 2015
From: UNILOC LUXEMBOURG, S.A.; UNILOC CORPORATION PTY LIMITED; UNILOC USA, INC.
To: FORTRESS CREDIT CO LLC
Reel/Frame 034747/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 8, 2015
From: HARJANTO, DONO
To: UNILOC LUXEMBOURG S.A.
Reel/Frame 034667/0021 →