IP Library Granted Patent US 9,773,108
Granted Patent B1
US 9,773,108 · App. 14/620,225 · Granted Sep 26, 2017

Systems and methods for performing operations on restricted mobile computing platforms

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,773,108
App. No.
14/620,225
Granted
Sep 26, 2017
Kind
B1
Abstract

The disclosed computer-implemented method for performing operations on restricted mobile computing platforms may include (1) receiving a request to perform an operation on a mobile device, (2) requesting access to a synchronization profile of the mobile device that represents the current state of the mobile device, (3) receiving access to the synchronization profile, and (4) performing the operation on the mobile device by performing an analogous operation on the synchronization profile. In some examples, the operation may require access to a current state of the mobile device, and a mobile computing platform of the mobile device may place a limitation on the ability of third-party software to (a) inspect the current state of the mobile device, (b) modify the current state of the mobile device, and/or (c) execute resource-intensive operations via the mobile device. Various other methods, systems, and computer-readable media are also disclosed.

Claims (81)

1. A computer-implemented method for performing operations on restricted mobile computing platforms, at least a portion of the method being performed by a computing device comprising at least one processor, the method comprising:

receiving a request to perform an operation on a mobile device, wherein:

the operation requires access to a current state of the mobile device;

a mobile computing platform of the mobile device isolates third-party software applications from each other and imposes a limitation on an ability of the third-party software applications to perform at least one of:

accessing information about other applications installed on the mobile device;

modifying information about other applications installed on the mobile device; and

modifying other applications installed on the mobile device; and

the operation cannot be performed directly on the mobile device due to the limitation imposed on the third-party software applications by the mobile computing platform;

in response to the request:

requesting, from a cloud-based synchronization service that maintains synchronization profiles for mobile devices, access to a synchronization profile of the mobile device that describes and is correlated to the current state of the mobile device, wherein the cloud-based synchronization service actively correlates the synchronization profile to the current state of the mobile device by:

in response to detecting changes made to the current state of the mobile device, automatically modifying the synchronization profile to reflect the changes made to the current state of the mobile device; and

in response to detecting changes made to the synchronization profile, automatically modifying the current state of the mobile device to reflect the changes made to the synchronization profile;

receiving, from the cloud-based synchronization service, access to the synchronization profile; and

performing an analogous operation on the synchronization profile that circumvents the isolation and the limitation imposed by the mobile computing platform and produces an intended effect of the operation on the mobile device.

2. The method of claim 1 , wherein:

the cloud-based synchronization service requires a valid user authentication before the cloud-based synchronization service will grant access to the synchronization profile; and

requesting access to the synchronization profile comprises providing, as the valid user authentication, a set of user-supplied credentials to the cloud-based synchronization service.

3. The method of claim 1 , wherein the steps of requesting access to the synchronization profile, receiving access to the synchronization profile, and performing the analogous operation on the synchronization profile are performed by a cloud-based security service that is separate and distinct from the cloud-based synchronization service.

4. The method of claim 1 , wherein the mobile device performs the steps of requesting access to the synchronization profile, receiving access to the synchronization profile, and performing the analogous operation on the synchronization profile.

5. The method of claim 1 , wherein the synchronization profile comprises an application binary file that corresponds to an application installed on the mobile device.

6. The method of claim 1 , further comprising reporting a result of the analogous operation to a user of the mobile device.

7. The method of claim 1 , wherein the analogous operation comprises at least one of:

using the synchronization profile to inspect the current state of the mobile device; and

using the synchronization profile to modify the current state of the mobile device.

8. The method of claim 7 , wherein using the synchronization profile to inspect the current state of the mobile device comprises using the synchronization profile to scan the mobile device for at least one of:

malicious software;

software that does not adhere to a privacy standard;

software that consumes a resource in excess of a threshold; and

software that performs an undesirable function.

9. The method of claim 7 , wherein using the synchronization profile to modify the current state of the mobile device comprises at least one of:

using the synchronization profile to add software to the mobile device;

using the synchronization profile to remove software from the mobile device; and

using the synchronization profile to wipe data from the mobile device.

10. The method of claim 1 , wherein the synchronization profile comprises a backup image of the mobile device.

11. A system for performing operations on restricted mobile computing platforms, the system comprising:

a reception module, stored in memory, that receives a request to perform an operation on a mobile device, wherein:

the operation requires access to a current state of the mobile device;

a mobile computing platform of the mobile device isolates third-party software applications from each other and imposes a limitation on an ability of the third-party software applications to perform at least one of:

accessing information about other applications on the mobile device;

modifying information about other applications installed on the mobile device; and

modifying other applications installed on the mobile device; and

the operation cannot be performed directly on the mobile device due to the limitation imposed on the third-party software applications by the mobile computing platform;

a requesting module, stored in memory, that requests, from a cloud-based synchronization service that maintains synchronization profiles for mobile devices, access to a synchronization profile of the mobile device that describes and is correlated to the current state of the mobile device, wherein the cloud-based synchronization service actively correlates the synchronization profile to the current state of the mobile device by:

in response to detecting changes made to the current state of the mobile device, automatically modifying the synchronization profile to reflect the changes made to the current state of the mobile device; and

in response to detecting changes made to the synchronization profile, automatically modifying the current state of the mobile device to reflect the changes made to the synchronization profile;

an accessing module, stored in memory, that receives, from the cloud-based synchronization service, access to the synchronization profile;

an operating module, stored in memory, that performs an analogous operation on the synchronization profile that circumvents the isolation and the limitation imposed by the mobile computing platform and produces an intended effect of the operation on the mobile device; and

at least one physical processor configured to execute the reception module, the requesting module, the accessing module, and the operating module.

12. The system of claim 11 , wherein:

the cloud-based synchronization service requires a valid user authentication before the cloud-based synchronization service will grant access to the synchronization profile; and

the requesting module requests access to the synchronization profile by providing, as the valid user authentication, a set of user-supplied credentials to the cloud-based synchronization service.

13. The system of claim 11 , wherein the requesting module, the accessing module, and the operating module are executed by a cloud-based security service that is separate and distinct from the cloud-based synchronization service.

14. The system of claim 11 , wherein the requesting module, the accessing module, and the operating module are executed by the mobile device.

15. The system of claim 11 , wherein the synchronization profile comprises an application binary file that corresponds to an application installed on the mobile device.

16. The system of claim 11 , further comprising a reporting module, stored in memory, that reports a result of the analogous operation to a user of the mobile device.

17. The system of claim 11 , wherein the analogous operation comprises at least one of:

using the synchronization profile to inspect the current state of the mobile device; and

using the synchronization profile to modify the current state of the mobile device.

18. The system of claim 17 , wherein the operating module uses the synchronization profile to inspect the current state of the mobile device by using the synchronization profile to scan the mobile device for at least one of:

malicious software;

software that does not adhere to a privacy standard;

software that consumes a resource in excess of a threshold; and

software that performs an undesirable function.

19. The system of claim 17 , wherein the operating module uses the synchronization profile to modify the current state of the mobile device by performing at least one of:

using the synchronization profile to add software to the mobile device;

using the synchronization profile to remove software from the mobile device; and

using the synchronization profile to wipe data from the mobile device.

20. A non-transitory computer-readable medium comprising one or more computer-readable instructions that, when executed by at least one processor of a computing device, cause the computing device to:

receive a request to perform an operation on a mobile device, wherein:

the operation requires access to a current state of the mobile device; and

a mobile computing platform of the mobile device isolates third-party software applications from each other and imposes a limitation on an ability of the third-party software applications to perform at least one of:

accessing information about other applications installed on the mobile device;

modifying information about other applications on the mobile device; and

modifying other applications installed on the mobile device; and

the operation cannot be performed directly on the mobile device due to the limitation imposed on the third-party software applications by the mobile computing platform;

in response to the request:

request, from a cloud-based synchronization service that maintains synchronization profiles for mobile devices, access to a synchronization profile of the mobile device that describes and is correlated to the current state of the mobile device, wherein the cloud-based synchronization service actively correlates the synchronization profile to the current state of the mobile device by:

in response to detecting changes made to the current state of the mobile device, automatically modifying the synchronization profile to reflect the changes made to the current state of the mobile device; and

in response to detecting changes made to the synchronization profile, automatically modifying the current state of the mobile device to reflect the changes made to the synchronization profile;

receive, from the cloud-based synchronization service, access to the synchronization profile; and

perform an analogous operation on the synchronization profile that circumvents the isolation and the limitation imposed by the mobile computing platform and produces an intended effect of the operation on the mobile device.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 21, 2019
From: SYMANTEC CORPORATION
To: CA, INC.
Reel/Frame 051144/0918 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 12, 2015
From: YEO, MATTHEW; STANEV, RADOSLAV
To: SYMANTEC CORPORATION
Reel/Frame 034944/0535 →