IP Library Granted Patent US 9,734,331
Granted Patent B2
US 9,734,331 · App. 15/190,592 · Granted Aug 15, 2017

Render engine, and method of using the same, to verify data for access and/or publication via a computer system

Inventors: Chris Lalonde (Campbell, CA); Andrew Millard Brown (Mountain View, CA); Mathew Gene Henley (Campbell, CA); Quang D. Pham (San Jose, CA); Kevin Black (San Jose, CA)
Assignee: PAYPAL, INC.
G06F21/56G06F21/50G06F21/51G06F21/566G06F21/60H04L63/1441G06F2221/2115G06F2221/2119G06F2221/2151
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,734,331
App. No.
15/190,592
Granted
Aug 15, 2017
Kind
B2
Abstract

A method and system to verify active content at a server system include receiving, at the server system a communication (e.g., an e-mail message or e-commerce listing) that includes active content that is to be made accessible via the server system. At the server system, the active content is rendered to generate rendered active content. The rendered active content presents a representation of information and processes to which an end user will be subject. At the server system, the rendered active content is verified as not being malicious.

Claims (58)

1. A system to verify publication data at a computer system, the system comprising including:

one or more processors; and

a memory storing instructions that, in response to being executed by at least one processor among the one or more processors, causes the system to perform operations comprising;

retrieving active content, the active content including a reference to an external storage location from which additional data is to be retrieved;

performing a first validation on the active content by applying one or more filters to the active content;

archiving a record of the reference, the record of the reference including a time stamp indicating a first date and a first time associated with validation of the active content;

determining that a predetermined verification time interval has elapsed since the first date and the first time of the time stamp;

performing a second validation on the active content in response to determining that the predetermined verification time interval has elapsed; and

resetting the time stamp to indicate a second date and a second time in response to performing the second validation.

2. The system of claim 1 , wherein performing the second validation includes:

applying the one or more filters to the active content in response to the determining that the predetermined verification time interval has elapsed.

3. The system of claim 1 , wherein resetting the time stamp to indicate the second date and the second time in response to the second validation includes:

determining that the active content does not include malicious content based on the second validation.

4. The system of claim 1 , wherein the reference to the external storage location includes a link to the storage location.

5. The system of claim 1 , the operations further comprising storing the active content in a database, and

wherein performing the second validation on the active content includes: extracting the active content from the database in response to determining that the predetermined time interval has elapsed.

6. The system of claim 1 , wherein the additional data includes executable code, and performing the first validation includes:

validating the executable code within the additional data, wherein validating the executable code includes determining that the executable code is not malicious.

7. The system of claim 1 , the operations further comprising:

determining that the additional data contains malicious content based on performing the second validation; and

generating a notification that indicates that the additional data is a security risk in response to the determining that the additional data contains the malicious content.

8. A method comprising:

retrieving active content, the active content including a reference to an external storage location from which additional data is to be retrieved;

performing a first validation on the active content by applying one or more filters to the active content;

archiving a record of the reference, the record of the reference including a time stamp indicating a first date and a first time associated with validation of the active content;

determining that a predetermined verification time interval has elapsed since the first date and the first time of the time stamp;

performing a second validation on the active content in response to determining that the predetermined verification time interval has elapsed; and

resetting the time stamp to indicate a second date and a second time in response to performing the second validation.

9. The method of claim 8 , wherein performing the second validation includes:

applying the one or more filters to the active content in response to the determining that the predetermined verification time interval has elapsed.

10. The method of claim 8 , wherein resetting the time stamp to indicate the second date and the second time in response to the second validation includes:

determining that the active content does not include malicious content based on the second validation.

11. The method of claim 8 , wherein the reference to the external storage location includes a link to the storage location.

12. The method of claim 8 , further comprising:

storing the active content in a database, and

wherein performing the second validation on the active content includes: extracting the active content from the database in response to determining that the predetermined time interval has elapsed.

13. The method of claim 8 , wherein the additional data includes executable code, and performing the first validation includes:

validating the executable code within the additional data, wherein validating the executable code includes determining that the executable code is not malicious.

14. The method of claim 8 , further comprising:

determining that the additional data contains malicious content based on performing the second validation; and

generating a notification that indicates that the additional data is a security risk in response to the determining that the additional data contains the malicious content.

15. One or more non-transitory machine-readable storage media including instructions that, in response to being executed by one or more processors, cause a system to perform operations comprising:

retrieving active content, the active content including a reference to an external storage location from which additional data is to be retrieved;

performing a first validation on the active content by applying one or more filters to the additional data;

archiving a record of the reference, the record of the reference including a time stamp indicating a first date and a first time associated with validation of the active content;

determining that a predetermined verification time interval has elapsed since the first date and the first time of the time stamp;

performing a second validation on the active content in response to determining that the predetermined verification time interval has elapsed; and

resetting the time stamp to indicate a second date and a second time in response to performing the second validation.

16. The one or more non-transitory machine-readable storage media of claim 15 , wherein performing the second validation includes:

applying filters to the additional data in response to the determining that the predetermined verification time interval has elapsed.

17. The one or more non-transitory machine-readable storage media of claim 15 , wherein resetting the time stamp to indicate the second date and the second time in response to the second validation includes:

determining that the additional data does not include malicious content based on the second validation.

18. The one or more non-transitory machine-readable storage media of claim 15 , wherein the reference to the external storage location includes a link to the storage location.

19. The one or more non-transitory machine-readable storage media of claim 15 , wherein the operations further comprise:

storing the active content in a database, and

wherein performing the second validation on the active content includes: extracting the active content from the database in response to determining that the predetermined time interval has elapsed.

20. The one or more non-transitory machine-readable storage media of claim 15 , wherein the additional data includes executable code, and performing the first validation includes:

validating the executable code within the additional data, wherein validating the executable code includes determining that the executable code is not malicious.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 23, 2016
From: LALONDE, CHRIS; BROWN, ANDREW M.; HENLEY, MATHEW G.; PHAM, QUANG D.; BLACK, KEVIN
To: EBAY INC.
Reel/Frame 038995/0775 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 23, 2016
From: EBAY INC.
To: PAYPAL, INC.
Reel/Frame 038995/0841 →
Continuity (5)
Continuation 14280222 · May 16, 2014
Continuation 13735633 · Jan 7, 2013
Continuation 10876336 · Jun 23, 2004
Provisional Application 60581857 · Jun 21, 2004
Related Publication 20160306969A1 · Oct 20, 2016