IP Library Granted Patent US 10,027,700
Granted Patent B2
US 10,027,700 · App. 15/454,915 · Granted Jul 17, 2018

Secure analysis application for accessing web resources via URL forwarding

Inventors: Scott M. Petry (Portola Valley, CA); Ramesh Rajagopal (Los Altos, CA); Peter K. Lund (San Francisco, CA); Fredric L. Cox (San Jose, CA); Adam P. Moore (San Francisco, CA); Leslie L. Dunston (Foster City, CA); Varley H. Taylor (San Francisco, CA); Zachary L. Segal (San Francisco, CA); Luka I. Stolyarov (San Francisco, CA); Joshua R. McMains (Morgan Hill, CA); Brian T. Zaugg (Campbell, CA)
Assignee: Authentic8, Inc.
H04L63/1433H04L63/0209H04L63/0428H04L63/083H04L63/0876H04L63/10H04L63/123H04L67/02H04L67/2814
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,027,700
App. No.
15/454,915
Granted
Jul 17, 2018
Kind
B2
Abstract

Embodiments described herein may be directed to systems, methods, apparatuses, devices, computer program products, computer-executable instructions, and/or applications for securely and anonymously accessing web resources and customizable attribution of identity. In accordance with the present disclosure, a user may inspect and analyze a webpage as well as the underlying source code from an “arm's length” using a secure analysis application to prevent exposure on the user's local machine. The secure analysis application may provide increased flexibility in masking and/or modifying the user's digital persona to external websites. Additionally, the secure analysis application may be integrated with a translation service to translate textual web content without the web content provider being alerted that a translation is taking place.

Claims (73)

1. A computing apparatus located in a first location in a network and comprising:

at least one memory comprising instructions; and

at least one processing device configured for executing the instructions, wherein the instructions cause the at least one processing device to perform operations of:

receiving, by an input/output (I/O) unit of the computing apparatus, a request for web content;

determining, by a secure analysis application, the requested web content is potentially harmful to the computing apparatus;

selecting, by the secure analysis application, the secure web container from a plurality of secure web containers and an egress node from a plurality of egress nodes, based at least in part on the requested web content;

transmitting, by a communication unit of the computing apparatus, a web address associated with the requested web content to the secure web container located in a second location in the network, wherein the secure web container uses the web address to retrieve the requested web content from a web server; and

providing, in a secure browser associated with the secure analysis application and at the computing apparatus, access to the requested web content via an encrypted communication connection established between the computing apparatus and the secure web container, wherein the requested web content is rendered by the secure web container so that the computing apparatus is not exposed to the rendered web content,

wherein the egress node is located in a third location in the network.

2. The computing apparatus of claim 1 , wherein the instructions further cause the at least one processing device to perform the operations of:

initializing, by the secure analysis application, the secure web container for retrieving the requested web content via the egress node; and

establishing, by the communication unit, the encrypted communication connection between the computing apparatus and the secure web container, wherein the web address associated with the requested web content is transmitted from the computing apparatus to the secure web container via the encrypted communication connection.

3. The computing apparatus of claim 2 , wherein the secure web container comprises multiple secure web containers located in different locations in the network, wherein the egress node comprises multiple egress nodes located in different locations in the network, and wherein each secure web container and each egress node is utilized to retrieve the requested web content from the web server.

4. The computing apparatus of claim 1 , wherein the request for web content is received at the computing apparatus in an unsecure browser window different from a window associated with the secure browser.

5. The computing apparatus of claim 1 , wherein determining the requested web content is potentially harmful to the computing apparatus comprises:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with potentially harmful web content; and

determining, using the secure analysis application, at least a partial match between the identified web address and the plurality of web addresses associated with potentially harmful web content.

6. The computing apparatus of claim 1 , wherein determining the requested web content is potentially harmful to the computing apparatus comprises:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with safe web content;

determining, using the secure analysis application, no match between the identified web address and the plurality of web addresses associated with safe web content; and

adding, using the secure analysis application, the identified web address to a database comprising the plurality of web addresses associated with potentially harmful web content.

7. The computing apparatus of claim 1 , wherein determining the requested web content is potentially harmful to the computing apparatus comprises:

determining, using the secure analysis application, a risk level associated with the requested web content;

comparing, using the secure analysis application, the determined risk level to a threshold value associated with an accepted risk level; and

determining, using the secure analysis application, the determined risk level exceeds the threshold value.

8. A non-transitory computer readable medium comprising code, wherein the code, when executed by at least one processing device of a computing apparatus located in a first location in a network, causes the at least one processing device to perform operations of:

receiving, by an input/output (I/O) unit of the computing apparatus, a request for web content;

determining, by a secure analysis application, the requested web content is potentially harmful to the computing apparatus;

selecting, by the secure analysis application, the secure web container from a plurality of secure web containers and an egress node from a plurality of egress nodes, based at least in part on the requested web content;

transmitting, by a communication unit of the computing apparatus, a web address associated with the requested web content to the secure web container located in a second location in the network, wherein the secure web container uses the web address to retrieve the requested web content from a web server; and

providing, in a secure browser window associated with the secure analysis application and at the computing apparatus, access to the requested web content via an encrypted communication connection established between the computing apparatus and the secure web container, wherein the requested web content is rendered by the secure web container so that the computing apparatus is not exposed to the rendered web content,

wherein the egress node is located in a third location in the network.

9. The non-transitory computer readable medium of claim 8 , wherein the code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform operations of:

initializing, by the secure analysis application, the secure web container for retrieving the requested web content via the egress node; and

establishing, by the communication unit, the encrypted communication connection between the computing apparatus and the secure web container, wherein the web address associated with the requested web content is transmitted from the computing apparatus to the secure web container via the encrypted communication connection.

10. The non-transitory computer readable medium of claim 9 , wherein the secure web container comprises multiple secure web containers located in different locations in the network, wherein the egress node comprises multiple egress nodes located in different locations in the network, and wherein each secure web container and each egress node is utilized to retrieve the requested web content from the web server.

11. The non-transitory computer readable medium of claim 8 , wherein the request for web content is received at the computing apparatus in an unsecure browser window different from a window associated with the secure browser.

12. The non-transitory computer readable medium of claim 8 , wherein the code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform the operation of determining the requested web content is potentially harmful to the computing apparatus further comprises code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform operations of:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with potentially harmful web content; and

determining, using the secure analysis application, at least a partial match between the identified web address and the plurality of web addresses associated with potentially harmful web content.

13. The non-transitory computer readable medium of claim 8 , wherein the code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform the operation of determining the requested web content is potentially harmful to the computing apparatus further comprises code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform operations of:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with safe web content;

determining, using the secure analysis application, no match between the identified web address and the plurality of web addresses associated with safe web content; and

adding, using the secure analysis application, the identified web address to a database comprising the plurality of web addresses associated with potentially harmful web content.

14. The non-transitory computer readable medium of claim 8 , wherein the code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform the operation of determining the requested web content is potentially harmful to the computing apparatus further comprises code that, when executed by the at least one processing device of the computing apparatus, causes the at least one processing device to perform operations of:

determining, using the secure analysis application, a risk level associated with the requested web content;

comparing, using the secure analysis application, the determined risk level to a threshold value associated with an accepted risk level; and

determining, using the secure analysis application, the determined risk level exceeds the threshold value.

15. A method comprising:

receiving, by an input/output (I/O) unit of a computing apparatus located in a first location in a network, a request for web content;

determining, by a secure analysis application, the requested web content is potentially harmful to the computing apparatus;

selecting the secure web container from a plurality of secure web containers, and an egress node from a plurality of egress nodes based at least in part on the requested web content;

transmitting, by a communication unit of the computing apparatus, a web address associated with the requested web content to the secure web container located in a second location in the network, wherein the secure web container uses the web address to retrieve the requested web content from a web server; and

providing, in a secure browser window associated with the secure analysis application and at the computing apparatus, access to the requested web content via an encrypted communication connection established between the computing apparatus and the secure web container, wherein the requested web content is rendered by the secure web container so that the computing apparatus is not exposed to the rendered web content,

wherein the egress node is located in a third location in the network.

16. The method of claim 15 , wherein the method further comprises:

initializing, by the secure analysis application, the secure web container for retrieving the requested web content via the egress node; and

establishing, by the communication unit, the encrypted communication connection between the computing apparatus and the secure web container, wherein the web address associated with the requested web content is transmitted from the computing apparatus to the secure web container via the encrypted communication connection.

17. The method of claim 16 , wherein the secure web container comprises multiple secure web containers located in different locations in the network, wherein the egress node comprises multiple egress nodes located in different locations in the network, and wherein each secure web container and each egress node is utilized to retrieve the requested web content from the web server.

18. The method of claim 15 , wherein the request for web content is received at the computing apparatus in an unsecure browser window different from a window associated with the secure browser.

19. The method of claim 15 , determining the requested web content is potentially harmful to the computing apparatus comprises:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with potentially harmful web content; and

determining, using the secure analysis application, at least a partial match between the identified web address and the plurality of web addresses associated with potentially harmful web content.

20. The method of claim 15 , wherein determining the requested web content is potentially harmful to the computing apparatus comprises:

identifying, using the secure analysis application, the web address associated with the requested web content;

comparing, using the secure analysis application, the identified web address to a plurality of web addresses associated with safe web content;

determining, using the secure analysis application, no match between the identified web address and the plurality of web addresses associated with safe web content; and

adding, using the secure analysis application, the identified web address to a database comprising the plurality of web addresses associated with potentially harmful web content.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 1, 2017
From: PETRY, SCOTT M.; RAJAGOPAL, RAMESH; LUND, PETER K.; COX, FREDERIC L.; MOORE, ADAM P.; DUNSTON, LESLIE L.; TAYLOR, VARLEY H.; SEGAL, ZACHARY L.; STOLYAROV, LUKA I.; MCMAINS, JOSHUA R.; ZAUGG, BRIAN T.
To: AUTHENTIC8, INC.
Reel/Frame 042568/0540 →
Continuity (4)
Continuation In Part 15395914 · Dec 30, 2016
Continuation 15049075 · Feb 20, 2016
Provisional Application 62118862 · Feb 20, 2015
Related Publication 20170180413A1 · Jun 22, 2017
Cited By (4)
US 12,192,227 US 12,238,101 US 12,455,936 US 12,455,937