IP Library Granted Patent US 11,281,775
Granted Patent B2
US 11,281,775 · App. 15/635,279 · Granted Mar 22, 2022

Cloud storage scanner

Inventors: Mark Robert Burdett (Abingdon, GB); Guy Alexander Davies (Abingdon, GB)
Assignee: Sophos Limited
G06F21/565G06F16/183G06F21/567H04L63/1425G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,281,775
App. No.
15/635,279
Granted
Mar 22, 2022
Kind
B2
Abstract

A system, method and computer program for a scanning service is presented. A scanning service compatible with a cloud storage system is configured to receive notifications from a cloud storage service about storage event activity and to access data in the cloud storage service. The scanning service receives a notification regarding storage activity related to a file in the data. After the completion of the storage activity, the scanning service receives the file from the cloud storage service and scans the file. When a determination is made based on the scan that at least a portion of the file should not be distributed then an action is taken with respect to the cloud storage service based on the determination that at least a portion of the file should not be distributed.

Claims (34)

1. A system comprising:

a processor; and

a non-transitory computer readable storage medium having computer readable code thereon for a scanning service, the medium including instructions executable by the processor to perform operations, comprising:

configuring the scanning service to receive notifications from a cloud storage service about storage activity and to access data in the cloud storage service;

configuring the scanning service with an account having access to change permissions on files in the data stored by the cloud storage service;

receiving, by the scanning service from the cloud storage service, a notification regarding storage activity related to a file in the data;

after completion of the storage activity, receiving by the scanning service from the cloud storage service, the file;

in response to receiving the notification regarding storage activity and receiving the file from the cloud storage service, scanning, by the scanning service configured with an account having access to change permissions on files in the data stored in the cloud storage service, the file received from the cloud storage service for malware;

determining from the scan that at least one portion of the file should not be distributed to one or more applications because the at least one portion of the file contains malware or other malicious content; and

taking an action with respect to the cloud storage service based on the determination that the at least one portion of the file should not be distributed, wherein the action includes, with the scanning service configured with the account having access to change permissions on the file, setting a permission for the file on the cloud storage service to make the file unavailable to one or more applications when the at least one portion of the file contains malware or other malicious content.

2. The system of claim 1 , wherein the instructions are further executable by the processor to configure the scanning service to receive notifications from said cloud storage service about storage activity associated with a plurality of accounts associated with the cloud storage service.

3. The system of claim 1 , wherein the instructions are further executable by the processor wherein, based on the determination that the at least one portion of the file should not be distributed, the file contains malware comprising disruptive computer instructions that may cause one or more of damage to one or more computing devices, compromising files on one or more computer devices, or obtaining private information from the one or more computing devices.

4. The system of claim 1 , wherein the instructions are further executable by the processor wherein, based on the determination that the at least one portion of the file should not be distributed, the file contains confidential information comprising one or more of credit card numbers, social security numbers, multiple phone numbers, or a predefined pattern.

5. A method comprising:

configuring a scanning service to receive notifications from a cloud storage service about storage activity;

configuring the scanning service with an account having access to change permissions on files stored by the cloud storage service;

receiving, by the scanning service from the cloud storage service, a notification regarding storage activity related to a file;

after completion of the storage activity, loading by the scanning service from the cloud storage service, the file;

in response to receiving the notification regarding storage activity and receiving the file from the cloud storage service, scanning, by the scanning service configured with an account having access to change permissions on files in the data stored in the cloud storage service, the file received from the cloud storage service for malware;

determining from the scan that at least one portion of the file should not be distributed to one or more applications because the at least one portion of the file contains malware or other malicious content; and

taking an action with respect to the cloud storage service based on the determination that the at least one portion of the file should not be distributed, wherein the action includes, with the scanning service configured with the account having access to change permissions on the file, setting a permission for the file on the cloud storage service to make the file unavailable to one or more applications when the at least one portion of the file contains malware or other malicious content.

6. The method of claim 5 , further comprising configuring the scanning service to receive notifications from said cloud storage service about storage activity associated with a plurality of accounts associated with the cloud storage service.

7. The method of claim 5 , further comprising wherein, based on the determination that the at least one portion of the file should not be distributed, the file contains malware comprising disruptive computer instructions that may cause one or more of damage to one or more computing devices, compromising files on one or more computer devices, or obtaining private information from the one or more computing devices.

8. The method of claim 5 , further comprising wherein, based on the determination that the at least one portion of the file should not be distributed, the file contains confidential information comprising one or more of credit card numbers, social security numbers, multiple phone numbers, or a predefined pattern.

9. A non-transitory computer readable storage medium having computer readable code thereon for a scanning service, the medium including instructions executable by one or more processors to perform operations, comprising:

configuring the scanning service to receive notifications from a cloud storage service about storage activity;

configuring the scanning service with an account having access to change permissions on data in the cloud storage service;

receiving, by the scanning service from the cloud storage service, a notification regarding storage activity related to a file in the data;

after completion of the storage activity, receiving by the scanning service from the cloud storage service, the file;

in response to receiving the notification regarding storage activity and receiving the file from the cloud storage service, scanning, by the scanning service configured with an account having access to change permissions on files in the data stored in the cloud storage service, the file received from the cloud storage service for malware;

determining from the scan that at least one portion of the file should not be distributed to one or more applications because the at least one portion of the file contains malware or other malicious content; and

taking an action with respect to the cloud storage service based on the determination that the at least one portion of the file should not be distributed, wherein the action includes, with the scanning service configured with the account having access to change permissions on the data including the file, setting a permission for the file on the cloud storage service to make the file unavailable to one or more applications when the at least one portion of the file contains malware or other malicious content.

10. The non-transitory computer readable storage medium of claim 9 , wherein the instructions are further executable by the one or more processors to configure the scanning service to receive notifications from said cloud storage service about storage activity associated with a plurality of accounts associated with the cloud storage service.

11. The non-transitory computer readable storage medium of claim 9 , wherein the determination that the at least one portion of the file should not be distributed is based on the file containing malware comprising disruptive computer instructions that may cause one or more of damage to one or more computing devices, compromising files on one or more computer devices, or obtaining private information from the one or more computing devices.

Assignments (4)
RELEASE OF SECURITY INTEREST IN PATENTS AT R/F 053476/0681 Recorded Mar 9, 2021
From: OWL ROCK CAPITAL CORPORATION, AS COLLATERAL AGENT
To: SOPHOS LIMITED
Reel/Frame 056469/0815 →
PATENT SECURITY AGREEMENT FIRST LIEN Recorded Jul 6, 2020
From: SOPHOS LIMITED
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 053124/0350 →
PATENT SECURITY AGREEMENT SECOND LIEN Recorded Jul 6, 2020
From: SOPHOS LIMITED
To: OWL ROCK CAPITAL CORPORATION, AS COLLATERAL AGENT
Reel/Frame 053476/0681 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 24, 2018
From: BURDETT, MARK ROBERT; DAVIES, GUY ALEXANDER
To: SOPHOS LIMITED
Reel/Frame 044716/0487 →
Cited By (60)
US 12,197,583 US 12,197,590 US 12,219,360 US 12,225,039 US 12,231,433 US 12,238,177 US 12,242,520 US 12,243,294 US 12,244,617 US 12,244,637 US 12,245,036 US 12,255,877 US 12,266,209 US 12,267,355 US 12,273,392 US 12,278,845 US 12,282,545 US 12,284,206 US 12,284,222 US 12,299,117 US 12,301,605 US 12,315,231 US 12,316,647 US 12,326,957 US 12,355,817 US 12,361,680 US 12,373,240 US 12,375,497 US 12,388,711 US 12,395,534 US 12,413,629 US 12,417,253 US 12,425,464 US 12,430,429 US 12,445,451 US 12,452,310 US 12,457,214 US 12,470,602 US 12,489,734 US 12,500,940 US 12,513,073 US 12,519,857 US 12,537,838 US 12,537,871 US 12,542,812 US 12,561,620 US 12,572,651 US 12,580,945 US 12,580,960 US 12,592,959 US 12,593,210 US 12,596,804 US 12,598,216 US 12,615,242 US 12,632,572 US 12,647,362 US 12,676,908 US 12,684,018 US 12,695,765 US 12,712,920