IP Library Granted Patent US 10,200,398
Granted Patent B2
US 10,200,398 · App. 15/713,214 · Granted Feb 5, 2019

Distributed client-side user monitoring and attack system

Inventors: Tyler Rorabaugh (Mountain View, CA); Quoc Quach (San Jose, CA); Matthew Batema (San Carlos, CA); Jim Hong (San Jose, CA); Scott Parcel (Cupertino, CA)
Assignee: Trustwave Holdings, Inc.
H04L63/1433G06F21/577
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,200,398
App. No.
15/713,214
Granted
Feb 5, 2019
Kind
B2
Abstract

Methods, systems, and apparatus for use in a distributed client-side user monitoring and attack system are disclosed herein. An example method includes providing a first set of instructions from a security application server to a target application server, the first set of instructions to, when executed, cause a client device to transmit a request for an image to the security application server. In response to the request for the image, a connection is opened between the client device and the security application server. Via the connection opened in response to the request for the image, a second set of instructions is provided to cause the client device to perform a vulnerability test on the target application server and communicate a result of the vulnerability test via the connection.

Claims (31)

1. A security application server comprising:

a processor; and

a memory to store machine readable instructions that, when executed by the processor, cause the processor to perform operations comprising:

providing a first set of instructions from the security application server to a target application server, the first set of instructions to be transmitted from the target application server to a client device and, when executed by the client device, cause the client device to transmit a request for an image to the security application server;

opening, in response to the request for the image, a connection between the client device and the security application server; and

providing, via the connection opened in response to the request for the image, a second set of instructions to cause the client device to perform a vulnerability test on the target application server and communicate a result of the vulnerability test via the connection.

2. The security application server of claim 1 , wherein the second set of instructions cause the client device to capture and transmit user-related data from the client device to the security application server.

3. The security application server of claim 1 , wherein the vulnerability test, performed by the client device, includes crawling the target application server.

4. The security application server of claim 1 , wherein the first set of instructions are script instructions embedded in a webpage.

5. The security application server of claim 1 , wherein the second set of instructions, when executed, cause the client device to report a result of the vulnerability test to the security application server.

6. The security application server of claim 1 , wherein the connection is implemented using cross-origin resource sharing.

7. A tangible machine-readable storage disk or storage device comprising executable instructions which, when executed, cause a security application server to at least:

provide a first set of instructions from the security application server to a target application server, the first set of instructions to be transmitted from the target application server to a client device and, when executed by the client device, cause the client device to transmit a request for an image to the security application server;

open, in response to the request for the image, a connection between the client device and the security application server; and

provide, via the connection opened in response to the request for the image, a second set of instructions to cause the client device to perform a vulnerability test on the target application server and communicate a result of the vulnerability test via the connection.

8. The tangible machine-readable storage disk or storage device of claim 7 , wherein the second set of instructions cause the client device to capture and transmit user-related data from the client device to the security application server.

9. The tangible machine-readable storage disk or storage device of claim 7 , wherein the vulnerability test, performed by the client device, includes crawling the target application server.

10. The tangible machine-readable storage disk or storage device of claim 7 , wherein the first set of instructions are script instructions embedded in a webpage.

11. The tangible machine-readable storage disk or storage device of claim 7 , wherein the second set of instructions, when executed, cause the client device to report a result of the vulnerability test to the security application server.

12. The tangible machine-readable storage disk or storage device of claim 7 , wherein the connection is implemented using cross-origin resource sharing.

13. The tangible machine-readable storage disk or storage device of claim 7 , wherein the executable instructions, when executed, further cause the security application server to receive, via the connection opened in response to the request for the image, the result of the vulnerability test from the client device.

14. A method for causing a vulnerability test to be performed, the method comprising:

providing a first set of instructions from a security application server to a target application server, the first set of instructions to be transmitted from the target application server to a client device and, when executed by the client device, cause the client device to transmit a request for an image to the security application server;

in response to the request for the image, opening a connection between the client device and the security application server; and

providing, via the connection opened in response to the request for the image, by executing an instruction with a processor, a second set of instructions to cause the client device to perform a vulnerability test on the target application server and communicate a result of the vulnerability test via the connection.

15. The method of claim 14 , wherein the second set of instructions cause the client device to capture and transmit user-related data from the client device to the security application server.

16. The method of claim 14 , wherein the vulnerability test, performed by the client device, includes crawling the target application server.

17. The method of claim 14 , wherein the first set of instructions are script instructions embedded in a webpage.

18. The method of claim 14 , wherein the second set of instructions, when executed, cause the client device to report a result of the vulnerability test to the security application server.

19. The method of claim 14 , wherein the connection is implemented using cross-origin resource sharing.

20. The method of claim 14 , further including receiving, via the connection opened in response to the request for the image, the result of the vulnerability test from the client device.

Assignments (13)
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 73649/0743 Recorded Apr 30, 2026
From: ANKURA TRUST COMPANY, LLC
To: TRUSTWAVE HOLDINGS, INC.; STROZ FRIEDBERG INC.; STROZ FRIEDBERG, LLC
Reel/Frame 075371/0363 →
RELEASE OF SECURITY INTERESTS AT REEL/FRAME 68974/691 Recorded Feb 24, 2026
From: CYBEREASON, INC.
To: TRUSTWAVE HOLDINGS, INC.
Reel/Frame 074971/0478 →
RELEASE OF SECURITY INTERESTS AT REEL/FRAME 68572/0937 Recorded Feb 24, 2026
From: CYBEREASON, INC.
To: TRUSTWAVE HOLDINGS, INC.
Reel/Frame 074971/0779 →
SECURITY INTEREST Recorded Feb 18, 2026
From: TRUSTWAVE HOLDINGS, INC.; STROZ FRIEDBERG INC.; STROZ FRIEDBERG, LLC
To: AT&T ENTERPRISES, LLC
Reel/Frame 073824/0146 →
SECURITY INTEREST Recorded Jan 30, 2026
From: TRUSTWAVE HOLDINGS, INC.; STROZ FRIEDBERG INC.; STROZ FRIEDBERG, LLC
To: ANKURA TRUST COMPANY, LLC
Reel/Frame 073649/0743 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 071508/0540 Recorded Aug 18, 2025
From: LEVELBLUE, LLC
To: TRUSTWAVE HOLDINGS, INC.
Reel/Frame 072510/0679 →
SECURITY INTEREST Recorded Jun 24, 2025
From: TRUSTWAVE HOLDINGS, INC.
To: LEVELBLUE, LLC
Reel/Frame 071508/0540 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 070952/0452 Recorded Jun 24, 2025
From: STG V, L.P.; STG VI, L.P.
To: TRUSTWAVE HOLDINGS, INC.
Reel/Frame 071723/0263 →
SECURITY INTEREST Recorded Apr 25, 2025
From: TRUSTWAVE HOLDINGS, INC.
To: STG V, L.P.; STG VI, L.P.
Reel/Frame 070952/0452 →
SECURITY INTEREST Recorded Oct 22, 2024
From: TRUSTWAVE HOLDINGS, INC.
To: CYBEREASON INC.
Reel/Frame 068974/0691 →
SECURITY INTEREST Recorded Sep 12, 2024
From: TRUSTWAVE HOLDINGS, INC.
To: CYBEREASON INC.
Reel/Frame 068572/0937 →
SECURITY INTEREST Recorded Jan 8, 2024
From: TRUSTWAVE HOLDINGS, INC.
To: SINGTEL ENTERPRISE SECURITY (US), INC.
Reel/Frame 066050/0947 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 22, 2017
From: RORABAUGH, TYLER; QUACH, QUOC; BATEMA, MATTHEW; HONG, JIM; PARCEL, SCOTT
To: TRUSTWAVE HOLDINGS, INC.
Reel/Frame 043669/0071 →
Continuity (3)
Continuation 14054822 · Oct 15, 2013
Provisional Application 61713479 · Oct 12, 2012
Related Publication 20180013784A1 · Jan 11, 2018