IP Library Granted Patent US 11,297,099
Granted Patent B2
US 11,297,099 · App. 16/204,277 · Granted Apr 5, 2022

Redisplay computing with integrated data filtering

Inventor: Anthony Tong (Herndon, VA)
Assignee: Forcepoint, LLC
H04L63/1466G06F16/953G06F21/6218G06F21/64H04L63/0457H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,297,099
App. No.
16/204,277
Granted
Apr 5, 2022
Kind
B2
Abstract

A method, system and computer-usable medium for redisplaying data at a remote access client system from a secure computing environment. The redisplaying data includes receiving a request form the remote access client system for data, inspecting the request for potential unauthorized or malicious retransmission. Modifying the data, by filtering audio data or transforming graphical data prior to sending the requested data is performed to prevent the unauthorized or malicious retransmission.

Claims (52)

1. A computer-implementable method for redisplaying data, comprising:

receiving at a redisplay computing environment, a data stream from a client browser of a remote access client system, wherein the data stream is used for redisplay at a remote system, wherein the data stream comprises a request for data;

storing the data stream for inspection at an audit storage of the redisplay computing environment;

inspecting the data stream at the redisplay computing environment to determine if the data stream is being leaked or shared;

receiving the data that is requested from a secure computing environment of the redisplay computing environment;

modifying certain data from the secure computing environment to a different and proper format, wherein the modifying hides or disrupts said certain data that is determined to be leaked or shared;

sending from the redisplay computing environment, the modified data to the remote access client system;

verifying at the redisplay computing environment, that the data stream is in the proper format; and

verifying at the redisplay computing environment that the modified data is in the proper format prior to sending the modified data.

2. The method of claim 1 , wherein the received data stream is from the client browser in the remote access client system and a transport is used for the data stream.

3. The method of claim 2 , wherein the transport includes code used by a client browser on the remote access client, wherein the client browser provides the request for data and redisplays the data.

4. The method of claim 1 , wherein the modifying the data comprises filtering of audio data and transformation of graphical data.

5. The method of claim 1 , further comprising:

storing the inspected data stream for machine inspection.

6. The method of claim 1 wherein the redisplay computing environment comprises a data processing pipeline that performs validation, transformation, and auditing.

7. A system comprising:

a hardware processor;

a data bus coupled to the processor; and

a non-transitory, computer-readable storage medium embodying computer program code, the non-transitory, computer-readable storage medium being coupled to the data bus, the computer program code interacting with a plurality of computer operations and comprising instructions executable by the processor and configured for:

inspecting the data stream at the redisplay computing environment to determine if the data stream is being leaked or shared;

receiving the data that is requested from a secure computing environment of the redisplay computing environment;

modifying certain data from the secure computing environment to a different and proper format, wherein the modifying hides or disrupts said certain data that is determined to be leaked or shared;

receiving the data that is requested from a secure computing environment of the redisplay computing environment;

modifying certain data from the secure computing environment to a different and proper format;

sending from the redisplay computing environment, the modified data to the remote access client system;

verifying at the redisplay computing environment, that the data stream is in the proper format; and

verifying at the redisplay computing environment that the modified data is in the proper format prior to sending the modified data.

8. The system of claim 7 , wherein receiving the data stream, which is from a client browser of the remote client system.

9. The system of claim 7 , wherein inspecting the data stream comprises determining if the request is for potential unauthorized or malicious retransmission of the data.

10. The system of claim 7 , wherein receiving the data is from a secure computing environment.

11. The system of claim 7 , wherein the modifying the data comprises filtering of audio data and transformation of graphical data.

12. The system of claim 11 , wherein the transformation of graphical data comprises altering data streams of the data in order to disrupt hidden data embedded in the data streams.

13. The system of claim 7 , wherein the instructions are further configured for:

verifying that the data stream and data are in an expected data format.

14. A non-transitory, computer-readable storage medium embodying computer program code, the computer program code comprising computer executable instructions configured for:

receiving at a redisplay computing environment, a data stream from a client browser of a remote access client system, wherein the data stream is used for redisplay at a remote system, wherein the data stream comprises a request for data;

storing the data stream for inspection at an audit storage of the redisplay computing environment inspecting the data stream at the redisplay computing environment to determine if the data stream is being leaked or shared;

receiving the data that is requested from a secure computing environment of the redisplay computing environment;

modifying certain data from the secure computing environment to a different and proper format, wherein the modifying hides or disrupts said certain data that is determined to be leaked or shared;

sending from the redisplay computing environment, the modified data to the remote access client system;

verifying at the redisplay computing environment, that the data stream is in the proper format; and

verifying at the redisplay computing environment that the modified data is in the proper format prior to sending the modified data.

15. The non-transitory, computer-readable storage medium of claim 14 , wherein the computer executable instructions are further configured for:

verifying data stream and data are encoded in a proper format.

16. The non-transitory, computer-readable storage medium of claim 14 , wherein:

the data stream provided in a transport and is from a client browser of a remote access client system.

17. The non-transitory, computer-readable storage medium of claim 14 , wherein the computer executable instructions are further configured for:

storing audited data stream.

18. The non-transitory, computer-readable storage medium of claim 14 , wherein:

modifying the data comprises filtering of audio data and transformation of graphical data.

19. The non-transitory, computer-readable storage medium of claim 18 , wherein transformation of graphical data comprises altering data streams of the data in order to disrupt hidden data embedded in the data streams.

20. The non-transitory, computer-readable storage medium of claim 14 , wherein the sending the modified data is through a redisplay server.

Assignments (8)
RELEASE OF SECURITY INTEREST Recorded Apr 2, 2025
From: UBS AG, STAMFORD BRANCH
To: FORCEPOINT, LLC; BITGLASS, LLC
Reel/Frame 070706/0263 →
SECURITY INTEREST Recorded Apr 1, 2025
From: FORCEPOINT LLC; BITGLASS, LLC
To: SOCIÉTÉ GÉNÉRALE
Reel/Frame 070703/0887 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 19, 2021
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: FORCEPOINT LLC
Reel/Frame 057001/0057 →
CHANGE OF NAME Recorded May 12, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056214/0798 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: FORCEPOINT LLC
Reel/Frame 055479/0676 →
PATENT SECURITY AGREEMENT SUPPLEMENT Recorded Mar 15, 2019
From: FORCEPOINT LLC
To: RAYTHEON COMPANY
Reel/Frame 048613/0636 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 29, 2018
From: TONG, ANTHONY
To: FORCEPOINT, LLC
Reel/Frame 047625/0026 →
Cited By (1)
US 12,499,124