IP Library Granted Patent US 11,062,056
Granted Patent B2
US 11,062,056 · App. 16/222,528 · Granted Jul 13, 2021

Trusted indicators to secure visual outputs

Inventors: Oleg Pogorelik (Lapid, IL); Ned Smith (Santa Clara, CA); Igor Muttik (Aylesbury, GB); Alex Nayshtut (Gan Yavne, IL)
Assignee: McAfee, LLC
G06F21/64G06F21/16G06T1/0021G09C5/00H04L9/3239H04L9/3242H04N1/32229H04N1/32272G06F2221/0733G06F2221/2151G06T2201/0051G06T2201/0065H04L2209/34
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,062,056
App. No.
16/222,528
Granted
Jul 13, 2021
Kind
B2
Abstract

An example display device for securing graphics outputs includes: a checker to check whether a secure output marker is located in a pre-determined position in graphical information of a digital image; a verifier to verify whether first data in the secure output marker matches actual data in a trusted output area of the digital image; and autonomous indicator control logic to activate a hardware-based trusted output indicator when the first data matches the actual data, the autonomous indicator control logic not accessible by computing applications executing on a system in communication with the display device.

Claims (49)

1. A system to secure graphics outputs, comprising:

a trusted output hardware engine to:

access secure output data corresponding to a digital image;

obtain one or more security keys;

create a secure output marker for the secure output data, the secure output marker including location information corresponding to a trusted output area of the digital image, and the secure output marker including first data corresponding to actual data in the trusted output area of the digital image;

encrypt the secure output marker using the one or more security keys; and

embed the secure output marker in graphical information of the digital image to create a trusted digital image;

a graphics processing unit to render the trusted digital image for display onto a display device;

a checker to check whether the secure output marker is located in a pre-determined position in graphical information of the digital image;

a verifier to verify whether the first data in the secure output marker matches the actual data in the trusted output area of the digital image; and

autonomous indicator control logic to activate a hardware-based trusted output indicator when the first data matches the actual data, the autonomous indicator control logic not accessible by computing applications executing on a system in communication with the display device.

2. The system of claim 1 , wherein the trusted output hardware engine is to embed the secure output marker in the digital image by hiding the secure output marker in the graphical information of the digital image using stenography.

3. The system of claim 1 , wherein the trusted output hardware engine is to obtain the one or more security keys during display pairing performed in a trusted execution environment.

4. The system of claim 1 , wherein the secure output marker includes location display coordinates of the trusted output area of the digital image, and the secure output marker includes an area size of the trusted output area of the digital image.

5. The system of claim 4 , wherein the location display coordinates include a horizontal offset value and a vertical offset value, the horizontal offset value and the vertical offset values determined from a first reference point located on the trusted output area and a second reference point located outside of the trusted output area.

6. The system of claim 1 , wherein the hardware-based trusted output indicator is located outside a display area of the display device.

7. The system of claim 1 , wherein the one or more security keys are determined by a remote computing system.

8. A storage device or storage disk comprising instructions that, when executed, cause at least one processor to at least:

access secure output data corresponding to a digital image;

obtain one or more security keys;

create a secure output marker for the secure output data, the secure output marker including location information corresponding to a trusted output area of the digital image, and the secure output marker including first data corresponding to actual data in the trusted output area of the digital image;

encrypt the secure output marker using the one or more security keys;

embed the secure output marker in graphical information of the digital image to create a trusted digital image;

render the trusted digital image for display onto a display device;

determine whether the secure output marker is located in a pre-determined position in the graphical information of the digital image;

verify whether the first data in the secure output marker matches actual data in the trusted output area of the digital image; and

activate, using logic, a hardware-based trusted output indicator when the first data matches the actual data, the logic not accessible by computing applications executing on a system in communication with the display device.

9. The storage device or storage disk of claim 8 , wherein the instructions are to cause the at least one processor to embed the secure output marker in the digital image by hiding the secure output marker in the graphical information of the digital image using stenography.

10. The storage device or storage disk of claim 8 , wherein the instructions are to cause the at least one processor to obtain the one or more security keys during display pairing performed in a trusted execution environment.

11. The storage device or storage disk of claim 8 , wherein the secure output marker includes location display coordinates of the trusted output area of the digital image, and the secure output marker includes an area size of the trusted output area of the digital image.

12. The storage device or storage disk of claim 11 , wherein the location display coordinates include a horizontal offset value and a vertical offset value, the horizontal offset value and the vertical offset values determined from a first reference point located on the trusted output area and a second reference point located outside of the trusted output area.

13. The storage device or storage disk of claim 8 , wherein the hardware-based trusted output indicator is located outside a display area of the display device.

14. The storage device or storage disk of claim 8 , wherein the instructions are to cause the at least one processor to receive the one or more security keys from a remote computing system.

15. A method comprising:

accessing secure output data corresponding to a digital image;

obtaining one or more security keys;

creating a secure output marker for the secure output data, the secure output marker including location information corresponding to a trusted output area of the digital image, and the secure output marker including first data corresponding to actual data in the trusted output area of the digital image;

encrypting the secure output marker using the one or more security keys;

embedding the secure output marker in graphical information of the digital image to create a trusted digital image;

rendering the trusted digital image for display onto a display device;

determining whether the secure output marker is located in a pre-determined position in the graphical information of the digital image;

verifying whether the first data in the secure output marker matches actual data in the trusted output area of the digital image; and

activating, using control logic, a hardware-based trusted output indicator when the first data matches the actual data, the control logic not accessible by computing applications executing on a system in communication with the display device.

16. The method of claim 15 , further including embedding the secure output marker in the digital image by hiding the secure output marker in the graphical information of the digital image using stenography.

17. The method of claim 15 , further including obtaining the one or more security keys during display pairing performed in a trusted execution environment.

18. The method of claim 15 , wherein the secure output marker includes location display coordinates of the trusted output area of the digital image, the secure output marker includes an area size of the trusted output area of the digital image.

19. The method of claim 18 , wherein the location display coordinates include a horizontal offset value and a vertical offset value, the horizontal offset value and the vertical offset value determined from a first reference point located on the trusted output area and a second reference point located outside of the trusted output area.

20. The method of claim 15 , wherein the hardware-based trusted output indicator is located outside a display area of the display device.

21. The method of claim 15 , further including receiving the one or more security keys from a remote computing system.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
CHANGE OF NAME Recorded Jun 12, 2019
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 049449/0055 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 25, 2019
From: SMITH, NED; POGORELIK, OLEG; NAYSHTUT, ALEX; MUTTIK, IGOR
To: MCAFEE, INC.
Reel/Frame 049405/0231 →
Continuity (2)
Continuation 15017355 · Feb 5, 2016
Related Publication 20190138700A1 · May 9, 2019