IP Library Granted Patent US 11,030,342
Granted Patent B1
US 11,030,342 · App. 16/230,727 · Granted Jun 8, 2021

Systems and methods for controlling uploading of potentially sensitive information to the internet

Inventors: Daniel Kats (Culver City, CA); David Silva (Dublin, IE); Petros Efstathopoulos (Los Angeles, CA); Daniel Marino (Los Angeles, CA)
Assignee: NortonLifeLock Inc.
G06F21/6263H04L63/0442H04L63/10H04L67/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,030,342
App. No.
16/230,727
Granted
Jun 8, 2021
Kind
B1
Abstract

The disclosed computer-implemented method for controlling uploading of potentially sensitive information to the Internet may include (i) loading, at the computing device, at least a portion of a webpage and (ii) performing a security action including (A) converting, at the computing device, components of the webpage from an online status to an offline status, (B) receiving a sensitive information input to a respective offline component of the webpage, (C) converting, based on a stored user preference and in response to receiving the sensitive information input, the respective offline component to the online status, (D) buffering an outgoing network request comprising the sensitive information input, (E) receiving an approval input indicating approval to transmit the potentially sensitive information to the Internet, and (F) releasing the outgoing network request in response to receiving the approval input. Various other methods, systems, and computer-readable media are also disclosed.

Claims (65)

1. A computer-implemented method for controlling uploading of potentially sensitive information to the Internet, at least a portion of the method being performed by a computing device comprising at least one processor, the method comprising:

loading, at the computing device, at least a portion of a webpage; and

performing a security action comprising:

converting, at the computing device, components of the webpage from an online status to an offline status;

receiving a sensitive information input to a respective offline component of the webpage;

converting, based on a stored user preference that indicates automatically converting an offline component to the online status in response to receiving the sensitive information input, the respective offline component to the online status;

buffering an outgoing network request comprising the sensitive information input;

receiving an approval input indicating approval to transmit the potentially sensitive information to the Internet; and

releasing the outgoing network request in response to receiving the approval input.

2. The computer-implemented method of claim 1 , wherein converting components of a webpage from an online status to an offline status further comprises:

detecting when the webpage has substantially finished loading; and

initiating performing the converting in response to the detecting.

3. The computer-implemented method of claim 1 , wherein converting components of a webpage from an online status to an offline status is performed by at least one of a browser extension, an operating system, and an application.

4. The computer-implemented method of claim 1 , wherein the webpage comprises at least one of:

a quick response code reader;

a file encryption application;

an encrypted messaging application;

an address book uploading application;

an online code editor;

a visual editor;

a form;

a photo processing application;

a photo filter application;

a network permissions setting; and

a password manager.

5. The computer-implemented method of claim 1 , further comprising identifying object tags in the webpage to identify field components of the webpage requesting entry of the potentially sensitive information.

6. The computer-implemented method of claim 5 , further comprising temporarily blocking Internet access by the webpage in response to identifying the field components of the webpage requesting entry of the potentially sensitive information.

7. The computer-implemented method of claim 1 , further comprising converting the respective offline component to a user interface widget.

8. The computer-implemented method of claim 1 , further comprising displaying a padlock image substantially near an image of the respective offline component.

9. The computer-implemented method of claim 1 , further comprising displaying an image of the respective offline component in a color contrasting with a color of a substantially adjacent component of the webpage.

10. The computer-implemented method of claim 1 , further comprising:

identifying online and offline components of the webpage; and

displaying at least one identifier indicating which components of the webpage are online.

11. The computer-implemented method of claim 1 , further comprising:

marking an additional component of the webpage as for offline information only; and

blocking sensitive information entered into the additional component from being sent to the Internet.

12. The computer-implemented method of claim 1 , further comprising, in response to the receiving the sensitive information input:

generating a public-private key pair; and

encrypting the sensitive information input with the public-private key pair, wherein the sensitive information input must be encrypted prior to releasing the outgoing network request.

13. The computer-implemented method of claim 1 , further comprising detecting a type of action that the network request is performing.

14. The computer-implemented method of claim 1 , further comprising passing the sensitive information input from an offline thread to an online thread in response to receiving the approval input.

15. The computer-implemented method of claim 1 , further comprising requesting, via a graphical user interface displayed on a display device, the approval input.

16. A system for controlling uploading of potentially sensitive information to the Internet, the system comprising:

at least one physical processor;

physical memory comprising computer-executable instructions that, when executed by the physical processor, cause the physical processor to:

load, at the system, at least a portion of a webpage; and

perform a security action comprising:

converting, at the computing device, components of the webpage from an online status to an offline status;

receiving a sensitive information input to a respective offline component of the webpage;

converting, based on a stored user preference that indicates automatically converting an offline component to the online status in response to receiving the sensitive information input, the respective offline component to the online status;

buffering an outgoing network request comprising the sensitive information input;

receiving an approval input indicating approval to transmit the potentially sensitive information to the Internet; and

releasing the outgoing network request in response to receiving the approval input.

17. The system of claim 16 , further comprising computer-executable instructions that, when executed by the physical processor, cause the physical processor to pass the sensitive information input from an offline thread to an online thread in response to receiving the approval input.

18. The system of claim 16 , further comprising computer-executable instructions that, when executed by the physical processor, cause the physical processor to request, via a graphical user interface displayed on a display device, the approval input.

19. A non-transitory computer-readable medium comprising one or more computer-executable instructions that, when executed by at least one processor of a computing device, cause the computing device to:

load, at the computing device, at least a portion of a webpage; and

perform a security action comprising:

converting, at the computing device, components of the webpage from an online status to an offline status;

receiving a sensitive information input to a respective offline component of the webpage;

converting, based on a stored user preference that indicates automatically converting an offline component to the online status in response to receiving the sensitive information input, the respective offline component to the online status;

buffering an outgoing network request comprising the sensitive information input;

receiving an approval input indicating approval to transmit potentially sensitive information to the Internet; and

releasing the outgoing network request in response to receiving the approval input.

20. The non-transitory computer-readable medium of claim 19 , further comprising one or more computer-executable instructions that, when executed by at least one processor of the computing device, cause the computing device to pass the sensitive information input from an offline thread to an online thread in response to receiving the approval input.

Assignments (6)
CHANGE OF NAME Recorded Feb 6, 2023
From: NORTONLIFELOCK INC.
To: GEN DIGITAL INC.
Reel/Frame 062714/0605 →
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Feb 14, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 051935/0228 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 21, 2018
From: KATS, DANIEL; SILVA, DAVID; EFSTATHOPOULOS, PETROS; MARINO, DANIEL
To: SYMANTEC CORPORATION
Reel/Frame 047846/0283 →