IP Library Granted Patent US 10,825,111
Granted Patent B2
US 10,825,111 · App. 16/236,087 · Granted Nov 3, 2020

Verified social media content

Inventors: Kunal Mehta (Hillsboro, OR); Carl D. Woodward (Santa Clara, CA); Steven Grobman (El Dorado Hills, CA); Ryan Durand (Hillsboro, OR); Simon Hunt (Naples, FL)
Assignee: McAfee, LLC
G06Q50/01A61B5/117A61B5/165A61B5/4845A61B5/6898G06F21/316G06F21/552G06Q10/06395H04L63/0861H04W12/0609G06F21/53G06F2221/2133H04L67/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,825,111
App. No.
16/236,087
Granted
Nov 3, 2020
Kind
B2
Abstract

There is disclosed in one example a social media server, including: a processor; a trusted input/output (IO) interface to communicatively couple to a consumer device; a network interface to communicatively couple to an enterprise; and a memory having stored thereon executable instructions to instruct the processor to provide a data loss prevention (DLP) engine to: receive via the trusted IO interface a signed and encrypted user posting for the social media service, the user posting including a signed user state report verifying that the user has passed a biometric screening; transmit content of the user posting to the enterprise via the network interface for DLP analysis; receive from the enterprise a notification that the user posting has passed DLP analysis; and accept the user posting.

Claims (37)

1. A social media server, comprising:

a processor;

a trusted input/output (IO) interface to communicatively couple to a consumer device;

a network interface to communicatively couple to an enterprise; and

a memory having stored thereon executable instructions to instruct the processor to provide a data loss prevention (DLP) engine to:

receive via the trusted IO interface a signed and encrypted user posting for the social media service, the user posting including a signed user state report verifying that the user has passed a biometric screening;

transmit content of the user posting to the enterprise via the network interface for DLP analysis;

receive from the enterprise a notification that the user posting has passed DLP analysis; and

accept the user posting.

2. The social media server of claim 1 , wherein the DLP engine is further to receive from the enterprise a notification that the user posting has failed DLP analysis and to reject the user posting.

3. The social media server of claim 1 , wherein the DLP engine is further to determine that the user posting does not include a signed user state report, and to reject the user posting.

4. The social media server of claim 1 , wherein the trusted IO interface includes a protected audio video path (PAVP).

5. The social media server of claim 1 , further comprising a trusted execution environment (TEE).

6. The social media server of claim 5 , wherein the DLP engine is further to perform direct anonymous attestation (DAA) with the user device to authenticate the user device.

7. The social media server of claim 6 , wherein the DAA comprises an exchange of endorsement keys.

8. The social media server of claim 7 , wherein the TEE comprises a zero-knowledge proof engine to authenticate the user device without compromising privacy of the user device.

9. One or more tangible, non-transitory computer-readable storage mediums having stored thereon executable instructions to provide a data loss prevention (DLP) engine configured to:

receive via a trusted input/output (IO) channel a secured user posting for a social media service, the user posting including a user state report verifying that the user meets a minimum biometric profile;

transmit content of the user posting to an enterprise for DLP analysis;

receive from the enterprise a notification that the user posting has passed DLP analysis; and

accept the user posting.

10. The one or more tangible, non-transitory computer-readable mediums of claim 9 , wherein the DLP engine is further configured to receive from the enterprise a notification that the user posting has failed DLP analysis and to reject the user posting.

11. The one or more tangible, non-transitory computer-readable mediums of claim 9 , wherein the DLP engine is further configured to determine that the user posting does not include a signed user state report, and to reject the user posting.

12. The one or more tangible, non-transitory computer-readable mediums of claim 9 , wherein the trusted IO channel includes a protected audio video path (PAVP).

13. The one or more tangible, non-transitory computer-readable mediums of claim 9 , wherein the instructions are further to provision a trusted execution environment (TEE).

14. The one or more tangible, non-transitory computer-readable mediums of claim 13 , wherein the DLP engine is further configured to perform direct anonymous attestation (DAA) with a user device to authenticate the user device.

15. The one or more tangible, non-transitory computer-readable mediums of claim 14 , wherein the DAA comprises an exchange of endorsement keys.

16. The one or more tangible, non-transitory computer-readable mediums of claim 13 , wherein the TEE comprises a zero-knowledge proof engine to authenticate the user device without compromising privacy of a user providing the posting.

17. A computer-implemented method of providing enterprise data loss prevention (DLP) for a social media service, comprising:

receiving via a trusted input/output (IO) path a posting for the social media service, the user posting accompanied by a state report verifying that the user has passed a non-authentication biometric screening;

extracting content from the posting;

transmitting the content to an enterprise for DLP analysis;

receiving from the enterprise a certification that the user posting has passed DLP analysis; and

providing the user posting to the social media service.

18. The method of claim 17 , further comprising receiving from the enterprise a notification that the user posting has failed DLP analysis and to reject the user posting.

19. The method of claim 17 , further comprising determining that the user posting does not include a state report, and to reject the user posting.

20. The method of claim 19 , wherein the state report is signed and encrypted.

Assignments (13)
RELEASE OF SECURITY INTEREST Recorded Aug 16, 2024
From: STG PARTNERS, LLC
To: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
Reel/Frame 068671/0435 →
TERMINATION AND RELEASE OF SECOND LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 056990, FRAME 0960 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0430 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068656/0098 →
INTELLECTUAL PROPERTY ASSIGNMENT AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068656/0920 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 15, 2024
From: MAGENTA SECURITY HOLDINGS LLC; SKYHIGH SECURITY LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 068657/0666 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MUSARUBRA US LLC
To: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
Reel/Frame 068657/0764 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 15, 2024
From: MAGENTA SECURITY INTERMEDIATE HOLDINGS LLC
To: MAGENTA SECURITY HOLDINGS LLC
Reel/Frame 068657/0843 →
TERMINATION AND RELEASE OF FIRST LIEN SECURITY INTEREST IN CERTAIN PATENTS RECORDED AT REEL 057453, FRAME 0053 Recorded Aug 15, 2024
From: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
To: MUSARUBRA US LLC
Reel/Frame 068655/0413 →
SECURITY INTEREST Recorded Aug 1, 2024
From: MUSARUBRA US LLC; SKYHIGH SECURITY LLC
To: STG PARTNERS, LLC
Reel/Frame 068324/0731 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 061007/0124 →
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY NUMBERS PREVIOUSLY RECORDED AT REEL: 057315 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 11, 2022
From: MCAFEE, LLC
To: MUSARUBRA US LLC
Reel/Frame 060878/0126 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 057453/0053 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Jul 27, 2021
From: MUSARUBRA US LLC; SKYHIGH NETWORKS, LLC
To: UBS AG, STAMFORD BRANCH, AS COLLATERAL AGENT
Reel/Frame 056990/0960 →
Cited By (1)
US 12,681,951