IP Library Granted Patent US 10,554,417
Granted Patent B2
US 10,554,417 · App. 16/278,999 · Granted Feb 4, 2020

Script verification using a hash

Inventor: Arnold Neil Blinn (Hunts Point, WA)
Assignee: Go Daddy Operating Company, LLC
H04L9/3247H04L9/3236H04L9/3239H04L9/3263H04L63/00H04L63/123H04L67/02H04L61/1511H04L63/0823
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,554,417
App. No.
16/278,999
Granted
Feb 4, 2020
Kind
B2
Abstract

Systems and methods of the present invention provide for one or more server computers communicatively coupled to a network and configured to: identify, within a data store: a web page including a script tag; a URL in the script tag referencing a location for a second server hosting a script file; and a first hash data in the script tag generated from the script file using a hash function algorithm. The server computer(s) execute a request that accesses the script file and a second hash generated from the script file and stored on the second server computer. If the second hash data does not match the first hash data, execution of the script tag is disabled, and a notification is generated.

Claims (46)

1. A system, comprising at least one processor executing instructions within a memory coupled to a first server computer coupled to a network, the instructions causing the first server computer to:

receive a plurality of user-defined rules for managing a plurality of script tags;

wherein the plurality of user-defined rules comprise at least one user-defined rule for disabling execution of a script file;

access a web page hosted by the first server computer, wherein the web page includes a reference to the script file and a first hash data, wherein the first hash data is at least partially determined by a contents of the script file;

access the script file and a second hash data using the reference in the web page, wherein the script file and the second hash data are stored on a second server computer;

determine the first hash data does not match the second hash data;

responsive to a determination that the second hash data does not match the first hash data:

i) prevent the first server computer from executing a portion of the script file,

ii) transmit a notification to a security center operating the first server computer, and

iii) automatically disable the execution of the script file using the at least one user-defined rule for disabling execution of the script file.

2. The system of claim 1 , wherein the first hash data is generated as output from a one-way cryptographic hash function algorithm executed using a copy of the script file, or a data associated with the script file, as an input.

3. The system of claim 1 , wherein the second hash data is generated subsequent to an access of the script file.

4. The system of claim 1 , wherein the instructions further cause the first server computer, responsive to a determination that the first hash data matches the second hash data, to download and execute the script file.

5. The system of claim 1 , wherein the script file is a JavaScript file.

6. The system of claim 1 , wherein the at least one processor executing instructions accesses the web page in a manner analogous to a web browser and provided by a plurality of servers at a plurality of IP address locations within a network.

7. The system of claim 1 , further comprising a web browser running on a client computer coupled to the network, the web browser configured to:

request the web page;

download the script file;

generate the second hash data; and

execute the script file.

8. The system of claim 1 , wherein:

the web page is hosted on the first server computer; and the script file and the second hash data are hosted on the second server computer, which is operated by a third party script vendor.

9. A method, comprising:

receiving a plurality of user-defined rules for managing a plurality of script taps;

wherein the plurality of user-defined rules comprise at least one user-defined rule for disabling execution of a script file;

accessing, by a first server computer coupled to a network, a web page hosted by the first server computer, wherein the web page includes a reference to a script file and a first hash data, wherein the first hash data is at least partially determined by a contents of the script file;

accessing, by the first server computer, the script file and a second hash data using the reference in the web page, wherein the script file and the second hash data are stored on a second server computer;

determining, by the first server computer, the first hash data does not match the second hash data; and

responsive to a determination that the second hash data does not match the first hash data;

i) preventing, by the first server computer, the first server computer from executing a portion of the script file,

ii) transmitting a notification to a security center operating the first server computer, and

iii) automatically disabling the execution of the script file using the at least one user-defined rule for disabling execution of the script file.

10. The method of claim 9 , wherein the first hash data and the second hash data are generated as output from a one-way cryptographic hash function algorithm using the script file, or a data associated with the script file, as an input.

11. The method of claim 9 , wherein the second hash data is generated subsequent to an access of the script file.

12. The method of claim 9 , wherein the instructions further cause the first server computer, responsive to a determination that the first hash data matches the second hash data, to download and execute the script file.

13. The method of claim 9 , wherein the script file is a JavaScript file.

14. The method of claim 9 , further comprising accessing, by the first server computer, the script file by executing a request of the web page analogous to a web browser.

15. The method of claim 9 , further comprising executing a web browser running on a client computer coupled to the network, the web browser configured to:

request the web page;

download the script file;

generate the second hash data;

authenticate the second hash data; and

execute the script file.

16. The method of claim 9 , wherein:

the web page is hosted on the first server computer; and

the script file, and the second hash data is hosted on the second server computer, which is operated by a third party script vendor.

Assignments (3)
SECURITY AGREEMENT Recorded Feb 17, 2023
From: GO DADDY OPERATING COMPANY, LLC; GD FINANCE CO, LLC; GODADDY MEDIA TEMPLE INC.; GODADDY.COM, LLC; LANTIRN INCORPORATED; POYNT, LLC
To: ROYAL BANK OF CANADA
Reel/Frame 062782/0489 →
SECURITY AGREEMENT Recorded Oct 12, 2020
From: GO DADDY OPERATING COMPANY, LLC; GD FINANCE CO., INC.
To: BARCLAYS BANK PLC
Reel/Frame 054045/0829 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 19, 2019
From: BLINN, ARNOLD
To: GO DADDY OPERATING COMPANY, LLC
Reel/Frame 048368/0706 →
Continuity (2)
Continuation 15408264 · Jan 17, 2017
Related Publication 20190190722A1 · Jun 20, 2019