IP Library Granted Patent US 10,990,696
Granted Patent B2
US 10,990,696 · App. 16/564,678 · Granted Apr 27, 2021

Methods and systems for detecting attempts to access personal information on mobile communications devices

Inventors: Timothy Micheal Wyatt (Toronto, CA); Kevin Patrick Mahaffey (San Francisco, CA); David Luke Richardson (San Francisco, CA); Brian James Buck (Livermore, CA); Marc William Rogers (Moraga, CA)
Assignee: LOOKOUT, INC.
G06F21/6245H04L63/20H04W12/02H04W12/08H04W88/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,990,696
App. No.
16/564,678
Granted
Apr 27, 2021
Kind
B2
Abstract

Systems and methods are disclosed for managing personal data on a mobile communications device in which personal data stored at one or more locations on the mobile communications device is identified by a policy management module on the mobile communications device. A policy is then created based on the identified personal data. The policy management module on the mobile communications device monitors at least the personal data stored in the one or more locations on the mobile communications device and detects attempts to access the monitored data.

Claims (19)

1. A non-transitory, computer-readable storage medium having stored thereon instructions, which executed by a policy management module executing on a processor of a mobile communications device, cause the policy management module to: identify a first set of personal data associated with the mobile communications device; receive, from a server, an analysis associated with the mobile communications device; generate a policy for the mobile communications device based on the first set of personal data associated with the mobile communications device and based on the analysis received from the server, the generated policy for identifying a second set of personal data stored on the mobile communications device and for controlling access to the second set of personal data; assign the policy to the mobile communications device; identify the second set of personal data stored on the mobile communications device based on the generated policy, the second set of personal data being different from the first set of personal data; monitor the second set of personal data stored on the mobile communications device based on the generated policy; and detect a request for access to the monitored data by an application that is executed on the mobile communications device.

2. The computer-readable storage medium of claim 1 , wherein the analysis received from the server is at least partly based on a presence of at least one application installed on the mobile communications device.

3. The computer-readable storage medium of claim 2 , wherein the analysis received from the server is further at least partly based on known access to the monitored data performed by the at least one application installed on the mobile communications device.

4. The computer-readable storage medium of claim 1 , the instructions further causing the security component to:

monitor the first set of personal data associated with the mobile communications device based on the policy.

5. The computer-readable storage medium of claim 1 , wherein, when the application is associated with a container wrapper, the step of detect the request for access to the monitored data is based on the application interacting with an interface of the container wrapper.

6. A system, comprising a mobile communications device with at least one processor and memory and instructions that when executed by the at least one processor, cause a policy management module on the mobile communications device to:

identify a first set of personal data associated with the mobile communications device;

receive, from a server, an analysis associated with the mobile communications device;

generate a policy for the mobile communications device based on the first set of personal data associated with the mobile communications device and based on the analysis received from the server, the generated policy for identifying a second set of personal data stored on the mobile communications device and for controlling access to the second set of personal data;

assign the policy to the mobile communications device;

identify the second set of personal data stored on the mobile communications device based on the generated policy, the second set of personal data being different from the first set of personal data;

monitor the second set of personal data stored on the mobile communications device based on the generated policy; and

detect a request for access to the monitored data by an application that is executed on the mobile communications device.

7. The system of claim 6 , wherein the analysis received from the server is at least partly based on a presence of at least one application installed on the mobile communications device.

8. The system of claim 7 , wherein the analysis received from the server is further at least partly based on known access to the monitored data performed by the at least one application installed on the mobile communications device.

9. The system of claim 6 , the instructions further causing the security component to:

monitor the first set of personal data associated with the mobile communications device based on the policy.

10. The system of claim 6 , wherein, when the application is associated with a container wrapper, the step of detect the request for access to the monitored data is based on the application interacting with an interface of the container wrapper.

Assignments (8)
SECURITY INTEREST Recorded Oct 7, 2025
From: LOOKOUT, INC.
To: MIDCAP FINANCIAL TRUST
Reel/Frame 073028/0189 →
SECURITY INTEREST Recorded Oct 2, 2025
From: LOOKOUT, INC.
To: CRESCENT COVE OPPORTUNITY LENDING, LLC, AS AGENT
Reel/Frame 072989/0675 →
SECURITY INTEREST Recorded Aug 10, 2024
From: LOOKOUT, INC.
To: MIDCAP FINANCIAL TRUST
Reel/Frame 068538/0177 →
RELEASE OF PATENT SECURITY INTEREST AT REEL 59909 AND FRAME 0764 Recorded Jun 2, 2023
From: ALTER DOMUS (US) LLC, AS ADMINISTRATIVE AGENT
To: LOOKOUT, INC.
Reel/Frame 063844/0638 →
RELEASE OF SECURITY INTEREST Recorded May 9, 2022
From: SILICON VALLEY BANK (THE "BANK")
To: LOOKOUT, INC.
Reel/Frame 059909/0668 →
SECURITY INTEREST Recorded May 9, 2022
From: LOOKOUT, INC.
To: ALTER DOMUS (US) LLC
Reel/Frame 059909/0764 →
SECURITY INTEREST Recorded Feb 18, 2020
From: LOOKOUT, INC.
To: SILICON VALLEY BANK
Reel/Frame 051966/0282 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 24, 2020
From: WYATT, TIMOTHY MICHEAL; MAHAFFEY, KEVIN PATRICK; RICHARDSON, DAVID LUKE; BUCK, BRIAN JAMES; ROGERS, MARC WILLIAM
To: LOOKOUT, INC.
Reel/Frame 051618/0036 →