IP Library Granted Patent US 11,394,694
Granted Patent B1
US 11,394,694 · App. 16/807,253 · Granted Jul 19, 2022

Obscuring connections between source and destination devices via a pool of disposable proxies

Inventors: Walter Adeyinka Ademiluyi (Boyds, MD); William Theodore Schoon (Taylors, SC); Scott Christian Green (Taylors, SC); Carl Bailey Jacobs (Fredericksburg, VA); Jeremiah MacDonald (Greenville, SC); Christopher Edward Delaney (Front Royal, VA); Chava Louis Juardo (Leesburg, VA)
Assignee: Cyber IP Holdings, LLC
H04L63/0421H04L67/141H04L67/28H04L63/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,394,694
App. No.
16/807,253
Granted
Jul 19, 2022
Kind
B1
Abstract

A system for obscuring a source IP address of a source network device from a destination network device comprises a proxy manager and first and second disposable network proxies. Credentials for a plurality of disposable network proxies are provided to the source network device. A proxy disposal trigger is generated for each disposable network proxy in the plurality of disposable network proxies based on usage of the disposable network proxy. A connection request comprising the credentials and a destination IP address of the destination network device is received from the source network device. First traffic from the source network device to the destination network device is forwarded over a first connection with the destination network device that uses an IP address of the disposable network proxy. Second traffic from the destination network device to the source network device is forwarded over a second network connection with the source network device.

Claims (58)

1. A system for obscuring a source IP address of a source network device from a destination network device, the system comprising:

a proxy manager configured to:

receive, from the source network device, proxy pool requirements, the proxy pool requirements indicating a number of disposable network proxies;

send, to each of a plurality of network service providers, a request for a plurality of disposable network proxies based on the proxy pool requirements;

provide, to the source network device, credentials for the plurality of disposable network proxies; and

generate, for each disposable network proxy in the plurality of disposable network proxies, a proxy disposal trigger based on a usage of the disposable network proxy;

first and second disposable network proxies in the plurality of disposable network proxies configured to:

receive, from the source network device, a connection request comprising the credentials and a destination IP address of the destination network device;

forward, over a first connection with the destination network device that uses an IP address of the disposable network proxy, first traffic from the source network device to the destination network device;

forward, over a second network connection with the source network device, second traffic from the destination network device to the source network device; and

wherein:

the first and second disposable network proxies are used by the source network device to forward first and second traffic at separate times,

the source network device discontinues use of the first and second disposable network proxies based on the proxy disposal trigger,

the first and second network connections form an encrypted tunnel for communications between the source network device and the destination network device, and

the first and second disposable network proxies are generated by different ones of the plurality of network service providers.

2. The system of claim 1 , wherein the credentials comprise a unique uniform resource locator (URL).

3. The system of claim 1 , wherein the proxy disposal trigger is generated based on a time requirement that indicates a time measured in minutes or seconds that the disposable network proxy is used.

4. The system of claim 1 , wherein the proxy disposal trigger is generated based on a use requirement that indicates a number of times that the disposable network proxy is used.

5. The system of claim 1 , wherein the first and second disposable network proxies are further configured to:

terminate the first and second network connections based on a corresponding release request from the source network device.

6. A method for obscuring a source IP address of a source network device from a destination network device, the method comprising:

receiving, by a proxy manager from the source network device, proxy pool requirements, the proxy pool requirements indicating a number of disposable network proxies;

sending, by the proxy manager to each of a plurality of network service providers, a request for a plurality of disposable network proxies based on the proxy pool requirements;

providing, by the proxy manager to the source network device, credentials for the plurality of disposable network proxies; and

generating, by the proxy manager, for each disposable network proxy in the plurality of disposable network proxies, a proxy disposal trigger based on a usage of the disposable network proxy;

receiving, by first and second disposable network proxies in the plurality of disposable network proxies, from the source network device, a connection request comprising the credentials and a destination IP address of the destination network device;

forwarding, by the first and second disposable network proxies over a first connection with the destination network device that uses an IP address of the disposable network proxy, first traffic from the source network device to the destination network device;

forwarding, by the first and second disposable network proxies over a second network connection with the source network device, second traffic from the destination network device to the source network device; and

wherein:

the first and second disposable network proxies are used by the source network device to forward first and second traffic at separate times,

the source network device discontinues use of the first and second disposable network proxies based on the proxy disposal trigger,

the first and second network connections form an encrypted tunnel for communications between the source network device and the destination network device, and

the first and second disposable network proxies are generated by different ones of the plurality of network service providers.

7. The method of claim 6 , wherein the credentials comprise a unique uniform resource locator (URL).

8. The method of claim 6 , wherein the proxy disposal trigger is generated based on a time requirement that indicates a time measured in minutes or seconds that the disposable network proxy is used.

9. The method of claim 6 , wherein the proxy disposal trigger is generated based on a use requirement that indicates a number of times that the disposable network proxy is used.

10. The method of claim 6 , further comprising:

terminating, by the first and second disposable network proxies, the first and second network connections based on a corresponding release request from the source network device.

11. A non-transitory computer-readable medium encoded with instructions for commanding one or more data processors to execute steps of a method for obscuring a source IP address of a source network device from a destination network device, the method comprising:

receiving, by a proxy manager from the source network device, proxy pool requirements, the proxy pool requirements indicating a number of disposable network proxies;

sending, by the proxy manager to each of a plurality of network service providers, a request for a plurality of disposable network proxies based on the proxy pool requirements;

providing, by the proxy manager to the source network device, credentials for the plurality of disposable network proxies; and

generating, by the proxy manager, for each disposable network proxy in the plurality of disposable network proxies, a proxy disposal trigger based on a usage of the disposable network proxy;

receiving, by first and second disposable network proxies in the plurality of disposable network proxies, from the source network device, a connection request comprising the credentials and a destination IP address of the destination network device;

forwarding, by the first and second disposable network proxies over a first connection with the destination network device that uses an IP address of the disposable network proxy, first traffic from the source network device to the destination network device;

forwarding, by the first and second disposable network proxies over a second network connection with the source network device, second traffic from the destination network device to the source network device; and

wherein:

the first and second disposable network proxies are used by the source network device to forward first and second traffic at separate times,

the source network device discontinues use of the first and second disposable network proxies based on the proxy disposal trigger,

the first and second network connections form an encrypted tunnel for communications between the source network device and the destination network device, and

the first and second disposable network proxies are generated by different ones of the plurality of network service providers.

12. The non-transitory computer-readable medium of claim 11 , the method further comprising:

receiving, by the proxy manager from the source network device, proxy pool requirements, the proxy pool requirements comprising a number of disposable network proxies based on the proxy disposal trigger; and

requesting, by the proxy manager, generation of the first and second disposable network proxies based on the proxy pool requirements.

13. The non-transitory computer-readable medium of claim 11 , wherein the proxy disposal trigger is generated based on a time requirement that indicates a time measured in minutes or seconds that the disposable network proxy is used.

14. The non-transitory computer-readable medium of claim 11 , wherein the proxy disposal trigger is generated based on a use requirement that indicates a number of times that the disposable network proxy is used.

15. The non-transitory computer-readable medium of claim 11 , wherein the method further comprises:

terminating, by the first and second disposable network proxies, the first and second network connections based on a corresponding release request from the source network device.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 3, 2022
From: BERRYVILLE HOLDINGS, LLC
To: CYBER IP HOLDINGS, LLC
Reel/Frame 059797/0483 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 3, 2020
From: ADEMILUYI, WALTER ADEYINKA; SCHOON, WILLIAM THEODORE; GREEN, SCOTT CHRISTIAN; JACOBS, CARL BAILEY; MACDONALD, JEREMIAH; DELANEY, CHRISTOPHER EDWARD; JURADO, CHAVA LOUIS
To: BERRYVILLE HOLDINGS, LLC
Reel/Frame 051988/0814 →
Continuity (1)
Provisional Application 62813271 · Mar 4, 2019
Cited By (2)
US 12,407,725 US 12,413,559