IP Library › Granted Patent US 12,212,552
Granted Patent B2
US 12,212,552 · App. 18/228,468 · Granted Jan 28, 2025

Disposable browsers and authentication techniques for a secure online user environment

Inventors: Ramesh Rajagopal (Los Altos, CA); James K. Tosh (Fremont, CA); Fredric L. Cox (San Jose, CA); Perry F. Nguyen (Santa Clara, CA); Jason T. Champion (Mountain View, CA)
Assignee: Authentic8, Inc.
H04L63/08G06F21/31G06F21/313G06F21/35G06F21/36G06F21/43G06F21/53H04L63/102H04L63/1441H04L63/20H04L67/01G06F2221/2111H04L63/168
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,212,552
App. No.
18/228,468
Granted
Jan 28, 2025
Kind
B2
Abstract

Disclosed herein are systems and methods that allow for secure access to websites and web-based applications. Also described are systems and methods for secure use and retention of user credentials, as well as methods for dynamic authentication of users and integrity checking of service providers in online environments. Thus, described in the present specification are systems and methods for constructing and destroying private, secure, browsing environments (a secure disposable browser), insulating the user from the threats associated with being online for the purposes of providing secure, policy-based interaction with online services.

Claims (54)

1. An apparatus for enabling access to content using disposable applications, the apparatus comprising:

a memory comprising computer instructions; and

an application server comprising a hardware processor associated with a computing device, wherein the hardware processor is operable to:

establish a secure environment for operating a disposable application session;

initiate the disposable application session within the secure environment, wherein a disposable application associated with the disposable application session is displayable on a client device executing a thin client process and located externally to the apparatus;

configure the disposable application session with session data associated with the disposable application session;

receive first data from the client device, the first data being associated with a content request initiated on the disposable application displayed on the client device;

communicate with a remote server associated with the content request;

execute a command associated with the content request or received from the remote server;

transmit, to the client device, second data associated with the command or associated with the content request;

receive, from the client device, a user interaction with image data displayed on the client device, wherein the image data is rendered or generated on the client device based on the second data;

transmit, to the remote server, third data associated with the user interaction with the image data; and

dispose of or substantially delete, at or after an end of the disposable application session, the session data associated with the disposable application session,

wherein identification information associated with the client device is not transmitted directly from the client device to the remote server.

2. The apparatus of claim 1 , wherein the disposable application session is initiated by the client device or by the apparatus.

3. The apparatus of claim 1 , wherein the disposable application session is ended by the client device or by the apparatus.

4. The apparatus of claim 1 , wherein the session data is associated with the disposable application.

5. The apparatus of claim 1 , wherein the session data is associated with a user preference, or wherein the disposable application comprises an Internet-based application.

6. The apparatus of claim 1 , wherein the receive the first data from the client device occurs before the establish the secure environment.

7. The apparatus of claim 1 , wherein the receive the first data from the client device occurs after the establish the secure environment.

8. The apparatus of claim 1 , wherein the receive the first data from the client device occurs before the initiate the disposable application session.

9. The apparatus of claim 1 , wherein the receive the first data from the client device occurs after the initiate the disposable application session.

10. The apparatus of claim 1 , wherein the command is received from the remote server.

11. The apparatus of claim 1 , wherein the secure environment is disposed of or substantially deleted at or after the end of the disposable application session.

12. The apparatus of claim 1 , wherein the computer instructions are associated with a user authentication operation for a user of the client device, wherein the user authentication operation is associated with enabling the user of the client device to access an application or a page associated with the content request.

13. The apparatus of claim 1 , wherein the apparatus is operable to remotely control the disposable application.

14. The apparatus of claim 1 , wherein the disposable application session is substantially insulated from a second disposable application session.

15. The apparatus of claim 1 , wherein the computer instructions are associated with a user authentication operation for the client device or for a user of the client device.

16. A method for enabling access to content using disposable applications, the method comprising:

initiating, using one or more hardware computing device processors, a disposable application session, wherein a disposable application associated with the disposable application session is displayable on a client device executing a thin client process;

configuring, using the one or more hardware computing device processors, the disposable application session with session data associated with the disposable application session;

receiving, using the one or more hardware computing device processors, first data from the client device, the first data being associated with a content request initiated on the disposable application;

communicating, using the one or more hardware computing device processors, with a remote server associated with the content request;

executing, using the one or more hardware computing device processors, a command;

transmitting, to the client device, second data associated with the command or associated with the content request;

receiving, from the client device, a user interaction with image data displayed on the client device, wherein the image data is generated on the client device based on the second data;

transmitting, to the remote server, third data associated with the user interaction with the image data; and

disposing of or substantially deleting, using the one or more hardware computing device processors, at or after an end of the disposable application session, the session data associated with the disposable application session,

wherein identification information associated with the client device or a user of the client device is not transmitted directly from the client device to the remote server.

17. The method of claim 16 , wherein the disposable application session is initiated or ended by the client device or by the one or more hardware computing device processors, or wherein the disposable application comprises an Internet-based application.

18. The method of claim 16 , further comprising authenticating the client device or the user of the client device to an application or a page associated with the content request.

19. An apparatus for enabling access to content using disposable applications, the apparatus comprising one or more hardware processors configured to:

establish a secure environment for operating a disposable application session;

initiate the disposable application session within the secure environment, wherein a disposable application associated with the disposable application session is displayable on a client device located externally to the apparatus;

configure the disposable application session with session data associated with the disposable application session;

receive first data from the client device, the first data being associated with a content request initiated on the disposable application displayed on the client device;

communicate with a remote server associated with the content request;

execute a command associated with the content request or received from the remote server;

transmit, to the client device, second data associated with the command or associated with the content request;

receive, from the client device, a user interaction with image data displayed on the client device, wherein the image data is rendered or generated on the client device based on the second data;

transmit, to the remote server, third data associated with the user interaction with the image data; and

dispose of or substantially delete, at or after an end of the disposable application session, the session data associated with the disposable application session,

wherein identification information associated with the client device is not transmitted directly from the client device to the remote server.

20. The apparatus of claim 19 , wherein authentication information associated with the client device or a user of the client device is not transmitted directly from the client device to the remote server, or wherein the disposable application comprises an Internet-based application.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 1, 2023
From: RAJAGOPAL, RAMESH; TOSH, JAMES K.; COX, FREDRIC L.; NGUYEN, PERRY F.; CHAMPION, JASON T.
To: AUTHENTIC8, INC.
Reel/Frame 064773/0076 →
Continuity (7)
Continuation 17080833 · Oct 26, 2020
Continuation 16450866 · Jun 24, 2019
Continuation 15281440 · Sep 30, 2016
Continuation 14325128 · Jul 7, 2014
Continuation 13076421 · Mar 30, 2011
Provisional Application 61319250 · Mar 30, 2010
Related Publication 20230412577A1 · Dec 21, 2023
References Cited (78)
US 6138168A · Kelly et al. · 2000 [cited by applicant]
US 6671818B1 · Mikurak · 2003 [cited by examiner]
US 6704024B2 · Robotham et al. · 2004 [cited by applicant]
US 7934253B2 · Overcash et al. · 2011 [cited by applicant]
US 7958012B2 · Hudak et al. · 2011 [cited by applicant]
US 8015606B1 · Jevans et al. · 2011 [cited by applicant]
US 8051098B2 · Bisbee et al. · 2011 [cited by applicant]
US 8266685B2 · Abzarian et al. · 2012 [cited by applicant]
US 8332626B2 · Mansfield · 2012 [cited by applicant]
US 8335994B2 · So · 2012 [cited by applicant]
US 8392827B2 · Challenger et al. · 2013 [cited by applicant]
US 8484718B2 · Chacko et al. · 2013 [cited by applicant]
US 8635672B2 · Yamada · 2014 [cited by applicant]
US 8776169B2 · Rajagopal et al. · 2014 [cited by applicant]
US 8935609B2 · Bauchot et al. · 2015 [cited by applicant]
US 9306972B2 · Amiga · 2016 [cited by applicant]
US 9313227B2 · Amiga · 2016 [cited by applicant]
US 9391832B1 · Song et al. · 2016 [cited by applicant]
US 9461982B2 · Rajagopal et al. · 2016 [cited by applicant]
US 9635672B2 · Vasudevan et al. · 2017 [cited by applicant]
US 9781140B2 · Wardman et al. · 2017 [cited by applicant]
US 10333916B2 · Rajagopal et al. · 2019 [cited by applicant]
US 10819693B2 · Rajagopal · 2020 [cited by examiner]
US 11716315B2 · Rajagopal · 2023 [cited by examiner]
US 20030076813A1 · Isomaki · 2003 [cited by applicant]
US 20030120747A1 · Kim · 2003 [cited by applicant]
US 20030229810A1 · Bango · 2003 [cited by applicant]
US 20040034502A1 · Jung · 2004 [cited by applicant]
US 20040205176A1 · Ting et al. · 2004 [cited by applicant]
US 20040239681A1 · Robotham et al. · 2004 [cited by applicant]
US 20050021668A1 · Beesley et al. · 2005 [cited by applicant]
US 20050221267A1 · Berman · 2005 [cited by applicant]
US 20060005008A1 · Kao · 2006 [cited by applicant]
US 20060020783A1 · Fisher · 2006 [cited by examiner]
US 20060041755A1 · Pemmaraju · 2006 [cited by applicant]
US 20060232592A1 · Faso · 2006 [cited by applicant]
US 20070016949A1 · Dunagan et al. · 2007 [cited by applicant]
US 20070098178A1 · Raikar · 2007 [cited by applicant]
US 20070101435A1 · Konanka et al. · 2007 [cited by applicant]
US 20070136579A1 · Levy et al. · 2007 [cited by applicant]
US 20080016551A1 · Pinkas et al. · 2008 [cited by applicant]
US 20080178286A1 · Deyo · 2008 [cited by applicant]
US 20080229427A1 · Ramirez · 2008 [cited by applicant]
US 20080271020A1 · Leitz et al. · 2008 [cited by applicant]
US 20080282338A1 · Beer · 2008 [cited by examiner]
US 20090248737A1 · Shukla et al. · 2009 [cited by applicant]
US 20090252323A1 · Cooper · 2009 [cited by applicant]
US 20090292984A1 · Bauchot et al. · 2009 [cited by applicant]
US 20100024036A1 · Morozov et al. · 2010 [cited by applicant]
US 20100057836A1 · Anbuselvan · 2010 [cited by applicant]
US 20100125911A1 · Bhaskaran · 2010 [cited by applicant]
US 20100131659A1 · Narayana et al. · 2010 [cited by applicant]
US 20100186078A1 · Napoli et al. · 2010 [cited by applicant]
US 20100319070A1 · Born · 2010 [cited by applicant]
US 20110083067A1 · Shim · 2011 [cited by applicant]
US 20110131408A1 · Cook et al. · 2011 [cited by applicant]
US 20110161990A1 · Smith et al. · 2011 [cited by applicant]
US 20110167361A1 · Watanabe · 2011 [cited by applicant]
US 20110167492A1 · Ghosh et al. · 2011 [cited by applicant]
US 20110247045A1 · Rajagopal et al. · 2011 [cited by applicant]
US 20110277019A1 · Pritchard, Jr. · 2011 [cited by applicant]
US 20120042365A1 · Shoval et al. · 2012 [cited by applicant]
US 20120089481A1 · Iozzia · 2012 [cited by examiner]
US 20120210119A1 · Baxter · 2012 [cited by applicant]
US 20130174267A1 · Kass · 2013 [cited by applicant]
US 20130291102A1 · Deyo · 2013 [cited by applicant]
US 20130340028A1 · Rajagopal et al. · 2013 [cited by applicant]
US 20160014145A1 · Sheleheda · 2016 [cited by applicant]
US 20160352803A1 · Amiga et al. · 2016 [cited by applicant]
WO 2009104829A1 · 2009 [cited by applicant]
Rajagopal et al., U.S. Appl. No. 15/281,440. [cited by applicant]
“Internet Explorer 7—Wikipedia, the free encyclopedia.” Wikipedia, the free encyclopedia. Published Apr. 9, 2009. Accessed—Web. Oct. 10, 2013. <http://en.wikipedia.org/w/index.php?title=Internet_Explorer_7&oldid=2827888… [cited by applicant]
“Tab (GUI: Difference between revisions).” Wikipedia. Wikimedia Foundation, published Apr. 19, 2009. Accessed Web Apr. 18, 2014. <http://en.wikipedia.org/w/index.php?title=Tab_(GUI)&DIFF=284321974&OLDID=283>. [cited by applicant]
PCT/US2011/030620, Search Report and Written Opinion of the International Searching Authority mailed Aug. 23, 2011. [cited by applicant]
PCT/US2014/024867, Search Report and Written Opinion of the International Searching Authority mailed Sep. 5, 2014. [cited by applicant]
Office Action dated Jul. 11, 2017 in connection with U.S. Appl. No. 15/281,440, 17 pages. [cited by applicant]
Office Action dated Apr. 11, 2018 in connection with U.S. Appl. No. 15/281,440, 36 pages. [cited by applicant]
Office Action dated Sep. 19, 2018 in connection with U.S. Appl. No. 15/281,440, 24 pages. [cited by applicant]