IP Library › Patent Application 18451075
Patent Application
App. No. 18/451,075

CONTENT SECURITY METHOD AND SYSTEM

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
18/451,075
Abstract

Disclosed is a method and system for content security. The method includes applying a content security policy to an internet browser application, wherein the content security policy is associated with a desktop manager of the internet browser application. The method further includes detecting, by a processing device executing the content security policy, a data transmission to or from the internet browser application that violates a first policy provision of the content security policy. The method further includes blocking, by the processing device, the data transmission. The method further includes transmitting an alert to a computing device that the data transmission was blocked.

Claims (53)

1 . A method of content security comprising:

applying a content security policy to an internet browser application, wherein the content security policy is associated with a desktop manager of the internet browser application;

detecting, by a processing device executing the content security policy, a data transmission to or from the internet browser application that violates a first policy provision of the content security policy; and

blocking, by the processing device, the data transmission.

2 . The method of claim 1 , further comprising transmitting an alert to a computing device that the data transmission was blocked.

3 . The method of claim 1 , further comprising:

detecting, by the processing device, a data download request to the internet browser application that violates a second policy provision of the content security policy, wherein the data download request is received from a web application server in communication with the internet browser application;

blocking, by the processing device, the data download request; and

transmitting an alert to the computing device that the data download request was blocked.

4 . The method of claim 3 , wherein the content security policy includes one or more policy provisions to block:

data transmissions or connections from the internet browser application to a predefined computing device; or

data download requests to the internet browser application, the data download requests including requests for downloading one or more predefined types of data.

5 . The method of claim 1 , wherein the content security policy includes one or more application-layer policy provisions that block one or more types of data connections.

6 . The method of claim 5 , wherein the one or more types of data connections include at least one of:

a web services or web application connection;

a web socket connection; or

a web real-time communication (RTC) connection.

7 . The method of claim 1 , wherein the content security policy is a first content security policy applied to the internet browser application, and wherein a second content security policy is applied to the internet browser application by a web application with which the internet browser application is in communication.

8 . The method of claim 7 , wherein the first content security policy and the second content security policy are separately managed by the desktop manager and a web server associated with the web application, respectively.

9 . A system for content security comprising:

a memory to store a content security policy, wherein the content security policy is associated with a desktop manager of an internet browser application; and

a processing device operatively coupled with the memory to:

apply the content security policy to the internet browser application and execute the content security policy;

detect a data transmission to or from the internet browser application that violates a first policy provision of the content security policy; and

block the data transmission.

10 . The system of claim 9 , wherein the processing device is further to transmit an alert to a computing device that the data transmission was blocked.

11 . The system of claim 9 , wherein the processing device is further to:

detect a data download request to the internet browser application that violates a second policy provision of the content security policy, wherein the data download request is received from a web application server in communication with the internet browser application;

block the data download request; and

transmit an alert to the computing device that the data download request was blocked.

12 . The system of claim 11 , wherein the content security policy includes one or more policy provisions to block:

data transmissions or connections from the internet browser application to a predefined computing device; or

data download requests to the internet browser application, the data download requests including requests for downloading one or more predefined types of data.

13 . The system of claim 9 , wherein the content security policy includes one or more application-layer policy provisions that block one or more types of data connections.

14 . The system of claim 13 , wherein the one or more types of data connections include one or more of:

a web services or web application connection;

a web socket connection; or

a web real-time communication (RTC) connection.

15 . The system of claim 9 , wherein the content security policy is a first content security policy applied to the internet browser application, and wherein a second content security policy is applied to the internet browser application by a web application with which the internet browser application is in communication.

16 . The system of claim 15 , wherein the first content security policy and the second content security policy are separately managed by the desktop manager and a web server associated with the web application, respectively.

17 . A non-transitory computer readable storage medium to store instructions executable by a processing device of a system to cause the system to:

apply a content security policy to an internet browser application, wherein the content security policy is associated with a desktop manager of the internet browser application;

detect, by the processing device executing the content security policy, a data transmission to or from the internet browser application that violates a first policy provision of the content security policy; and

block, by the processing device, the data transmission.

18 . The non-transitory computer readable storage medium of claim 17 , wherein the processing device is further to transmit an alert to a computing device that the data transmission was blocked;

wherein the content security policy includes one or more application-layer policy provisions that block one or more types of data connections.

19 . The non-transitory computer readable storage medium of claim 17 , wherein the processing device is further to:

detect a data download request to the internet browser application that violates a second policy provision of the content security policy, wherein the data download request is received from a web application server in communication with the internet browser application;

block the data download request; and

transmit an alert to the computing device that the data download request was blocked.

20 . The non-transitory computer readable storage medium of claim 19 , wherein the content security policy includes one or more policy provisions to block:

data transmissions or connections from the internet browser application to a predefined computing device; or

data download requests to the internet browser application, the data download requests including requests for downloading one or more predefined types of data.

Assignments (2)
CHANGE OF NAME Recorded Jul 3, 2024
From: OPENFIN INC.
To: HERE ENTERPRISE INC.
Reel/Frame 068122/0430 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 20, 2024
From: DOERR, CHUCK
To: OPENFIN INC.
Reel/Frame 067784/0503 →