IP Library Patent Application 19092182
Patent Application
App. No. 19/092,182

SECURE BROWSER SYNCHRONIZATION ACROSS BROWSER INSTANCES

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
19/092,182
Abstract

A communications system for providing secure access to a digital resource of a group of digital resources accessible via the internet, the system comprising: a data processing hub accessible via an IP (internet protocol) address; and a plurality of user equipment (UEs) useable to communicate via the internet, each configured to have a cyber secure isolated environment (CISE) isolated from ambient software in the UE, and comprising a secure web browser (SWB); wherein the hub and CISE are configured so that digital resources in motion and at rest in CISE are visible to the hub.

Claims (40)

1 . A method comprising:

authenticating a first instance of a web browser to a backend of an organization;

obtaining at least one of a security policy and an access policy for the organization from the backend after authentication; and

synchronizing the first instance of the web browser with a second instance of the web browser via the backend.

2 . The method of claim 1 , further comprising storing configurations and preferences of users of the organization on one or more servers of the backend and providing to the first instance of the web browser at least a subset of the stored configurations and preferences after authentication of the first instance, wherein synchronizing the first instance with the second instance comprises synchronizing the subset of the configurations and preferences.

3 . The method of claim 2 , wherein the configurations and preferences comprise at least one of bookmarks, cookies, color mode, themes, home page, and current browsing session.

4 . The method of claim 1 further comprising storing in an encrypted storage vault at least one of payment methods and user credentials received for a user from either of the first and second instances of the web browser.

5 . The method of claim 1 further comprising configuring predefined bookmarks on one or more servers of the organization and loading at least a subset of the predefined bookmarks into the first and the second instances of the web browser.

6 . The method of claim 5 further comprising selecting the subset of predefined bookmarks based on at least one of a user authenticated to the first and second instances of the web browser and a group corresponding to the user authenticated to the first and second instances of the web browser.

7 . The method of claim 1 further comprising loading into the first and the second instances of the web browser editable or read-only bookmarks.

8 . The method of claim 1 , further comprising synchronizing auto-fillable information from the backend to at least one of the first and second instances of the web browser, wherein the auto-fillable information comprises at least one of passwords, user and company information, addresses, payment methods, a home page uniform resource locator (URL), a default search engine, new page settings, accessibility features, proxy settings, language, spell checking, privacy and security settings, and whitelisted domains.

9 . The method of claim 1 , wherein synchronizing the first and second instances of the web browser comprises determining that a first user is logged into the first and the second instances, synchronizing open tabs on the first and second instances of the web browser with the backend and then synchronizing each of the first and second instances of the web browser with the backend.

10 . The method of claim 1 , further comprising synchronizing a cut, paste, print, or copy operation detected in the first environment with a second environment associated with a user of the first environment, wherein the synchronizing is via a secure clipboard on a server of the organization.

11 . The method of claim 1 further comprising receiving, at the first and second instances of the web browser, a password from a privilege access management (PAM) solution.

12 . A non-transitory, machine-readable medium having stored thereon program code comprising instructions to:

authenticate a first instance of a web browser to a backend of an organization;

obtain at least one of a security policy and an access policy for the organization from the backend after authentication; and

synchronize the first instance of the web browser with a second instance of the web browser via the backend.

13 . The non-transitory, machine-readable medium of claim 12 , wherein the program code further comprises instructions to store configurations and preferences of users of the organization on one or more servers of the backend and to retrieve the at least a subset of the stored configurations and preferences after web browser authentication, wherein the configurations and preferences comprise at least one of bookmarks, editable bookmarks, read-only bookmarks, cookies, color mode, themes, home page, and current browsing session.

14 . The non-transitory, machine-readable medium of claim 12 , wherein the program code further comprises instructions to:

configure predefined bookmarks on one or more servers of the backend;

load at least a subset of the predefined bookmarks into the first and the second instances of the web browser; and

select the subset of predefined bookmarks based on at least one of a user authenticated to the first and second instances of the web browser and a group corresponding to the user authenticated to the first and second instances of the web browser.

15 . The non-transitory, machine-readable medium of claim 12 , wherein the program code further comprises instructions to synchronize auto-fillable information from the backend to at least one of the first and second instances of the web browser, wherein the auto-fillable information comprises at least one of passwords, user and company information, addresses, payment methods, a home page uniform resource locator (URL), a default search engine, new page settings, accessibility features, proxy settings, language, spell checking, privacy and security settings, and whitelisted domains.

16 . The non-transitory, machine-readable medium of claim 12 , wherein the instructions to synchronize the first and second instances of the web browser comprises determining that a first user is logged into the first and the second instances, synchronize open tabs on the first and second instances of the web browser with the backend and then synchronize each of the first and second instances of the web browser with the backend.

17 . The non-transitory, machine-readable medium of claim 12 , wherein the program code further comprises instructions to synchronize a cut, paste, print, or copy operation detected in the first environment with a second environment associated with a user of the first environment, wherein the instructions to synchronize comprise the instructions to synchronize via a secure clipboard on a server of the organization.

18 . The non-transitory, machine-readable medium of claim 12 , wherein the program code further comprises instructions to receive, at the first and second instances of the web browser, a password from a privilege access management (PAM) solution.

19 . A system comprising:

a first endpoint that hosts a first instance of a secure web browser;

a second endpoint that hosts a second instance of the secure web browser; and

a backend of an organization that comprises one or more servers that authenticate secure web browser instances of the organization, provide one of a security policy and an access policy for the organization to authenticated instances of the secure web browser, and that synchronizes authenticated instances of the secure web browser associated with a same user.

20 . The system of claim 19 , further comprising the backend storing configurations and preferences of users of the organization and providing to authenticated instances of the secure web browser at least a subset of the stored configurations and preferences after authentication of the first instance, wherein synchronizing the authenticated instances comprises synchronizing the subset of the configurations and preferences, wherein the configurations and preferences comprise at least one of bookmarks, editable bookmarks, read-only bookmarks, cookies, color mode, themes, home page, and current browsing session.

21 . The system of claim 19 further comprising the backend:

configuring predefined bookmarks;

loading at least a subset of the predefined bookmarks into the authenticated instances of the web browser; and

selecting the subset of predefined bookmarks based on at least one of a user authenticated to first and a second authenticated instances of the web browser and a group corresponding to the user authenticated to the first and second authenticated instances of the secure web browser.

22 . The system of claim 19 , further comprising the backend synchronizing auto-fillable information from the backend to at least one of the authenticated instances of the secure web browser, wherein the auto-fillable information comprises at least one of passwords, user and company information, addresses, payment methods, a home page uniform resource locator (URL), a default search engine, new page settings, accessibility features, proxy settings, language, spell checking, privacy and security settings, and whitelisted domains.

23 . The system of claim 19 , wherein the backend that synchronizes comprises determining that a first user is logged into a first and a second of the authenticated instances, synchronizing open tabs on the first and second authenticated instances of the secure web browser with the backend and then synchronizing each of the first and second authenticated instances of the web secure browser with the backend.

24 . The system of claim 19 , wherein the backend also synchronizes a cut, paste, print, or copy operation detected in a first environment of the first endpoint with a second environment of the second endpoint, wherein the first and second environments are associated with a same user and the synchronizing is via a secure clipboard in the backend.

25 . The system of claim 19 , wherein a first and second of the authenticated instances of the secure web browser receives a password from a privilege access management (PAM) solution.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 1, 2025
From: TALON CYBER SECURITY LTD.
To: PALO ALTO NETWORKS, INC.
Reel/Frame 070702/0072 →
CORRECTIVE ASSIGNMENT TO CORRECT THE RECEIVING PARTY DATA PREVIOUSLY RECORDED ON REEL 70649 FRAME 229. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Mar 28, 2025
From: BEN-NOON, OFER; BOBROV, OHAD
To: TALON CYBER SECURITY LTD.
Reel/Frame 070672/0284 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 27, 2025
From: BEN-NOON, OFER; BOBROV, OHAD
To: PALO ALTO NETWORKS, INC.
Reel/Frame 070649/0229 →