IP Library Granted Patent US 9,690,940
Granted Patent B2
US 9,690,940 · App. 15/356,325 · Granted Jun 27, 2017

Anti-key logger apparatus, system, and method

Inventor: Raymond Lloyd Reddington (Delta, CA)
Assignee: TRUSTED KNIGHT CORPORATION
G06F21/566G06F21/52G06F21/53G06F21/6245H04L63/105H04L63/145H04L63/1416H04L63/1441H04L63/1483G06F2221/031G06F2221/2143
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,690,940
App. No.
15/356,325
Granted
Jun 27, 2017
Kind
B2
Abstract

An apparatus, system, and method are disclosed for protecting against key logger malware. The protection includes protection form grabbing keylogger malware. In response to detecting a form submission event from a browser associated with a user entering data into a form, confidential data is prevented from being captured by malware. The protection against malware may be provided as a preventive measure that does not require detection of the key logger malware itself.

Claims (62)

1. A method for preventing software key logging executable by a microprocessor, comprising:

invoking an anti-key logger by an individual web page or website of a financial institution accessed by a user in an online access session;

installing and maintaining the anti-key logger at a most privileged access level for browser events;

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user, wherein the data inputs include confidential data;

submitting the data inputs to a designated entity; and

preventing, by the anti-key logger, malware from capturing the confidential data.

2. The method of claim 1 , wherein the anti-key logger does not require detection of the malware to prevent the malware from capturing the confidential data.

3. The method of claim 1 , further comprising detecting presence of the malware.

4. The method of claim 3 , further comprising removing the detected malware.

5. The method of claim 3 , further comprising generating an alert of a malware risk.

6. The method of claim 5 , wherein a graphical alert is generated when a browser is directed to a website determined to pose a malware risk.

7. The method of claim 1 , wherein a browser form submission initiation call event is an OnSubmit call event.

8. The method of claim 1 , wherein the microprocessor is disposed within a computer, a mobile communication device, a smartphone, or a mobile Internet device.

9. The method of claim 8 , wherein the mobile Internet device is one of a personal digital assistant (PDA), a handheld computer, a tablet computer, a laptop computer, or a notebook computer.

10. The method of claim 1 , wherein the anti-key logger is installed in response to an initiation of the online access session, and uninstalled in response to cessation of the online access session.

11. A method for preventing software key logging executable by a microprocessor, comprising:

dynamically installing an anti-key logger by a master server and maintaining the anti-key logger at a most privileged access level for browser events;

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user, wherein the data inputs include confidential data;

submitting the data inputs to a designated entity;

preventing, by the anti-key logger, malware from capturing the confidential data; and

tracking, by the master server, the anti-key logger installation.

12. A method for preventing software key logging executable by a microprocessor, comprising:

invoking an anti-key logger in response to an initiation of an online access session;

installing and maintaining the anti-key logger at a most privileged access level for browser events:

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user, wherein the data inputs include confidential data;

submitting the data inputs to a designated entity;

preventing, by the anti-key logger, malware from capturing the confidential data;

and uninstalling the anti-key logger in response to a logoff of the online access session.

13. The method of claim 12 , wherein the anti-key logger does not require detection of the malware to prevent the malware from capturing the confidential data.

14. The method of claim 12 , wherein the microprocessor is disposed within a computer, a mobile communication device, a smartphone, or a mobile Internet device.

15. The method of claim 14 , wherein the mobile Internet device is one of a personal digital assistant (PDA), a handheld computer, a tablet computer, a laptop computer, or a notebook computer.

16. A computer program product to prevent software key logging including computer program code embedded in a non-transitory microprocessor-readable storage medium executable by a microprocessor, which when executed on the microprocessor, implements a method, comprising:

invoking an anti-key logger by an individual web page or website of a financial institution accessed by a user in an online access session;

installing the anti-key logger and maintaining the anti-key logger at a most privileged access level for browser events;

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user, wherein the data inputs include confidential data;

submitting the data inputs to a designated entity; and

preventing, by the anti-key logger, malware from capturing the confidential data.

17. The computer program product of claim 16 , wherein the anti-key logger does not require detection of the malware to prevent the malware from capturing the confidential data from the data inputs.

18. The computer program product of claim 16 , further comprising detecting presence of malware.

19. The computer program product of claim 18 , further comprising removing the detected malware.

20. The computer program product of claim 18 , further comprising generating an alert of a malware risk.

21. The computer program product of claim 20 , wherein a graphical alert is generated when a browser is directed to a website determined to pose a malware risk.

22. The computer program product of claim 16 , wherein the browser form submission initiation call event is an OnSubmit call event.

23. The computer program product of claim 16 , wherein the microprocessor is disposed within a computer, a mobile communication device, a smartphone, or a mobile Internet device.

24. The computer program product of claim 23 , wherein the mobile Internet device is one of a personal digital assistant (PDA), a handheld computer, a tablet computer, a laptop computer, or a notebook computer.

25. The computer program product of claim 16 , wherein the anti-key logger is installed in response to an initiation of the online access session, and uninstalled in response to cessation of the online access session.

26. A computer program product to prevent software key logging including computer program code embedded in a non-transitory microprocessor-readable storage medium executable by a microprocessor, which when executed on the microprocessor, implements a method, comprising:

dynamically installing an anti-key logger by a master server and maintaining the anti-key logger at a most privileged access level for browser events;

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user, wherein the data inputs include confidential data;

submitting the data inputs to a designated entity; and

preventing, by the anti-key logger, malware from capturing the confidential data; and

tracking, by the master server, the anti-key logger installation.

27. A computer program product to prevent software key logging including computer program code embedded in a non-transitory microprocessor-readable storage medium executable by a microprocessor, which when executed on the microprocessor, implements a method, comprising:

invoking an anti-key logger in response to an initiation of an online access session;

installing and maintaining the anti-key logger at a most privileged access level for browser events:

detecting, by the anti-key logger, a browser form submission initiation call event associated with data inputs entered by a user;

submitting the data inputs to a designated entity;

preventing, by the anti-key logger, malware from capturing the confidential data;

and uninstalling the anti-key logger in response to a logoff of the online access session.

28. The computer program product of claim 27 , wherein the anti-key logger does not require detection of the malware to prevent the malware from capturing the confidential data.

29. The computer program product of claim 27 , wherein the microprocessor is disposed within a computer, a mobile communication device, a smartphone, or a mobile Internet device.

30. The computer program product of claim 29 , wherein the mobile Internet device is one of a personal digital assistant (PDA), a handheld computer, a tablet computer, a laptop computer, or a notebook computer.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 22, 2017
From: REDDINGTON, RAYMOND LLOYD
To: TRUSTED KNIGHT CORPORATION
Reel/Frame 041687/0700 →
Continuity (6)
Continuation 15207279 · Jul 11, 2016
Continuation 14709224 · May 11, 2015
Continuation In Part 13667256 · Nov 2, 2012
Continuation 12427833 · Apr 22, 2009
Provisional Application 61125178 · Apr 23, 2008
Related Publication 20170078307A1 · Mar 16, 2017