IP Library Granted Patent US 9,965,628
Granted Patent B2
US 9,965,628 · App. 14/702,321 · Granted May 8, 2018

Device reporting and protection systems and methods using a secure distributed transactional ledger

Inventors: Daniel A. Ford (Mount Kisco, NY); YuLing Chen (Fremont, CA)
Assignee: DELL PRODUCTS LP
G06F21/554G06F21/57G06F21/577G06F21/64G06F21/88H04L9/3236G06F2221/2111G06F2221/2143H04L67/1046H04L2209/38H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,965,628
App. No.
14/702,321
Filed
May 1, 2015
Granted
May 8, 2018
Kind
B2
Art Unit
2431
USPC
726/22
Abstract

Aspects of the present invention provide systems and methods that allow for a generic, decentralized system that is independent of a centralized resource and allows for the reporting and protecting of all types of smart devices including smart phones, laptop, tablets, or smart packages, and the like. In embodiments, the device comprises a security module or modules that interface with a decentralized network that maintains a secure distributed transactional ledger, or block chain, in order to send and/or receive data via the block chain. In embodiments, the device may not operate when its ability to access a communication channel provided via secure distributed transactional ledger has been impeded or otherwise hindered.

Claims (80)

1. A computer-implemented method to provide protection for an information handling system, the method comprising:

gathering data, using the information handling system, about the information handling system;

attempting to access a peer-to-peer network comprising a plurality of decentralized nodes that maintain a publicly available block chain, the block chain comprising a plurality of cryptographically linked data blocks;

responsive to being able to access the peer-to-peer network, submitting data related to a potential security risk about the information handling system to one or more nodes in the peer-to-peer network for inclusion in a block in the block chain;

responsive to not being able to access the peer-to-peer network, determining whether a threshold number of consecutive attempts to access the peer-to-peer network has been exceeded; and

responsive to the threshold number of consecutive attempts to access the peer-to-peer network having been exceeded, taking one or more actions related to securing the information handling system.

2. The computer-implemented method of claim 1 wherein the information handling system is a mobile device.

3. The computer-implemented method of claim 1 wherein the submitted data related to a potential security risk about the information handling system comprises:

at least some of the data gathered about the information handling system; and

a request for a node to analyze the data to identify whether a security risk exists for the information handling system.

4. The computer-implemented method of claim 3 further comprising:

receiving an updated block chain from one or more node of the peer-to-peer network;

analyzing at least part of the updated block chain to identify a message directed to the information handling system; and

responsive to identify a message in a block of the updated block chain that is directed to the information handling system, taking one or more actions related to the message.

5. The computer-implemented method of claim 4 wherein the message is a response from a node in the peer-to-peer network that has analyzed the submitted data.

6. The computer-implemented method of claim 4 wherein the message identifies a security risk and the one or more actions comprises at least one of:

disabling access to, operation of, or both of one or more functions of the information handing system;

presenting one or more notifications to a user of the information handling system that access to, operation of, or both of one or more user functions of the information handing system have been disabled; and

sending an alert to at least one of an owner of the system and a security organization.

7. The computer-implemented method of claim 1 wherein the step of submitting data related to a potential security risk about the information handling system to one or more nodes in the peer-to-peer network for inclusion in a block in the block chain comprises the steps of:

encrypting at least some of the data gathered about the information handling system; and

submitted the encrypted data as the submitted data related to a potential security risk about the information handling system, wherein the submitted encrypted data may be accessed by an authorized entity to track the information handling system.

8. The computer-implemented method of claim 1 further comprising:

wherein at least some of the gathered data is analyzed by the information handling system to identify whether a security risk or risks exist for the information handling system according to one or more rules; and

responsive identifying one or more security risks, generating a message alerting of the security risk, wherein the submitted data comprises the message alerting of the security risk.

9. The computer-implemented method of claim 1 further comprising:

responsive to the threshold number of consecutive attempts to access the peer-to-peer network not having been exceeded:

waiting until a condition has been met; and

retrying to access the peer-to-peer network.

10. The computer-implemented method of claim 1 wherein the step of taking one or more actions related to securing the information handling system comprises:

disabling access to, operation of, or both of one or more functions of the information handing system;

presenting one or more notifications to a user of the information handling system that access to, operation of, or both of one or more user functions of the information handing system have been disabled; and

sending an alert to at least one of an owner of the system and a security organization.

11. A computing device comprising:

one or more processors;

one or more memory components communicatively coupled to the processor;

one or more network interfaces, communicatively coupled to the processor, that provides access to one or more networks;

one or more sensors for capturing sensor data related to the computing device; and

a security subsystem that provides one or more security-related services, the security subsystem comprising:

a peer interface, communicatively coupled to the network interface, that interfaces with one or more decentralized nodes of a peer-to-peer network, the peer-to-peer network comprising a plurality of nodes that maintain a cryptographically secure and public block chain;

a rules database that comprises a set of rules related to security of the device, the set of rules comprising:

responsive to not being able to access the peer-to-peer network, determining whether a threshold number of consecutive attempts to access the peer-to-peer network has been exceeded; and

responsive to the threshold number of consecutive attempts to access the peer-to-peer network having been exceeded, taking one or more actions related to securing the computing device;

a system interface module that interfaces with the one or more system components to gather data related to security of the device and that, responsive to a perceived security risk, disables access to, operation of, or both of one or more functions of the device; and

a criteria monitor engine, communicatively coupled to the rules module, that analyzes at some of the gathered data based upon one or more rules in the rules database to detect a security issue.

12. The computing device of claim 11 further comprising:

an encryption module that encrypts at least some data submitted to one or more decentralized nodes of the peer-to-peer network, wherein the submitted data is intended for inclusion in a block in the block chain.

13. The computing device of claim 11 wherein:

the peer interface is further configured to receive at least a portion of the block chain from one or more nodes of the peer-to-peer network; and

the criteria monitor engine is further configured to cause a specified action or actions to be taken responsive to one or more instructions identified in a message directed to the computing device in a block of the block chain.

14. The computing device of claim 11 wherein the rule database comprising one or more rules comprising:

responsive to the threshold number of consecutive attempts to access the peer-to-peer network not having been exceeded:

waiting until a condition has been met; and

retrying to access the peer-to-peer network.

15. The computing device of claim 11 wherein the system interface module is configured to cause the step of taking one or more actions related to securing the computing device by causing one or more of the following steps comprises:

disabling access to, operation of, or both of one or more functions of the computing device;

presenting one or more notifications to a user of the computing device that access to, operation of, or both of one or more user functions of the computing device have been disabled; and

sending an alert to at least one of an owner of the system and a security organization.

16. A computer-implemented method to provide protection for an information handling system, the method comprising:

attempting to access a peer-to-peer network that maintains a secure distributed transactional ledger, the secure distributed transactional ledger comprising a cryptographically linked sets of data blocks;

responsive to being able to access the peer-to-peer network:

obtaining at least part of the secure distributed transactional ledger;

examining one or more of the data blocks for a message directed to the information handling system;

responsive to identify a message directed to the information handling system, verifying whether the message was sent by an authorized entity; and

responsive to the message being from a verified authorized entity, taking one or more actions related to the message; and

responsive to not being able to access the peer-to-peer network, determining whether a threshold number of consecutive attempts to access the peer-to-peer network has been exceeded; and

responsive to the threshold number of consecutive attempts to access the peer-to-peer network having been exceeded, taking one or more actions related to securing the information handling system.

17. The computer-implemented method of claim 16 further comprising:

receiving, via a secure distributed transactional ledger, a message comprising one or more rules related to protecting or reporting data about the information handling system.

18. The computer-implemented method of claim 16 further comprising:

gathering data, using the information handling system, about the information handling system; and

submitting at least some of the gathered data to the peer-to-peer network for permanent inclusion into the secure distributed transactional ledger.

19. The computer-implemented method of claim 16 further comprising:

responsive to the threshold number of consecutive attempts to access the peer-to-peer network not having been exceeded:

waiting until a condition has been met; and

retrying to access the peer-to-peer network.

20. The computer-implemented method of claim 16 wherein the step of taking one or more actions related to securing the information handling system comprises at least one of:

disabling access to, operation of, or both of one or more user functions of the information handing system;

presenting one or more notifications to a user of the information handling system that access to, operation of, or both of one or more user functions of the information handing system have been disabled; and

sending an alert message to at least one of an owner of the system and a security organization.

Assignments (15)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Apr 26, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061324/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 3, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL, L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058216/0001 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
RELEASE OF REEL 035860 FRAME 0878 (NOTE) Recorded Sep 14, 2016
From: BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; COMPELLENT TECHNOLOGIES, INC.; SECUREWORKS, INC.; STATSOFT, INC.
Reel/Frame 040027/0158 →
RELEASE OF REEL 035860 FRAME 0797 (TL) Recorded Sep 14, 2016
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; COMPELLENT TECHNOLOGIES, INC.; SECUREWORKS, INC.; STATSOFT, INC.
Reel/Frame 040028/0551 →
RELEASE OF REEL 035858 FRAME 0612 (ABL) Recorded Sep 13, 2016
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; COMPELLENT TECHNOLOGIES, INC.; SECUREWORKS, INC.; STATSOFT, INC.
Reel/Frame 040017/0067 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (ABL) Recorded Jun 9, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; COMPELLENT TECHNOLOGIES, INC.; SECUREWORKS, INC.; STATSOFT, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 035858/0612 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (NOTES) Recorded Jun 9, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; COMPELLENT TECHNOLOGIES, INC; SECUREWORKS, INC.; STATSOFT, INC.
To: BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 035860/0878 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (TERM LOAN) Recorded Jun 9, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; COMPELLENT TECHNOLOGIES, INC.; SECUREWORKS, INC.; STATSOFT, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 035860/0797 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 1, 2015
From: FORD, DANIEL A.; CHEN, YULING
To: DELL PRODUCTS L.P.
Reel/Frame 035549/0830 →
Continuity (2)
Continuation In Part 14635577 · Mar 2, 2015
Related Publication 20160259937A1 · Sep 8, 2016