IP Library › Granted Patent US 11,068,605
Granted Patent B2
US 11,068,605 · App. 16/657,598 · Granted Jul 20, 2021

Systems and methods for controlling data exposure using artificial-intelligence-based periodic modeling

Inventors: Kristopher Paul Schroeder (Falls Church, VA); Timothy Ryan Underwood (Burke, VA)
Assignee: Grey Market Labs, PBC
G06F21/60G06F21/6263G06K9/6262G06N20/00H04L63/102H04L63/107H04L67/303
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,068,605
App. No.
16/657,598
Filed
Oct 18, 2019
Granted
Jul 20, 2021
Kind
B2
Art Unit
2433
USPC
726/2
Abstract

Systems and methods for periodically modifying data privacy elements are provided. The systems and methods may identify a set of data privacy elements. A data privacy element can characterizes a feature of a computing device and can be detectable by a network host. A first artificial profile can be generated by modifying a first data privacy element based on an artificial profile model that defines a relationship associated with one or more constraints between the set of data privacy elements. Subsequent to generating the first artificial profile, a second artificial profile can be generated by periodically modifying a second data privacy element in accordance with the relationship defined by the artificial profile model. The computer device can be masked from being identified by the network host by sending the second artificial profile including the second data privacy element to a requested network location.

Claims (44)

1. A computer-implemented method, comprising:

identifying, at a platform-secured network element between a computing device and a gateway device, a set of data privacy elements, wherein a data privacy element characterizes a feature of a computing device, and wherein a data privacy element is detectable by a network host;

generating a first artificial profile, wherein the first artificial profile includes the set of data privacy elements, by modifying a first data privacy element based on an artificial profile model that defines a relationship, and wherein the relationship is associated with one or more constraints between the set of data privacy elements;

subsequent to generating the first artificial profile, periodically modifying a second data privacy element to generate a second artificial profile, wherein the second data privacy element is modified in accordance with a constraint associated with the relationship defined by the artificial profile model;

receiving a signal indicating that a computing device is requesting access to a network location; and

masking the computer device from being identified by the network host by sending the second artificial profile including the second data privacy element to the network location.

2. The computer-implemented method of claim 1 , wherein the second data privacy element is dynamically modified based on a trigger event, wherein the trigger event is based on a detection of a malware signature.

3. The computer-implemented method of claim 2 , wherein the trigger event is based on one or more parameters comprising suspicious API calling, suspicious instruction execution, or suspicious accessing of a certain IP address.

4. The computer-implemented method of claim 1 , wherein the second data privacy element is modified after a period of time in accordance with the constraint included in the artificial profile model, and wherein the constraint represents a dependency between two or more data privacy elements of the set of data privacy elements.

5. The computer-implemented method of claim 1 , the method further comprising:

identifying the set of data privacy elements based on an organization specific feature of a computer device within the organization; and

modifying the first data privacy element and the second data privacy element based on the relationship, wherein the relationship is based on the organization specific feature and is associated with one or more constraints between the set of data privacy elements.

6. The computer-implemented method of claim 1 , wherein the second data privacy element is modified in accordance with the constraint to create a specific number of artificial profiles.

7. The computer-implemented method of claim 1 , wherein the second artificial profile is inserted into an isolated virtual environment that monitors for malware activity.

8. A system, comprising:

one or more data processors; and

a non-transitory computer-readable storage medium containing instructions which, when executed on the one or more data processors, cause the one or more data processors to perform operations including:

identifying, at a platform-secured network element between a computing device and a gateway device, a set of data privacy elements, wherein a data privacy element characterizes a feature of a computing device, and wherein a data privacy element is detectable by a network host;

generating a first artificial profile, wherein the first artificial profile includes the set of data privacy elements, by modifying a first data privacy element based on an artificial profile model that defines a relationship, and wherein the relationship is associated with one or more constraints between the set of data privacy elements;

subsequent to generating the first artificial profile, periodically modifying a second data privacy element to generate a second artificial profile, wherein the second data privacy element is modified in accordance with a constraint associated with the relationship defined by the artificial profile model;

receiving a signal indicating that a computing device is requesting access to a network location; and

masking the computer device from being identified by the network host by sending the second artificial profile including the second data privacy element to the network location.

9. The system of claim 8 , wherein the second data privacy element is dynamically modified based on a trigger event, wherein the trigger event is based on a detection of a malware signature.

10. The system of claim 9 , wherein the trigger event is based on one or more parameters comprising suspicious API calling, suspicious instruction execution, or suspicious accessing of a certain IP address.

11. The system of claim 8 , wherein the second data privacy element is modified after a period of time in accordance with the constraint included in the artificial profile model, and wherein the constraint represents a dependency between two or more data privacy elements of the set of data privacy elements.

12. The system of claim 8 , wherein the operations further comprise:

identifying the set of data privacy elements based on an organization specific feature of a computer device within the organization; and

modifying the first data privacy element and the second data privacy element based on the relationship, wherein the relationship is based on the organization specific feature and is associated with one or more constraints between the set of data privacy elements.

13. The system of claim 8 , wherein the second data privacy element is modified in accordance with the constraint to create a specific number of artificial profiles.

14. The system of claim 8 , wherein the second artificial profile is inserted into an isolated virtual environment that monitors for malware activity.

15. A computer-program product tangibly embodied in a non-transitory machine-readable storage medium, including instructions configured to cause a data processing apparatus to perform operations including:

identifying, at a platform-secured network element between a computing device and a gateway device, a set of data privacy elements, wherein a data privacy element characterizes a feature of a computing device, and wherein a data privacy element is detectable by a network host;

generating a first artificial profile, wherein the first artificial profile includes the set of data privacy elements, by modifying a first data privacy element based on an artificial profile model that defines a relationship, and wherein the relationship is associated with one or more constraints between the set of data privacy elements;

subsequent to generating the first artificial profile, periodically modifying a second data privacy element to generate a second artificial profile, wherein the second data privacy element is modified in accordance with a constraint associated with the relationship defined by the artificial profile model;

receiving a signal indicating that a computing device is requesting access to a network location; and

masking the computer device from being identified by the network host by sending the second artificial profile including the second data privacy element to the network location.

16. The computer-program product of claim 15 , wherein the second data privacy element is dynamically modified based on a trigger event, wherein the trigger event is based on a detection of a malware signature.

17. The computer-program product of claim 15 , wherein the second data privacy element is modified after a period of time in accordance with the constraint included in the artificial profile model, and wherein the constraint represents a dependency between two or more data privacy elements of the set of data privacy elements.

18. The computer-program product of claim 15 , wherein the operations further comprise:

identifying the set of data privacy elements based on an organization specific feature of a computer device within the organization; and

modifying the first data privacy element and the second data privacy element based on the relationship, wherein the relationship is based on the organization specific feature and is associated with one or more constraints between the set of data privacy elements.

19. The computer-program product of claim 15 , wherein the second data privacy element is modified in accordance with the constraint to create a specific number of artificial profiles.

20. The computer-program product of claim 15 , wherein the second artificial profile is inserted into an isolated virtual environment that monitors for malware activity.

21. The computer-program product of claim of claim 16 , wherein the trigger event is based on one or more parameters comprising suspicious API calling, suspicious instruction execution, or suspicious accessing of a certain IP address.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 14, 2019
From: SCHROEDER, KRISTOPHER PAUL; UNDERWOOD, TIMOTHY RYAN
To: GREY MARKET LABS, PBC
Reel/Frame 051008/0324 →
Continuity (3)
Continuation In Part 16280755 · Feb 20, 2019
Continuation 16005268 · Jun 11, 2018
Related Publication 20200050773A1 · Feb 13, 2020