IP Library › Granted Patent US 11,595,428
Granted Patent B2
US 11,595,428 · App. 17/142,743 · Granted Feb 28, 2023

Application security threat awareness

Inventors: Preveen Raja Dhanabalan (Bangalore, IN); Anuj Magazine (Bangalore, IN); Anudeep Athlur (Bangalore, IN)
H04L63/1433G06F9/44526G06F9/451G06T11/00H04L43/028
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,595,428
App. No.
17/142,743
Filed
Jan 6, 2021
Granted
Feb 28, 2023
Kind
B2
Art Unit
2175
USPC
726/25
Abstract

A method for providing a visual indication of the security threat awareness level is disclosed. Such a visual indication helps improve the security of a device or an enterprise by giving a user an indication of the security risks associated with currently open and active applications. In turn, the user can use the visual indication as a cue to take mitigating actions to reduce the security risk, such as by using the application more carefully or by exiting the application. Each application is assigned a security score and the system determines the security threat awareness level based on the security score(s) of the open and active applications.

Claims (52)

1. A method for providing security threat awareness to a user, the method comprising:

detecting an open application executing on a client computing device based on a first entry in an operating system process table of the client computing device;

obtaining a first security score associated with the open application;

detecting an active application executing on the client computing device based on a second entry in the operating system process table, a volume of network traffic associated with the second entry, or both, the active application being different from the open application;

obtaining a second security score associated with the active application;

calculating an average security score of the first security score and the second security score, a lowest of the first security score and the second security score, or both; and

causing a graphical user interface of the client computing device to superimpose a visual indication of at least one of the first security score the second security score, and the average security score over a portion of an output of the open application, a portion of an output of the active application, or both using a color, a numeric value, or both, the visual indication representing at least one of a plurality of security threat levels corresponding to the at least one of the first security score, the second security score, and the average security score;

wherein the visual indication further represents at least one of the security threat levels corresponding to the average security score or the lowest of the first security score and the second security score.

2. The method of claim 1 , wherein the open application is a first open application, and the average security score is a first average security score, and wherein the method further comprises:

detecting a second open application executing on the client computing device based on a third entry in the operating system process table;

obtaining a third security score for the second open application; and

calculating a second average security score of the first security score, the second security score, the third security score, a lowest of the first security score, the second security score, the third security score, or both,

wherein the visual indication further represents at least one of the security threat levels corresponding to the second average security score or the lowest of the first security score, the second security score, and the third security score.

3. The method of claim 1 , wherein the color is a first color, the numeric value is a first numeric value, and the visual indication is a first visual indication, and wherein the method further comprises causing the graphical user interface to display a second visual indication of the first security score, the second security score, or both using a second color, a second numeric value, or both.

4. The method of claim 1 , wherein a plugin software component is associated with the open application, and wherein detecting the open application includes identifying the plugin software component in the operating system process table.

5. The method of claim 1 , wherein detecting the open application includes inspecting network packets on a network connection associated with the open application for network activity generated by the open application.

6. The method of claim 1 , wherein detecting the active application is further based on a process activity level associated with the second entry in the operating system process table.

7. The method of claim 1 , wherein the active application is executing independently of the open application, and wherein the visual indication represents at least one of the security threat levels corresponding to the average security score.

8. The method of claim 1 , wherein the active application is executing non-independently from the open application, and wherein the visual indication represents at least one of the security threat levels corresponding to the lowest of the first security score and the second security score.

9. A computer program product including one or more non-transitory machine-readable mediums having instructions encoded thereon that when executed by at least one processor cause a process to be carried out, the process comprising:

detecting an open application executing on a client computing device based on a first entry in an operating system process table of the client computing device;

obtaining a first security score associated with the open application;

detecting an active application executing on the client computing device based on a second entry in the operating system process table, a volume of network traffic associated with the second entry, or both;

obtaining a second security score associated with the active application;

calculating an average security score of the first security score and the second security score, a lowest of the first security score and the second security score, or both; and

causing a graphical user interface of the client computing device to superimpose a visual indication of at least one of the first security score and the second security score over a portion of an output of the open application, a portion of an output of the active application, or both using a color, a numeric value, or both, the visual indication representing at least one of a plurality of security threat levels corresponding to the at least one of the first security score and the second security score,

wherein the visual indication further represents at least one of the security threat levels corresponding to the average security score or the lowest of the first security score and the second security score.

10. The computer program product of claim 9 , wherein the color is a first color, the numeric value is a first numeric value, and the visual indication is a first visual indication, and wherein the process further comprises causing the graphical user interface to superimpose a second visual indication of the first security score, the second security score, or both over a portion of an output of the open application, the portion of the output of the active application, or both using a second color and/or a second numeric value.

11. The computer program product of claim 9 , wherein the active application is executing independently of the open application, and wherein the visual indication further represents at least one of the security threat levels corresponding to the average security score.

12. The computer program product of claim 9 , wherein the active application is executing non-independently from the open application, and wherein the visual indication represents at least one of the security threat levels corresponding to the lowest of the first security score and the second security score.

13. The computer program product of claim 9 , wherein the active application is a personal application, wherein the open application is a business application, and wherein the visual indication represents at least one of the security threat levels corresponding to the lowest of the first security score and the second security score.

14. The computer program product of claim 9 , wherein detecting the active application includes inspecting network packets on a network connection associated with the active application for network activity generated by the active application.

15. A system comprising:

a storage; and

at least one processor operatively coupled to the storage, the at least one processor configured to execute instructions stored in the storage that when executed cause the at least one processor to carry out a process including detecting an open application executing on a client computing device based on a first entry in an operating system process table of the client computing device;

obtaining a first security score associated with the open application;

detecting an active application executing on the client computing device based on a second entry in the operating system process table, a volume of network traffic associated with the second entry, or both;

obtaining a second security score associated with the active application; and

calculating an average security score of the first security score and the second security score, a lowest of the first security score and the second security score, or both,

causing a graphical user interface of the client computing device to superimpose a visual indication of at least one of the first security score and the second security score over a portion of an output of the open application, a portion of an output of the active application, or both using a color, a numeric value, or both, the visual indication representing at least one of a plurality of security threat levels corresponding to the at least one of the first security score and the second security score,

wherein the visual indication further represents at least one of the security threat levels corresponding to the average security score or the lowest of the first security score and the second security score.

16. The system of claim 15 , wherein the active application is a first active application and the average security score is a first average security score, and wherein the process further comprises:

detecting a second active application executing on the client computing device based on a third entry in the operating system process table;

obtaining a third security score for the second active application; and

calculating a second average security score of the first security score, the second security score, and the third security score, a lowest of the first security score, the second security score, and the third security score, or both,

wherein the visual indication further represents at least one of the security threat levels corresponding to the second average security score or the lowest of the first security score, the second security score, and the third security score.

17. The system of claim 15 , wherein the color is a first color, the numeric value is a first numeric value, and the visual indication is a first visual indication, and wherein the process further comprises causing the graphical user interface to superimpose a second visual indication of the first security score, the second security score, or both over the portion of the output of the open application, the portion of the output of the active application, or both using a second color, a second numeric value, or both.

18. The system of claim 15 , wherein a plugin software component is associated with the open application, and wherein detecting the open application includes identifying the plugin software component in the operating system process table.

19. The system of claim 15 , wherein detecting the open application includes inspecting network packets on a network connection associated with the open application for network activity generated by the open application.

20. The system of claim 15 , wherein:

if the active application is executing independently of the open application, then the visual indication represents at least one of the security threat levels corresponding to the average security score;

otherwise, the visual indication represents at least one of the security threat levels corresponding to the lowest of the first security score and the second security score.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 5, 2021
From: DHANABALAN, PREVEEN RAJA; MAGAZINE, ANUJ; ATHLUR, ANUDEEP
To: CITRIX SYSTEMS, INC.
Reel/Frame 055164/0802 →
Continuity (1)
Related Publication 20220217174A1 · Jul 7, 2022