IP Library Granted Patent US 12,244,561
Granted Patent B2
US 12,244,561 · App. 17/840,038 · Granted Mar 4, 2025

Preventing data loss using enhanced analysis of the URLs and URIs in webpage requests

Inventors: Jonathan Sheedy (Poynton, GB); Donald Hess (Charlotte, NC); Steven Sinks (Scottsdale, AZ)
Assignee: Bank of America Corporation
H04L63/0236G06F16/9566H04L63/0281H04L63/1416
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,244,561
App. No.
17/840,038
Granted
Mar 4, 2025
Kind
B2
Abstract

Aspects of the disclosure relate to preventing data loss using enhanced analysis of the URLs and URIs in webpage requests. A computing platform may receive a user request to access a webpage, and may determine whether the webpage is regularly accessed by the user and whether the user is permitted to access the webpage. Based on determining the user might not regularly access the website, but that the user is permitted to access the webpage, the computing platform may engage an artificial intelligence (AI) engine to parse the URL and URI from the webpage request. The AI engine may compare the URL to source code associated with the webpage to determine whether the URI was re-written. The computing platform may grant the webpage request based on determining the source code corresponds to the URL and based on determining the URI might not have been re-written.

Claims (76)

1. A method comprising:

at a computing device including at least one or more processors and memory:

transmitting, to a proxy server, a request to access a webpage;

determining, that the webpage is not included in a baseline associated with a user;

based on determining that the webpage is not included in the baseline associated with the user, determining, using an accessibility repository, that the webpage is accessible;

based on determining that the webpage is accessible, instructing an artificial intelligence model to analyze the webpage;

parsing, by the artificial intelligence model, a uniform resource locator (URL) and a uniform resource identifier (URI) associated with the request;

determining, by the artificial intelligence model, that the URI fails to correspond to source code associated with the webpage;

based on determining that the URI fails to correspond to the source code, flagging, by the artificial intelligence model, the webpage as malicious;

transmitting, by the artificial intelligence model and to the proxy server, instructions to deny the request to access the webpage;

storing, by the artificial intelligence model, the webpage in the accessibility repository; and

transmitting a notification indicating denial of the request to access the webpage.

2. The method of claim 1 , wherein the transmitting the request to access the webpage further comprises at least one of:

transmitting the request, to an internet, across a public or private network; or

transmitting the request, using an application programming interface (API) hosted on a user computing device.

3. The method of claim 1 , wherein the baseline associated with the user indicates a plurality of webpages that the user accesses during interactions with an enterprise organization.

4. The method of claim 1 , wherein the accessibility repository is comprised of an allow list of webpages and a deny list of webpages, and wherein:

the allow list indicates a first plurality of webpages, identified by an enterprise organization, that the user is permitted to access; and

the deny list indicates a second plurality of webpages, identified by the enterprise organization, that the user is not permitted to access.

5. The method of claim 4 , wherein:

the allow list is based on at least one of:

a role, within the enterprise organization, associated with the user;

a team, within the enterprise organization, associated with the user; or

an industry associated with the enterprise organization; and

the deny list is based on crawling the Internet, by the artificial intelligence model, to identify malicious webpages.

6. A computing platform comprising:

at least one processor;

a communication interface communicatively coupled to the at least one processor; and

memory storing computer-readable instructions that, when executed by the at least one processor, cause the computing platform to:

transmit, to a proxy server, a request to access a webpage;

determine that the webpage is not included in a baseline associated with a user;

based on determining the webpage is not included in the baseline associated with the user, determine, using an accessibility repository, that the webpage is accessible;

based on determining that the webpage is accessible, instruct an artificial intelligence model to analyze the webpage;

parse, by the artificial intelligence model, a uniform resource locator (URL) and a uniform resource identifier (URI) associated with the request;

determine, by the artificial intelligence model, that the URI fails to corresponds to source code associated with the webpage;

based on determining that the URI fails to correspond to the source code, flag, by the artificial intelligence model, the webpage as malicious;

transmit, by the artificial intelligence model and to the proxy server, instructions to deny the request to access the webpage;

store, by the artificial intelligence model, the webpage in the accessibility repository; and

transmit a notification indicating denial of the request to access the webpage.

7. The computing platform of claim 6 , wherein the transmitting the request to access the webpage further comprises at least one of:

transmitting the request, to the Internet, across a public or private network; or

transmitting the request, using an application programming interface (API) hosted on a user computing device.

8. The computing platform of claim 6 , wherein the baseline associated with the user indicates a plurality of webpages that the user accesses during interactions with an enterprise organization.

9. The computing platform of claim 6 , wherein the accessibility repository is comprised of an allow list of webpages and a deny list of webpages, and wherein:

the allow list indicates a first plurality of webpages, identified by an enterprise organization, that the user is permitted to access; and

the deny list indicates a second plurality of webpages, identified by the enterprise organization, that the user is not permitted to access.

10. The computing platform of claim 9 , wherein:

the allow list is based on at least one of:

a role, within the enterprise organization, associated with the user;

a team, within the enterprise organization, associated with the user; or

an industry associated with the enterprise organization; and

the deny list is based on crawling the Internet, by the artificial intelligence model, to identify malicious webpages.

11. One or more non-transitory computer-readable media storing instructions that, when executed by a computing platform comprising at least one processor, memory, and a communication interface, cause the computing platform to:

transmit, to a proxy server, a request to access a webpage;

determine that the webpage is not included in a baseline associated with a user;

based on determining the webpage is not included in the baseline associated with the user, determine, using an accessibility repository, that the webpage is accessible;

based on determining the webpage is accessible, instruct an artificial intelligence model to analyze the webpage;

parse, by the artificial intelligence model, a uniform resource locator (URL) and a uniform resource identifier (URI) associated with the request;

determine, by the artificial intelligence model, that the URI fails to corresponds to source code associated with the webpage;

based on determining that the URI fails to correspond to the source code, flag, by the artificial intelligence model, the webpage as malicious;

transmit, by the artificial intelligence model and to the proxy server, instructions to deny the request to access the webpage;

store, by the artificial intelligence model, the webpage in the accessibility repository; and

transmit a notification indicating denial of the request to access the webpage.

12. The one or more non-transitory computer-readable media of claim 11 , wherein the transmitting the request to access the webpage further comprises at least one of:

transmitting the request, to the Internet, across a public or private network; or

transmitting the request, using an application programming interface (API) hosted on a user computing device.

13. The one or more non-transitory computer-readable media of claim 11 , wherein the baseline associated with the user indicates a plurality of webpages that the user accesses during interactions with an enterprise organization.

14. The one or more non-transitory computer-readable media of claim 11 , wherein the accessibility repository is comprised of an allow list of webpages and a deny list of webpages, and wherein:

the allow list indicates a first plurality of webpages, identified by an enterprise organization, that the user is permitted to access; and

the deny list indicates a second plurality of webpages, identified by the enterprise organization, that the user is not permitted to access.

15. The one or more non-transitory computer-readable media of claim 14 , wherein:

the allow list is based on at least one of:

a role, within the enterprise organization, associated with the user;

a team, within the enterprise organization, associated with the user; or

an industry associated with the enterprise organization; and

the deny list is based on crawling the Internet, by the artificial intelligence model, to identify malicious webpages.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 14, 2022
From: SHEEDY, JONATHAN; HESS, DONALD; SINKS, STEVEN
To: BANK OF AMERICA CORPORATION
Reel/Frame 060195/0507 →
Continuity (1)
Related Publication 20230403256A1 · Dec 14, 2023
References Cited (21)
US 8528093B1 · Kureha · 2013 [cited by examiner]
US 9419989B2 · Harris et al. · 2016 [cited by applicant]
US 9992217B2 · Taylor et al. · 2018 [cited by applicant]
US 10567407B2 · Tang et al. · 2020 [cited by applicant]
US 11146576B1 · Mushtaq · 2021 [cited by examiner]
US 11985145B1 · Mushtaq · 2024 [cited by examiner]
US 20080140626A1 · Wilson · 2008 [cited by examiner]
US 20090089857A1 · Sabin · 2009 [cited by examiner]
US 20090328153A1 · Chetuparambil · 2009 [cited by examiner]
US 20150170072A1 · Grant · 2015 [cited by examiner]
US 20160164892A1 · Satish · 2016 [cited by examiner]
US 20170134415A1 · Muddu · 2017 [cited by examiner]
US 20180075256A1 · Robinson · 2018 [cited by examiner]
US 20190068616A1 · Woods · 2019 [cited by examiner]
US 20200285737A1 · Kraus · 2020 [cited by examiner]
US 20210097168A1 · Patel · 2021 [cited by examiner]
US 20210194919A1 · Lindemann · 2021 [cited by examiner]
US 20210240825A1 · Kutt · 2021 [cited by examiner]
US 20220046057A1 · Kutt · 2022 [cited by examiner]
US 20220394052A1 · Grossman-Avraham · 2022 [cited by examiner]
US 20240015182A1 · Kim · 2024 [cited by examiner]