IP Library Granted Patent US 12,348,558
Granted Patent B2
US 12,348,558 · App. 17/443,469 · Granted Jul 1, 2025

Security status based on hidden information

Inventors: Markus Jakobsson (Culver City, CA); Hamed Ashouri (Culver City, CA); Shreshth Luthra (Los Angeles, CA); Hui Cao (Los Angeles, CA)
Assignee: Lemon Inc.
H04L63/1483G06N5/04G06N20/00G06F3/0484
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,348,558
App. No.
17/443,469
Granted
Jul 1, 2025
Kind
B2
Abstract

Techniques for determining and presenting security status are described herein. The disclosed techniques include collecting information associated with an item; determining a security status associated with the item by classifying the item into one of a plurality of classifications based on the information associated with the item; presenting on a first interface information indicative of the security status, wherein the first interface further comprises at least one selectable interface element in relation to the information indicative of the security status; and performing an operation related to the item in response to receiving input indicative of a selection by a user of the at least one selectable interface element.

Claims (46)

1. A method, comprising:

collecting information associated with an item in response to user input;

determining a security status associated with the item by classifying the item into one of a plurality of classifications based on the information associated with the item;

presenting on a first interface information indicative of the security status, wherein the first interface further comprises at least one selectable interface element in relation to the information indicative of the security status, and wherein the information indicative of the security status comprises at least one of a warning or an endorsement associated with the item, and wherein the information indicative of the security status comprises text explaining at least one reason for the warning or the endorsement associated with the item; and

performing an operation related to the item in response to receiving input indicative of a selection by a user of the at least one selectable interface element, wherein the operation related to the item comprises at least one of opening a file or website associated with the item or presenting additional information about the item.

2. The method of claim 1 , further comprising:

training a classification model using training data, wherein the classification model correlates at least one feature of at least one item with a classification of the at least one item.

3. The method of claim 2 , further comprising:

classifying the item into one of the plurality of classifications using the trained classification model.

4. The method of claim 1 , wherein the first interface comprises information indicating that the item comprises a security risk.

5. The method of claim 4 , further comprising:

performing one or more security operations for managing the security risk associated with accessing the item or a resource associated with the item.

6. The method of claim 1 , wherein the item comprises a Universal Resource Locator (URL).

7. The method of claim 1 , further comprising:

in response to receiving another user input on the item, performing another classification operation on the item.

8. The method of claim 1 , further comprising:

modifying an action performed by the user on the item for reducing a potential security risk associated with accessing the item or a resource associated with the item.

9. A system, comprising:

at least one processor; and

at least one memory communicatively coupled to the at least one processor to configure the at least one processor at least to:

collect information associated with an item appearing in a file;

determine a security status associated with the item by classifying the item into one of a plurality of classifications based on the information associated with the item;

present on a first interface information indicative of the security status, wherein the first interface further comprises at least one selectable interface element in relation to the information indicative of the security status, and wherein the information indicative of the security status comprises at least one of a warning or an endorsement associated with the item, and wherein the information indicative of the security status comprises text explaining at least one reason for the warning or the endorsement associated with the item; and

perform an operation related to the item in response to receiving input indicative of a selection by a user of the at least one selectable interface element, wherein the operation related to the item comprises at least one of opening a file or website associated with the item or presenting additional information about the item.

10. The system of claim 9 , wherein the information associated with the item is not visible in the file as presented to a user.

11. The system of claim 9 , wherein the file is one of an email, a message, a document, or a webpage.

12. The system of claim 9 , the at least one processor further configuring the at least one processor to:

train a classification model using training data, wherein the classification model correlates at least one feature of at least one item with a classification of the at least one item.

13. The system of claim 12 , the at least one processor further configuring the at least one processor to:

classify the item into one of the plurality of classifications using the trained classification model.

14. The system of claim 9 , the at least one processor further configuring the at least one processor to:

generate an indicator corresponding to the item; and

store the indicator and a classification corresponding to the item.

15. The system of claim 9 , wherein the first interface comprises information indicating that the item comprises a security risk.

16. The system of claim 15 , the at least one processor further configuring the at least one processor to:

perform one or more security operations for managing the security risk associated with accessing the item or a resource associated with the item.

17. A non-transitory computer-readable storage medium, storing computer-readable instructions that upon execution on a computing device cause the computing device at least to:

collect information associated with an item in response to user input;

determine a security status associated with the item by classifying the item into one of a plurality of classifications based on the information associated with the item;

present on a first interface information indicative of the security status, wherein the first interface further comprises at least one selectable interface element in relation to the information indicative of the security status, and wherein the information indicative of the security status comprises at least one of a warning or an endorsement associated with the item, and wherein the information indicative of the security status comprises text explaining at least one reason for the warning or the endorsement associated with the item; and

perform an operation related to the item in response to receiving input indicative of a selection by a user of the at least one selectable interface element, wherein the operation related to the item comprises at least one of opening a file or website associated with the item or presenting additional information about the item.

18. The non-transitory computer-readable storage medium of claim 17 , further storing computer-readable instructions that upon execution on the computing device cause the computing device to:

determine content or formality of the first interface based on a type of the item, a classification of the item, and the information associated with the item.

19. The non-transitory computer-readable storage medium of claim 17 , wherein the first interface comprises information indicating that the item comprises a security risk.

20. The non-transitory computer-readable storage medium of claim 19 , further storing computer-readable instructions that upon execution on the computing device cause the computing device to:

perform one or more security operations for managing the security risk associated with accessing the item or a resource associated with the item.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 7, 2021
From: BYTEDANCE INC.
To: LEMON INC.
Reel/Frame 057114/0307 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 7, 2021
From: TIKTOK INC.
To: LEMON INC.
Reel/Frame 057114/0310 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 7, 2021
From: JAKOBSSON, MARKUS; ASHOURI, HAMED
To: TIKTOK INC.
Reel/Frame 057116/0101 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 7, 2021
From: LUTHRA, SHRESHTH; CAO, HUI
To: BYTEDANCE INC.
Reel/Frame 057434/0899 →
Continuity (1)
Related Publication 20230041534A1 · Feb 9, 2023
References Cited (7)
US 11003773B1 · Fang · 2021 [cited by examiner]
US 11720668B2 · Umesh · 2023 [cited by examiner]
US 20220067146A1 · Cai · 2022 [cited by examiner]
US 20220147815A1 · Conwell · 2022 [cited by examiner]
US 20220217160A1 · Morgan · 2022 [cited by examiner]
A machine learning-based FinTech cyber threat attribution framework using high-level indicators of compromise. Noor. Elsevier. (Year: 2019). [cited by examiner]
Behaviour-Based Attack Detection and Classification in Cyber Physical Systems Using Machine Learning. Junejo. IEEE. (Year: 2016). [cited by examiner]