IP Library Granted Patent US 12,373,577
Granted Patent B2
US 12,373,577 · App. 18/677,073 · Granted Jul 29, 2025

Relay-switch with sandbox communication connections

Inventor: Edward L. Haletky (Austin, TX)
Assignee: Bank of America Corporation
G06F21/577G06F21/53H04W12/37
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,373,577
App. No.
18/677,073
Granted
Jul 29, 2025
Kind
B2
Abstract

A network connection device may include at least one sandbox to detect, isolate, and remove any discovered malware or cyber threat. The device may be configured to receive, save, and inspect data. A control layer may manage network connectivity so that only home organization network connections or external party network connections are connected at given moment in time.

Claims (64)

1. A system comprising:

a processor; and

memory storing computer-readable instructions that, when executed by the processor, cause the system to:

receive a request from an internal network at a first sandbox to connect to an external platform

authenticate the received request;

disable internal network ports;

enable external network ports connected to the external platform;

generate a second sandbox;

receive a copy of the received request in the generated second sandbox;

quarantine the received request if the cyberthreat is detected, wherein the cyberthreat is malware;

transmit the copy of the received request to the external platform;

receive a response from the external platform at the second sandbox;

generate an inspection sandbox to inspect the received response;

inspect the received response for a cyberthreat;

enable internal network ports of the internal;

disable external network ports connected to the external platform;

receive the response at the first sandbox; and

transmit the response to the internal network.

2. The system of claim 1 , further comprising deactivating the first sandbox after the second sandbox receives a copy of the request.

3. The system of claim 1 , further comprising deactivating both the first sandbox and the second sandbox prior to inspecting the cyberthreat.

4. The system of claim 1 , further comprising deactivating the second sandbox prior to inspecting the cyberthreat.

5. The system of claim 1 , further comprising a relay switch configured to isolate the cyberthreat to the first sandbox.

6. The system of claim 1 , further comprising a relay switch configured to isolate the cyberthreat to the inspection sandbox.

7. The system of claim 1 , further comprising removing the received request if cyberthreat is detected.

8. The system of claim 7 , wherein the cyberthreat is malware.

9. The system of claim 7 , further comprising eliminating the first sandbox and the second sandbox if cyberthreat is not removable.

10. A method comprising:

receiving a request from an internal network at a first sandbox to connect to an external platform

authenticating the received request;

quarantining the received request if a cyberthreat is detected;

disabling internal network ports;

enabling external network ports connected to the external platform;

generating a second sandbox;

receiving a copy of the received request in the generated second sandbox;

transmitting the copy of the received request to the external platform;

receiving a response from the external platform at the second sandbox;

generating an inspection sandbox to inspect the received response;

inspecting the received response for a cyberthreat;

enabling internal network ports of the internal;

disabling external network ports connected to the external platform;

receiving the response at the first sandbox; and

transmitting the response to the internal network.

11. The method of claim 10 , further comprising isolating the cyberthreat to the first sandbox via a relay switch.

12. The method of claim 10 , further comprising isolating the cyberthreat to the inspection sandbox via a relay switch.

13. The method of claim 10 , wherein the cyberthreat is malware.

14. The method of claim 10 , further comprising removing the received request if cyberthreat is detected.

15. The method of claim 14 , wherein the cyberthreat is malware.

16. The method of claim 10 , further comprising eliminating the first sandbox and the second sandbox if cyberthreat is not removable.

17. A non-transitory computer readable medium storing computer executable instructions, that when executed by a processor, cause:

receiving a request from an internal network at a first sandbox to connect to an external platform;

authenticating the received request;

quarantining the received request if a cyberthreat is detected, wherein the cyberthreat is malware;

disabling internal network ports;

enabling external network ports connected to the external platform;

generating a second sandbox;

receiving a copy of the received request in the generated second sandbox;

transmitting the copy of the received request to the external platform;

receiving a response from the external platform at the second sandbox;

generating an inspection sandbox to inspect the received response;

inspecting the received response for a cyberthreat;

enabling internal network ports of the internal;

disabling external network ports connected to the external platform;

receiving the response at the first sandbox; and

transmitting the response to the internal network.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 29, 2024
From: HALETKY, EDWARD L.
To: BANK OF AMERICA CORPORATION
Reel/Frame 067552/0520 →
Continuity (2)
Continuation 17402853 · Aug 16, 2021
Related Publication 20240311493A1 · Sep 19, 2024
References Cited (14)
US 8782604B2 · Konduri et al. · 2014 [cited by applicant]
US 9294488B2 · Vasseur et al. · 2016 [cited by applicant]
US 9680845B2 · Langton et al. · 2017 [cited by applicant]
US 10069837B2 · Turgeman et al. · 2018 [cited by applicant]
US 10354074B2 · Gupta · 2019 [cited by applicant]
US 10387627B2 · Johnson et al. · 2019 [cited by applicant]
US 10419464B2 · Sandke et al. · 2019 [cited by applicant]
US 10614213B1 · Demsey · 2020 [cited by examiner]
US 11232193B1 · Raber · 2022 [cited by examiner]
US 20080016339A1 · Shukla · 2008 [cited by examiner]
US 20180253551A1 · Chalmandrier-Perna · 2018 [cited by examiner]
US 20190005227A1 · Weinstein · 2019 [cited by examiner]
US 20190007257A1 · Weinstein · 2019 [cited by examiner]
US 20220114257A1 · McKerchar · 2022 [cited by examiner]