IP Library Granted Patent US 12,413,573
Granted Patent B2
US 12,413,573 · App. 18/451,616 · Granted Sep 9, 2025

Tiered certificate authority systems for blockchain smart contracts on blockchain cybersecurity platforms

Inventor: Piotr Wladyslaw Cielas (Poznan, PL)
Assignee: Halborn Inc.
H04L63/0823H04L9/3268H04L9/50H04L63/0884
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,413,573
App. No.
18/451,616
Granted
Sep 9, 2025
Kind
B2
Abstract

In one embodiment, a method includes identifying first entities by a first root authority entity, authorizing one or more first entities to be certificate authorities by the first root authority entity, wherein each certificate authority is configured to audit a smart contract in a development environment before it is deployed on a first blockchain network and authorized to issue a certificate for each smart contract audited in the development environment based on a determination that the corresponding smart contract deployed on the first blockchain network matches the smart contract that was audited in the development environment, determining certificate authority authorization parameters are not satisfied for at least a first certificate authority, and revoking the certificate authority authorization for the first certificate authority by the first root authority entity, wherein each certificate issued by the first certificate authority prior to the revocation remains valid after the revocation.

Claims (41)

1. A method comprising, by one or more servers associated with a blockchain cybersecurity platform:

identifying, by a first root authority entity of one or more root authority entities associated with the blockchain cybersecurity platform, a plurality of first entities associated with the one or more root authority entities;

authorizing, by the first root authority entity, from the plurality of first entities, one or more first entities to be certificate authorities, wherein each certificate authority is configured to audit a smart contract in a development environment before the smart contract is deployed on a first blockchain network, and wherein each certificate authority is authorized to issue, for each smart contract audited by the certificate authority in the development environment, a certificate for the smart contract based on a determination that the corresponding smart contract deployed on the first blockchain network matches the smart contract that was audited in the development environment;

determining, by the first root authority entity, for at least a first certificate authority authorized by the first root authority entity, that one or more certificate authority authorization parameters are not satisfied; and

revoking, by the first root authority entity, the certificate authority authorization for the first certificate authority, wherein each certificate issued by the first certificate authority prior to the revocation remains valid after the revocation of the certificate authority authorization.

2. The method of claim 1 , wherein the first root authority entity is the blockchain cybersecurity platform.

3. The method of claim 1 , wherein each issued certificate comprises data associated with the first root authority entity that issued the certificate.

4. The method of claim 1 , wherein each issued certificate is written to the first blockchain network.

5. The method of claim 1 , wherein each issued certificate comprises data configured for public queries.

6. The method of claim 1 , wherein each issued certificate comprises one or more of:

an address associated with the corresponding smart contract;

a hash associated with the corresponding smart contract;

a size associated with the corresponding smart contract;

a time slot at which the certificate was issued;

a status of the certificate;

an upgrade authority for the corresponding smart contract;

a certificate edition;

an address of an account that stores additional data about the certified smart contract or an audit report associated with the corresponding smart contract; or

an account address associated with the first root authority entity.

7. The method of claim 1 , wherein determining that the certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on an automatic recurring validation process associated with one or more of the certificate authorities.

8. The method of claim 1 , wherein determining that the certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on an automatic determination that a value for at least one of the certificate authority authorization parameters exceeds a threshold value.

9. The method of claim 1 , wherein determining that the certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on receiving, from an external entity associated with the first smart contract, a request to revoke the certificate authority authorization for the first certificate authority.

10. The method of claim 1 , wherein determining that the certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on a recurring validation process associated with one or more of the certificate authorities conducted by one or more second entities associated with the first root authority entity.

11. The method of claim 1 , wherein the one or more certificate authority authorization parameters for the first certificate authority comprise a number of certificates issued by the first certificate authority.

12. The method of claim 11 , wherein the one or more certificate authority authorization parameters for the first certificate authority further comprise a specified period of time associated with the number of certificates issued by the first certificate authority.

13. The method of claim 1 , wherein the one or more certificate authority authorization parameters for the first certificate authority comprise a status of the association between the first root authority entity and the first certificate authority.

14. The method of claim 13 , wherein determining that the one or more certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on a determination that the status of the association between the first root authority entity and the first certificate authority is invalid.

15. The method of claim 1 , wherein the one or more certificate authority authorization parameters for the first certificate authority comprise an authorization time indicating when the first certificate authority was authorized to be a certificate authority.

16. The method of claim 15 , wherein determining that the one or more certificate authority authorization parameters are not satisfied for the first certificate authority is based at least in part on a determination that a threshold time has elapsed since the authorization time.

17. The method of claim 1 , wherein the first root authority entity is associated with an account address storing one or more of an authority wallet address or a number of certificate authorities.

18. The method of claim 1 , wherein the one or more certificate authorities are authorized to issue and reissue certificates in the development environment.

19. One or more computer-readable non-transitory storage media embodying software that is operable when executed to:

identify, by a first root authority entity of one or more root authority entities associated with a blockchain cybersecurity platform, a plurality of first entities associated with the one or more root authority entities;

authorize, by the first root authority entity, from the plurality of first entities, one or more first entities to be certificate authorities, wherein each certificate authority is configured to audit a smart contract in a development environment before the smart contract is deployed on a first blockchain network, and wherein each certificate authority is authorized to issue, for each smart contract audited by the certificate authority in the development environment, a certificate for the smart contract based on a determination that the corresponding smart contract deployed on the first blockchain network matches the smart contract that was audited in the development environment;

determine, by the first root authority entity, for at least a first certificate authority authorized by the first root authority entity, that one or more certificate authority authorization parameters are not satisfied; and

revoke, by the first root authority entity, the certificate authority authorization for the first certificate authority, wherein each certificate issued by the first certificate authority prior to the revocation remains valid after the revocation of the certificate authority authorization.

20. A computing system comprising: one or more processors; and a non-transitory memory coupled to the processors comprising instructions executable by the processors, the processors operable when executing the instructions to:

identify, by a first root authority entity of one or more root authority entities associated with a blockchain cybersecurity platform, a plurality of first entities associated with the one or more root authority entities;

authorize, by the first root authority entity, from the plurality of first entities, one or more first entities to be certificate authorities, wherein each certificate authority is configured to audit a smart contract in a development environment before the smart contract is deployed on a first blockchain network, and wherein each certificate authority is authorized to issue, for each smart contract audited by the certificate authority in the development environment, a certificate for the smart contract based on a determination that the corresponding smart contract deployed on the first blockchain network matches the smart contract that was audited in the development environment;

determine, by the first root authority entity, for at least a first certificate authority authorized by the first root authority entity, that one or more certificate authority authorization parameters are not satisfied; and

revoke, by the first root authority entity, the certificate authority authorization for the first certificate authority, wherein each certificate issued by the first certificate authority prior to the revocation remains valid after the revocation of the certificate authority authorization.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 22, 2023
From: CIELAS, PIOTR WLADYSLAW
To: HALBORN, INC.
Reel/Frame 064662/0234 →
Priority Claims (1)
PL 445826 · Aug 16, 2023 · national
Continuity (1)
Related Publication 20250062918A1 · Feb 20, 2025
References Cited (33)
US 10547457B1 · Duccini · 2020 [cited by applicant]
US 10885501B2 · Uhr · 2021 [cited by applicant]
US 11018851B2 · Sarin · 2021 [cited by applicant]
US 11288736B1 · Jette et al. · 2022 [cited by applicant]
US 11316690B2 · Madisetti · 2022 [cited by applicant]
US 11528147B2 · Madisetti et al. · 2022 [cited by applicant]
US 12210637B2 · Valdez · 2025 [cited by applicant]
US 20190036711A1 · Qiu · 2019 [cited by applicant]
US 20190095909A1 · Wright · 2019 [cited by applicant]
US 20190172026A1 · Vessenes · 2019 [cited by applicant]
US 20190303920A1 · Balaraman · 2019 [cited by applicant]
US 20190305957A1 · Reddy · 2019 [cited by applicant]
US 20200104836A1 · Coburn et al. · 2020 [cited by applicant]
US 20200279257A1 · Cheng · 2020 [cited by examiner]
US 20210042749A1 · Cheng · 2021 [cited by applicant]
US 20220138733A1 · Madisetti et al. · 2022 [cited by applicant]
US 20220261882A1 · Youb · 2022 [cited by applicant]
US 20230214318A1 · Nallagonda · 2023 [cited by examiner]
US 20230252461A1 · Oh · 2023 [cited by applicant]
US 20240152888A1 · Minaei · 2024 [cited by applicant]
US 20240163097A1 · Dods · 2024 [cited by applicant]
US 20240356757A1 · Mitchell · 2024 [cited by examiner]
US 20250063036A1 · Cielas · 2025 [cited by applicant]
US 20250063037A1 · Cielas · 2025 [cited by applicant]
US 20250063038A1 · Cielas · 2025 [cited by applicant]
CN 110851813A · 2020 [cited by applicant]
CN 115150071A · 2022 [cited by applicant]
CN 119363356A · 2025 [cited by applicant]
GB 2583767A · 2020 [cited by applicant]
WO WO2022118263A1 · 2022 [cited by applicant]
U.S. Appl. No. 18/451,631, filed Aug. 17, 2023, Piotr Wladyslaw Cielas. [cited by applicant]
U.S. Appl. No. 18/451,638, filed Aug. 17, 2023, Piotr Wladyslaw Cielas. [cited by applicant]
U.S. Appl. No. 18/451,642, filed Aug. 17, 2023, Piotr Wladyslaw Cielas. [cited by applicant]