IP Library › Granted Patent US 12,659,295
Granted Patent B2
US 12,659,295 · App. 18/913,832 · Granted Jun 16, 2026

Secure analysis application for accessing web resources

Inventors: Scott M. Petry (Portola Valley, CA); Ramesh Rajagopal (Los Altos, CA); Peter K. Lund (San Francisco, CA); Fredric L. Cox (San Jose, CA); Adam P. Moore (San Francisco, CA); Leslie L Dunston (Foster City, CA); Varley H. Taylor (San Francisco, CA); Zachary L Segal (San Francisco, CA); Luka I. Stolyarov (San Francisco, CA); Joshua R. McMains (Morgan Hill, CA); Brian T. Zaugg (Campbell, CA)
Assignee: Authentic8, Inc.
H04L63/0209H04L63/083H04L63/0876H04L63/10H04L63/123H04L67/02H04L67/1097H04L67/563
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,659,295
App. No.
18/913,832
Granted
Jun 16, 2026
Kind
B2
Abstract

Embodiments described herein may be directed to systems, methods, apparatuses, devices, computer program products, computer-executable instructions, and/or applications for securely and anonymously accessing web resources and customizable attribution of identity. In accordance with the present disclosure, a user may inspect and analyze a webpage as well as the underlying source code from an “arm's length” using a secure analysis application to prevent exposure on the user's local machine. The secure analysis application may provide increased flexibility in masking and/or modifying the user's digital persona to external websites.

Claims (56)

1 . A web container system for providing improved concealing of origination of Internet content requests, the web container system located in a first location, and the web container system comprising:

at least one memory comprising instructions; and

at least one processing device configured for executing the instructions, wherein the instructions cause the at least one processing device to perform operations of:

receiving a first request for first Internet content from a computing device located in a second location different from the first location, wherein the computing device executes an Internet application, associated with an Internet session, for requesting the first Internet content;

communicating with an Internet content source to access the first Internet content, such that the computing device is substantially insulated from communicating directly with the Internet content source or receiving the first Internet content directly from the Internet content source;

transmitting second Internet content, or computing instructions, to the computing device, wherein the computing device initiates display of, using a graphical processing unit (GPU) comprised in the computing device, the second Internet content, or third Internet content based on the computing instructions, to a user of the computing device; and

modifying one or more elements of a browser fingerprint presented to or accessed by the Internet content source, thereby resulting in a modified browser fingerprint, such that a characteristic of the computing device comprised in the modified browser fingerprint and a third location presented to or accessed by the Internet content source are different from an actual characteristic of the computing device and the second location, respectively,

wherein at least one of the first Internet content, the second Internet content, or the computing instructions on which the third Internet content is based, is routed through an egress node selected from one or more egress nodes.

2 . The web container system of claim 1 , wherein the Internet content source determines that the egress node is associated with a particular location, wherein the particular location is different from the second location.

3 . The web container system of claim 1 , wherein the at least one processing device further performs the operations of:

generating, based on the first request, a second request for the first Internet content, wherein the second request comprises data associated with at least one of a location, a business or residence, a service, a device, a device type, an Internet Service Provider (ISP), an operating system, the Internet application, or a browser; and

transmitting the second request to the Internet content source.

4 . The web container system of claim 3 , wherein the data is consistent with at least one of the browser fingerprint or an application fingerprint associated with the first request or the second request.

5 . The web container system of claim 3 , wherein the location, the business or residence, the service, the device, the ISP, the operating system, the Internet application, or the browser is similar to or consistent with the second location, a second business or residence, a second service, a second device, a second device type, a second ISP, a second operating system, a second Internet application, or a second browser, respectively, associated with at least one third request received by the Internet content source.

6 . The web container system of claim 5 , wherein the at least one third request was previously received by the Internet content source at least a threshold number of times.

7 . The web container system of claim 1 , wherein at least one of: a location, a business or residence, a service, a device, a device type, an Internet Service Provider (ISP), an operating system, the Internet application, or a browser, associated with the computing device, is not transmitted to the Internet content source.

8 . The web container system of claim 1 , wherein the second Internet content or the third Internet content is a modified version of the first Internet content or an image representation of the first Internet content.

9 . The web container system of claim 1 , wherein the egress node is located at a fourth location the same as, different from, or similar to the first location, the second location, or the third location.

10 . The web container system of claim 1 , wherein the web container system performs at least one of rendering or executing the first Internet content remotely from the computing device.

11 . The web container system of claim 1 , wherein the characteristic of the computing device comprised in the modified browser fingerprint comprises at least one of: operating system data, browser data, software vendor data, user data, or location data.

12 . A method for providing improved concealing of information associated with Internet content requests, the method comprising:

receiving, using a web container system located at a first location, a first request for first Internet content from a computing device located in a second location different from the first location, wherein the computing device executes an Internet application, associated with an Internet session, for requesting the first Internet content;

communicating, using the web container system, with an Internet content source to access the first Internet content, such that the computing device is substantially insulated from communicating directly with the Internet content source;

transmitting, using the web container system, second Internet content, or computing instructions, to the computing device, wherein the computing device initiates display of, using a graphical processing unit (GPU) comprised in the computing device, the second Internet content, or third Internet content based on the computing instructions, to a user of the computing device; and

modifying, using the web container system, one or more elements of a browser fingerprint presented to or accessed by the Internet content source, thereby resulting in a modified browser fingerprint, such that a characteristic of the computing device comprised in the modified browser fingerprint and a third location presented to or accessed by the Internet content source are different from an actual characteristic of the computing device and the second location, respectively,

wherein at least one of the first Internet content, the second Internet content, the first request for the first Internet content, or the computing instructions on which the third Internet content is based, is transmitted to or received from an egress node selected from one or more egress nodes, and

wherein the web container system comprises a computing apparatus through which the second Internet content, or the computing instructions on which the third Internet content is based, is accessed by the computing device during the Internet session.

13 . The method of claim 12 , wherein at least one of:

selecting the egress node from the one or more egress nodes is based on identification information associated with the computing device or location information associated with the computing device, or is based on information associated with the Internet content source, or

the web container system performs at least one of rendering or executing the first Internet content remotely from the computing device.

14 . The method of claim 12 , further comprising:

generating, based on the first request, a second request for the first Internet content,

wherein the second request comprises data associated with at least one of a location, a business or residence, a service, a device, a device type, an Internet Service Provider (ISP), an operating system, the Internet application, or a browser; and

transmitting the second request to the Internet content source.

15 . The method of claim 14 , wherein the Internet content source determines, based on the data, that the egress node is associated with a particular location, wherein the particular location is different from the second location and the first location.

16 . The method of claim 14 , wherein the data is consistent with at least one of the browser fingerprint or an application fingerprint associated with the first request or the second request.

17 . The method of claim 14 , wherein the location, the business or residence, the service, the device, the ISP, the operating system, the Internet application, or the browser is similar to or consistent with the second location, a second business or residence, a second service, a second device, a second device type, a second ISP, a second operating system, a second Internet application, or a second browser, respectively, associated with at least one third request received by the Internet content source.

18 . The method of claim 17 , wherein the at least one third request was previously received by the Internet content source at least a threshold number of times during a particular period.

19 . The method of claim 12 , wherein at least one of:

the egress node is located at a fourth location the same as, different from, or similar to the first location, the second location, or the third location,

the second Internet content, or the computing instructions on which the third Internet content is based, is a modified version of the first Internet content or an image representation of the first Internet content, or

the web container system performs at least one of rendering or executing the first Internet content remotely from the computing device.

20 . A method for providing improved concealing of information associated with Internet content requests, the method comprising:

receiving, using a web container system located at a first location, a first request for first Internet content from a computing device located in a second location different from the first location,

wherein the computing device executes an Internet application, associated with an Internet session, for requesting the first Internet content;

communicating, using the web container system, with an Internet content source to access the first Internet content, such that the computing device is at least partially insulated from communicating directly with the Internet content source;

selecting, using the web container system, an egress node from one or more egress nodes;

transmitting, using the web container system, and via the egress node selected from the one or more egress nodes, the first request for the first Internet content or a second request for the first Internet content, based on the first request for the first Internet content, to the Internet content source;

receiving, using the web container system, the first Internet content from the Internet content source;

generating, using the web container system and based on the first Internet content, second Internet content or computing instructions;

transmitting, using the web container system, the second Internet content or the computing instructions to the computing device, wherein the computing device initiates display of, using a graphical processing unit (GPU) comprised in the computing device, the second Internet content, or third Internet content based on the computing instructions, to a user of the computing device; and

modifying, using the web container system, one or more elements of a browser fingerprint presented to or accessed by the Internet content source, thereby resulting in a modified browser fingerprint, such that a characteristic of the computing device comprised in the modified browser fingerprint and a third location presented to or accessed by the Internet content source are different from an actual characteristic of the computing device and the second location, respectively.

21 . The method of claim 20 , further comprising:

generating, based on the first request, the second request for the first Internet content, wherein the second request comprises data associated with at least one of a location, a business or residence, a service, a device, a device type, an Internet Service Provider (ISP), an operating system, the Internet application, or a browser; and

transmitting the second request to the Internet content source,

wherein the location, the business or residence, the service, the device, the ISP, the operating system, the Internet application, or the browser is similar to or consistent with the second location, a second business or residence, a second service, a second device, a second device type, a second ISP, a second operating system, a second Internet application, or a second browser, respectively, associated with at least one third request received by the Internet content source.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 4, 2024
From: PETRY, SCOTT M.; RAJAGOPAL, RAMESH; LUND, PETER K.; COX, FREDRIC L.; MOORE, ADAM P.; DUNSTON, LESLIE L.; TAYLOR, VARLEY H.; SEGAL, ZACHARY L.; STOLYAROV, LUKA I.; MCMAINS, JOSHUA R.; ZAUGG, BRIAN T.
To: AUTHENTIC8, INC.
Reel/Frame 069130/0819 →
Continuity (8)
Continuation 17833690 · Jun 6, 2022
Continuation 16780877 · Feb 3, 2020
Continuation In Part 16036822 · Jul 16, 2018
Continuation 15728315 · Oct 9, 2017
Continuation 15395914 · Dec 30, 2016
Continuation 15049075 · Feb 20, 2016
Provisional Application 62118862 · Feb 20, 2015
Related Publication 20250047638A1 · Feb 6, 2025
References Cited (103)
US 6138168A · Kelly et al. · 2000 [cited by applicant]
US 6347306B1 · Swart · 2002 [cited by applicant]
US 6704024B2 · Robotham et al. · 2004 [cited by applicant]
US 6963916B1 · Pugaczewski et al. · 2005 [cited by applicant]
US 7120142B1 · Oz et al. · 2006 [cited by applicant]
US 7334254B1 · Boydstun et al. · 2008 [cited by applicant]
US 7363363B2 · Dal Canto et al. · 2008 [cited by applicant]
US 7774363B2 · Lim · 2010 [cited by applicant]
US 7779034B2 · Pedersen et al. · 2010 [cited by applicant]
US 7934253B2 · Overcash et al. · 2011 [cited by applicant]
US 7958012B2 · Hudak et al. · 2011 [cited by applicant]
US 8266685B2 · Abzarian et al. · 2012 [cited by applicant]
US 8306807B2 · Van Guilder et al. · 2012 [cited by applicant]
US 8332626B2 · Mansfield · 2012 [cited by applicant]
US 8375434B2 · Cottrell et al. · 2013 [cited by applicant]
US 8443416B2 · Sabin et al. · 2013 [cited by applicant]
US 8484718B2 · Chacko et al. · 2013 [cited by applicant]
US 8555273B1 · Chia et al. · 2013 [cited by applicant]
US 8589338B2 · Maes · 2013 [cited by applicant]
US 8615795B2 · Cottrell et al. · 2013 [cited by applicant]
US 8763082B2 · Huber et al. · 2014 [cited by applicant]
US 8776169B2 · Rajagopal et al. · 2014 [cited by applicant]
US 8844043B2 · Williams et al. · 2014 [cited by applicant]
US 8868724B2 · Goodwin et al. · 2014 [cited by applicant]
US 8881227B2 · Rajagopal et al. · 2014 [cited by applicant]
US 8984621B2 · Burch et al. · 2015 [cited by applicant]
US 9075895B2 · Lindsey et al. · 2015 [cited by applicant]
US 9246904B2 · Rajagopal et al. · 2016 [cited by applicant]
US 9306972B2 · Amiga · 2016 [cited by applicant]
US 9313227B2 · Amiga · 2016 [cited by applicant]
US 9379895B2 · Kailash et al. · 2016 [cited by applicant]
US 9391832B1 · Song et al. · 2016 [cited by applicant]
US 9521118B2 · Cottrell et al. · 2016 [cited by applicant]
US 9537873B2 · Petry et al. · 2017 [cited by applicant]
US 9712386B1 · Chen · 2017 [cited by examiner]
US 9787637B2 · Petry et al. · 2017 [cited by applicant]
US 10027625B2 · Petry et al. · 2018 [cited by applicant]
US 10027714B2 · Rajagopal et al. · 2018 [cited by applicant]
US 20030050932A1 · Pace et al. · 2003 [cited by applicant]
US 20030120593A1 · Bansal et al. · 2003 [cited by applicant]
US 20030135543A1 · Kittredge et al. · 2003 [cited by applicant]
US 20030187689A1 · Barnes et al. · 2003 [cited by applicant]
US 20040049702A1 · Subramaniam et al. · 2004 [cited by applicant]
US 20040107360A1 · Hermann et al. · 2004 [cited by applicant]
US 20040205101A1 · Radhakrishnan · 2004 [cited by applicant]
US 20040239681A1 · Robotham et al. · 2004 [cited by applicant]
US 20050097353A1 · Patrick et al. · 2005 [cited by applicant]
US 20060005008A1 · Kao · 2006 [cited by applicant]
US 20060041755A1 · Pemmaraju · 2006 [cited by applicant]
US 20070016949A1 · Dunagan et al. · 2007 [cited by applicant]
US 20070101435A1 · Konanka et al. · 2007 [cited by applicant]
US 20070115990A1 · Asati · 2007 [cited by examiner]
US 20070214359A1 · Williamson · 2007 [cited by examiner]
US 20080016551A1 · Pinkas et al. · 2008 [cited by applicant]
US 20080271020A1 · Leitz et al. · 2008 [cited by applicant]
US 20090187919A1 · Maes · 2009 [cited by applicant]
US 20100024036A1 · Morozov et al. · 2010 [cited by applicant]
US 20100057836A1 · Anbuselvan · 2010 [cited by applicant]
US 20100125902A1 · Killian et al. · 2010 [cited by applicant]
US 20110184993A1 · Chawla et al. · 2011 [cited by applicant]
US 20110247045A1 · Rajagopal · 2011 [cited by examiner]
US 20130014259A1 · Gribble et al. · 2013 [cited by applicant]
US 20130219281A1 · Trevelyan · 2013 [cited by examiner]
US 20130290404A1 · Rajabi et al. · 2013 [cited by applicant]
US 20130335436A1 · Lindsey · 2013 [cited by applicant]
US 20130340028A1 · Rajagopal et al. · 2013 [cited by applicant]
US 20150106683A1 · Lindsey et al. · 2015 [cited by applicant]
US 20150222600A1 · Cottrell et al. · 2015 [cited by applicant]
US 20160217274A1 · Byrne et al. · 2016 [cited by applicant]
US 20160352803A1 · Amiga et al. · 2016 [cited by applicant]
US 20170034190A1 · May · 2017 [cited by applicant]
US 20170111318A1 · Petry et al. · 2017 [cited by applicant]
US 20170115990A1 · Anderson et al. · 2017 [cited by applicant]
US 20170180413A1 · Petry et al. · 2017 [cited by applicant]
US 20170208079A1 · Cammarota et al. · 2017 [cited by applicant]
US 20170214359A1 · McKarris · 2017 [cited by applicant]
US 20170223029A1 · Sharma et al. · 2017 [cited by applicant]
US 20180034773A1 · Petry et al. · 2018 [cited by applicant]
US 20180069840A1 · Chilakapati et al. · 2018 [cited by applicant]
US 20180293375A1 · Wang et al. · 2018 [cited by applicant]
US 20230367833A1 · Kol · 2023 [cited by examiner]
EP 1233333A1 · 2002 [cited by applicant]
WO 2008156924A1 · 2008 [cited by applicant]
WO 2018165602A1 · 2018 [cited by applicant]
Tiwari, Auy, et al., “A multifactor security protocol for wireless payment-secure-web authentication using mobile devices”, Retrieved from https://arxiv.org/ftp/arxiv/papers/1111/1111.3010.pdf, arXiv prepint arXiv:1111.… [cited by applicant]
Tom Scholl, “Internet Routing and Traffic Engineering”, AWS Architecture Blog, Retrieved from https://aws.amazon.com/blogs/architecture/internet-routing-and-traffic-engineering/, Published Dec. 15, 2014 (Year:2014), 14 … [cited by applicant]
International Search Report and the Written Opinion of the International Searching Authority in connection with PCT Application No. PCT/US2016/018828, dated Jun. 8, 2016, 10 pages. [cited by applicant]
Koved, Larry, et al.. , “Security challenges for Enterprise Java in an e-business environment”, Retrieved from http://ieeexplore.ieee.org/stamp.jsp?arnumber=5386964, IBM Systems Journal 40.1 (2001): 130-152, Published 2… [cited by applicant]
Guitart, Jordi et al., “Characterizing secure dynamic web applications scalability”, Retrieved from http://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=1419933, 19th IEEE International Parallel and Distributed Processin… [cited by applicant]
International Search Report and Written Opinion dated Aug. 23, 2011 in connection with International Application No. PCT/US2011/030620, 7 pages. [cited by applicant]
Tzi-cker Chiueh, et al., “Spout: a transparent proxy for safe execution of Java applets”, in Selected Areas in Communications, IEEE Journal, vol. 20, No. 7, pp. 1426-1433, Sep. 2002, Web Accessed; Sep. 18, 2015, doi: 10… [cited by applicant]
Berryman, A., et al., “VDBench: A Benchmarking Toolkit for Thin-Client Based Virtual Desktop Environments”, (CloudCom), 2010 IEEE Second Intl Conf., pp. 480-487, Nov. 30-Dec. 3, 2010, Accessed; Sep. 18, 2015, doi: 10.11… [cited by applicant]
Lesueur, F., et al., “Safe-OS: A secure and usable desktop operating system”, 2010 Fifth Intl Conf., pp. 1-7, Oct. 10-13, 2010, Web Accessed; Sep. 18, 2015, doi: 10.1109/CRISIS.2010.5764916, URL: http://ieeexplore.ieee.… [cited by applicant]
“Tab (GUI: Difference between revisions)”, Wikipedia, Wikimedia Foundation, published Apr. 19, 2009, Accessed Web, Apr. 18, 2014, <http://en.wikipedia.org/w/index.php?title=Tab_(GUI)&diff=284321974&oldid=283>, 1 page. [cited by applicant]
“Internet Explorer—7—Wikipedia, the free encyclopedia”, Wikipedia, the free encyclopedia, published Apr. 9, 2009, Accessed—Web. Oct. 10, 2013, <http://en.wikipedia.org/w/index.php?title=Internet_Explorer_7&oldid=2827888… [cited by applicant]
Petry et al., U.S. Appl. No. 15/454,915, 383 pages. [cited by applicant]
Petry et al., U.S. Appl. No. 16/036,846, 145 pages. [cited by applicant]
Petry et al., U.S. Appl. No. 16/181,324, 153 pages. [cited by applicant]
Rajagopal et al., U.S. Appl. No. 16/036,813, 111 pages. [cited by applicant]
Extended European Search Report dated Feb. 20, 2019 in connection with European Application No. 18212536.9, 10 pages. [cited by applicant]
Anonymous, “Proxy server—Wikipedia”, retrieved from Internet: URL:https:\\en.wikipedia.org/w/index.php?title=Proxy_server&oldid=865232195, [retrieved on Feb. 8, 2019], Oct. 22, 2018, XP55554267, 14 pages. [cited by applicant]
Anonymous, “Tor (anonymity network)—Wikipedia”, retrieved from Internet URL:https:/!en.wikipedia.org/w/index.pho?title=Tor_(anonymity ne1.work)&oldid=866478846, [retrieved on Feb. 8, 2019], Oct. 30, 2018, 36 pages. [cited by applicant]
Intemational Preliminary Report on Patentability dated May 20, 2021 in connection with International Application No. PCT/US2019/059901, 7 pages. [cited by applicant]