IP Library Granted Patent US 9,607,176
Granted Patent B2
US 9,607,176 · App. 14/963,093 · Granted Mar 28, 2017

Secure copy and paste of mobile app data

Inventors: Mansu Kim (Cupertino, CA); Suresh Kumar Batchu (Milpitas, CA); Joshua Sirota (Los Altos, CA)
Assignee: MOBILE IRON, INC.
G06F21/629G06F21/554G06F21/606G06F21/78G06F2221/2149
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,607,176
App. No.
14/963,093
Granted
Mar 28, 2017
Kind
B2
Abstract

Secure transfer of mobile application content is disclosed. A state-related event associated with a managed application in a managed set of applications may be detected. It may be determined that content from the managed application is stored at a public storage location on a mobile device. At least a portion of the content may be transferred to a secure storage location accessible to the managed set.

Claims (64)

1. A method, comprising:

detecting a state-related event affecting accessibility of content from a managed application included in a set of a managed applications;

in response to detecting the state-related event, determining whether the content is stored at a public storage location on a mobile device;

at least partially in response to the detected state-related event and to determining that the content is stored at the public storage location on the mobile device, securing the content, wherein the securing of the content includes transferring the content to a secure storage location on the mobile device, and wherein the secure storage location is accessible to the set of managed applications and is not accessible to applications not included in the set of managed applications;

receiving, in a context of a second managed application, a content paste command;

retrieving, based at least in part on the content paste command, the content from the public storage location, wherein the content was moved from the secure storage location to the public storage location; and

providing access to the content in the context of the second managed application.

2. The method of claim 1 , wherein the securing of the content includes:

encrypting the content.

3. The method of claim 1 , further comprising:

detecting, at a second managed application, a second state-related event;

determining that the content is stored at the secure storage location; and

transferring the content from the secure storage location to the public storage location.

4. The method of claim 1 , further comprising:

detecting, in a context of the managed application, a second state-related event;

determining that the content is stored at the secure storage location; and

transferring the content from the secure storage location to the public storage location.

5. The method of claim 1 , further comprising providing notification information associated with the content to the public storage location that is accessible to one or more applications not included in the set of managed applications.

6. The method of claim 5 , further comprising:

receiving, in a context of a non-managed application, a content paste indication;

retrieving the notification information from the public storage location; and

providing, in the context of the non-managed application, a display including at least a portion of the notification information.

7. The method of claim 1 , wherein the public storage location is accessible to at least one application not included in the set of managed applications.

8. The method of claim 1 , wherein the securing of the content comprises:

generating secured content based at least in part on the content stored at the public storage location; and

replacing the content stored at the public storage location with the secured content.

9. The method of claim 1 , wherein one or more of the detecting, determining and securing steps are performed by one or more of a library associated with the managed application, the managed application, and a management agent.

10. The method of claim 1 , wherein the determining of whether the content is stored at the public storage location includes:

determining, at least in part in response to the detected state-related event, that the content is stored at the public storage location.

11. The method of claim 1 , further comprising:

receiving, in a context of the managed application, a content transfer indication associated with the content; and

providing, based at least in part on the content transfer indication, the content to the public storage location, such that the content provided to the public location is accessible to at least one application that is not included in the set of managed applications.

12. The method of claim 11 , further comprising removing the content from the context of the managed application.

13. The method of claim 1 , wherein the state-related event includes a transition of the managed application from an active state to an inactive state in conjunction with a transition of an application not included in the managed set from an inactive state to an active state.

14. The method of claim 1 , wherein after the content is secured, the secured content is not accessible to an application not included in the set of managed applications.

15. A system, comprising:

a processor; and

a memory coupled with the processor, wherein the memory is configured to provide the processor with instructions which when executed cause the processor to:

detect a state-related event affecting accessible of content from a managed application included in a set of managed applications;

in response to detecting the state-related event, determine whether the content is stored at a public storage location on a mobile device;

at least partially in response to the detected state-related event and to determining that the content is stored at the public storage location on the mobile device, securing the content, wherein the securing of the content includes transferring the content to a secure storage location on the mobile device, and wherein the secure storage location is accessible to the set of managed applications and is not accessible to applications not included in the set of managed applications;

receive, in a context of a second managed application, a content paste command;

retrieve, based at least in part on the content paste command, the content from the public storage location, wherein the content was moved from the secure storage location to the public storage location; and

provide access to the content in the context of the second managed application.

16. The system of claim 15 , wherein the processor is configured to secure the content at least in part by:

encrypting the content.

17. The system of claim 15 , wherein the memory is further configured to provide the processor with instructions which when executed cause the processor to:

detect, at a second managed application, a second state-related event;

determine that the content is stored at the secure storage location; and

transfer the content from the secure storage location to the public storage location.

18. The system of claim 15 , wherein the memory is further configured to provide the processor with instructions which when executed cause the processor to:

detect, in a context of the managed application, a second state-related event;

determine that the content is stored at the secure storage location; and

transfer the content from the secure storage location to the public storage location.

19. The system of claim 15 , wherein the state-related event includes a transition of the managed application from an active state to an inactive state in conjunction with a transition of an application not included in the managed set from an inactive state to an active state.

20. A computer program product, the computer program product being embodied in a tangible non-transitory computer readable storage medium and comprising computer instructions for:

detecting a state-related event affecting an accessibility of content from a managed application in a set of managed applications;

in response to detecting the state-related event, determining whether the content is stored at a public storage location on a mobile device;

at least partially in response to the detected state-related event and to determining that the content is stored at the public storage location on the mobile device, securing the content, wherein the securing of the content includes transferring the content to a secure storage location on the mobile device, and wherein the secure storage location is accessible to the set of managed applications and is not accessible to applications not included in the set of managed applications;

receiving, in a context of a second managed application, a content paste command;

retrieving, based at least in part on the content paste command, the content from the public storage location, wherein the content was moved from the secure storage location to the public storage location; and

providing access to the content in the context of the second managed application.

21. The computer program product recited in claim 20 , further comprising computer instructions for:

encrypting the content.

Assignments (7)
CORRECTIVE ASSIGNMENT TO CORRECT THE PROPERTY 14633493 WHICH WAS ENTERED INCORRECTLY AS 14633793 PREVIOUSLY RECORDED ON REEL 71176 FRAME 315. ASSIGNOR(S) HEREBY CONFIRMS THE FIRST LIEN NEWCO SECURITY AGREEMENT. Recorded Nov 10, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 073818/0515 →
FIRST LIEN NEWCO SECURITY AGREEMENT Recorded May 5, 2025
From: PULSE SECURE, LLC; IVANTI, INC.; IVANTI US LLC; IVANTI SECURITY HOLDINGS LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 071176/0315 →
SECURITY INTEREST Recorded May 2, 2025
From: IVANTI, INC.
To: ALTER DOMUS (US) LLC
Reel/Frame 071164/0482 →
NOTICE OF SUCCESSION OF AGENCY FOR SECURITY INTEREST AT REEL/FRAME 054665/0873 Recorded Apr 29, 2025
From: BANK OF AMERICA, N.A., AS RESIGNING AGENT
To: ALTER DOMUS (US) LLC, AS SUCCESSOR AGENT
Reel/Frame 071123/0386 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 25, 2022
From: MOBILEIRON, INC.
To: IVANTI, INC.
Reel/Frame 061327/0751 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; INVANTI, INC.; MOBILEIRON, INC.; INVANTI US LLC
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 054665/0873 →
SECURITY INTEREST Recorded Dec 9, 2020
From: CELLSEC, INC.; PULSE SECURE, LLC; IVANTI, INC.; MOBILEIRON, INC.; IVANTI US LLC
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 054665/0062 →
Continuity (3)
Continuation 14189810 · Feb 25, 2014
Provisional Application 61768635 · Feb 25, 2013
Related Publication 20160092690A1 · Mar 31, 2016