IP Library Granted Patent US 9,558,113
Granted Patent B2
US 9,558,113 · App. 15/078,435 · Granted Jan 31, 2017

Secure garbage collection on a mobile device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,558,113
App. No.
15/078,435
Granted
Jan 31, 2017
Kind
B2
Abstract

Methods and systems for performing garbage collection involving sensitive information on a mobile device are described herein. Secure information is received at a mobile device over a wireless network. The sensitive information is extracted from the secure information. A software program operating on the mobile device uses an object to access the sensitive information. Secure garbage collection is performed upon the object after the object becomes unreachable.

Claims (46)

1. A method for performing secure garbage collection involving unreferenced data objects on a computing device, the method comprising:

receiving information over a network;

creating a first data object corresponding to the received information;

storing the first data object in an addressable storage memory on the computing device;

extracting a second data object from the first data object, wherein the second data object is accessible using a third data object;

unreferencing the third data object;

in response to determining that the third data object has become unreferenced, calling a wipe function to overwrite the addressable storage memory of the computing device where the first, second, and third data objects are stored; and

reclaiming the addressable storage memory where the first, second, and third data objects were stored.

2. The method of claim 1 , wherein the first data object is a secure data object comprising an encrypted message, the second data object is a sensitive data object comprising an unencrypted message of the first data object, and the third data object is a user interface object.

3. The method of claim 2 , wherein said extracting further comprises:

generating, by a private key, the second data object from the first data object.

4. The method of claim 1 , wherein the first, second, and third data objects are indexed inside of storage elements in a reference table in the addressable storage memory.

5. The method of claim 1 , wherein said unreferencing is performed in response to receiving a trigger event, the trigger event comprising at least a timeout event, a holster event, a cradle event, a screen lock event, a screen unlock event, an application event, a time zone alteration event, or a communication event.

6. The method of claim 1 , wherein the first data object is an S/MIME encrypted message.

7. The method of claim 6 , wherein the second data object is an unencrypted version of the S/MIME message.

8. One or more nontransitory computer readable media storing computer executable instructions that, when executed by a processor, cause a computing device to perform secure garbage collection involving unreferenced data objects on the computing device by:

receiving information over a network;

creating a first data object corresponding to the received information;

storing the first data object in an addressable storage memory on the computing device;

extracting a second data object from the first data object, wherein the second data object is accessible using a third data object;

unreferencing the third data object;

in response to determining that the third data object has become unreferenced, calling a wipe function to overwrite the addressable storage memory of the computing device where the first, second, and third data objects are stored; and

reclaiming the addressable storage memory where the first, second, and third data objects were stored.

9. The computer readable media of claim 8 , wherein the first data object is a secure data object comprising an encrypted message, the second data object is a sensitive data object comprising an unencrypted message of the first data object, and the third data object is a user interface object.

10. The computer readable media of claim 9 , wherein said extracting further comprises:

generating, by a private key, the second data object from the first data object.

11. The computer readable media of claim 8 , wherein the first, second, and third data objects are indexed inside of storage elements in a reference table in the addressable storage memory.

12. The computer readable media of claim 8 , wherein said unreferencing is performed in response to receiving a trigger event, the trigger event comprising at least a timeout event, a holster event, a cradle event, a screen lock event, a screen unlock event, an application event, a time zone alteration event, or a communication event.

13. The computer readable media of claim 8 , wherein overwriting the unreferenced object includes overwriting the memory location where the unreferenced object is stored with a sequence of bits comprising all zeros, all ones, or random data.

14. The computer readable media of claim 8 , wherein the computing device is a wireless two-way communication device.

15. The computer readable media of claim 8 , wherein the third data object is a user interface object configured to display the sensitive information.

16. A mobile device, comprising:

a processor; and

memory storing computer readable instructions that, when executed by the processor, cause the mobile device to perform secure garbage collection by:

receiving, wirelessly, information over a network;

creating a first data object corresponding to the received information;

storing the first data object in an addressable storage memory on the mobile device;

extracting a second data object from the first data object, wherein the second data object is accessible using a third data object;

unreferencing the third data object;

in response to determining that the third data object has become unreferenced, calling a wipe function to overwrite the addressable storage memory of the mobile device where the first, second, and third data objects are stored; and

reclaiming the addressable storage memory where the first, second, and third data objects were stored.

17. The mobile device of claim 16 , wherein the first data object is a secure data object comprising an encrypted message, the second data object is a sensitive data object comprising an unencrypted message of the first data object, and the third data object is a user interface object.

18. The mobile device of claim 17 , wherein said extracting further comprises:

generating, by a private key, the second data object from the first data object.

19. The mobile device of claim 16 , wherein the first, second, and third data objects are indexed inside of storage elements in a reference table in the addressable storage memory.

20. The mobile device of claim 16 , wherein said unreferencing is performed in response to receiving a trigger event, the trigger event comprising at least a timeout event, a holster event, a cradle event, a screen lock event, a screen unlock event, an application event, a time zone alteration event, or a communication event.

Assignments (2)
CHANGE OF NAME Recorded Nov 7, 2023
From: CITRIX SYSTEMS INTERNATIONAL GMBH
To: CLOUD SOFTWARE GROUP SWITZERLAND GMBH
Reel/Frame 065478/0561 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2016
From: BLACKBERRY LIMITED
To: CITRIX SYSTEMS INTERNATIONAL GMBH
Reel/Frame 040062/0746 →