|
Match
|
Document |
Document Title |
|
|
7620995 |
Identifying dependencies of an application upon a given security context
A technique for identifying dependencies of an application upon a given security context includes monitoring security checks generated by the application. The security checks requiring elevated...
|
|
|
7617393 |
Implementation and use of PII data access control facility employing personally identifying information labels and purpose serving function sets
A data access control facility is implemented by assigning personally identifying information (PII) classification labels to PII data objects, with each PII data object having one PII...
|
|
|
7613921 |
Method and apparatus for remotely provisioning software-based security coprocessors
A virtual security coprocessor is created in a first processing system. The virtual security coprocessor is then transferred to a second processing system, for use by the second processing system....
|
|
|
7613701 |
Matching of complex nested objects by multilevel hashing
A computer-based method with multilevel hashing for lookup of a complex nested object (such as access control list) which has a plurality of nesting levels and each level has at least one element....
|
|
|
7607010 |
System and method for network edge data protection
Disclosed are systems and methods which examine information communication streams to identify and/or eliminate malicious code, while allowing the good code to pass unaffected. Embodiments operate...
|
|
|
7606370 |
System, method and computer program product for updating security criteria in wireless networks
A system, method and computer program product are provided. In use, a key is distributed to a plurality of nodes of a wireless network for use in securing the nodes during use of the wireless...
|
|
|
7600117 |
Mandatory access control scheme with active objects
Access control is mediated by a set of 2-tuple labels or attributes which are associated with subject and object entities, respectively. Subject entitles, such as processes, have separate read and...
|
|
|
7591021 |
Object model document for obfuscating object model therein
A persisted object model is loaded from an object model document comprising a compiled executable file having an image source, a security source, and a loader. The loader is instantiated, and...
|
|
|
7590868 |
Method and apparatus for managing encrypted data on a computer readable medium
A method and apparatus for managing encrypted data on a computer readable medium wherein an encryption key is determined for a received quantum of data. The quantum of data is encrypted according...
|
|
|
7587595 |
Method and apparatus for providing software-based security coprocessors
A virtual security coprocessor framework supports creation of at least one device model to emulate a predetermined cryptographic coprocessor. In one embodiment, the virtual security coprocessor...
|
|
|
7587594 |
Dynamic out-of-process software components isolation for trustworthiness execution
Preventing uncontrolled access to an execution environment of a first component object by a second component object. A system includes a memory area storing the first component object, the second...
|
|
|
7584354 |
Implementing portable content protection to secure secrets
A source-level compiler may randomly select compilation conventions to implement portable content protection, securing the secrets embedded in a program by shuffling associated data. The program...
|
|
|
7577659 |
Interoperable credential gathering and access modularity
A credential is translated with one of different credential provider modules each translating a corresponding different type of credential into a common protocol. The translated credential is...
|
|
|
7574598 |
Identifying and coalescing identical objects encrypted with different keys
Cryptographic protocols and methods of employing the same are described. The described protocols advantageously enable two or more identical encryptable objects that are coded for encryption with...
|
|
|
7571329 |
Method of storing unique constant values
Secure storage and retrieval of a unique value associated with a device to/from a memory of a processing system. In at least one embodiment, the device needs to be able to access the unique value...
|
|
|
7567674 |
Content transmission apparatus, content reception apparatus, content transmission program, and content reception program
A content transmission method, a content reception method, an apparatus and a computer program using same, that improve the efficiency of descrambling a scrambled content, make the management of...
|
|
|
7565684 |
Declarative configuration of enterprises services
Methods and apparatus, including computer program products, that include providing to a client a definition of an object class representing attributes of a first collection of data elements and a...
|
|
|
7565549 |
System and method for the managed security control of processes on a computer system
Managing and controlling the execution of software programs with a computing device to protect the computing device from malicious activities. A protector system implements a two-step process to...
|
|
|
7565533 |
Systems and methods for providing object integrity and dynamic permission grants
Systems and methods for securing the content integrity of and access to object data and code in a distributed system. Content protecting URLs provide a mechanism for checking code or data...
|
|
|
7565532 |
Secure file system server architecture and methods
A data server platform includes a security file system layer interposed between the platform operating system kernel and file system. The secure file system layer is structured to implement a file...
|
|
|
7549056 |
System and method for processing and protecting content
Systems and methods that process and protect content are provided. In one example, a system may include, for example, a first device coupled to a second device. The first device may include, for...
|
|
|
7549054 |
System, method, service method, and program product for managing entitlement with identity and privacy applications for electronic commerce
A system, method, service method, and program product for defining and/or managing entitlements and/or authentication entitlements to resources in a computer networking environment is disclosed....
|
|
|
7549045 |
Delegate registration in a managed code execution environment
A runtime execution environment may implement code access security by annotating a delegate to a publisher with a list of potential callers to the publisher. If a permission verification process...
|
|
|
7549044 |
Block-level storage device with content security
A block-level storage device is provided that implements a digital rights management (DRM) system. In response to receiving a public key from an associated host system, the storage device...
|
|
|
7545938 |
Digital watermarking which allows tampering to be detected on a block-specific basis
An apparatus for generating codes includes a quantization unit which generates quantization coefficients by performing discrete wavelet transform with respect to each of tiles into which an image...
|
|
|
7543145 |
System and method for protecting configuration settings in distributed text-based configuration files
System and methods for protecting sensitive data stored in a text-based configuration file. In a web server application, data associated with sensitive information such as connection information...
|
|
|
7539862 |
Method and system for verifying and updating the configuration of an access device during authentication
A system and method is provided to verify configuration of a client access device requesting access to a network by establishing a communications link between a network access system and the client...
|
|
|
7536711 |
Structured-document processing
Provides structured-document processing device for detecting a relationship of approximateness between structured documents effectively. State-transition-diagram information storing means stores...
|
|
|
7536549 |
Methods for generating a partially encrypted and compressed database and decrypting and decompressing the database
It is an object of the present invention to provide encryption and decryption apparatuses capable of selecting a part of file portions handled on a computer, and encrypting and decrypting only the...
|
|
|
7529932 |
Removable medium and system and method for writing data to same
A method of a computer system controlling writing of data to a removable medium includes communicating a unique identification (ID) of the removable medium to the computer system, intercepting a...
|
|
|
7526645 |
Electronic document authenticity assurance method and electronic document disclosure system
An electronic document authenticity assurance technique and an information disclosure system both of which can compatibly realize the assurance of the authenticity of disclosure documents and the...
|
|
|
7523309 |
Method of restricting access to emails by requiring multiple levels of user authentication
Requiring a user of a recipient's email account or application to enter a high security level authentication (e.g., password) in order to be able to view the contents or the existence of a high...
|
|
|
7522727 |
Method and apparatus for providing authentication in a communication system
A method includes receiving an authentication request from a mobile station ( 401 ) and determining whether to forward the request to an authentication agent. When it is determined to forward the...
|
|
|
7519814 |
System for containerization of application sets
A system is disclosed having servers with operating systems that may differ, operating in disparate computing environments, wherein each server includes a processor and an operating system...
|
|
|
7512976 |
Method and apparatus for XSL/XML based authorization rules policy implementation
A system and method for implementing XSL/XML based authorization rules policy on a given set of data. An authorization rules engine is created which uses authorization rules defined in XSL to...
|
|
|
7512793 |
Page encryption system
Text containing files are encrypted by first formatting the files for display. The display-formatted files are then run length coded to form files indicating the information. The files are encrypted.
|
|
|
7512792 |
Reference monitor method for enforcing information flow policies
A reference monitor system, apparatus, computer program product and method are provided. In one illustrative embodiment, elements of the data processing system are associated with security data...
|
|
|
7509574 |
Method and system for reducing delimiters
A method for encoding data documents includes reading at least a portion of a data node from a markup-language document and determining a node type of the data node. The method further includes...
|
|
|
7506170 |
Method for secure access to multiple secure networks
Disclosed is a method for providing secure access to multiple secure networks from a single workstation. The architecture can use multiple layers of protection to isolate applications running at...
|
|
|
7503062 |
Method and apparatus for enabling database privileges
Methods for enabling database privileges are provided. The methods eliminate strict dependency on tradition password, or “secret” based security systems. Instead, database privileges are...
|
|
|
7502940 |
Method to protect software against unwanted use with a “conditional branch” principle
The invention concerns a process to protect a vulnerable software working on a data processing system against its unauthorized usage using a processing and memorizing unit. The process comprises...
|
|
|
7496768 |
Providing secure input and output to a trusted agent in a system with a high-assurance execution environment
Techniques are disclosed to provide security for user output and input in which a first, host operating system is used along with a second, high assurance operating system (nexus), where the first...
|
|
|
7496753 |
Data encryption interface for reducing encrypt latency impact on standard traffic
Methods and apparatus that may be utilized in systems to reduce the impact of latency associated with encrypting data on non-encrypted data are provided. Secure and non-secure data may be routed...
|
|
|
7493497 |
Digital identity device
A digital identity device for uniquely identifying legal entities. The digital identity device is used for secure electronic communications.
|
|
|
7490333 |
Capability-based access control for applications in particular co-operating applications in a chip card
The invention relieves an application programmer of the responsibility for managing access rights, by providing application code that is independent of the protection in a chip card. When an...
|
|
|
7484245 |
System and method for providing data security
A system and method protects security of data. The data is packaged together with one or more permissions that designate what actions are allowed with respect to the data. The package can be opened...
|
|
|
7484239 |
Detecting heap and stack execution in the operating system using regions
A call to a critical operating system function is stalled. The pregion and pregion type associated with the location of a call module originating the call is determined. In one embodiment, when the...
|
|
|
7484105 |
Flash update using a trusted platform module
An update utility requests a signature verification of the utility's signature along with a request to unlock the flash memory stored in the utility. A trusted platform module (“TPM”) performs...
|
|
|
7484103 |
Method and system for the information protection of digital content
The present invention relates to the information protection of digital content transferred by streaming and download service through wire or wireless Internet network. The information protection...
|
|
|
7484095 |
System for communicating program data between a first device and a second device
A system for communicating program data between devices includes a first device configured to disassemble a program file comprising program data into at least one logical data unit, partition each...
|