-
公开(公告)号:US11876814B2
公开(公告)日:2024-01-16
申请号:US18118863
申请日:2023-03-08
发明人: Itamar Azulay , Guy Lewin , Sharon Lifshits
IPC分类号: G06F15/173 , H04L9/40 , H04L67/561 , H04L67/02 , H04L67/06 , H04L67/1097
CPC分类号: H04L63/1416 , H04L63/1425 , H04L63/20 , H04L67/02 , H04L67/06 , H04L67/1097 , H04L67/561
摘要: The disclosure is directed towards proxy services for the secure uploading of file-system tree structures. A method includes receiving, at a web security service, an indication that client device to upload content to a storage cloud provider. The proxy service performs a security scan of the content while the content is stored on the client device. A security and/or a privacy concern is identified in the content stored on the client device. A security and/or privacy mitigation action is performed in response to identifying the security and/or privacy concern.
-
公开(公告)号:US10922388B2
公开(公告)日:2021-02-16
申请号:US16199973
申请日:2018-11-26
发明人: Itamar Azulay , Yossi Haber
IPC分类号: G06F21/50 , G06F21/54 , G06F21/12 , G06F21/55 , H04L29/06 , H04L29/08 , G06F16/955 , G06F11/34 , G06F40/14 , G06F40/154 , G06F40/166 , G06F21/62
摘要: Methods, systems, and media are shown for session control by a proxy service of client-side applications in a client. A service request from a client is received by the proxy service and forwarded to a service provider, which sends a service response with a document. Event monitoring code is injected into the document and the response is forwarded to the client. The event monitoring code intercepts a user action and sends a query to the proxy service to determine whether the user action is permitted. The proxy service checks the user action against access data defined for the document and sends a query response to the event monitoring code indicating whether the user action is permitted. If the user action is permitted, the event monitoring code allows normal execution flow. If the user action is denied, the code blocks further execution.
-
公开(公告)号:US11770439B2
公开(公告)日:2023-09-26
申请号:US17839919
申请日:2022-06-14
发明人: Guy Lewin , Itamar Azulay , Yossi Haber
IPC分类号: H04L67/02 , H04L9/40 , H04L67/2895 , G06F16/957 , G06F16/951 , G06F8/30 , G06F40/143 , H04L67/562
CPC分类号: H04L67/02 , G06F8/30 , G06F16/951 , G06F16/9574 , G06F40/143 , H04L63/0218 , H04L63/0227 , H04L63/0281 , H04L67/2895 , H04L67/562
摘要: A proxy server to receive a request from a client to a webserver and a response corresponding with the request from the webserver to the client is disclosed. The request is wrapped, and a wrapped request is received at the proxy server. The wrapped request is read at the proxy server. Metadata is added to a response corresponding with the wrapped request at the proxy server. The metadata can be based on the read wrapped request or the corresponding response.
-
公开(公告)号:US11611629B2
公开(公告)日:2023-03-21
申请号:US15930927
申请日:2020-05-13
发明人: Meir Blachman , Itamar Azulay , Guy Lewin
IPC分类号: H04L67/561 , G06F16/958 , H04L41/06 , H04L9/40 , H04L67/562
摘要: An example inline frame monitor is disclosed. The inline frame monitor injects monitoring logic into a document object model to monitor an activity within a dynamically loaded inline frame of a web page. Data regarding the activity within the dynamically loaded inline frame is received. A policy is applied to validate or invalidate the activity within the dynamically loaded inline frame.
-
公开(公告)号:US20210360080A1
公开(公告)日:2021-11-18
申请号:US15930927
申请日:2020-05-13
发明人: Meir Blachman , Itamar Azulay , Guy Lewin
IPC分类号: H04L29/08 , H04L29/06 , H04L12/24 , G06F16/958
摘要: An example inline frame monitor is disclosed. The inline frame monitor injects monitoring logic into a document object model to monitor an activity within a dynamically loaded inline frame of a web page. Data regarding the activity within the dynamically loaded inline frame is received. A policy is applied to validate or invalidate the activity within the dynamically loaded inline frame.
-
公开(公告)号:US20210103461A1
公开(公告)日:2021-04-08
申请号:US16593985
申请日:2019-10-05
发明人: Alexander Esibov , Itamar Azulay
摘要: Systems and methods are provided for managing dynamic controls over access to computer resources and, even more particularly, for evaluating and re-evaluating dynamic conditions and changes associated with user sessions. The systems and methods are configured to automatically make a determination as to whether new or additional authentication credentials are required for a user that is already authorized for accessing resources in a user session, in response to triggering events such as the identification of a new or changed condition associated with the user session.
-
公开(公告)号:US11902334B2
公开(公告)日:2024-02-13
申请号:US17355691
申请日:2021-06-23
IPC分类号: H04L9/40
CPC分类号: H04L63/205 , H04L63/0281 , H04L63/1416 , H04L63/1425 , H04L63/1475
摘要: The disclosure is directed towards controlling the persistency of information provided to a service worker. A method includes receiving a response that includes response data. The response is received at a security service and was transmitted by a second computing device in response to receiving an information request from a first computing device. The first computing device implements a service worker. Sensitive data included in the response data is identified. The response includes caching instructions that instruct the service worker to cache the sensitive data at the first computing device. In response to identifying the sensitive data, the caching instructions are updated such that any portion of the response data that the updated caching instructions instruct the service worker to cache at the first computing device excludes the sensitive data. The updated response is transmitted to the first computing device and includes the response data and the updated caching instructions.
-
公开(公告)号:US11768699B2
公开(公告)日:2023-09-26
申请号:US16593985
申请日:2019-10-05
发明人: Alexander Esibov , Itamar Azulay
CPC分类号: G06F9/468 , G06F9/5011 , G06F21/32 , G06F21/564 , G06N20/00 , G06F2209/5013 , G06F2221/2141
摘要: Systems and methods are provided for managing dynamic controls over access to computer resources and, even more particularly, for evaluating and re-evaluating dynamic conditions and changes associated with user sessions. The systems and methods are configured to automatically make a determination as to whether new or additional authentication credentials are required for a user that is already authorized for accessing resources in a user session, in response to triggering events such as the identification of a new or changed condition associated with the user session.
-
公开(公告)号:US20220311820A1
公开(公告)日:2022-09-29
申请号:US17839919
申请日:2022-06-14
发明人: Guy Lewin , Itamar Azulay , Yossi Haber
IPC分类号: H04L67/02 , H04L9/40 , H04L67/2895 , G06F16/957 , G06F16/951 , G06F8/30 , G06F40/143 , H04L67/562
摘要: A proxy server to receive a request from a client to a webserver and a response corresponding with the request from the webserver to the client is disclosed. The request is wrapped, and a wrapped request is received at the proxy server. The wrapped request is read at the proxy server. Metadata is added to a response corresponding with the wrapped request at the proxy server. The metadata can be based on the read wrapped request or the corresponding response.
-
公开(公告)号:US12032647B2
公开(公告)日:2024-07-09
申请号:US17838789
申请日:2022-06-13
IPC分类号: G06F17/00 , G06F8/74 , G06F16/958 , G06F40/154
CPC分类号: G06F16/958 , G06F8/74 , G06F40/154
摘要: A tenant network of a cloud services platform performs the rewriting of code included in a web page. For example, a proxy service communicatively coupled to a plurality of browser applications belonging to the same tenant network and a server receives a request, from a first browser, for a web page hosted by the server. The web page is returned to the proxy service, and the proxy service identifies code component(s) thereof for rewriting. The proxy service provides the identified code component(s) to a second browser included in the same tenant network as the first browser that is configured to rewrite the code component(s). After rewriting the code component, the second browser provides the rewritten code component(s) to the proxy service, which forwards the web page, along with the rewritten code component(s), to the first browser for execution and rendering.
-
-
-
-
-
-
-
-
-