Verifying authenticity of webpages
    1.
    发明授权
    Verifying authenticity of webpages 有权
    验证网页的真实性

    公开(公告)号:US07877784B2

    公开(公告)日:2011-01-25

    申请号:US11811235

    申请日:2007-06-07

    IPC分类号: H04L9/32 H04L9/00

    摘要: A certificate registry system is configured to issue authentication certificates issued to each one of a plurality of information providers and to maintain a root certificate corresponding to all of the authentication certificates. Each one of the authentication certificates links respective authentication information thereof to identification information of a corresponding one of the information providers. Each one of the authentication certificates is devoid of linkage between the corresponding one of the information providers and domain name information thereof. The authentication certificates of the certificate registry are associated in a manner at least partially dependent upon at least one of a particular type of information that the information providers provide, a particular organization that the information providers are associated with, a particular type profession in which the information providers are engaged and a particular geographical region in which the information providers are located.

    摘要翻译: 证书注册系统被配置为发出颁发给多个信息提供者中的每一个的认证证书并维护与所有认证证书相对应的根证书。 每个认证证书将其相应的认证信息链接到相应的一个信息提供者的识别信息。 认证证书中的每一个都没有相应的一个信息提供者和其域名信息之间的链接。 证书注册管理机构的认证证书至少部分地取决于信息提供者提供的特定类型的信息,信息提供者所关联的特定组织,特定类型职业中的至少一个,其中 信息提供者参与信息提供者所在的特定地理区域。

    Verifying authenticity of instant messaging messages
    2.
    发明授权
    Verifying authenticity of instant messaging messages 有权
    验证即时消息消息的真实性

    公开(公告)号:US07975290B2

    公开(公告)日:2011-07-05

    申请号:US11811306

    申请日:2007-06-07

    IPC分类号: H04L9/32 H04L9/00

    摘要: A certificate registry system is configured to issue authentication certificates to each one of a plurality of information providers and to maintain a root certificate corresponding to all of the authentication certificates. Each one of the authentication certificates links respective authentication information thereof to identification information of a corresponding one of the information providers. Each one of the authentication certificates includes a respective Instant Messaging (IM) screen name information of the information provider. The authentication certificates of the certificate registry are associated in a manner at least partially dependent upon at least one of a particular type of information that the information providers provide, a particular organization that the information providers are associated with, a particular type profession in which the information providers are engaged and a particular geographical region in which the information providers are located.

    摘要翻译: 证书注册系统被配置为向多个信息提供者中的每个信息提供者发送认证证书,并且维护与所有认证证书相对应的根证书。 每个认证证书将其相应的认证信息链接到相应的一个信息提供者的识别信息。 每个认证证书包括信息提供者的相应即时消息(IM)屏幕名称信息。 证书注册管理机构的认证证书至少部分地取决于信息提供者提供的特定类型的信息,信息提供者所关联的特定组织,特定类型职业中的至少一个,其中 信息提供者参与信息提供者所在的特定地理区域。

    Verifying authenticity of e-mail messages
    3.
    发明申请
    Verifying authenticity of e-mail messages 审中-公开
    验证电子邮件的真实性

    公开(公告)号:US20080307226A1

    公开(公告)日:2008-12-11

    申请号:US11811236

    申请日:2007-06-07

    IPC分类号: H04L9/32 G06F15/16 H04L9/00

    摘要: A certificate registry system configured to issue authentication certificates to each one of a plurality of information providers and to maintain a root certificate corresponding to all of the authentication certificates, wherein each one of the authentication certificates links respective authentication information thereof to identification information of a corresponding one of the information providers, wherein each one of the authentication certificates is devoid of linkage between the corresponding one of the information providers and e-mail address information thereof, and wherein the authentication certificates of the certificate registry are associated in a manner at least partially dependent upon at least one of a particular type of information that the information providers provide, a particular organization that the information providers are associated with, a particular type profession in which the information providers are engaged and a particular geographical region in which the information providers are located.

    摘要翻译: 一种证书注册系统,被配置为向多个信息提供者中的每一个提供认证证书,并维护与所有认证证书相对应的根证书,其中每个认证证书将其相应认证信息链接到对应的认证证书的识别信息 信息提供者之一,其中每个认证证书中没有相应的一个信息提供者和其电子邮件地址信息之间的链接,并且其中证书注册表的认证证书以至少部分的方式相关联 取决于信息提供者提供的特定类型的信息中的至少一种,信息提供者所关联的特定组织,信息提供者所参与的特定类型的职业以及特定的地理区域 信息提供者所在的位置。

    Verifying authenticity of instant messaging messages
    4.
    发明申请
    Verifying authenticity of instant messaging messages 有权
    验证即时消息消息的真实性

    公开(公告)号:US20080307513A1

    公开(公告)日:2008-12-11

    申请号:US11811306

    申请日:2007-06-07

    IPC分类号: H04L9/32

    摘要: A certificate registry system is configured to issue authentication certificates to each one of a plurality of information providers and to maintain a root certificate corresponding to all of the authentication certificates. Each one of the authentication certificates links respective authentication information thereof to identification information of a corresponding one of the information providers. Each one of the authentication certificates includes a respective Instant Messaging (IM) screen name information of the information provider. The authentication certificates of the certificate registry are associated in a manner at least partially dependent upon at least one of a particular type of information that the information providers provide, a particular organization that the information providers are associated with, a particular type profession in which the information providers are engaged and a particular geographical region in which the information providers are located.

    摘要翻译: 证书注册系统被配置为向多个信息提供者中的每个信息提供者发送认证证书,并且维护与所有认证证书相对应的根证书。 每个认证证书将其相应的认证信息链接到相应的一个信息提供者的识别信息。 每个认证证书包括信息提供者的相应即时消息(IM)屏幕名称信息。 证书注册管理机构的认证证书至少部分地取决于信息提供者提供的特定类型的信息,信息提供者所关联的特定组织,特定类型职业中的至少一个,其中 信息提供者参与信息提供者所在的特定地理区域。

    VERIFYING AUTHENTICITY OF INSTANT MESSAGING MESSAGES
    5.
    发明申请
    VERIFYING AUTHENTICITY OF INSTANT MESSAGING MESSAGES 审中-公开
    验证即时消息信息的正确性

    公开(公告)号:US20110258700A1

    公开(公告)日:2011-10-20

    申请号:US13089602

    申请日:2011-04-19

    IPC分类号: G06F21/00

    摘要: A method comprises performing verification of an IM message sent using a specified Instant Messaging (IM) screen name and received by an information recipient after successful verification of authenticity of an authentication certificate received by the information recipient from the specified IM screen name. Verifying the IM message includes successfully verifying authenticity of the IM message using authentication information contained in the received authentication certificate. The IM message includes an encoded checksum for designated parts of the IM message. Performing verification of the IM message includes verifying authenticity of the encoded checksum.

    摘要翻译: 一种方法包括使用指定的即时消息(IM)屏幕名称发送的IM消息的验证,并且在从所述指定的IM屏幕名称成功验证由所述信息接收者接收到的认证证书的真实性之后由信息接收者接收。 验证IM消息包括使用接收到的认证证书中包含的认证信息成功验证IM消息的真实性。 IM消息包括IM消息的指定部分的编码校验和。 执行IM消息的验证包括验证编码的校验和的真实性。

    Verifying authenticity of webpages
    6.
    发明申请
    Verifying authenticity of webpages 有权
    验证网页的真实性

    公开(公告)号:US20080307222A1

    公开(公告)日:2008-12-11

    申请号:US11811235

    申请日:2007-06-07

    IPC分类号: H04L9/00

    摘要: A certificate registry system is configured to issue authentication certificates issued to each one of a plurality of information providers and to maintain a root certificate corresponding to all of the authentication certificates. Each one of the authentication certificates links respective authentication information thereof to identification information of a corresponding one of the information providers. Each one of the authentication certificates is devoid of linkage between the corresponding one of the information providers and domain name information thereof. The authentication certificates of the certificate registry are associated in a manner at least partially dependent upon at least one of a particular type of information that the information providers provide, a particular organization that the information providers are associated with, a particular type profession in which the information providers are engaged and a particular geographical region in which the information providers are located.

    摘要翻译: 证书注册系统被配置为发出颁发给多个信息提供者中的每一个的认证证书并维护与所有认证证书相对应的根证书。 每个认证证书将其相应的认证信息链接到相应的一个信息提供者的识别信息。 认证证书中的每一个都没有相应的一个信息提供者和其域名信息之间的链接。 证书注册管理机构的认证证书至少部分地取决于信息提供者提供的特定类型的信息,信息提供者所关联的特定组织,特定类型职业中的至少一个,其中 信息提供者参与信息提供者所在的特定地理区域。

    Method and system for combating malware with keystroke logging functionality
    7.
    发明申请
    Method and system for combating malware with keystroke logging functionality 审中-公开
    使用按键记录功能对抗恶意软件的方法和系统

    公开(公告)号:US20100058479A1

    公开(公告)日:2010-03-04

    申请号:US12231435

    申请日:2008-09-03

    IPC分类号: G06F21/00

    CPC分类号: G06F21/54 G06F21/83

    摘要: A method is carried out by a computer system for combating malicious keystroke-logging activities thereon. An operation is performed for generating a plurality of fake keystroke datasets that are each configured to resemble a keystroke dataset generated by keystrokes made on an input device of the computer system while entering sensitive information of a prescribed configuration. An operation is performed for receiving an instance of the sensitive information instance of the prescribed configuration concurrently with generating the fake keystroke datasets. Receiving the sensitive information instance includes a user of the computer system entering the sensitive information instance by performing keystrokes on the input device of the computer system such that a real keystroke dataset corresponding to the sensitive information instance is generated. An operation is performed for embedding the real keystroke dataset within at least a portion of the fake keystroke datasets after receiving the sensitive information instance.

    摘要翻译: 通过计算机系统进行方法来防止其上的恶意击键记录活动。 执行用于产生多个假击键数据集的操作,每个假击键击数据集被配置为类似于在输入规定的配置的敏感信息时在计算机系统的输入设备上进行的按键产生的击键数据集。 执行操作以与生成假击键数据集并发地接收规定配置的敏感信息实例的实例。 接收敏感信息实例包括计算机系统的用户通过在计算机系统的输入设备上执行击键来输入敏感信息实例,从而生成与敏感信息实例相对应的真实击键数据集。 执行操作以在接收到敏感信息实例之后在真实击键数据集的至少一部分内嵌入真实的击键数据集。

    Verifying authenticity of voice mail participants in telephony networks
    9.
    发明申请
    Verifying authenticity of voice mail participants in telephony networks 有权
    验证语音邮件参与者在电话网络中的真实性

    公开(公告)号:US20100054433A1

    公开(公告)日:2010-03-04

    申请号:US12231430

    申请日:2008-09-03

    IPC分类号: H04M1/64

    CPC分类号: H04M3/533 H04L63/0823

    摘要: A method includes receiving an authentication certificate of a voice mail account holder and/or an authentication certificate of a caller wanting to leave a voice mail message the holders' voice mail account. A voice mail apparatus that provides voice mail service for the voice mail account holder performs such receiving. The account holder and/or the caller are authenticated after receiving the authentication certificate of the party being authenticated. Authenticating the account holder and/or the caller is performed using authentication information contained within the respective certificate. After such authentication is successfully performed, a voice mail message record can be created in the account of the account holder. Such creating includes allowing the caller to store the message in the account of the account holder in addition to associating authenticated identification information of the caller with the message and/or providing authenticated identification of the account holder to the caller.

    摘要翻译: 一种方法包括:接收语音邮件账户持有人的认证证书和/或想要留下语音邮件消息的呼叫者的认证证书持有人的语音邮件账号。 为语音邮件帐户持有者提供语音邮件服务的语音邮件装置进行这种接收。 收到认证方认证证书后,账号持有人和/或主叫方进行认证。 使用包含在相应证书内的认证信息来执行认证帐户持有人和/或呼叫者。 在成功执行认证之后,可以在帐户持有人的帐户中创建语音邮件消息记录。 这样的创建包括允许呼叫者将消息存储在帐户持有者的帐户中,除了将呼叫者的认证身份信息与消息相关联和/或向呼叫者提供帐户持有人的认证身份。

    AUTHENTICATION OF ACCESS POINTS IN WIRELESS LOCAL AREA NETWORKS

    公开(公告)号:US20100070771A1

    公开(公告)日:2010-03-18

    申请号:US12211980

    申请日:2008-09-17

    IPC分类号: H04L9/32

    摘要: A method is provided for authenticating an identity of an operator (10) of an access point (AP) (52) of a wireless local area network (WLAN) (50) to a client (40) seeking a connection with the AP (52). The method includes: registering the identity of the operator (10) of the AP (52) with a trusted certificate authority (CA) (20), the registering including providing the CA (20) with (i) identification information identifying the operator (10) and (ii) a public key (12) of the operator (10); creating an authentication certificate (30) including the operator's identification information and the operator's public key (12); signing the certificate (30) with a private key (28) of the CA (20); provisioning the AP (52) with the certificate (30) that was signed with the private key (28) of the CA (20); provisioning the client (40) with a public key (24) of the CA (20), the CA's public key (24) being a corresponding counterpart to the CA's private key (28); sending a certificate request from the client (40) to the AP (52); generating a signature with a private key (14) of the operator (10), the operator's private key (14) being a corresponding counterpart for the operator's public key (12); returning a certificate reply from the AP (52) to the client (40) in response to the request, the reply including the certificate (30) with which the AP (52) was provisioned signed by the AP (52) with the generated signature; using the CA's public key (24) with which the client was provisioned to obtain the operator's public key (12) from the certificate (30) received in the reply; and, using the operator's public key (12) obtained from the certificate (30) received in the reply to verify the signature generated with the operator's private key (14) and used by the AP (52) to sign the certificate (30) received in the reply.