Methods and systems for identifying a compromised device through its unmanaged profile

    公开(公告)号:US11599639B2

    公开(公告)日:2023-03-07

    申请号:US16541795

    申请日:2019-08-15

    摘要: Methods and devices for determining whether a mobile device has been compromised. The mobile device has a managed portion of memory and an unmanaged portion of memory, a managed profile and an unmanaged profile, and the managed profile includes files stored in the managed portion of memory and the unmanaged profile includes files stored in the unmanaged portion of memory. The managed profile is governed by a device policy set by a remote administrator. File tree structure information for the unmanaged profile of the mobile device is obtained that details at least a portion of a tree-based structure of folders and files in the unmanaged portion of memory. It is determined from the file tree structure information that the mobile device has been compromised and, based on that determination, an action is taken.

    Managing access to protected data file content

    公开(公告)号:US11586750B2

    公开(公告)日:2023-02-21

    申请号:US16360165

    申请日:2019-03-21

    IPC分类号: G06F21/62

    摘要: A method of managing access to protected file content is disclosed. The method includes: receiving a request to open a first file stored on the computing device; determining that the first file is a protected file; in response to determining that the first file is a protected file: identifying a first application that is suitable for opening the first file; determining that the first application is an unsecured application; and in response to determining that the first application is an unsecured application, locking the first application to prevent unauthorized access of application data of the first application in a locked state.

    Mobile communications device providing heuristic security authentication features and related methods
    8.
    发明授权
    Mobile communications device providing heuristic security authentication features and related methods 有权
    提供启发式安全认证功能和相关方法的移动通信设备

    公开(公告)号:US09507925B2

    公开(公告)日:2016-11-29

    申请号:US14887315

    申请日:2015-10-19

    摘要: A mobile communications device includes a plurality of first input devices capable of passively collecting input data, a second input device(s) capable of collecting response data based upon a challenge, and a processor capable of determining a level of assurance (LOA) that possession of the mobile communications device has not changed based upon a statistical behavioral model and the passively received input data, and comparing the LOA with a security threshold. When the LOA is above the security threshold, the processor may be capable of performing a given mobile device operation without requiring response data from the second input device(s). When the LOA falls below the security threshold, the processor may be capable of generating the challenge, performing the given mobile device operation responsive to valid response data, and adding recent input data to the statistical behavioral model responsive to receipt of the valid response data.

    摘要翻译: 一种移动通信设备包括能够被动地收集输入数据的多个第一输入设备,能够基于挑战收集响应数据的第二输入设备,以及能够确定所拥有的保证级别(LOA)的处理器 的移动通信设备没有根据统计行为模型和被动接收的输入数据进行改变,并且将LOA与安全阈值进行比较。 当LOA高于安全阈值时,处理器可能能够执行给定的移动设备操作,而不需要来自第二输入设备的响应数据。 当LOA低于安全阈值时,处理器可以能够产生挑战,响应于有效响应数据执行给定的移动设备操作,以及响应于接收到有效响应数据将最近的输入数据添加到统计行为模型。