US2021006585A1PendingUtilityA1

Distributed Client-Side User Monitoring and Attack System

Assignee: TRUSTWAVE HOLDINGS INCPriority: Oct 12, 2012Filed: Sep 18, 2020Published: Jan 7, 2021
Est. expiryOct 12, 2032(~6.2 yrs left)· nominal 20-yr term from priority
H04L 63/1433G06F 21/577
57
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Methods, systems, and apparatus for use in a distributed client-side user monitoring and attack system are disclosed herein. An example method includes providing a first set of instructions from a security application server to a target application server, the first set of instructions to, when executed, cause a client device to transmit a request for an image to the security application server. In response to the request for the image, a connection is opened between the client device and the security application server. Via the connection opened in response to the request for the image, a second set of instructions is provided to cause the client device to perform a vulnerability test on the target application server and communicate a result of the vulnerability test via the connection.

Claims

exact text as granted — not AI-modified
1 . A method comprising:
 retrieving a first set of instructions from a target server, wherein the first set of instructions, when executed by a processor, cause a client device to transmit a request for an image to a security server;   opening, after the transmitting of the request for the image, a backchannel connection between the client device and the security server;   accessing, via the backchannel connection, a second set of instructions;   simulating, by the processor, an attack on the target application based on the second set of instructions; and   determine, by the processor, vulnerability of the target server based on the simulating of the attack.   
     
     
         2 . The method of  claim 1 , wherein the second set of instructions cause the client device to capture and transmit in real-time user-related data to the security server. 
     
     
         3 . The method of  claim 1 , wherein the simulated attack includes crawling the target server. 
     
     
         4 . The method of  claim 1 , wherein the first set of instructions are script instructions embedded in a webpage. 
     
     
         5 . The method of  claim 1 , wherein the second set of instructions, when executed, cause the client device to communicate the assessed vulnerability of the target server. 
     
     
         6 . The method of  claim 1 , wherein the backchannel connection is implemented using cross-origin resource sharing. 
     
     
         7 . A tangible machine-readable storage disk or storage device comprising executable instructions which, when executed by a processor, cause a client device to at least:
 retrieve a first set of instructions from a target server, wherein the first set of instructions, when executed by at least one processor of a client device, cause the client device to transmit a request for an image to a security application server;   open, after the transmitting of the request for the image, a backchannel connection between the client device and the security application server;   access, via the backchannel connection, a second set of instructions;   lace-bind the second set of instructions with existing instructions on the client device; and   perform, by executing the second set of instructions with the at least one processor, a simulated attack on the target server to assess vulnerability of the target server.   
     
     
         8 . The tangible machine-readable storage disk or storage device of  claim 7 , wherein the second set of instructions further cause the client device to capture and transmit via the back channel connection, user-related data from the client device to the security application server. 
     
     
         9 . The tangible machine-readable storage disk or storage device of  claim 7 , wherein the performing of the simulated attack includes crawling the target server. 
     
     
         10 . The tangible machine-readable storage disk or storage device of  claim 7 , wherein the first set of instructions are script instructions embedded in a webpage. 
     
     
         11 . The tangible machine-readable storage disk or storage device of  claim 7 , wherein the second set of instructions, when executed, further cause the client device to communicate the assessed vulnerability of the target server 
     
     
         17 . The tangible machine-readable storage disk or storage device of  claim 7 , wherein the backchannel connection is implemented using cross-origin resource sharing. 
     
     
         13 . A networked computer system comprising:
 a target application server configured to transmit a first set of instructions to a target application executable on a client device, wherein the client device is separate from the target application server; and   the client device configured to execute the first set of instructions to establish a backchannel communications link with a security application server, wherein the security application server is separate from the target application server and the client device, and wherein the security application server is configured to provide a second set of instructions to the target application executing on the client device via the backchannel communications link, wherein the second set of instructions, when executed by the processor, cause the target application to perform a simulated attack on the target application server.   
     
     
         14 . The system of  claim 13 , wherein the second set of instructions cause the client device to:
 communicate an assessed vulnerability of the target application server as a result of the execution of the second set of instructions to the security application server via the backchannel communications link;   capture in real-time user-related data from the client device; and   transmit the user-related data from the client device to the security application server.   
     
     
         15 . The system of  claim 13 , wherein the simulated attack includes crawling the target application server. 
     
     
         16 . The system of  claim 13 , wherein the first set of instructions are script instructions embedded in a webpage. 
     
     
         17 . The system of  claim 13 , wherein the target application server is configured to provide a response to the second set of instructions performed by the target application. 
     
     
         18 . The system of  claim 13 , wherein the communications link is implemented using cross-origin resource sharing. 
     
     
         19 . The system of  claim 13 , wherein the backchannel communication link comprises one or more of WebSockets, Ajax, WebWorkers, Image Sockets, HTTP/HTTPs, and Iframes. 
     
     
         20 . The system of  claim 13 , wherein the second set of instructions cause the client device to capture in real-time user-related data from the client device, then transmit the user-related data from the client device to the security application server.

Join the waitlist — get patent alerts

Track US2021006585A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.