Mobile application security assessment

US9264445B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9264445-B2
Application numberUS-201414480234-A
CountryUS
Kind codeB2
Filing dateSep 8, 2014
Priority dateMay 22, 2012
Publication dateFeb 16, 2016
Grant dateFeb 16, 2016

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

The security of mobile applications may be assessed and used to enhance the security of mobile devices. In one example, a method may include determining security scores of one or more mobile applications, the security scores defining a level of security risk corresponding to the one or more mobile applications. The method may further include receiving a policy relating to mobile applications that are permitted to be used by the mobile device, the policy including a threshold security score value; and receiving the requested security scores. The method may further include restricting use of selected ones of the one or more mobile applications when a security score corresponding to the one or more mobile applications is below the threshold security score value.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: requesting, by a mobile device, one or more security scores of one or more mobile applications, the one or more security scores defining a level of security risk corresponding to the one or more mobile applications, and a security score, of the one or more security scores, being based on: a first security review performed on a mobile application of the one or more mobile applications, the first security review resulting in a modified initial security score including a value within a first range, and a second security review performed on the mobile application, the second security review being different than the first security review, and the second security review resulting in a further modified initial security score including a value within a second range,  the second range including an upper limit that is greater than an upper limit of the first range; receiving, by the mobile device, a policy relating to mobile applications that are permitted to be used by the mobile device, the policy including a threshold security score value; receiving, by the mobile device, the requested one or more security scores; and restricting, by the mobile device, use of a selected mobile application, of the one or more mobile applications, when a security score, of the one or more received security scores, corresponding to the selected mobile application is below the threshold security score value. 2. The method of claim 1 , where the restricting the use of the selected mobile application includes: preventing the selected mobile application from being installed on the mobile device; preventing the selected mobile application from being executed by the mobile device; providing a user of the mobile device with a notification when the selected mobile application is executed by the mobile device; or uninstalling the selected mobile application from the mobile device. 3. The method of claim 1 , further comprising: providing a graphical indication of a plurality of mobile applications that are installed on the mobile device and corresponding security scores of the installed plurality of mobile applications. 4. The method of claim 1 , where the requested one or more security scores correspond to security scores of mobile applications installed at the mobile device. 5. The method of claim 1 , where the requested one or more security scores include security scores determined, at least in part, through a manual analysis of the mobile applications. 6. The method of claim 1 , further comprising: providing, for presentation, the requested one or more security scores. 7. The method of claim 1 , where when requesting the one or more security scores, the method includes: requesting a first security score, of the one or more security scores, for a first mobile application of the one or more mobile applications; and requesting a second security score, of the one or more security scores, for a second mobile application of the one or more mobile applications, when receiving the requested one or more security scores, the method includes: receiving the first security score, and receiving the second security score, and the method further includes: providing, for presentation, the received first security score and the received second security score. 8. A device comprising: a processor to: request one or more security scores for one or more mobile applications, the one or more security scores defining a level of security risk corresponding to the one or more mobile applications, and a security score, of the one or more security scores, being based on: a first security review performed on a mobile application of the one or more mobile applications,  the first security review resulting in a modified initial security score including a value within a first range, and a second security review performed on the mobile application,  the second security review being different than the first security review, and  the second security review resulting in a further modified initial security score including a value within a second range,  the second range including an upper limit that is greater than an upper limit of the first range; receive a policy relating to mobile applications that are permitted to be used by the device, the policy including a threshold security score value; receive the requested one or more security scores; and restrict use of a selected mobile application, of the one or more mobile applications, when a security score, of the one or more received security scores, corresponding to the selected mobile application is below the threshold security score value. 9. The device of claim 8 , where, when restricting the use of the selected mobile application, the processor is to: prevent the selected mobile application from being installed on the device; prevent the selected mobile application from being executed by the device; provide a user of the device with a notification when the selected mobile application is executed by the device; or uninstall the selected mobile application from the device. 10. The device of claim 8 , where the processor is further to: provide a graphical indication of all a plurality of mobile applications that are installed on the device and corresponding security scores of the installed plurality of mobile applications. 11. The device of claim 8 , where the requested one or more security scores correspond to security scores of mobile applications installed at the device. 12. The device of claim 8 , where the requested one or more security scores include security scores determined, at least in part, through a manual analysis of the mobile applications. 13. The device of claim 8 , where the processor is further to: provide, for presentation, the requested one or more security scores. 14. The device of claim 8 , where the processor, when requesting the one or more security scores, is to: request a first security score, of the one or more security scores, for a first mobile application of the one or more mobile applications; and request a second security score, of the one or more security scores, for a second mobile application of the one or more mobile applications, the processor, when receiving the requested one or more security scores, is to: receive the first security score, and receive the second security score, and the processor is further to: provide, for presentation, the received first security score and the received second security score. 15. A non-transitory computer readable medium storing instructions, the instructions comprising: one or more instructions which, when executed by a processor of a device, cause the processor to: request one or more security scores for one or more applications, the one or more security scores defining a level of security risk corresponding to the one or more applications, and a security score, of the one or more security scores, being based on: a first security review performed on an application of the one or more applications,  the first security review resulting in a modified initial security score including a value within a first range, and a second security review performed on the application,  the second security review being different than the first security review, and  the second security review resulting in a further modified initial security score including a value within a second range,  the second range including an upper limit that is greater than an upper limit of the first range; receive a policy relating to app

Assignees

Inventors

Classifications

  • Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity · CPC title

  • G06F21/577Primary

    Assessing vulnerabilities and evaluating computer system security · CPC title

  • Test or assess software · CPC title

  • Vulnerability analysis · CPC title

  • for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9264445B2 cover?
The security of mobile applications may be assessed and used to enhance the security of mobile devices. In one example, a method may include determining security scores of one or more mobile applications, the security scores defining a level of security risk corresponding to the one or more mobile applications. The method may further include receiving a policy relating to mobile applications th…
Who is the assignee on this patent?
Verizon Patent & Licensing Inc
What technology area does this patent fall under?
Primary CPC classification G06F21/577. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Feb 16 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).