Patent classifications
H04L61/302
SYSTEMS AND METHODS FOR PRESERVING PRIVACY OF A REGISTRANT IN A DOMAIN NAME SYSTEM ("DNS")
A method and a computer system is provided for executing the method for providing a registration data directory service (RDDS). The method includes obtaining, at a RDDS, a RDDS query comprising a location assertion from a RDDS client from a RDDS client; providing, by the RDDS, a request for personally identifying information (PII) for the RDDS query from a privacy provider, wherein the request comprises the location assertion; obtaining, by the RDDS, the PII for the RDDS query; and providing, by the RDDS, a response to the RDDS query to the RDDS client, wherein the response comprises PII.
Multi-Computer System for Detecting and Controlling Malicious Email
Aspects of the disclosure relate to identifying and processing suspicious emails. In some embodiments, a computing device may receive an email associated with an email domain. Subsequently, the computing device may determine a registration date of the email domain. The computing device may then compare the determined registration date to a first threshold date. Thereafter, responsive to determining that the determined registration date is before the first threshold date, the computing device may transmit the email to a recipient address identified in the email. Responsive to determining that the determined registration date is at or after the first threshold date, the computing device may execute a security risk assessment model. The computing device may then determine, based on the security risk assessment model, a security risk level of the email domain. The computing device may filter, based on the security risk level of the email domain, the email.
SYSTEMS AND METHODS FOR EXTERNAL DETECTION OF MISCONFIGURED SYSTEMS
A computer-implemented method is provided for external detection of a vulnerable system coupled to a communication network. The method can include measuring communication traffic on the communication network to identify one or more domain names, which in turn can originate from server systems in the communication network. The method can further include identifying the domain names based on metadata from the domain names and/or the measured communication traffic, where each domain name has an associated property indicative of its vulnerability. The method can further include determining whether any one (or more) of the domain names is registered at a domain name registry and, if the domain name is not registered, registering the domain name.
DOMAIN NAME OPERATION VERIFICATION CODE GENERATION AND/OR VERIFICATION
System, apparatus, methods, and computer-readable medium for generating a verification code related to a registry operation request are provided. A verification process may be performed to determine if a verification request related to a registry operation is to be approved. If the request is to be approved, a verification code is generated that includes identifying information of a verification service provider and a code indicating that the request has been verified.
Shared registration system
Systems and methods for updating a Domain Name System (DNS) registry are disclosed. Embodiments perform operations including maintaining a domain name record of a DNS registrant recorded in a database of the DNS registry by a primary DNS interface. The operations also include receiving a request to update the domain name record of the DNS registrant via a secondary DNS interface. The operations further include modifying the domain name record of the DNS registrant in the DNS database in accordance with the request.
Systems and methods for secure authorization of registry functions
Systems, methods, and computer-readable storage media for enabling secure transfer of Internet domains between registrars. An example method can include receiving, at a registry, a request from a first registrar for information associated with an object recorded in the registry and registered by the first registrar, then generating, at the registry, an authorization code, the authorization code having an expiration. The registry can then transmit, to the first registrar, the authorization code, which in turn can be given to the registrant. The registrant can forward the authorization code to the second registrar, and the registry can receive, from a second registrar before the expiration has been reached: the authorization code and a transfer request for the object, the transfer request identifying a transfer of the object from the first registrar to the second registrar. At that point the registry can verify the authorization code authorize the transfer request of the object from the first registrar to the second registrar.
Anti-phishing apparatus and method
Apparatus and methods are described in which a namespace is protected against misleading registration of names within the namespace. A list of canonically expressed text strings is maintained. A concordancer is defined, which concordancer may be updated from time to time as, for example, characters are added to a permitted character set for the namespace. When a first user attempts to register a proposed name within the namespace, the proposed name is subjected to an attempted match to each of the outputs of the concordancer with respect to each of the canonically expressed text strings on the list. In the event of a match, the attempted registration is not permitted to proceed. The protection may be implemented simultaneously across multiple namespaces, each having its own respective concordancer.
Universal service interfaces for websites
Techniques for providing a cross-ecosystem website for applications are presented. The techniques can include storing, by a webserver, multiple website templates in association with a plurality of respective web widgets and a respective Application Program Interface (API), where a plurality of respective back-end services correspond to the plurality of respective web widgets; receiving, from a website developer, a website template selection and a web widget selection; implementing a respective API for the cross-ecosystem website; storing in association with the cross-ecosystem website a manifest indicating services available on the cross-ecosystem website; and interfacing with a plurality of applications in a plurality of application ecosystems, using the API for the cross-ecosystem website.
WHITELIST DOMAIN NAME REGISTRY
Systems and methods for managing domain name registrations in accordance with rules and regulations of a domain name verification system are disclosed. The disclosed technology enables a domain name verification system to regulate the registration of domain names in accordance with its own domain name registration policies. This disclosed system uses a “whitelist” domain name registry to register “whitelist domain names” once pre-approval to register a corresponding target domain name has been granted. In this manner, the whitelist domain name registry system acts as a repository for pre-approved domain name registrations and enables pre-qualified registrants (including potential or prospective registrants) to then register a target domain name.
Multi-computer system for detecting and controlling malicious email
Aspects of the disclosure relate to identifying and processing suspicious emails. In some embodiments, a computing device may receive an email associated with an email domain. Subsequently, the computing device may determine a registration date of the email domain. The computing device may then compare the determined registration date to a first threshold date. Thereafter, responsive to determining that the determined registration date is before the first threshold date, the computing device may transmit the email to a recipient address identified in the email. Responsive to determining that the determined registration date is at or after the first threshold date, the computing device may execute a security risk assessment model. The computing device may then determine, based on the security risk assessment model, a security risk level of the email domain. The computing device may filter, based on the security risk level of the email domain, the email.