US 12,132,756 B2
Proxy computer system to provide selective decryption
Anthony Scotney, Hobart (AU)
Assigned to StratoKey Pty Ltd., Hobart (AU)
Filed by StratoKey Pty Ltd., Hobart (AU)
Filed on Sep. 26, 2022, as Appl. No. 17/953,251.
Application 17/953,251 is a continuation of application No. 16/817,237, filed on Mar. 12, 2020, granted, now 11,457,036.
Application 16/817,237 is a continuation of application No. 15/808,690, filed on Nov. 9, 2017, granted, now 10,594,721, issued on Mar. 17, 2020.
Claims priority of provisional application 62/419,960, filed on Nov. 9, 2016.
Prior Publication US 2023/0014751 A1, Jan. 19, 2023
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01); H04L 67/01 (2022.01); H04L 67/53 (2022.01); H04L 67/56 (2022.01); H04L 67/60 (2022.01)
CPC H04L 63/1433 (2013.01) [H04L 63/0281 (2013.01); H04L 63/0428 (2013.01); H04L 67/53 (2022.05); H04L 67/56 (2022.05); H04L 67/60 (2022.05); H04L 67/01 (2022.05)] 16 Claims
OG exemplary drawing
 
1. A server system comprising:
a memory resource to store a set of instructions; and
one or more processors to access the set of instructions from the memory resource to perform operations including:
receiving, from a client device of a user, a request including a proxy link that corresponds to a link to content hosted by a third-party network service;
receiving usage information from the client device to determine a real- time risk metric of the user, the usage information corresponding to the user's real-time usage of at least one of the third-party network service or a browser executing on the client device;
retrieving the content from the third-party network service on behalf of the client device using the link, the content including sensitive data that are encrypted and remainder data that are not encrypted;
based on the real-time risk of the user, making a determination as to whether the sensitive data are to be decrypted for the client device; and
in response to determining, based on the real-time risk metric, that the sensitive data are to be decrypted for the client device, decrypting the sensitive data to yield decrypted sensitive data and sending modified content that includes the remainder data and the decrypted sensitive data to the client device.