Invention Grant
- Patent Title: Server detection of leaked credentials over HTTP
-
Application No.: US16533616Application Date: 2019-08-06
-
Publication No.: US11265345B2Publication Date: 2022-03-01
- Inventor: Darran Lofthouse , Farah Juma
- Applicant: Red Hat, Inc.
- Applicant Address: US NC Raleigh
- Assignee: Red Hat, Inc.
- Current Assignee: Red Hat, Inc.
- Current Assignee Address: US NC Raleigh
- Agency: Womble Bond Dickinson (US) LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L9/32

Abstract:
In some implementations, systems and methods for detecting leaked credentials in a request for a network resource are provided. A request to access a resource on a network is analyzed to determine if the request was transmitted using an unsecured protocol, and if so, determine whether the request includes authentication credentials. If the request includes authentication credentials, the authentication credentials are authenticated and in response to determining that the authentication credentials are authentic, the authentication credentials are disabled. One or more notifications may be transmitted to an owner of the disabled authentication credentials.
Public/Granted literature
- US20210044618A1 SERVER DETECTION OF LEAKED CREDENTIALS OVER HTTP Public/Granted day:2021-02-11
Information query