{"schema_version":"1.0","canonical_url":"https://patentable.app/patents/US-9836608","patent":{"patent_number":"US-9836608","title":"System, method and apparatus for simultaneous definition and enforcement of access-control and integrity policies","assignee":null,"inventors":[],"filing_date":"2016-10-20T00:00:00.000Z","publication_date":"2017-12-05T00:00:00.000Z","cpc_codes":["G06F","G06F","G06F","H04L","H04L"],"num_claims":20,"abstract":"Access-control and information-flow integrity policies are enforced in a computing system by detecting security-sensitive sinks in software code for an application running on the computing system and retrieving an access-control policy from a database accessible to the computing system. The access-control policy maps a set of access permissions within the computing system to each one of a plurality of principals. For each detected security-sensitive sink, all principals that influence that security-sensitive sink are detected and an overall access permission is assigned to each security-sensitive sink by taking the intersection of the access permission sets for all influencing principals of that security-sensitive sink. If this permission set is inadequate, an integrity violation is reported. In addition, permission labels are assigned to each value of variables used in the security-sensitive sinks. Each permission label is a set of permissions."},"analysis":{"summary":null,"layman_explanation":null,"technical_analysis":null,"business_analysis":null,"faqs":null,"topics":[],"tech_cluster":null},"seo":{"title":"System, method and apparatus for simultaneous definition and enforcement of access-control and integrity policies","description":"Access-control and information-flow integrity policies are enforced in a computing system by detecting security-sensitive sinks in software code for an application running on the computing system and ","keywords":[]},"attribution":{"source":"Patentable","source_url":"https://patentable.app","canonical_url":"https://patentable.app/patents/US-9836608","license":"CC-BY-4.0-like","license_terms":"AI-generated analysis on this page (summary, layman_explanation, technical_analysis, business_analysis, faqs) may be reused with attribution and a visible link back to the canonical URL above. Patent abstracts, claims, and bibliographic data are USPTO public domain.","required_link":"https://patentable.app/patents/US-9836608","citation_suggestion":"Patentable. \"System, method and apparatus for simultaneous definition and enforcement of access-control and integrity policies\" (US-9836608). https://patentable.app/patents/US-9836608","copyright_holder":"Nomic Interactive Technology LLC"},"links":{"html":"https://patentable.app/patents/US-9836608","json":"https://patentable.app/api/llm-context/US-9836608","site":"https://patentable.app","llms_txt":"https://patentable.app/llms.txt"},"generated_at":"2026-06-06T08:22:02.981Z"}