Virtual Sandbox for Supplemental Content Rule Enforcement

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional approaches to managing supplemental content in electronic environments are inadequate in preventing malicious activities, as they often result in over-inclusive disabling of content or limitations in functionality, failing to provide sufficient control over third-party content that can distribute viruses and malware or perform unauthorized actions.

Innovation Solution

The implementation of rule sets and virtual sandbox environments allows content providers to define allowable and prohibited behaviors for supplemental content, enabling specific actions to be taken when malicious activities are detected, such as notification, prevention, or flagging, thereby maintaining control and flexibility while ensuring user safety.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional approaches disable certain types of content globally, then security against malicious activities is improved, but functionality and user experience deteriorate due to over-inclusive disabling

Engineering Contradiction:
ImprovesecurityVSAvoidfunctionality
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments content control into per-domain rule sets rather than global disabling. Each domain can have its own customized rules allowing specific functions while blocking others, enabling fine-grained security control without unnecessarily disabling legitimate functionality across the entire system.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by implementing domain-specific rule sets that tailor security controls to the particular characteristics and risk profiles of individual content domains. This allows different levels of restriction for different domains based on their inherent security characteristics.

Inventive Principle:
Principle #3Local quality

2Reliability

If all calls from third party content are denied, then security against viruses and malware is improved, but adaptability and functionality deteriorate due to necessary legitimate operations being blocked

Engineering Contradiction:
ImprovesecurityVSAvoidfunctionality
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent segments the blanket denial approach into selective allow/deny decisions at the domain level. By analyzing each third-party domain individually against its rule set, the system can permit legitimate functional calls while blocking malicious ones, maintaining both security and adaptability.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system incorporates feedback mechanisms where content providers define acceptable behaviors in advance, and the system monitors actual behavior against these definitions. This feedback loop enables dynamic adjustment of allow/deny decisions based on observed behavior patterns.

Inventive Principle:
Principle #23Feedback

3Productivity

If content providers rely on outside providers to monitor advertising content, then productivity and efficiency are improved, but reliability and security control deteriorate due to lack of direct oversight

Engineering Contradiction:
ImproveefficiencyVSAvoidsecurity control
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent introduces an intermediary layer in the form of domain-specific rule sets that act as a mediator between content providers and third-party content. This intermediary enables content providers to maintain security control by defining and enforcing policies without requiring direct monitoring of all content operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9596132B1Virtual sandboxing for supplemental content
Publication Date: 2017.03.14 AMAZON TECH INC
  • US9596132B1 patent drawing
  • US9596132B1 patent drawing
  • US9596132B1 patent drawing

AI summary

A virtual sandbox environment enables a publisher to publish rules for supplemental content, such as third party advertising, displayed on a page or other grouping of content from the publisher. One or more rule sets can be applied or enforced in a number of ways, such as through active script on a page, as part of a browser or other such application or interface, or via a third party such as an anti-virus application or service. A rule set can specify behavior that is allowed or prohibited, in various circumstances, as well as actions to be taken in response to any unapproved or prohibited behavior. Rule sets may be maintained on, and enforced by, or cached on a client device such that any number of pages or other groupings of content can utilize the same rule set without reloading the set.