Patents Assigned to Fortinet, Inc.
  • Patent number: 11688200
    Abstract: Systems and methods for joint feature extraction and quality prediction using a shared machine learning model backbone and a customized training dataset are provided. According to an embodiment, a computer system receives a training dataset including example images each labeled with a particular category of a set of categories, and trains a deep neural network (DNN) based on the training dataset to jointly perform for an input image (i) facial feature extraction in accordance with the facial feature extraction algorithm and (ii) a quality scoring in accordance with a quality prediction algorithm. In the embodiment, the DNN, once trained with the training dataset labeled using a custom labeling scheme is used for the facial feature extraction and the quality prediction. The facial feature extraction algorithm and the quality prediction algorithm share a common DNN backbone of the DNN.
    Type: Grant
    Filed: December 28, 2020
    Date of Patent: June 27, 2023
    Assignee: Fortinet, Inc.
    Inventor: Xihua Dong
  • Patent number: 11681803
    Abstract: Systems and methods for malware detection using multiple neural networks are provided.
    Type: Grant
    Filed: September 30, 2020
    Date of Patent: June 20, 2023
    Assignee: Fortinet, Inc.
    Inventor: Xu Yang
  • Patent number: 11683680
    Abstract: A Wi-Fi controller identifies a mismatch between a first prefix of a first IPv6 address for a data packet corresponding to a first VLAN on which the data packet was sent from the station to the access point, and a prefix of a second IPv6 address for a second VLAN from which the data packet was transmitted from the access point to the Wi-Fi controller. Responsive to the VLAN mismatch identification, the Wi-Fi controller transmits a DHCP reconfiguration packet to the station using the first VLAN. The DHCP reconfiguration packet causes the station to transmit a rebind packet to the DHCP server. The rebind packet causes the DHCP server to transmit an ACK frame on the first VLAN setting the valid lifetime for the first IPv6 address to zero.
    Type: Grant
    Filed: March 31, 2021
    Date of Patent: June 20, 2023
    Assignee: Fortinet, Inc.
    Inventors: PC Sridhar, Pradeep Mohan, Mohan Jayaraman
  • Patent number: 11677615
    Abstract: Various approaches for providing network maintenance and health monitoring. In some cases, some approaches include systems, methods, and/or devices that provide for receiving and cataloging network incidents and invoking automated remediation in relation to network incidents.
    Type: Grant
    Filed: April 23, 2021
    Date of Patent: June 13, 2023
    Assignee: Fortinet, Inc.
    Inventors: Jason Abate, Shabbir Karimi
  • Patent number: 11677743
    Abstract: A Compact computing device with peer-to-peer communication through an Ethernet interface is provided. According to one embodiment, a compact computing device includes an Ethernet interface, an Ethernet discovery agent, a memory and a micro-controller. The Ethernet interface is capable of connecting to a host though an Ethernet link. One side wall of the compact shielding case accommodates only the Ethernet interface. The Ethernet discovery agent is capable of discovering the host to which the compact computing device is connected. The memory is capable of storing information that is to be transferred to the host or information that is received from the host. The micro-controller is capable of exchanging information with the host through the Ethernet link.
    Type: Grant
    Filed: September 28, 2017
    Date of Patent: June 13, 2023
    Assignee: Fortinet, Inc.
    Inventors: Sandip Y. Borle, Joseph R. Mihelich
  • Publication number: 20230177147
    Abstract: Various embodiments discussed generally relate to securing applications that work across networks, and more particularly to systems and methods for mitigating malicious behavior integrated within an application that directly calls a separate cloud based malicious behavior mitigation system.
    Type: Application
    Filed: December 2, 2021
    Publication date: June 8, 2023
    Applicant: Fortinet, Inc.
    Inventor: PEDRO MIGUEL PAIXAO
  • Publication number: 20230179595
    Abstract: Various embodiments discussed generally relate to network security, and more particularly to systems and methods for using biometric data to enhance security in network access authorization.
    Type: Application
    Filed: December 2, 2021
    Publication date: June 8, 2023
    Applicant: Fortinet, Inc.
    Inventor: PHILIP R. LONGVAL, SR.
  • Publication number: 20230179586
    Abstract: Systems, devices, and methods are discussed for proactively addressing low quality access credentials in a network environment.
    Type: Application
    Filed: December 2, 2021
    Publication date: June 8, 2023
    Applicant: Fortinet, Inc
    Inventor: Pedro Miguel Paixao
  • Publication number: 20230179617
    Abstract: Systems and methods for improving security event classification by leveraging user-behavior analytics are provided. According to an embodiment, a UEBA-based security event classification service of a cloud-based security platform maintains information regarding historical user behavior of various users of an enterprise network. An endpoint protection platform running on an endpoint device that is part of the enterprise network performs an initial classification of the event, based on which the endpoint protection platform blocks activity by the process. The endpoint production platform requests input from the cloud-based security platform which causes the cloud-based security platform performs a reclassification of the event based on contextual information, multiple data feeds and the UEBA-based security event classification service.
    Type: Application
    Filed: January 17, 2023
    Publication date: June 8, 2023
    Applicant: Fortinet, Inc.
    Inventors: UDI YAVO, Roy Katmor, Ido Kelson
  • Patent number: 11658707
    Abstract: A transmission type is determined for a specific station on a Wi-Fi network. A transmission type of OFDMA is selected responsive to the mobility value for the specific station meeting a mobility threshold. A transmission type of MU-MIMO is selected responsive to the similarity value for the specific station meeting a similarity threshold. A transmission type of SU-MIMO is selected responsive to the specific station not meeting the similarity threshold. The network interface transmits data packets to stations using OFDMA, SU-MIMO or MU-MIMO as selected.
    Type: Grant
    Filed: September 30, 2021
    Date of Patent: May 23, 2023
    Assignee: Fortinet, Inc.
    Inventor: Ankur Jain
  • Publication number: 20230156014
    Abstract: Systems and methods for adjusting the behavior of an endpoint security agent based on a network location are provided. According to an embodiment, an agent of an endpoint device identifies whether a security service of a cloud-based security service is not reachable or is unresponsive. The security service is associated with a particular security function implemented by the agent. When the security service is not reachable or is unresponsive, the agent further determines whether the endpoint device is within a trusted network of multiple trusted networks that have been previously registered with the cloud-based security service by querying a trusted network determination service associated with the cloud-based security service. When the determination is affirmative, the particular security feature is configured for operating inside a trusted network. When the determination is negative, the particular security feature is configured for operating outside a trusted network.
    Type: Application
    Filed: January 17, 2023
    Publication date: May 18, 2023
    Applicant: Fortinet, Inc.
    Inventors: Gregory L. Galloway, Karl D. Melcher, Michael C. Starr, Scott M. Davis
  • Publication number: 20230146247
    Abstract: Systems, devices, and methods are discussed that provide for developing custom reports.
    Type: Application
    Filed: November 9, 2021
    Publication date: May 11, 2023
    Applicant: Fortinet, Inc.
    Inventor: Kurt William Goldstein
  • Publication number: 20230146804
    Abstract: Systems and methods for a machine-learning based approach for dynamically generating incident-specific playbooks for a security orchestration and automated response (SOAR) platform are provided. The SOAR platform captures information regarding execution of a sequence of actions performed by analysts responsive to a first incident of a first type. The captured information is fed into a machine-learning model. When a second incident, observed by the SOAR platform, is similar in nature to the first incident or the first type a recommended sequence of actions is generated based on the machine-learning model for use by an analyst in connection with responding to the second incident. In response to rejection of the recommended sequence by the analyst, revising the recommended sequence based on input provided by the analyst and storing the revised recommendation sequence in a form of a revised playbook for response to subsequent incidents that are similar to the second incident.
    Type: Application
    Filed: January 5, 2023
    Publication date: May 11, 2023
    Applicant: Fortinet, Inc.
    Inventors: Abhishek Narula, Christopher Carsey, Amit Jain, Pooja Singh
  • Publication number: 20230137942
    Abstract: Systems, devices, and methods are discussed that provide for discovering protected data from a code. Such detection provides an ability to discover potentially malicious code and/or datasets obfuscated within a code prior to full execution of the code.
    Type: Application
    Filed: January 6, 2022
    Publication date: May 4, 2023
    Applicant: Fortinet, Inc.
    Inventor: Jeremy Allen Wildsmith
  • Publication number: 20230133651
    Abstract: Systems, devices, and methods are discussed that provide for discovering protected data from a code. Such detection provides an ability to discover potentially malicious code and/or datasets obfuscated within a code prior to full execution of the code.
    Type: Application
    Filed: November 1, 2021
    Publication date: May 4, 2023
    Applicant: Fortinet, Inc.
    Inventor: Jeremy Allen Wildsmith
  • Publication number: 20230140432
    Abstract: Systems, devices, and methods are discussed that provide for discovering protected data from a code. Such detection provides an ability to discover potentially malicious code and/or datasets obfuscated within a code prior to full execution of the code.
    Type: Application
    Filed: November 1, 2021
    Publication date: May 4, 2023
    Applicant: Fortinet, Inc.
    Inventor: Jeremy Allen Wildsmith
  • Publication number: 20230124404
    Abstract: Systems and methods for adaptively provisioning a distributed event data store of a multi-tenant architecture are provided. According to one embodiment, a managed security service provider (MSSP) maintains a distributed event data store on behalf of each tenant of the MSSP. For each tenant, the MSSP periodically determines a provisioning status for a current active partition of the distributed event data store of the tenant. Further, when the determining indicates an under-provisioning condition exits, the MSSP dynamically increases number of resource provision units (RPUs) to be used for a new partition to be added to the partitions for the tenant by a first adjustment ratio. While, when the determining indicates an over-provisioning condition exists, the MSSP dynamically decreases the number of RPUs to be used for subsequent partitions added to the partitions for the tenant by a second adjustment ratio.
    Type: Application
    Filed: December 2, 2022
    Publication date: April 20, 2023
    Applicant: Fortinet, Inc.
    Inventors: Jun He, Partha Bhattacharya, Jae Yoo
  • Publication number: 20230105602
    Abstract: Systems, devices, and methods are discussed for receiving a first packet type and outputting a second packet type based upon knowledge of a source device and a recipient device.
    Type: Application
    Filed: October 1, 2021
    Publication date: April 6, 2023
    Applicant: Fortinet, Inc.
    Inventor: Hongwei Li
  • Publication number: 20230099263
    Abstract: Systems and methods are for securing link aggregation are provided. According to an embodiment, a network device in a secure domain discovers device information associated with a peer network device in an untrusted domain that is connected through a first link directly connecting a first interface of the network device to a first interface of the peer network device, and authenticates the peer while allowing at least some network traffic to continue to be transmitted through the first interface. The network device establishes a secure session between the network device and the peer over the first link when the peer network device is successfully authenticated. The network device then allows the first link to operate as part of a single aggregated logical link, including a second link coupling a second interface of the network device to a second interface of the peer network device.
    Type: Application
    Filed: December 2, 2022
    Publication date: March 30, 2023
    Applicant: Fortinet, Inc.
    Inventors: Joseph R. Mihelich, Xiao Hu, Amit Srivastav, Norman Cheng
  • Patent number: 11616693
    Abstract: Systems, devices, and methods are discussed for memory efficient network use modeling.
    Type: Grant
    Filed: May 2, 2022
    Date of Patent: March 28, 2023
    Assignee: Fortinet, Inc.
    Inventors: Paul Koehring, Jason Abate