Patents by Inventor Siu-Wang Leung

Siu-Wang Leung has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240150937
    Abstract: Provided herein are protective masks made with polymer-based materials and methods of forming the materials. Methods of forming the interlaced polymer-based materials comprise applying adhesive to a substrate, electrospinning a first polymer solution onto the substrate from a first group of spinning electrodes, electrospinning a second polymer solution onto the substrate from a second group of spinning electrodes, and applying hot air to dry the polymer-based materials electrospun from the first polymer solution and the second polymer solution to form the interlaced polymer-based materials.
    Type: Application
    Filed: May 18, 2022
    Publication date: May 9, 2024
    Inventors: Siu Wah WONG, Ho Wang TONG, Chi Hang YU, Yu Hang LEUNG, Wing Man CHAN
  • Publication number: 20230388349
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Application
    Filed: March 2, 2023
    Publication date: November 30, 2023
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Patent number: 11632396
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Grant
    Filed: August 10, 2018
    Date of Patent: April 18, 2023
    Assignee: Palo Alto Networks, Inc.
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Publication number: 20190266210
    Abstract: Enforcing a policy based at least in part on URL information is disclosed. A request to access a first uniform resource locator (URL) is received from a client device. A portion of the first URL, or a transformation thereof, is matched against a bloom filter. A first query is performed using the matched portion of the received first URL, and, in response to receiving a “no match” response to the first query, a second query that is different from the first query is performed. A policy is enforced based at least in part on a category received as a result of a second query.
    Type: Application
    Filed: February 26, 2019
    Publication date: August 29, 2019
    Inventors: Yonghui Cheng, Siu-Wang Leung, Wilson Xu, Liang Li
  • Patent number: 10268656
    Abstract: Enforcing a policy based at least in part on URL information is disclosed. A uniform resource locator (URL) is received. A portion of the URL, or a transformation thereof, is matched against a bloom filter. Based on a result of the match, a first query is performed. A policy is enforced based at least in part on a category received as a result of a second query. In some cases, the first and second query are the same.
    Type: Grant
    Filed: May 19, 2011
    Date of Patent: April 23, 2019
    Assignee: Palo Alto Networks, Inc.
    Inventors: Yonghui Cheng, Siu-Wang Leung, Wilson Xu, Liang Li
  • Publication number: 20180352004
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Application
    Filed: August 10, 2018
    Publication date: December 6, 2018
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Patent number: 10075472
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Grant
    Filed: January 20, 2015
    Date of Patent: September 11, 2018
    Assignee: Palo Alto Networks, Inc.
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Publication number: 20150200969
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Application
    Filed: January 20, 2015
    Publication date: July 16, 2015
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Patent number: 9001661
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Grant
    Filed: September 4, 2013
    Date of Patent: April 7, 2015
    Assignee: Palo Alto Networks, Inc.
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong
  • Patent number: 8973088
    Abstract: Embodiments of the present application relate to a method for policy enforcement, a system for policy enforcement, and a computer program product for policy enforcement. A method for policy enforcement is provided. The method includes receiving a host information profile report from a client device, and enforcing a security policy for network access based on the host information profile report. The host information profile report includes device profile information associated with the client device.
    Type: Grant
    Filed: May 24, 2011
    Date of Patent: March 3, 2015
    Assignee: Palo Alto Networks, Inc.
    Inventors: Siu-Wang Leung, Song Wang, Yueh-Zen Chen
  • Publication number: 20140075539
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Application
    Filed: September 4, 2013
    Publication date: March 13, 2014
    Applicant: Palo Alto Networks, Inc.
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong
  • Patent number: 8565093
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Grant
    Filed: July 28, 2011
    Date of Patent: October 22, 2013
    Assignee: Palo Alto Networks, Inc.
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong
  • Patent number: 8209756
    Abstract: An intrusion detection and prevention (IDP) device includes an attack detection module and a forwarding component. The attack detection module applies a compound attack definition to a packet flow of a computer network to determine whether the packet flow includes at least one pattern and at least one protocol anomaly. The forwarding component selectively discards the packet flow based on the determination. The IDP device may further include a reassembly module to form application-layer communications from the packet flows, and a plurality of protocol-specific decoders to process the application-layer communications to extract application-layer elements and detect protocol anomalies.
    Type: Grant
    Filed: January 27, 2005
    Date of Patent: June 26, 2012
    Assignee: Juniper Networks, Inc.
    Inventors: Kowsik Guruswamy, Siu-Wang Leung
  • Publication number: 20120026881
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Application
    Filed: July 28, 2011
    Publication date: February 2, 2012
    Applicant: PALO ALTO NETWORKS, INC.
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong
  • Patent number: 8009566
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Grant
    Filed: June 26, 2006
    Date of Patent: August 30, 2011
    Assignee: Palo Alto Networks, Inc.
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong
  • Patent number: 7769851
    Abstract: An intrusion detection and prevention (IDP) device includes a flow analysis module, an analysis engine, a plurality of protocol-specific decoders and a profiler. The flow analysis module processes packet flows in a network to identify network elements associated with the packet flows. The analysis engine forms application-layer communications from the packet flows. The plurality of protocol-specific decoders processes the application-layer communications to generate application-layer elements. The profiler correlates the application-layer elements of the application-layer communications with the network elements of the packet flows of the computer network.
    Type: Grant
    Filed: January 27, 2005
    Date of Patent: August 3, 2010
    Assignee: Juniper Networks, Inc.
    Inventors: Kowsik Guruswamy, Siu-Wang Leung
  • Publication number: 20070297333
    Abstract: Methods and apparatuses are described for inspecting data packets in a computer network. One or more data packets through the network have associated header data and content. One method includes receiving a data packet, examining the data packet to classify the data packet including classifying the data packet using information included in the header and content, determining flow instructions for processing the packet based on both the header information and the content and processing of the packet using the flow instructions.
    Type: Application
    Filed: June 26, 2006
    Publication date: December 27, 2007
    Inventors: Nir Zuk, Song Wang, Siu-Wang Leung, Fengmin Gong