Patents Assigned to WATERFALL SECURITY SOLUTIONS LTD
  • Patent number: 11706194
    Abstract: In one embodiment, a secure network system includes a two-way bridge connecting a protected packet data network with an external packet data network so as to allow bidirectional communication between the protected and external networks, a one-way link unidirectionally connecting the protected network to the external network and physically configured to carry signals in one direction from the protected network to the external network and to be incapable of carrying signals in the opposite direction from the external packet data network to the protected packet data network, and a security server to receive an indication of a security threat to at least one of the networks, and in response to the indication, to deactivate the two-way bridge and activate the one-way link so as to prevent the protected network from receiving packets from the external network while allowing forwarding of packets from the protected network to the external network.
    Type: Grant
    Filed: October 6, 2021
    Date of Patent: July 18, 2023
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventor: Lior Frenkel
  • Patent number: 11190486
    Abstract: In one embodiment, a secure network system includes a two-way bridge connecting a protected packet data network with an external packet data network so as so allow bidirectional communication between the protected and external networks, a one-way link unidirectionally connecting the protected network to the external network and physically configured to carry signals in one direction from the protected network to the external network and to be incapable of carrying signals in the opposite direction from the external packet data network to the protected packet data network, and a security server to receive an indication of a security threat to at least one of the networks, and in response to the indication, to deactivate the two-way bridge and activate the one-way link so as to prevent the protected network from receiving packets from the external network while allowing forwarding of packets from the protected network to the external network.
    Type: Grant
    Filed: August 8, 2019
    Date of Patent: November 30, 2021
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventor: Lior Frenkel
  • Patent number: 10432404
    Abstract: Communication apparatus includes a one-way, hardware-actuated data relay, which includes a first hardware interface configured to receive a command from a communications network and a second hardware interface configured to convey the received command to a protected destination when the relay is actuated. A decoder includes a third hardware interface configured to receive a digital signature for the command from the communications network and hardware decoding logic coupled to verify the digital signature and to actuate the relay upon verifying the digital signature, whereby the command is conveyed via the second hardware interface to the protected destination.
    Type: Grant
    Filed: March 14, 2017
    Date of Patent: October 1, 2019
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Andrew Ginter, Tomer Maor
  • Patent number: 10063517
    Abstract: A method for secure communications between a transmitting computer and a receiving computer includes transmitting data from the transmitting computer over a first one-way link to a data security engine, receiving and validating the data within the data security engine, and, after validating the data, transmitting the data from the data security engine to the receiving computer over a second one-way link.
    Type: Grant
    Filed: November 8, 2017
    Date of Patent: August 28, 2018
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 9847972
    Abstract: A method for secure communications between a transmitting computer and a receiving computer includes transmitting data from the transmitting computer over a first one-way link to a data security engine, receiving and validating the data within the data security engine, and, after validating the data, transmitting the data from the data security engine to the receiving computer over a second one-way link.
    Type: Grant
    Filed: February 27, 2017
    Date of Patent: December 19, 2017
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 9762536
    Abstract: A method for secure communications between a transmitting computer (24) and a receiving computer (22) includes transmitting data from the transmitting computer over a first one-way link (28) to a data security engine (26), receiving and validating the data within the data security engine, and, after validating the data, transmitting the data from the data security engine to the receiving computer over a second one-way link (30).
    Type: Grant
    Filed: December 28, 2006
    Date of Patent: September 12, 2017
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 9635037
    Abstract: Communication apparatus includes a one-way, hardware-actuated data relay, which includes a first hardware interface configured to receive a command from a communications network and a second hardware interface configured to convey the received command to a protected destination when the relay is actuated. A decoder includes a third hardware interface configured to receive a digital signature for the command from the communications network and hardware decoding logic coupled to verify the digital signature and to actuate the relay upon verifying the digital signature, whereby the command is conveyed via the second hardware interface to the protected destination.
    Type: Grant
    Filed: September 6, 2012
    Date of Patent: April 25, 2017
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Andrew Ginter, Tomer Maor
  • Patent number: 9584521
    Abstract: Apparatus for communication includes a single one-way link, which is physically capable of carrying the communication signals in one direction and incapable of carrying the communication signals in the opposite direction. Ancillary circuitry is coupled so as to cause the single one-way link to convey both first communication signals from a first station to a second station and second communication signals from the second station to the first station.
    Type: Grant
    Filed: July 20, 2016
    Date of Patent: February 28, 2017
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventor: Lior Frenkel
  • Patent number: 9519616
    Abstract: Storage apparatus (20) includes a memory (30) and an encryption processor (28), which is configured to receive and encrypt data transmitted from one or more computers (24) for storage in the memory. A one-way link (32) couples the encryption processor to the memory so as to enable the encryption processor to write the encrypted data to the memory but not to read from the memory.
    Type: Grant
    Filed: July 16, 2015
    Date of Patent: December 13, 2016
    Assignee: WATERFALL SECURITY SOLUTION LTD.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 9419975
    Abstract: Apparatus for communication includes a single one-way link, which is physically capable of carrying the communication signals in one direction and incapable of carrying the communication signals in the opposite direction. Ancillary circuitry is coupled so as to cause the single one-way link to convey both first communication signals from a first station to a second station and second communication signals from the second station to the first station.
    Type: Grant
    Filed: April 22, 2013
    Date of Patent: August 16, 2016
    Assignee: Waterfall Security Solutions Ltd.
    Inventor: Lior Frenkel
  • Patent number: 9369446
    Abstract: A method for communication includes receiving in a secure installation via a network from a remote user terminal an input comprising a stream of symbols that has been encrypted using a preselected encryption key. The encrypted stream of symbols is decoded in the secure installation using a decryption key corresponding to the preselected encryption key, to produce a clear stream of symbols. A computer program running on a processor in the secure installation is used in processing the symbols in the clear stream and generating a graphical output in a predefined display format in response to processing the symbols. The graphical output is outputted from the secure installation to the network in an unencrypted format for display on the remote user terminal.
    Type: Grant
    Filed: July 30, 2015
    Date of Patent: June 14, 2016
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Andrew Ginter
  • Patent number: 9268957
    Abstract: Decryption apparatus includes an input memory (48), which is coupled to receive encrypted data, and an output transducer (28), for presenting decrypted data to a user. A decryption processor (50) is coupled to read and decrypt the encrypted data from the input memory but is incapable of writing to the input memory, and is coupled to convey the decrypted data to the output transducer for presentation to the user.
    Type: Grant
    Filed: December 11, 2007
    Date of Patent: February 23, 2016
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 9116857
    Abstract: Storage apparatus (20) includes a memory (30) and an encryption processor (28), which is configured to receive and encrypt data transmitted from one or more computers (24) for storage in the memory. A one-way link (32) couples the encryption processor to the memory so as to enable the encryption processor to write the encrypted data to the memory but not to read from the memory.
    Type: Grant
    Filed: April 9, 2014
    Date of Patent: August 25, 2015
    Assignee: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 8891546
    Abstract: Communication apparatus includes at least first and second communication interfaces, configured for digital communication with first and second nodes. At least one processor is coupled between the communication interfaces, and is configured, upon receiving a message from one of the first and second nodes that is directed to the other of the first and second nodes, to carry out the following actions: when the message contains a command, to convey the command to the other of the first and second nodes; when the message contains status information, to convey the status information to the other of the first and second nodes; when the message contains a response to a command, to discard the response; and when the message contains a query, to block the query from reaching the other of the first and second nodes.
    Type: Grant
    Filed: April 27, 2014
    Date of Patent: November 18, 2014
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Andrew Ginter, Tomer Maor
  • Publication number: 20140317753
    Abstract: Apparatus for communication includes a single one-way link, which is physically capable of carrying the communication signals in one direction and incapable of carrying the communication signals in the opposite direction. Ancillary circuitry is coupled so as to cause the single one-way link to convey both first communication signals from a first station to a second station and second communication signals from the second station to the first station.
    Type: Application
    Filed: April 22, 2013
    Publication date: October 23, 2014
    Applicant: Waterfall Security Solutions Ltd.
    Inventor: Lior Frenkel
  • Publication number: 20140244780
    Abstract: Storage apparatus (20) includes a memory (30) and an encryption processor (28), which is configured to receive and encrypt data transmitted from one or more computers (24) for storage in the memory. A one-way link (32) couples the encryption processor to the memory so as to enable the encryption processor to write the encrypted data to the memory but not to read from the memory.
    Type: Application
    Filed: April 9, 2014
    Publication date: August 28, 2014
    Applicant: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 8793302
    Abstract: Sensing apparatus includes a network camera, which is configured to capture images of a scene and to output a sequence of data packets containing digitized video data responsively to the images. A one-way link is coupled to the network camera so as to transmit the data packets from the network camera to a packet communication network.
    Type: Grant
    Filed: June 4, 2012
    Date of Patent: July 29, 2014
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Patent number: 8756436
    Abstract: Storage apparatus (20) includes a memory (30) and an encryption processor (28), which is configured to receive and encrypt data transmitted from one or more computers (24) for storage in the memory. A one-way link (32) couples the encryption processor to the memory so as to enable the encryption processor to write the encrypted data to the memory but not to read from the memory.
    Type: Grant
    Filed: January 16, 2008
    Date of Patent: June 17, 2014
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Amir Zilberstein
  • Publication number: 20140068712
    Abstract: Communication apparatus includes a one-way, hardware-actuated data relay, which includes a first hardware interface configured to receive a command from a communications network and a second hardware interface configured to convey the received command to a protected destination when the relay is actuated. A decoder includes a third hardware interface configured to receive a digital signature for the command from the communications network and hardware decoding logic coupled to verify the digital signature and to actuate the relay upon verifying the digital signature, whereby the command is conveyed via the second hardware interface to the protected destination.
    Type: Application
    Filed: September 6, 2012
    Publication date: March 6, 2014
    Applicant: WATERFALL SECURITY SOLUTIONS LTD.
    Inventors: Lior Frenkel, Andrew Ginter, Tomer Maor
  • Patent number: 8635441
    Abstract: A computer-implemented method for protecting a computer network (22) includes receiving at a gateway (24) data transmitted from a source address for delivery to a destination on the computer network. The data are encrypted at the gateway using an encryption key selected from a set of one or more keys that are not available to the source address. The encrypted data are transmitted over the computer network toward the destination. The transmitted encrypted data are received and decrypted for use at the destination by means of one of the keys in the set.
    Type: Grant
    Filed: August 29, 2007
    Date of Patent: January 21, 2014
    Assignee: Waterfall Security Solutions Ltd.
    Inventors: Lior Frenkel, Amir Zilberstein