Patents by Inventor Alexander Klimov

Alexander Klimov has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240078323
    Abstract: An apparatus comprises counter tree circuitry configured to store, in a first node of a counter tree, a representation of a parent counter value and in a second node of the counter tree, wherein the second node is a child node of the first node, an encrypted representation of two or more counter values. The encryption operation for forming the encrypted representation of the two or more counter values takes as an input the parent counter value. The apparatus also comprises integrity checking circuitry to check the integrity of an item of data retrieved from memory based on a comparison between a stored authentication code and a generated authentication code generated based on the item of data and a decrypted counter value determined from an encrypted representation of a counter value retrieved from the second node, decrypted using a parent counter value retrieved from the first node.
    Type: Application
    Filed: August 9, 2023
    Publication date: March 7, 2024
    Applicant: Arm Limited
    Inventors: Alexander Klimov, Andreas Lars Sandberg, Roberto Avanzi
  • Publication number: 20240080193
    Abstract: An apparatus comprises counter integrity tree circuitry to maintain a counter integrity tree having a plurality of nodes. The counter integrity tree circuitry is configured to store, in a first node of the counter integrity tree, an encrypted representation of two or more non-repeating counters and in a second, parent, node, an indication of a function value equal to a non-repeating function of the two or more non-repeating counters of the first node. The apparatus comprises integrity checking circuitry configured to check the integrity of the first node using the function value retrieved from the second node.
    Type: Application
    Filed: August 9, 2023
    Publication date: March 7, 2024
    Applicant: Arm Limited
    Inventors: Andreas Lars Sandberg, Roberto Avanzi, Alexander Klimov
  • Patent number: 11720683
    Abstract: Embodiments of the present disclosure advantageously provide a secure boot integrity verification system that is protected against future quantum attacks without relying on correctly functioning hardware security modules (HSMs) for the expected lifetime of the computer system or embedded device.
    Type: Grant
    Filed: March 4, 2021
    Date of Patent: August 8, 2023
    Assignee: Arm Limited
    Inventors: Rainer Herberholz, Alexander Klimov, Peter Andrew Rees Williams
  • Patent number: 11681621
    Abstract: Systems, devices and methods are provided for operating a skewed-associative cache in a data processing system and, in particular, for changing address-to-row mappings in a skewed-associative cache.
    Type: Grant
    Filed: September 10, 2021
    Date of Patent: June 20, 2023
    Assignee: Arm Limited
    Inventor: Alexander Klimov
  • Patent number: 11681617
    Abstract: A data processing apparatus includes a requester, a completer and a cache. Data is transferred between the requester and the cache and between the cache and the completer. The cache implements a cache eviction policy. The completer determines an eviction cost associated with evicting the data from the cache and notifies the cache of the eviction cost. The cache eviction policy implemented by the cache is based, at least in part, on the cost of evicting the data from the cache. The eviction cost may be determined, for example, based on properties or usage of a memory system of the completer.
    Type: Grant
    Filed: March 12, 2021
    Date of Patent: June 20, 2023
    Assignee: Arm Limited
    Inventor: Alexander Klimov
  • Publication number: 20230079210
    Abstract: Systems, devices and methods are provided for operating a skewed-associative cache in a data processing system and, in particular, for changing address-to-row mappings in a skewed-associative cache.
    Type: Application
    Filed: September 10, 2021
    Publication date: March 16, 2023
    Applicant: Arm Limited
    Inventor: Alexander Klimov
  • Publication number: 20220292015
    Abstract: A data processing apparatus includes a requester, a completer and a cache. Data is transferred between the requester and the cache and between the cache and the completer. The cache implements a cache eviction policy. The completer determines an eviction cost associated with evicting the data from the cache and notifies the cache of the eviction cost. The cache eviction policy implemented by the cache is based, at least in part, on the cost of evicting the data from the cache. The eviction cost may be determined, for example, based on properties or usage of a memory system of the completer.
    Type: Application
    Filed: March 12, 2021
    Publication date: September 15, 2022
    Applicant: Arm Limited
    Inventor: Alexander Klimov
  • Publication number: 20220284104
    Abstract: Embodiments of the present disclosure advantageously provide a secure boot integrity verification system that is protected against future quantum attacks without relying on correctly functioning hardware security modules (HSMs) for the expected lifetime of the computer system or embedded device.
    Type: Application
    Filed: March 4, 2021
    Publication date: September 8, 2022
    Applicant: Arm Limited
    Inventors: Rainer Herberholz, Alexander Klimov, Peter Andrew Rees Williams
  • Patent number: 10454674
    Abstract: System, device, and method of authenticated encryption of messages. A message intended for authenticated encryption is stored; and a secret authentication key and a secret encryption key are stored. A key-stream set of blocks is generated, each block including pseudo-random bits. The aggregate length of the key-stream is equal to or greater than the message-length of the message. Each block of the key-stream is generated by a deterministic pseudo-random number generator function that is instantiated with the secret encryption key. The key-stream is generated on a block-by-block basis, until the key-stream reaches in aggregate the message-length of the message. Each block of bits of the message is encrypted, on a per-block basis, with a corresponding block from the key-stream. Authentication is performed on the result of the encrypting operation, or on the message, by applying a keyed cryptographic checksum function that ascertains integrity and that utilizes the secret authentication key.
    Type: Grant
    Filed: June 1, 2015
    Date of Patent: October 22, 2019
    Assignee: ARM LIMITED
    Inventors: Hagai Bar-El, Alexander Klimov
  • Patent number: 9866376
    Abstract: System, device, and method of provisioning cryptographic assets to electronic devices. A delegation message is generated at a first provisioning server. The delegation message indicates provisioning rights that are delegated by the first provisioning server to a second provisioning server with regard to subsequent provisioning of cryptographic assets to an electronic device. The delegation message includes an association key unknown to the first provisioning server, encrypted using a public key of the electronic device. The delegation message further includes a public key of the second provisioning server. The electronic device locally generates the association key, which is unknown to the first provisioning server. The delegation message is delivered to the electronic device. Based on the delegation message, cryptographic assets are provisioned by the second provisioning server to the electronic device, using the association key.
    Type: Grant
    Filed: June 11, 2017
    Date of Patent: January 9, 2018
    Assignee: ARM LIMITED
    Inventors: Hagai Bar-El, Alexander Klimov, Asaf Shen
  • Publication number: 20170272240
    Abstract: System, device, and method of provisioning cryptographic assets to devices.
    Type: Application
    Filed: June 11, 2017
    Publication date: September 21, 2017
    Inventors: Hagai Bar-El, Alexander Klimov, Asaf Shen
  • Patent number: 9705673
    Abstract: System, device, and method of provisioning cryptographic assets to electronic devices. A delegation message is generated at a first provisioning server. The delegation message indicates provisioning rights that are delegated by the first provisioning server to a second provisioning server with regard to subsequent provisioning of cryptographic assets to an electronic device. The delegation message includes an association key unknown to the first provisioning server, encrypted using a public key of the electronic device. The delegation message further includes a public key of the second provisioning server. The electronic device locally generates the association key, which is unknown to the first provisioning server. The delegation message is delivered to the electronic device. Based on the delegation message, cryptographic assets are provisioned by the second provisioning server to the electronic device, using the association key.
    Type: Grant
    Filed: September 21, 2015
    Date of Patent: July 11, 2017
    Assignee: ARM Technologies Israel Ltd.
    Inventors: Hagai Bar-El, Alexander Klimov, Asaf Shen
  • Publication number: 20170063537
    Abstract: System, device, and method of provisioning cryptographic assets to devices.
    Type: Application
    Filed: September 21, 2015
    Publication date: March 2, 2017
    Inventors: Hagai BAR-EL, Alexander KLIMOV, Asaf SHEN
  • Publication number: 20160289777
    Abstract: Methods of detecting influenza, including differentiating between type and subtype are disclosed, for example to detect, type, and/or subtype an influenza infection. A sample suspected of containing a nucleic acid of an influenza virus, is screened for the presence or absence of that nucleic acid. The presence of the influenza virus nucleic acid indicates the presence of influenza virus. Determining whether the influenza virus nucleic acid is present in the sample can be accomplished by detecting hybridization between an influenza specific probe, influenza type specific probe, and/or subtype specific probe and an influenza nucleic acid. Probes and primers for the detection, typing and/or subtyping of influenza virus are also disclosed. Kits and arrays that contain the disclosed probes and/or primers also are disclosed.
    Type: Application
    Filed: June 15, 2016
    Publication date: October 6, 2016
    Applicant: The Government of the U.S.A. as represented by the Secretary of the Dept. of Health and Human Servic
    Inventors: Stephen Lindstrom, Alexander Klimov, Nancy Cox, Lamorris Loftin
  • Patent number: 9382592
    Abstract: Methods of detecting influenza, including differentiating between type and subtype are disclosed, for example to detect, type, and/or subtype an influenza infection. A sample suspected of containing a nucleic acid of an influenza virus, is screened for the presence or absence of that nucleic acid. The presence of the influenza virus nucleic acid indicates the presence of influenza virus. Determining whether the influenza virus nucleic acid is present in the sample can be accomplished by detecting hybridization between an influenza specific probe, influenza type specific probe, and/or subtype specific probe and an influenza nucleic acid. Probes and primers for the detection, typing and/or subtyping of influenza virus are also disclosed. Kits and arrays that contain the disclosed probes and/or primers also are disclosed.
    Type: Grant
    Filed: October 17, 2013
    Date of Patent: July 5, 2016
    Assignee: The United States of America as represented by the Secretary of the Department of
    Inventors: Stephen Lindstrom, Alexander Klimov, Nancy Cox, Lamorris Loftin
  • Patent number: 9231758
    Abstract: System, device, and method of provisioning cryptographic assets to electronic devices. A delegation message is generated at a first provisioning server. The delegation message indicates provisioning rights that are delegated by the first provisioning server to a second provisioning server with regard to subsequent provisioning of cryptographic assets to an electronic device. The delegation message includes an association key unknown to the first provisioning server, encrypted using a public key of the electronic device. The delegation message further includes a public key of the second provisioning server. The electronic device locally generates the association key, which is unknown to the first provisioning server. The delegation message is delivered to the electronic device. Based on the delegation message, cryptographic assets are provisioned by the second provisioning server to the electronic device, using the association key.
    Type: Grant
    Filed: February 23, 2014
    Date of Patent: January 5, 2016
    Assignee: ARM TECHNOLOGIES ISRAEL LTD.
    Inventors: Hagai Bar-El, Alexander Klimov, Asaf Shen
  • Publication number: 20140195807
    Abstract: System, device, and method of provisioning cryptographic assets to devices.
    Type: Application
    Filed: February 23, 2014
    Publication date: July 10, 2014
    Inventors: Hagai BAR-EL, Alexander KLIMOV, Asaf SHEN
  • Publication number: 20140128279
    Abstract: Methods of detecting influenza, including differentiating between type and subtype are disclosed, for example to detect, type, and/or subtype an influenza infection. A sample suspected of containing a nucleic acid of an influenza virus, is screened for the presence or absence of that nucleic acid. The presence of the influenza virus nucleic acid indicates the presence of influenza virus. Determining whether the influenza virus nucleic acid is present in the sample can be accomplished by detecting hybridization between an influenza specific probe, influenza type specific probe, and/or subtype specific probe and an influenza nucleic acid. Probes and primers for the detection, typing and/or subtyping of influenza virus are also disclosed. Kits and arrays that contain the disclosed probes and/or primers also are disclosed.
    Type: Application
    Filed: October 17, 2013
    Publication date: May 8, 2014
    Applicant: The Government of the United States of America as represented by the Secretary of the Department of
    Inventors: Stephen Lindstrom, Alexander Klimov, Nancy Cox, Lamorris Loftin
  • Patent number: 8568981
    Abstract: Methods of detecting influenza, including differentiating between type and subtype are disclosed, for example to detect, type, and/or subtype an influenza infection. A sample suspected of containing a nucleic acid of an influenza virus, is screened for the presence or absence of that nucleic acid. The presence of the influenza virus nucleic acid indicates the presence of influenza virus. Determining whether the influenza virus nucleic acid is present in the sample can be accomplished by detecting hybridization between an influenza specific probe, influenza type specific probe, and/or subtype specific probe and an influenza nucleic acid. Probes and primers for the detection, typing and/or subtyping of influenza virus are also disclosed. Kits and arrays that contain the disclosed probes and/or primers also are disclosed.
    Type: Grant
    Filed: July 20, 2012
    Date of Patent: October 29, 2013
    Assignee: The United States of America as represented by the Secretary of the Department of Health and Human Services, Centers for Disease Control and Prevention
    Inventors: Stephen Lindstrom, Alexander Klimov, Nancy Cox, Lamorris Loftin
  • Patent number: 8321806
    Abstract: Graphical representations of operational process control data associated with monitored processes is displayed within the context of the geographical locations at which the processes operate, and in a manner as to model individual components of the processes.
    Type: Grant
    Filed: October 10, 2008
    Date of Patent: November 27, 2012
    Assignee: Iconics, Inc.
    Inventors: Russell L. Agrusa, Simone Massaro, Leonardo Altamore, Vojta Kresl, Roberto Vercelli, Alexander Klimov, Roberto Raimondo, Christopher N. Elsbree