Patents by Inventor Amnon Lotem

Amnon Lotem has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9552725
    Abstract: A method and system for modeling and processing vehicular traffic data and information, comprising: (a) transforming a spatial representation of a road network into a network of spatially interdependent and interrelated oriented road sections, for forming an oriented road section network; (b) acquiring a variety of the vehicular traffic data and information associated with the oriented road section network, from a variety of sources; (c) prioritizing, filtering, and controlling, the vehicular traffic data and information acquired from each of the variety of sources; (d) calculating a mean normalized travel time (NTT) value for each oriented road section of said oriented road section network using the prioritized, filtered, and controlled, vehicular traffic data and information associated with each source, for forming a partial current vehicular traffic situation picture associated with each source; (e) fusing the partial current traffic situation picture associated with each source, for generating a single co
    Type: Grant
    Filed: December 1, 2004
    Date of Patent: January 24, 2017
    Assignee: INRIX GLOBAL SERVICES LIMITED
    Inventors: Israel Feldman, Arie Trinker, Yochai Meltzer, Allon Eshpar, Amnon Lotem
  • Publication number: 20170011626
    Abstract: A method and system for modeling and processing vehicular traffic data and information, comprising: (a) transforming a spatial representation of a road network into a network of spatially interdependent and interrelated oriented road sections, for forming an oriented road section network; (b) acquiring a variety of the vehicular traffic data and information associated with the oriented road section network, from a variety of sources; (c) prioritizing, filtering, and controlling, the vehicular traffic data and information acquired from each of the variety of sources; (d) calculating a mean normalized travel time (NTT) value for each oriented road section of said oriented road section network using the prioritized, filtered, and controlled, vehicular traffic data and information associated with each source, for forming a partial current vehicular traffic situation picture associated with each source; (e) fusing the partial current traffic situation picture associated with each source, for generating a single co
    Type: Application
    Filed: September 21, 2016
    Publication date: January 12, 2017
    Inventors: Israel Feldman, Arie Trinker, Yochai Meltzer, Allon Eshpar, Amnon Lotem
  • Patent number: 9507944
    Abstract: A method for simulation aided security event management, the method comprises: generating attack simulation information that comprises multiple simulation data items of at least one data item type out of vulnerability instances data items, attack step data items and attack simulation scope data items; wherein the generating of attack simulation information is responsive to a network model, at least one attack starting point and attack action information; identifying security events in response to a correlation between simulation data items and event data; and prioritizing identified security events.
    Type: Grant
    Filed: March 20, 2013
    Date of Patent: November 29, 2016
    Assignee: SKYBOX SECURITY INC.
    Inventors: Amnon Lotem, Gideon Cohen, Lior Ben Naon
  • Publication number: 20160156655
    Abstract: Log based analysis systems and methods for protecting computers and networks from malicious communications and malware attacks by analyzing log data obtained from client networks having network entities representing business units or customers. The system may further comprise a plurality of client asset machines, each operable to execute a security product associated with a security product vendor and log associated information of the network entities into at least one log file. The log files may be uploaded onto a log-analytics detection platform for analysis using learning algorithms operable to generate a risk factor attribute for at least one entity.
    Type: Application
    Filed: February 7, 2016
    Publication date: June 2, 2016
    Inventors: Amnon Lotem, Doron Peri, Aviv Raff
  • Patent number: 9324232
    Abstract: A method and system for modeling and processing vehicular traffic data and information, comprising: (a) transforming a spatial representation of a road network into a network of spatially interdependent and interrelated oriented road sections, for forming an oriented road section network; (b) acquiring a variety of the vehicular traffic data and information associated with the oriented road section network, from a variety of sources; (c) prioritizing, filtering, and controlling, the vehicular traffic data and information acquired from each of the variety of sources; (d) calculating a mean normalized travel time (NTT) value for each oriented road section of said oriented road section network using the prioritized, filtered, and controlled, vehicular traffic data and information associated with each source, for forming a partial current vehicular traffic situation picture associated with each source; (e) fusing the partial current traffic situation picture associated with each source, for generating a single co
    Type: Grant
    Filed: November 15, 2005
    Date of Patent: April 26, 2016
    Assignee: INRX Gloabal Services Limited
    Inventors: Israel Feldman, Arie Trinker, Yochai Meltzer, Allon Eshpar, Amnon Lotem
  • Publication number: 20150381637
    Abstract: A crowdsourcing log analysis system and methods for protecting computers and networks from malware attacks by analyzing data log information obtained from a plurality of client network. The client networks are associated with a set of network entities representing a plurality of business units or customers. The system may further comprise a plurality of server machines, each operable to execute a security product associated with a security product vendor and log associated information of at the network entities into at least one log file. The log files may be uploaded onto a breach detection platform for analysis based upon crowdsourcing principles and is operable to generate a risk factor attribute for at least one suspect entity.
    Type: Application
    Filed: June 15, 2015
    Publication date: December 31, 2015
    Inventors: Aviv Raff, Doron Peri, Amnon Lotem
  • Patent number: 9088617
    Abstract: A method for evaluating a deployment of a network access change request, the method includes: (a) formatting a network access change request to provide a formatted network access change request; wherein the formatted network access change request includes multiple formatted request items; wherein the multiple formatted request items includes a requested access type, an address of an access source, an address of an access destination; (b) determining multiple relationships between the multiple formatted request items and corresponding items of at least one entity out of a network model and a current network policy; and (c) responding to the network access change request in response to the multiple determined relationships.
    Type: Grant
    Filed: November 20, 2013
    Date of Patent: July 21, 2015
    Assignee: SKYBOX SECURITY INC.
    Inventors: Amnon Lotem, Alexander Haiut, Ravid Circus, Moshe Raab, Amos Arev, Gideon Cohen
  • Patent number: 8997236
    Abstract: A method, system and computer program product for evaluating an IDP entity, the method includes evaluating an effect of at least one IDP rule applied by the IDP entity on legitimate traffic, based upon a network model; evaluating an effect of at least one IDP rule applied by the IDP entity based upon a network model and an attack model; determining an effectiveness of the IDP entity in response to the evaluated effects.
    Type: Grant
    Filed: August 6, 2012
    Date of Patent: March 31, 2015
    Assignee: Skybox Security Inc.
    Inventors: Amnon Lotem, Gideon Cohen, Ilan Horn, Moshe Meiseles
  • Patent number: 8918278
    Abstract: A method and system for modeling and processing vehicular traffic data and information, comprising: (a) transforming a spatial representation of a road network into a network of spatially interdependent and interrelated oriented road sections, for forming an oriented road section network; (b) acquiring a variety of the vehicular traffic data and information associated with the oriented road section network, from a variety of sources; (c) prioritizing, filtering, and controlling, the vehicular traffic data and information acquired from each of the variety of sources; (d) calculating a mean normalized travel time (NTT) value for each oriented road section of said oriented road section network using the prioritized, filtered, and controlled, vehicular traffic data and information associated with each source, for forming a partial current vehicular traffic situation picture associated with each source; (e) fusing the partial current traffic situation picture associated with each source, for generating a single co
    Type: Grant
    Filed: November 8, 2005
    Date of Patent: December 23, 2014
    Assignee: Inrix Global Services Limited
    Inventors: Israel Feldman, Arie Trinker, Yochai Meltzer, Allon Eshpar, Amnon Lotem
  • Publication number: 20140150050
    Abstract: A method for evaluating a deployment of a network access change request, the method includes: (a) formatting a network access change request to provide a formatted network access change request; wherein the formatted network access change request includes multiple formatted request items; wherein the multiple formatted request items includes a requested access type, an address of an access source, an address of an access destination; (b) determining multiple relationships between the multiple formatted request items and corresponding items of at least one entity out of a network model and a current network policy; and (c) responding to the network access change request in response to the multiple determined relationships.
    Type: Application
    Filed: November 20, 2013
    Publication date: May 29, 2014
    Applicant: SKYBOX SECURITY INC.
    Inventors: AMNON LOTEM, ALEXANDER HAIUT, RAVID CIRCUS, MOSHE RAAB, AMOS AREV, GIDEON COHEN
  • Patent number: 8621552
    Abstract: A method for evaluating a deployment of a network access change request, the method includes: (a) formatting a network access change request to provide a formatted network access change request; wherein the formatted network access change request includes multiple formatted request items; wherein the multiple formatted request items includes a requested access type, an address of an access source, an address of an access destination; (b) determining multiple relationships between the multiple formatted request items and corresponding items of at least one entity out of a network model and a current network policy; and (c) responding to the network access change request in response to the multiple determined relationships.
    Type: Grant
    Filed: May 21, 2008
    Date of Patent: December 31, 2013
    Assignee: Skybox Security Inc.
    Inventors: Amnon Lotem, Alexander Haiut, Ravid Circus, Moshe Raab, Amos Arev, Gideon Cohen, Tal Sheffer
  • Publication number: 20130312101
    Abstract: A method for simulation aided security event management, the method comprises: generating attack simulation information that comprises multiple simulation data items of at least one data item type out of vulnerability instances data items, attack step data items and attack simulation scope data items; wherein the generating of attack simulation information is responsive to a network model, at least one attack starting point and attack action information; identifying security events in response to a correlation between simulation data items and event data; and prioritizing identified security events.
    Type: Application
    Filed: March 20, 2013
    Publication date: November 21, 2013
    Inventors: Amnon Lotem, Gideon Cohen, Lior Ben Naon
  • Patent number: 8407798
    Abstract: A method for simulation aided security event management, the method includes: generating attack simulation information that comprises multiple simulation data items of at least one data item type out of vulnerability instances data items, attack step data items and attack simulation scope data items; wherein the generating of attack simulation information is responsive to a network model, at least one attack starting point and attack action information; identifying security events in response to a correlation between simulation data items and event data; and prioritizing identified security events.
    Type: Grant
    Filed: September 8, 2008
    Date of Patent: March 26, 2013
    Assignee: Skybox Secutiry Inc.
    Inventors: Amnon Lotem, Gideon Cohen, Lior Ban Naon
  • Publication number: 20130031635
    Abstract: A method, system and computer program product for evaluating an IDP entity, the method includes evaluating an effect of at least one IDP rule applied by the IDP entity on legitimate traffic, based upon a network model; evaluating an effect of at least one IDP rule applied by the IDP entity based upon a network model and an attack model; determining an effectiveness of the IDP entity in response to the evaluated effects.
    Type: Application
    Filed: August 6, 2012
    Publication date: January 31, 2013
    Applicant: SKYBOX SECURITY, INC.
    Inventors: Amnon Lotem, Gideon Cohen, Ilan Horn, Moshe Meiseles
  • Patent number: 8359650
    Abstract: A method for evaluating potential attacks of worms, the method includes: associating, in response to information representative of a network and of worm entities, between worm entities and potential worm sources to provide associated worm sources; determining potential worm attacks that start from the associated worm sources; and evaluating at least one potential worm attack security metric associated with the potential worm attacks.
    Type: Grant
    Filed: July 30, 2007
    Date of Patent: January 22, 2013
    Assignee: Skybox Secutiry Inc.
    Inventors: Amnon Lotem, Gideon Cohen, Moshe Meiseles, Ilan Horn
  • Patent number: 8272061
    Abstract: A method for evaluating access rules violations, the method includes: receiving, a model of a computer network; and determining security metrics associated with a violation of an access rule in response to: the model of the computer network, multiple network nodes of the computer network accessible according to at least one violated access rule or according to the network model, at least one vulnerability associated with the multiple network nodes, and damage associated with an exploitation of the at least one vulnerability.
    Type: Grant
    Filed: May 20, 2007
    Date of Patent: September 18, 2012
    Assignee: Skyobox security Inc.
    Inventors: Amnon Lotem, Gideon Choen, Moshe Meiseles
  • Patent number: 8239951
    Abstract: A method, system and computer program product for evaluating an IDP entity, the method includes evaluating an effect of at least one IDP rule applied by the IDP entity on legitimate traffic, based upon a network model; evaluating an effect of at least one IDP rule applied by the IDP entity based upon a network model and an attack model; determining an effectiveness of the IDP entity in response to the evaluated effects.
    Type: Grant
    Filed: May 26, 2006
    Date of Patent: August 7, 2012
    Assignee: Skybox Security, Inc.
    Inventors: Amnon Lotem, Gideon Cohen, Ilan Horn, Moshe Meiseles
  • Publication number: 20080005555
    Abstract: A method for evaluating potential attacks of worms, the method includes: associating, in response to information representative of a network and of worm entities, between worm entities and potential worm sources to provide associated worm sources; determining potential worm attacks that start from the associated worm sources; and evaluating at least one potential worm attack security metric associated with the potential worm attacks.
    Type: Application
    Filed: July 30, 2007
    Publication date: January 3, 2008
    Inventors: Amnon Lotem, Gideon Cohen, Moshe Meiseles, Ilan Horn
  • Publication number: 20060218640
    Abstract: A method, system and computer program product for evaluating an IDP entity, the method includes evaluating an effect of at least one IDP rule applied by the IDP entity on legitimate traffic, based upon a network model; evaluating an effect of at least one IDP rule applied by the IDP entity based upon a network model and an attack model; determining an effectiveness of the IDP entity in response to the evaluated effects.
    Type: Application
    Filed: May 26, 2006
    Publication date: September 28, 2006
    Inventors: Amnon Lotem, Gideon Cohen, Ilan Horn, Moshe Meiseles
  • Publication number: 20060111833
    Abstract: A method and system for modeling and processing vehicular traffic data and information, comprising: (a) transforming a spatial representation of a road network into a network of spatially interdependent and interrelated oriented road sections, for forming an oriented road section network; (b) acquiring a variety of the vehicular traffic data and information associated with the oriented road section network, from a variety of sources; (c) prioritizing, filtering, and controlling, the vehicular traffic data and information acquired from each of the variety of sources; (d) calculating a mean normalized travel time (NTT) value for each oriented road section of said oriented road section network using the prioritized, filtered, and controlled, vehicular traffic data and information associated with each source, for forming a partial current vehicular traffic situation picture associated with each source; (e) fusing the partial current traffic situation picture associated with each source, for generating a single co
    Type: Application
    Filed: November 8, 2005
    Publication date: May 25, 2006
    Inventors: Israel Feldman, Arie Trinker, Yochai Meltzer, Allon Eshpar, Amnon Lotem