Patents by Inventor Avi Chesla

Avi Chesla has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 8447855
    Abstract: A method for preventing session initiation protocol (SIP) attacks is provided. The method includes receiving a plurality of SIP response messages comprising at least one pre-defined SIP response code, and extracting at least one user identifier from the plurality of SIP response messages. The method further includes computing at least one of a frequency of the plurality of SIP response messages and a count of the plurality of SIP response messages corresponding to each user identifier of the at least one user identifier. The method further includes calculating a degree of attack corresponding to each user identifier using at least one of the frequency and the count. The method further includes determining a monitoring interval for each user identifier based upon the degree of attack for monitoring the plurality of SIP response messages. An apparatus and a computer program product for preventing SIP attacks are also provided.
    Type: Grant
    Filed: August 8, 2007
    Date of Patent: May 21, 2013
    Assignee: Radware, Ltd.
    Inventor: Avi Chesla
  • Publication number: 20120071131
    Abstract: A method for profiling data communication activity of users of mobile devices, comprises sniffing traffic flows between a mobile device and the Internet through a cellular network; extracting a plurality of traffic attributes included in the traffic flows and associated with the mobile device; logging the extracted plurality of traffic attributes; analyzing the plurality of traffic attributes for generating a user profile for a user of the mobile device based on the plurality of traffic attributes, wherein the user profile includes at least one of an advertising targeted user profile and a security targeted user profile; and sharing information and alerts related to the generated user profile with at least one external system.
    Type: Application
    Filed: September 20, 2011
    Publication date: March 22, 2012
    Applicant: RADWARE, LTD.
    Inventors: Roy ZISAPEL, Amir PELES, Avi CHESLA
  • Patent number: 7836496
    Abstract: A method for protecting a network from an attack includes measuring a property of traffic entering the network, and analyzing the property using at least one fuzzy logic algorithm in order to detect the attack.
    Type: Grant
    Filed: October 24, 2007
    Date of Patent: November 16, 2010
    Assignee: Radware Ltd.
    Inventors: Avi Chesla, Lev Medvedovsky, Abraham Elboim
  • Patent number: 7681235
    Abstract: A method for protecting a network from an attack includes measuring a property of traffic entering the network, and analyzing the property using at least one fuzzy logic algorithm in order to detect the attack.
    Type: Grant
    Filed: May 19, 2003
    Date of Patent: March 16, 2010
    Assignee: Radware Ltd.
    Inventors: Avi Chesla, Lev Medvedovsky, Abraham Elboim
  • Patent number: 7624084
    Abstract: A system and method to detect and mitigate denial of service and distributed denial of service HTTP “page” flood attacks. Detection of attack/anomaly is made according to multiple traffic parameters including rate-based and rate-invariant parameters in both traffic directions. Prevention is done according to HTTP traffic parameters that are analyzed once a traffic anomaly is detected. This protection includes a differential adaptive mechanism that tunes the sensitivity of the anomaly detection engine. The decision engine is based on a combination between fuzzy logic inference systems and statistical thresholds. A “trap buffer” characterizes the attack to allow an accurate mitigation according to the source IP(s) and the HTTP request URL's that are used as part of the attack. Mitigation is controlled through a feedback mechanism that tunes the level of rate limit factors that are needed in order to mitigate the attack effectively while letting legitimate traffic to pass.
    Type: Grant
    Filed: October 9, 2007
    Date of Patent: November 24, 2009
    Assignee: Radware, Ltd.
    Inventor: Avi Chesla
  • Patent number: 7617170
    Abstract: A system and method to detect and mitigate denial of service and distributed denial of service HTTP “page” flood attacks. Detection of attack/anomaly is made according to multiple traffic parameters including rate-based and rate-invariant parameters in both traffic directions. Prevention is done according to HTTP traffic parameters that are analyzed once a traffic anomaly is detected. This protection includes a differential adaptive mechanism that tunes the sensitivity of the anomaly detection engine. The decision engine is based on a combination between fuzzy logic inference systems and statistical thresholds. A “trap buffer” characterizes the attack to allow an accurate mitigation according to the source IP(s) and the HTTP request URL's that are used as part of the attack. Mitigation is controlled through a feedback mechanism that tunes the level of rate limit factors that are needed in order to mitigate the attack effectively while letting legitimate traffic to pass.
    Type: Grant
    Filed: October 9, 2007
    Date of Patent: November 10, 2009
    Assignee: Radware, Ltd.
    Inventor: Avi Chesla
  • Patent number: 7607170
    Abstract: A method for detecting an attack in a computer network includes monitoring communication traffic transmitted over connections on the network that are associated with a stateful application protocol so as to detect respective states of the connections, and analyzing a distribution of the states so as to detect the attack.
    Type: Grant
    Filed: December 22, 2004
    Date of Patent: October 20, 2009
    Assignee: Radware Ltd.
    Inventor: Avi Chesla
  • Publication number: 20090043724
    Abstract: A method for preventing session initiation protocol (SIP) attacks is provided. The method includes receiving a plurality of SIP response messages comprising at least one pre-defined SIP response code, and extracting at least one user identifier from the plurality of SIP response messages. The method further includes computing at least one of a frequency of the plurality of SIP response messages and a count of the plurality of SIP response messages corresponding to each user identifier of the at least one user identifier. The method further includes calculating a degree of attack corresponding to each user identifier using at least one of the frequency and the count. The method further includes determining a monitoring interval for each user identifier based upon the degree of attack for monitoring the plurality of SIP response messages. An apparatus and a computer program product for preventing SIP attacks are also provided.
    Type: Application
    Filed: August 8, 2007
    Publication date: February 12, 2009
    Applicant: RADWARE, LTD.
    Inventor: Avi Chesla
  • Publication number: 20080086772
    Abstract: A distributed security system wherein intelligent security agents (i.e., agent devices) share security incident information between themselves via a controller. An adaptive security decision making involving network worms (non-SMTP worms) and DoS floods attacks is also described; wherein the Worms and DoS flood digital signatures are generated to assist in intrusion prevention process.
    Type: Application
    Filed: October 9, 2007
    Publication date: April 10, 2008
    Applicant: RADWARE, LTD.
    Inventor: Avi Chesla
  • Publication number: 20080086434
    Abstract: A system and method to detect and mitigate denial of service and distributed denial of service HTTP “page” flood attacks. Detection of attack/anomaly is made according to multiple traffic parameters including rate-based and rate-invariant parameters in both traffic directions. Prevention is done according to HTTP traffic parameters that are analyzed once a traffic anomaly is detected. This protection includes a differential adaptive mechanism that tunes the sensitivity of the anomaly detection engine. The decision engine is based on a combination between fuzzy logic inference systems and statistical thresholds. A “trap buffer” characterizes the attack to allow an accurate mitigation according to the source IP(s) and the HTTP request URL's that are used as part of the attack. Mitigation is controlled through a feedback mechanism that tunes the level of rate limit factors that are needed in order to mitigate the attack effectively while letting legitimate traffic to pass.
    Type: Application
    Filed: October 9, 2007
    Publication date: April 10, 2008
    Applicant: RADWARE, LTD.
    Inventor: Avi Chesla
  • Publication number: 20080086435
    Abstract: A system and method to detect and mitigate denial of service and distributed denial of service HTTP “page” flood attacks. Detection of attack/anomaly is made according to multiple traffic parameters including rate-based and rate-invariant parameters in both traffic directions. Prevention is done according to HTTP traffic parameters that are analyzed once a traffic anomaly is detected. This protection includes a differential adaptive mechanism that tunes the sensitivity of the anomaly detection engine. The decision engine is based on a combination between fuzzy logic inference systems and statistical thresholds. A “trap buffer” characterizes the attack to allow an accurate mitigation according to the source IP(s) and the HTTP request URL's that are used as part of the attack. Mitigation is controlled through a feedback mechanism that tunes the level of rate limit factors that are needed in order to mitigate the attack effectively while letting legitimate traffic to pass.
    Type: Application
    Filed: October 9, 2007
    Publication date: April 10, 2008
    Applicant: Radware, Ltd.
    Inventor: Avi Chesla
  • Publication number: 20080052774
    Abstract: A method for protecting a network from an attack includes measuring a property of traffic entering the network, and analyzing the property using at least one fuzzy logic algorithm in order to detect the attack.
    Type: Application
    Filed: October 24, 2007
    Publication date: February 28, 2008
    Applicant: RADWARE LTD.
    Inventors: Avi Chesla, Lev Medvedovsky, Abraham Elboim
  • Publication number: 20060137009
    Abstract: A method for detecting an attack in a computer network includes monitoring communication traffic transmitted over connections on the network that are associated with a stateful application protocol so as to detect respective states of the connections, and analyzing a distribution of the states so as to detect the attack.
    Type: Application
    Filed: December 22, 2004
    Publication date: June 22, 2006
    Applicant: V-Secure Technologies, Inc.
    Inventor: Avi Chesla
  • Publication number: 20040250124
    Abstract: A method for protecting a network from an attack includes measuring a property of traffic entering the network, and analyzing the property using at least one fuzzy logic algorithm in order to detect the attack.
    Type: Application
    Filed: May 19, 2003
    Publication date: December 9, 2004
    Applicant: VSECURE TECHNOLOGIES (US) INC.
    Inventors: Avi Chesla, Lev Medvedovsky, Abraham Elboim