Patents by Inventor Bar Lahav

Bar Lahav has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20260023861
    Abstract: A method for detecting malicious code, including, in a computer, intercepting a call to an operating-system (OS) function, the call requesting an execution privilege for a memory region. In response to intercepting the call, the execution privilege requested by the call is removed. Upon detecting an exception that occurs due to an executable code in the memory region starting to run without the execution privilege, a check is made for determining whether the executable code in the memory region is malicious or benign.
    Type: Application
    Filed: July 22, 2024
    Publication date: January 22, 2026
    Inventors: Eldar Aharoni, Eli Birkan, Or Chechik, Jon Doron, Bar Lahav
  • Patent number: 12361130
    Abstract: Methods, storage systems and computer program products implement embodiments of the present invention for protecting a computing device, which includes a processor and a memory and is coupled to a storage device storing a set of one or more files. In embodiments of the present invention, a call to a specified function for execution by the processor is detected, and a stack trace for the call to the specified function is generated in the memory. Upon detecting, in the stack trace, a stack frame including a return address referencing a shellcode region in the memory, wherein the shellcode region includes executable code that was not loaded from any given file on the storage device, then the referenced executable code is compared to a list of malicious shellcode. Finally, a preventive action is initiated upon detecting a match between the referenced executable code and one of malicious shellcodes in the list.
    Type: Grant
    Filed: April 17, 2023
    Date of Patent: July 15, 2025
    Assignee: Palo Alto Networks, Inc.
    Inventors: Or Chechik, Liav Zigelbaum, Eldar Aharoni, Bar Lahav
  • Publication number: 20240346145
    Abstract: Methods, storage systems and computer program products implement embodiments of the present invention for protecting a computing device, which includes a processor and a memory and is coupled to a storage device storing a set of one or more files. In embodiments of the present invention, a call to a specified function for execution by the processor is detected, and a stack trace for the call to the specified function is generated in the memory. Upon detecting, in the stack trace, a stack frame including a return address referencing a shellcode region in the memory, wherein the shellcode region includes executable code that was not loaded from any given file on the storage device, then the referenced executable code is compared to a list of malicious shellcode. Finally, a preventive action is initiated upon detecting a match between the referenced executable code and one of malicious shellcodes in the list.
    Type: Application
    Filed: April 17, 2023
    Publication date: October 17, 2024
    Inventors: Or Chechik, Liav Zigelbaum, Eldar Aharoni, Bar Lahav