Patents by Inventor Daniel SHAPIRA

Daniel SHAPIRA has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 12212595
    Abstract: A method and system for protecting an application from unsecure network exposure. The method includes identifying an at-risk application, wherein identifying the at-risk application further comprises determining that the application is configured incorrectly; identifying at least one port through which the at-risk application is accessible when the at-risk application is determined to be configured incorrectly; and determining, based on the identified at least one port through which the at-risk application is accessible, whether an exposure vulnerability exists, wherein the exposure vulnerability is an unapproved exposure of at least one of the at least one port to external resources.
    Type: Grant
    Filed: October 20, 2021
    Date of Patent: January 28, 2025
    Assignee: Palo Alto Networks, Inc.
    Inventors: Dima Stopel, Liron Levin, Daniel Shapira, Nitsan Ben Nun, John Morello
  • Publication number: 20240291830
    Abstract: Some embodiments of the invention provide a method for detecting port scans in a container orchestration system cluster that includes at least a first machine executing on a host computer. The method identifies a packet stream between the first machine and a second machine operating outside of the host computer. The method determines that the packet stream is potentially part of a port scanning operation based on an assessment that the packet stream includes less than a threshold number of packets during a particular time period. Based on said determination, the method identifies an amount of payload data exchanged between the first and second machines in the packet stream during the particular time period. When the identified amount of payload data is less than or equal to a threshold amount of payload data, the method classifies the stream as a probable port-scanning stream.
    Type: Application
    Filed: February 28, 2023
    Publication date: August 29, 2024
    Inventors: Sergey Kostov, Daniel Shapira
  • Patent number: 11681600
    Abstract: In performance testing a data storage system, operating parameters and performance data are recorded as the system executes performance tests over a test period, where the performance data includes measures of a performance characteristic (e.g., latency) across a range of I/O operation rates or I/O data rates for each performance test. Subsets of recorded operating parameters and performance data are selected and applied to a machine learning model to train and use the model, and the model provides a model output indicative for each performance test of a level of validity of the corresponding performance data. Based on the model output indicating at least a predetermined level of validity for a given performance test, the performance data for the performance test are incorporated into a record of validated performance data for the data storage system, usable for benchmarking, regression analysis, hardware qualification, etc.
    Type: Grant
    Filed: July 28, 2021
    Date of Patent: June 20, 2023
    Assignee: EMC IP Holding Company LLC
    Inventors: Amihai Savir, Shay Katz, Michael Timmy Opachevsky, Daniel Shapira, Gal Uzan
  • Publication number: 20230039048
    Abstract: Performance testing a data storage system includes recording operating parameters and performance data as the data storage system executes performance tests over a test period, the performance data including one or more measures of a performance characteristic (e.g., latency) across a range of I/O operation rates or I/O data rates for each of the performance tests. Subsets of recorded operating parameters and performance data are selected and applied to a machine learning model to train and use the model, and the model provides a model output indicative for each performance test of a level of validity of the corresponding performance data. Based on the model output indicating at least a predetermined level of validity for a given performance test, the performance data for the performance test are incorporated into a record of validated performance data for the data storage system, usable for benchmarking, regression analysis, hardware qualification, etc.
    Type: Application
    Filed: July 28, 2021
    Publication date: February 9, 2023
    Inventors: Amihai Savir, Shay Katz, Michael Timmy Opachevsky, Daniel Shapira, Gal Uzan
  • Publication number: 20220046051
    Abstract: A method and system for protecting an application from unsecure network exposure. The method includes identifying an at-risk application, wherein identifying the at-risk application further comprises determining that the application is configured incorrectly; identifying at least one port through which the at-risk application is accessible when the at-risk application is determined to be configured incorrectly; and determining, based on the identified at least one port through which the at-risk application is accessible, whether an exposure vulnerability exists, wherein the exposure vulnerability is an unapproved exposure of at least one of the at least one port to external resources.
    Type: Application
    Filed: October 20, 2021
    Publication date: February 10, 2022
    Applicant: Twistlock, Ltd.
    Inventors: Dima STOPEL, Liron LEVIN, Daniel SHAPIRA, Nitsan BEN NUN, John MORELLO
  • Patent number: 11184382
    Abstract: A method and system for protecting an application from unsecure network exposure. The method includes identifying at least one port through which the application is accessible when the application is not configured correctly, wherein the application is executed at a host device connected to at least one network, the host device having the at least one port; sending, to an external resource, connection data for connecting to the application via the at least one port, wherein the external resource is configured to attempt to connect to the application based on the connection data and to return results of the connection attempt; determining, based on the results of the connection attempt, whether an exposure vulnerability exists; and performing at least one mitigation action when an exposure vulnerability exists.
    Type: Grant
    Filed: October 17, 2018
    Date of Patent: November 23, 2021
    Assignee: Twistlock, LTD.
    Inventors: Dima Stopel, Liron Levin, Daniel Shapira, Nitsan Ben Nun, John Morello
  • Publication number: 20190116199
    Abstract: A method and system for protecting an application from unsecure network exposure. The method includes identifying at least one port through which the application is accessible when the application is not configured correctly, wherein the application is executed at a host device connected to at least one network, the host device having the at least one port; sending, to an external resource, connection data for connecting to the application via the at least one port, wherein the external resource is configured to attempt to connect to the application based on the connection data and to return results of the connection attempt; determining, based on the results of the connection attempt, whether an exposure vulnerability exists; and performing at least one mitigation action when an exposure vulnerability exists.
    Type: Application
    Filed: October 17, 2018
    Publication date: April 18, 2019
    Applicant: Twistlock, Ltd.
    Inventors: Dima STOPEL, Liron LEVIN, Daniel SHAPIRA, Nitsan BEN NUN, John MORELLO