Patents by Inventor David Irwin

David Irwin has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 10469251
    Abstract: The present system and method allow for preemptive, self-healing computer security. The system includes a user device processor and a PSS server processor. The two processors perform an initial Data Structure & Key Mutation (DSKM) method and an interval DSKM method at a given interval to protect secret information and prevent its exposure by attackers. When a user requests a site or service that is an attractive target for attackers, such as a bank site or monetary transfer service, the processors perform a Man in the Browser attack prevention method. When a packet is received or generated, the processors perform a Deep Protocol and Stateful Inspection and Prevention method to prevent receipt of malicious packets or the loss of sensitive information. Various forensics modules allow accurate forensic examination of the type, scope, and method of attack, as well as real-time protection of cloud-based services.
    Type: Grant
    Filed: May 5, 2017
    Date of Patent: November 5, 2019
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Daoqi Hou
  • Publication number: 20190104118
    Abstract: A network security system that employs space-time separated and jointly-evolving relationships to provide fast network access control, efficient real-time forensics capabilities, and enhanced protection for at-rest data in the event of a network breach. The network security system allows, in part, functionality by which the system accepts a request by a user to access the data stored in the database, identifies a sequence of security agents to participate in authenticating and protecting the access of the data by the user, generates a sequence of pseudorandom IDs and space-time varying credentials, checks at each one of the security agents a corresponding one of the credentials, determines that the user is permitted to access the data using access control logs if all the security agents accept the corresponding credentials, and varies the credentials based on a space-time relationship.
    Type: Application
    Filed: September 17, 2018
    Publication date: April 4, 2019
    Inventors: Chwan-Hwa WU, J. David IRWIN, David Charles LAST, Myers HAWKINS, Hao SUN
  • Patent number: 10097536
    Abstract: A network security system that employs space-time separated and jointly-evolving relationships to provide fast network access control, efficient real-time forensics capabilities, and enhanced protection for at-rest data in the event of a network breach. The network security system allows, in part, functionality by which the system accepts a request by a user to access the data stored in the database, identifies a sequence of security agents to participate in authenticating and protecting the access of the data by the user, generates a sequence of pseudorandom IDs and space-time varying credentials, checks at each one of the security agents a corresponding one of the credentials, determines that the user is permitted to access the data using access control logs if all the security agents accept the corresponding credentials, and varies the credentials based on a space-time relationship.
    Type: Grant
    Filed: December 7, 2015
    Date of Patent: October 9, 2018
    Assignee: AUBURN UNIVERSITY
    Inventors: Chwan-Hwa Wu, J. David Irwin, David Charles Last, Myers Hawkins, Hao Sun
  • Publication number: 20170324555
    Abstract: The present system and method allow for preemptive, self-healing computer security. The system includes a user device processor and a PSS server processor. The two processors perform an initial Data Structure & Key Mutation (DSKM) method and an interval DSKM method at a given interval to protect secret information and prevent its exposure by attackers. When a user requests a site or service that is an attractive target for attackers, such as a bank site or monetary transfer service, the processors perform a Man in the Browser attack prevention method. When a packet is received or generated, the processors perform a Deep Protocol and Stateful Inspection and Prevention method to prevent receipt of malicious packets or the loss of sensitive information. Various forensics modules allow accurate forensic examination of the type, scope, and method of attack, as well as real-time protection of cloud-based services.
    Type: Application
    Filed: May 5, 2017
    Publication date: November 9, 2017
    Applicant: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Daoqi Hou
  • Publication number: 20160182486
    Abstract: A network security system that employs space-time separated and jointly-evolving relationships to provide fast network access control, efficient real-time forensics capabilities, and enhanced protection for at-rest data in the event of a network breach. The network security system allows, in part, functionality by which the system accepts a request by a user to access the data stored in the database, identifies a sequence of security agents to participate in authenticating and protecting the access of the data by the user, generates a sequence of pseudorandom IDs and space-time varying credentials, checks at each one of the security agents a corresponding one of the credentials, determines that the user is permitted to access the data using access control logs if all the security agents accept the corresponding credentials, and varies the credentials based on a space-time relationship.
    Type: Application
    Filed: December 7, 2015
    Publication date: June 23, 2016
    Inventors: Chwan-Hwa WU, J. David IRWIN, David Charles LAST, Myers HAWKINS, Hao SUN
  • Patent number: 9208335
    Abstract: A network security system that employs space-time separated and jointly-evolving relationships to provide fast network access control, efficient real-time forensics capabilities, and enhanced protection for at-rest data in the event of a network breach. The network security system allows, in part, functionality by which the system accepts a request by a user to access the data stored in the database, identifies a sequence of security agents to participate in authenticating and protecting the access of the data by the user, generates a sequence of pseudorandom IDs and space-time varying credentials, checks at each one of the security agents a corresponding one of the credentials, determines that the user is permitted to access the data using access control logs if all the security agents accept the corresponding credentials, and varies the credentials based on a space-time relationship.
    Type: Grant
    Filed: June 2, 2014
    Date of Patent: December 8, 2015
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, David Charles Last, Myers Hawkins, Hao Sun
  • Publication number: 20150082399
    Abstract: A network security system that employs space-time separated and jointly-evolving relationships to provide fast network access control, efficient real-time forensics capabilities, and enhanced protection for at-rest data in the event of a network breach. The network security system allows, in part, functionality by which the system accepts a request by a user to access the data stored in the database, identifies a sequence of security agents to participate in authenticating and protecting the access of the data by the user, generates a sequence of pseudorandom IDs and space-time varying credentials, checks at each one of the security agents a corresponding one of the credentials, determines that the user is permitted to access the data using access control logs if all the security agents accept the corresponding credentials, and varies the credentials based on a space-time relationship.
    Type: Application
    Filed: June 2, 2014
    Publication date: March 19, 2015
    Inventors: Chwan-Hwa WU, J. David IRWIN, David Charles LAST, Myers HAWKINS, Hao SUN
  • Patent number: 8510831
    Abstract: The present disclosure generally pertains to systems and methods for protecting network resources from denial of service attacks. In one exemplary embodiment, a responder stores an access filter value used to determine whether an incoming message frame has been transmitted from an authorized user. In this regard, a user communication device includes logic for determining the access filter value stored at the responder and, includes the access filter value in a message frame transmitted from the computer to the responder. The responder compares the received access filter value to the stored access filter value. If such values match or otherwise correspond, the responder authenticates the message frame. However, if such values do not match or otherwise correspond, the responder discards the message frame. Thus, the responder processes authenticated message frames and discards unauthenticated message frames thereby preventing denial of service attacks from malicious users.
    Type: Grant
    Filed: January 19, 2012
    Date of Patent: August 13, 2013
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang
  • Patent number: 8505139
    Abstract: A washer fill system and method supply a suitable minimum amount of water necessary to wash a particular load of laundry based on readings taken from a pressure sensor that measures liquid pressure in the wash tub. Pressure sensor readings are taken intermittently during the fill process to determine when a sufficient amount of free water for washing the load of clothes has accumulated in the tub. This includes pressure readings taken while pulsing the washer motor to spin the wash basket. Other pressure readings may be taken during a pause in filling to measure the water run-off from the wetted clothes above the free water line, and the release of air bubbles from a load portion below the water line. Determining the sufficiency of the amount of wash liquid in the wash tub involves implementation of an algorithm with coefficients determined through regression analyzes, and may include other factors.
    Type: Grant
    Filed: January 18, 2007
    Date of Patent: August 13, 2013
    Assignee: Electrolux Home Products, Inc.
    Inventors: Vicente Marconcin Vanhazebrouck, Marcos Paulo Soares Bittencourt, Marcelo Piekarski, David Irwin Ellingson, Jon Roepke
  • Patent number: 8261350
    Abstract: A system for preventing successful denial of service attacks comprises a first communication device, a second communication device, and a network. The first and second communication devices establish a communication session via the network. Based on various information, such as a pre-shared secret, one of the communication devices determines a network access filter value and compares this value to at least one data frame in order to authenticate such data frame without committing significant computing resource and any memory space. By updating the network access filter over time, an unauthorized user who discovers the outdated network access filter values is prevented from successfully launching a denial of service attack.
    Type: Grant
    Filed: January 5, 2011
    Date of Patent: September 4, 2012
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang, Chun-Ching Huang
  • Publication number: 20120124383
    Abstract: The present disclosure generally pertains to systems and methods for protecting network resources from denial of service attacks. In one exemplary embodiment, a responder stores an access filter value used to determine whether an incoming message frame has been transmitted from an authorized user. In this regard, a user communication device includes logic for determining the access filter value stored at the responder and, includes the access filter value in a message frame transmitted from the computer to the responder. The responder compares the received access filter value to the stored access filter value. If such values match or otherwise correspond, the responder authenticates the message frame. However, if such values do not match or otherwise correspond, the responder discards the message frame. Thus, the responder processes authenticated message frames and discards unauthenticated message frames thereby preventing denial of service attacks from malicious users.
    Type: Application
    Filed: January 19, 2012
    Publication date: May 17, 2012
    Applicant: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang
  • Patent number: 8156769
    Abstract: An automatic washing machine includes a wash basin having a plurality of apertures and an annular liquid reservoir formed at an upper portion of the basin. A plurality of flow channels are arranged around the exterior surface of the wash basin. The plurality of flow channels includes upward flow channels, configured for directing wash liquid extracted from the wash basin into the reservoir under centrifugal force generated in a spin cycle. The plurality of flow channels also includes downward flow channels configured for directing wash liquid from the reservoir to a central drain following the spin cycle. The arrangement avoids the need for an outer wash tub, and at the same time provides stabilization to the wash basin during high speed spins. In another aspect, the wash basin may include wash action ramps provided on a bottom surface of the wash basin and at an upper sidewall of the wash basin.
    Type: Grant
    Filed: January 25, 2011
    Date of Patent: April 17, 2012
    Assignee: Electrolux Home Products, Inc.
    Inventors: Steven Leidig, David Irwin Ellingson
  • Patent number: 8127355
    Abstract: The present disclosure generally pertains to systems and methods for protecting network resources from denial of service attacks. In one exemplary embodiment, a responder stores an access filter value used to determine whether an incoming message frame has been transmitted from an authorized user. In this regard, a user communication device includes logic for determining the access filter value stored at the responder and includes the access filter value in a message frame transmitted from the computer to the responder. The responder compares the received access filter value to the stored access filter value. If such values match or otherwise correspond, the responder authenticates the message frame. However, if such values do not match or otherwise correspond, the responder discards the message frame. Thus, the responder processes authenticated message frames and discards unauthenticated message frames thereby preventing denial of service attacks from malicious users.
    Type: Grant
    Filed: June 1, 2010
    Date of Patent: February 28, 2012
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang
  • Publication number: 20110120194
    Abstract: An automatic washing machine includes a wash basin having a plurality of apertures and an annular liquid reservoir formed at an upper portion of the basin. A plurality of flow channels are arranged around the exterior surface of the wash basin. The plurality of flow channels includes upward flow channels, configured for directing wash liquid extracted from the wash basin into the reservoir under centrifugal force generated in a spin cycle. The plurality of flow channels also includes downward flow channels configured for directing wash liquid from the reservoir to a central drain following the spin cycle. The arrangement avoids the need for an outer wash tub, and at the same time provides stabilization to the wash basin during high speed spins. In another aspect, the wash basin may include wash action ramps provided on a bottom surface of the wash basin and at an upper sidewall of the wash basin.
    Type: Application
    Filed: January 25, 2011
    Publication date: May 26, 2011
    Applicant: ELECTROLUX HOME PRODUCTS, INC.
    Inventors: Steven LEIDIG, David Irwin ELLINGSON
  • Patent number: 7937759
    Abstract: A system for preventing successful denial of service attacks comprises a first communication device, a second communication device, and a network. The first and second communication devices establish a communication session via the network. Based on various information, such as a pre-shared secret, one of the communication devices determines a network access filter value and compares this value to at least one data frame in order to authenticate such data frame without committing significant computing resource and any memory space. By updating the network access filter over time, an unauthorized user who discovers the outdated network access filter values is prevented from successfully launching a denial of service attack.
    Type: Grant
    Filed: March 30, 2007
    Date of Patent: May 3, 2011
    Assignee: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang, Chun-Ching Huang
  • Publication number: 20110099630
    Abstract: A system for preventing successful denial of service attacks comprises a first communication device, a second communication device, and a network. The first and second communication devices establish a communication session via the network. Based on various information, such as a pre-shared secret, one of the communication devices determines a network access filter value and compares this value to at least one data frame in order to authenticate such data frame without committing significant computing resource and any memory space. By updating the network access filter over time, an unauthorized user who discovers the outdated network access filter values is prevented from successfully launching a denial of service attack.
    Type: Application
    Filed: January 5, 2011
    Publication date: April 28, 2011
    Applicant: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang, Chun-Ching Huang
  • Patent number: 7900305
    Abstract: An automatic washing machine includes a wash basin having a plurality of apertures and an annular liquid reservoir formed at an upper portion of the basin. A plurality of flow channels are arranged around the exterior surface of the wash basin. The plurality of flow channels includes upward flow channels, configured for directing wash liquid extracted from the wash basin into the reservoir under centrifugal force generated in a spin cycle. The plurality of flow channels also includes downward flow channels configured for directing wash liquid from the reservoir to a central drain following the spin cycle. The arrangement avoids the need for an outer wash tub, and at the same time provides stabilization to the wash basin during high speed spins. In another aspect, the wash basin may include wash action ramps provided on a bottom surface of the wash basin and at an upper sidewall of the wash basin.
    Type: Grant
    Filed: December 13, 2006
    Date of Patent: March 8, 2011
    Assignee: Electrolux Home Products, Inc.
    Inventors: Steven Leidig, Ellingson David Irwin
  • Publication number: 20100242112
    Abstract: The present disclosure generally pertains to systems and methods for protecting network resources from denial of service attacks. In one exemplary embodiment, a responder stores an access filter value used to determine whether an incoming message frame has been transmitted from an authorized user. In this regard, a user communication device includes logic for determining the access filter value stored at the responder and includes the access filter value in a message frame transmitted from the computer to the responder. The responder compares the received access filter value to the stored access filter value. If such values match or otherwise correspond, the responder authenticates the message frame. However, if such values do not match or otherwise correspond, the responder discards the message frame. Thus, the responder processes authenticated message frames and discards unauthenticated message frames thereby preventing denial of service attacks from malicious users.
    Type: Application
    Filed: June 1, 2010
    Publication date: September 23, 2010
    Applicant: Auburn University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang
  • Patent number: 7774841
    Abstract: The present disclosure generally pertains to systems and methods for protecting network resources from denial of service attacks. In one exemplary embodiment, a responder stores an access filter value used to determine whether an incoming message frame has been transmitted from an authorized user. In this regard, a user communication device includes logic for determining the access filter value stored at the responder and includes the access filter value in a message frame transmitted from the computer to the responder. The responder compares the received access filter value to the stored access filter value. If such values match or otherwise correspond, the responder authenticates the message frame. However, if such values do not match or otherwise correspond, the responder discards the message frame. Thus, the responder processes authenticated message frames and discards unauthenticated message frames thereby preventing denial of service attacks from malicious users.
    Type: Grant
    Filed: October 1, 2004
    Date of Patent: August 10, 2010
    Assignee: Aubum University
    Inventors: Chwan-Hwa Wu, J. David Irwin, Chien-Cheng Wang
  • Patent number: 7757324
    Abstract: An automatic washing machine includes a wash basin having a plurality of apertures and an annular liquid reservoir formed at an upper portion of the basin. A plurality of flow channels are arranged around the exterior surface of the wash basin. The plurality of flow channels includes upward flow channels, configured for directing wash liquid extracted from the wash basin into the reservoir under centrifugal force generated in a spin cycle. The plurality of flow channels also includes downward flow channels configured for directing wash liquid from the reservoir to a central drain following the spin cycle. The arrangement avoids the need for an outer wash tub, and at the same time provides stabilization to the wash basin during high speed spins. In another aspect, the wash basin may include wash action ramps provided on a bottom surface of the wash basin and at an upper sidewall of the wash basin.
    Type: Grant
    Filed: December 13, 2006
    Date of Patent: July 20, 2010
    Assignee: Electrolux Home Products, Inc.
    Inventors: Steven Leidig, Ellingson David Irwin