Patents by Inventor Gabriel Beyo

Gabriel Beyo has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11763018
    Abstract: Embodiments of the present disclosure relate to generating a high level security policy for a data repository without knowledge of the access control, entitlement, and other models of the data repository. A set of abstractions that define a security policy language may be generated based on data in a data repository collection. The set of abstractions may define a security policy language, which may be provided to a security administrator who can define a security policy with the security policy language. The security policy may be translated into a common physical language to generate a common physical policy. The processing device may then translate the common physical policy into a set of commands for each of one or more data repositories that the data repository collection is comprised of.
    Type: Grant
    Filed: February 22, 2021
    Date of Patent: September 19, 2023
    Assignee: IMPERVA, INC.
    Inventors: Ron Ben-Natan, Gabriel Beyo, Rosa Miroshnikov, Ury Segal
  • Patent number: 11645407
    Abstract: A method by a network device to enrich database logs. The method includes detecting that a process executing on the network device has created a database connection to a database server, determining contextual information of the process in response to detecting that the process has created the database connection, generating a key associated with the database connection based on information that is known to be included in a database log of the database, and providing the key and the contextual information to a correlator component.
    Type: Grant
    Filed: December 10, 2020
    Date of Patent: May 9, 2023
    Assignee: Imperva, Inc.
    Inventors: Gabriel Beyo, Assaf Cohen, Eytan Naim
  • Publication number: 20230025740
    Abstract: A method performed by a cloud computing platform of a cloud service is disclosed to assess a data security of a database deployed in a cloud environment associated with a user of the cloud service. The method includes creating a sandbox environment in the cloud environment associated with the user, loading scanner code in the sandbox environment, wherein the scanner code includes code for performing a data security assessment, loading and restoring a snapshot of the database in the sandbox environment, setting a unique password for admin access to the restored snapshot of the database, executing the scanner code in the sandbox environment to perform the data security assessment on the restored snapshot of the database, and tearing down the sandbox environment in response to a determination that the scanner code has finished execution.
    Type: Application
    Filed: July 22, 2022
    Publication date: January 26, 2023
    Applicant: Imperva, Inc.
    Inventors: Gabriel BEYO, Tal SHABI, Eytan Shalom NAIM, Elad EREZ, James Arthur BURTOFT, Paul AIUTO
  • Publication number: 20220269806
    Abstract: Embodiments of the present disclosure relate to generating a high level security policy for a data repository without knowledge of the access control, entitlement, and other models of the data repository. A set of abstractions that define a security policy language may be generated based on data in a data repository collection. The set of abstractions may define a security policy language, which may be provided to a security administrator who can define a security policy with the security policy language. The security policy may be translated into a common physical language to generate a common physical policy. The processing device may then translate the common physical policy into a set of commands for each of one or more data repositories that the data repository collection is comprised of.
    Type: Application
    Filed: February 22, 2021
    Publication date: August 25, 2022
    Inventors: Ron Ben-Natan, Gabriel Beyo, Rosa Miroshnikov, Ury Segal
  • Publication number: 20220269769
    Abstract: Embodiments of the present disclosure relate to utilizing an existing login process of a data repository to enable the data repository to delegate MFA functionality to an external MFA system. When a purported user attempts to log in to the data repository, a delegation module within the login process may insert a record into a table associated with the login process. A program executing on a security device external to the data repository may periodically poll the table for new records and upon detecting the new record, may call the external MFA system to verify the login attempt. The external MFA system may indicate to the program whether the login attempt was verified and the program may update the table with the indication. Upon detecting the indication, the delegation module may complete or terminate the login attempt based on the indication.
    Type: Application
    Filed: February 22, 2022
    Publication date: August 25, 2022
    Inventors: Ron Ben-Natan, Gabriel Beyo, Rosa Miroshnikov, Ury Segal
  • Publication number: 20210312067
    Abstract: A method by a network device to enrich database logs. The method includes detecting that a process executing on the network device has created a database connection to a database server, determining contextual information of the process in response to detecting that the process has created the database connection, generating a key associated with the database connection based on information that is known to be included in a database log of the database, and providing the key and the contextual information to a correlator component.
    Type: Application
    Filed: December 10, 2020
    Publication date: October 7, 2021
    Applicant: Imperva, Inc.
    Inventors: Gabriel BEYO, Assaf COHEN, Eytan NAIM
  • Patent number: 10915648
    Abstract: A method by a network device for providing contextual information for database logs. The method includes detecting that a process executing on the network device has created a database connection to a database server, determining a process ID of the process that created the database connection to the database server, determining contextual information using the process ID of the process, generating a key associated with the database connection based on information that is known to be included in a database log of the database, and providing the key and the contextual information to a correlator component, which is to correlate information included in the database log of the database with the contextual information based on the key to generate an enriched database log that correlates the information included in the database log with the contextual information.
    Type: Grant
    Filed: April 3, 2020
    Date of Patent: February 9, 2021
    Assignee: Imperva, Inc.
    Inventors: Gabriel Beyo, Assaf Cohen, Eytan Naim