Patents by Inventor Guy Galil

Guy Galil has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20240291864
    Abstract: A computer-implemented method comprising: automatically monitoring a honeypot trap environment, to capture activity data within the honeypot trap environment, wherein the honeypot trap environment comprises a plurality of software and hardware resources that are intended to attract attempts at unauthorized use of the honeypot trap environment; automatically extracting, from the captured activity data, a plurality of attributes representing entities, events, and relations between the entities and events; automatically applying an analytics suite to identify specific combinations of the attributes as representing a likelihood of being associated with an unauthorized intrusion attempt into the honeypot environment; automatically assigning a risk score to each of the specific combinations, wherein the risk score reflect the likelihood of being associated with an unauthorized intrusion attempt into the honeypot environment; and automatically generating at least one security rule for an intrusion detection and prev
    Type: Application
    Filed: February 28, 2023
    Publication date: August 29, 2024
    Inventors: Oded Sofer, Guy Galil
  • Patent number: 11416631
    Abstract: A computer-based system and method for monitoring of movement of data in a computer network, including: parsing a message, the message including one of a data access command sent to a computer database and a response to a data access command, to extract a template, metadata and data of the data access command, examining the template, metadata and data of the message to identify messages related to movement of data that is classified as sensitive, and generating a flow graph indicative of new locations of the sensitive data. Policy rules may be applied to the new locations of the sensitive data to monitor access to the new location.
    Type: Grant
    Filed: August 5, 2020
    Date of Patent: August 16, 2022
    Assignee: International Business Machines Corporation
    Inventors: Oded Sofer, Guy Galil
  • Publication number: 20220043927
    Abstract: A computer-based system and method for monitoring of movement of data in a computer network, including: parsing a message, the message including one of a data access command sent to a computer database and a response to a data access command, to extract a template, metadata and data of the data access command, examining the template, metadata and data of the message to identify messages related to movement of data that is classified as sensitive, and generating a flow graph indicative of new locations of the sensitive data. Policy rules may be applied to the new locations of the sensitive data to monitor access to the new location.
    Type: Application
    Filed: August 5, 2020
    Publication date: February 10, 2022
    Inventors: Oded Sofer, Guy GALIL
  • Patent number: 9779254
    Abstract: Examples of techniques for detecting and preventing sensitive information leaks are described herein. In one example, a method for detection of sensitive information leaks comprises computing, via a processor, a set of rules that identify sensitive information, and sending, via the processor, the set of rules to a dispatcher application using a protocol. The method can also include detecting, via the processor, that at least one data block of the transmitted data matches the set of rules, and executing, via the processor, a corrective action in response to detecting that at least one of the transmitted data blocks matches the set of rules.
    Type: Grant
    Filed: February 26, 2014
    Date of Patent: October 3, 2017
    Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
    Inventors: Guy Galil, Leonid Gorelik, Alexander Pyasik, Oded Sofer, Yifat Yulevich
  • Patent number: 9734343
    Abstract: Examples of techniques for detecting and preventing sensitive information leaks are described herein. In one example, a method for detection of sensitive information leaks includes computing, via a processor, a set of rules that identify sensitive information, and sending, via the processor, the set of rules to a dispatcher application using a protocol. The method can also include detecting, via the processor, that at least one data block of the transmitted data matches the set of rules, and executing, via the processor, a corrective action in response to detecting that at least one of the transmitted data blocks matches the set of rules.
    Type: Grant
    Filed: November 18, 2014
    Date of Patent: August 15, 2017
    Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
    Inventors: Guy Galil, Leonid Gorelik, Alexander Pyasik, Oded Sofer, Yifat Yulevich
  • Publication number: 20150242639
    Abstract: Examples of techniques for detecting and preventing sensitive information leaks are described herein. In one example, a method for detection of sensitive information leaks includes computing, via a processor, a set of rules that identify sensitive information, and sending, via the processor, the set of rules to a dispatcher application using a protocol. The method can also include detecting, via the processor, that at least one data block of the transmitted data matches the set of rules, and executing, via the processor, a corrective action in response to detecting that at least one of the transmitted data blocks matches the set of rules.
    Type: Application
    Filed: November 18, 2014
    Publication date: August 27, 2015
    Inventors: Guy Galil, Leonid Gorelik, Alexander Pyasik, Oded Sofer, Yifat Yulevich
  • Publication number: 20150242633
    Abstract: Examples of techniques for detecting and preventing sensitive information leaks are described herein. In one example, a method for detection of sensitive information leaks comprises computing, via a processor, a set of rules that identify sensitive information, and sending, via the processor, the set of rules to a dispatcher application using a protocol. The method can also include detecting, via the processor, that at least one data block of the transmitted data matches the set of rules, and executing, via the processor, a corrective action in response to detecting that at least one of the transmitted data blocks matches the set of rules.
    Type: Application
    Filed: February 26, 2014
    Publication date: August 27, 2015
    Applicant: International Business Machines Corporation
    Inventors: Guy Galil, Leonid Gorelik, Alexander Pyasik, Oded Sofer, Yifat Yulevich