Patents by Inventor Martin Kopp
Martin Kopp has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20230150388Abstract: A electric power control system for controlling charge-discharge operation of a battery mounted on a vehicle includes: a plurality of computers, each operating so as to hold a distributed ledger identical to each other; a generation unit for generating transaction data including information related to charge-discharge operation of the battery; a ledger management unit for receiving the transaction data, and for recording the received transaction data in the distributed ledger; and a control unit for controlling charge-discharge operation of the battery, wherein: information related to the charge-discharge operation includes intention information that is information on an intention of a user of the vehicle regarding the charge-discharge operation; and the control unit executes the charge-discharge operation under an operating condition reflecting an intention of the user based on the intention information included in the transaction data recorded in the distributed ledger.Type: ApplicationFiled: October 27, 2022Publication date: May 18, 2023Inventors: Toru Kimura, Martin Kopp, Christian Koebel, Hisashi Nagaoka
-
Publication number: 20230150381Abstract: A power storage management system includes: a travel plan recognition unit for recognizing a travel plan of a user; a moving body waiting period estimation unit for estimating a waiting period based on the travel plan, the waiting period being a period through which the user is to leave an electric moving body in a predetermined moving body waiting area, the electric moving body being used by the user; and a moving body charge-discharge control unit for charging or discharging a storage battery in the waiting period, the storage battery being provided in the electric moving body left in the moving body waiting area.Type: ApplicationFiled: October 25, 2022Publication date: May 18, 2023Inventors: Toru Kimura, Martin Kopp, Christian Koebel, Hisashi Nagaoka
-
Publication number: 20230133892Abstract: Techniques for combining threat-related events associated with different modalities to provide a complete insight into cyber attack life cycles. The techniques may include receiving telemetry data associated with one or more modalities and detecting, based at least in part on the telemetry data, one or more abnormal events associated with security incidents. The one or more abnormal events may include at least a first abnormal event associated with a first modality and a second abnormal event associated with a second modality. The techniques may also include determining that an entity associated with the abnormal events is a same entity and, based at least in part on the entity comprising the same entity, determining that a correlation between the abnormal events is indicative of a security incident. Based at least in part on the correlation, an indication associated with the security incident may be output.Type: ApplicationFiled: February 10, 2022Publication date: May 4, 2023Inventors: Jan Kohout, Martin Kopp, Kyrylo Shcherbin, Jaroslav Hlavac, Cenek Skarda
-
Publication number: 20230100944Abstract: Provided is a charging system including: a second power transmission unit; a moving mechanism that moves the second power transmission unit within a moving area including prescribed ranges within a plurality of parking spaces; and a power transmission control unit that, when a first electric vehicle is parked in a first parking space as one of a plurality of parking spaces, moves the second power transmission unit into the prescribed range of the first parking space by the moving mechanism to cause the first power transmission unit mounted to a first electric vehicle and the second power transmission unit to face each other so as to transmit power to the first power transmission unit from the second power transmission unit wirelessly to execute vehicle charging processing for charging the first electric vehicle.Type: ApplicationFiled: September 14, 2022Publication date: March 30, 2023Inventors: Toru Kimura, Martin Kopp, Christian Koebel, Hisashi Nagaoka
-
Publication number: 20220373986Abstract: A power management system, comprises a power generating unit, a power output unit to distribute the electrical power generated by the power generating unit to a household and to a receiving unit, different from the household, wherein the receiving unit is a battery and/or a power grid, a grid power output unit to output electrical power supplied from a power grid to the household and/or to the receiving unit, a condition requirement setting unit to receive condition requirement data and a time period after which the receiving unit has to satisfy the required condition, a prediction data input unit to receive prediction data that indicates a prediction of the electrical power generated by the power generating unit over the time period, a control unit that is adapted to receive the condition requirement data from the condition requirement setting unit and the prediction data from the prediction data input unit.Type: ApplicationFiled: May 17, 2022Publication date: November 24, 2022Inventor: Martin KOPP
-
Publication number: 20220368720Abstract: In one embodiment, a device in a network detects an encrypted traffic flow associated with a client in the network. The device captures contextual traffic data regarding the encrypted traffic flow from one or more unencrypted packets associated with the client. The device performs a classification of the encrypted traffic flow by using the contextual traffic data as input to a machine learning-based classifier. The device generates an alert based on the classification of the encrypted traffic flow.Type: ApplicationFiled: July 26, 2022Publication date: November 17, 2022Inventors: Jan Kohout, Blake Harrell Anderson, Martin Gril, David Mcgrew, Martin Kopp, Tomas Pevny
-
Patent number: 11451578Abstract: In one embodiment, a device in a network detects an encrypted traffic flow associated with a client in the network. The device captures contextual traffic data regarding the encrypted traffic flow from one or more unencrypted packets associated with the client. The device performs a classification of the encrypted traffic flow by using the contextual traffic data as input to a machine learning-based classifier. The device generates an alert based on the classification of the encrypted traffic flow.Type: GrantFiled: September 23, 2020Date of Patent: September 20, 2022Assignee: Cisco Technology, Inc.Inventors: Jan Kohout, Blake Harrell Anderson, Martin Grill, David McGrew, Martin Kopp, Tomas Pevny
-
Publication number: 20220239630Abstract: A method includes, at a server in a network, detecting for a user device network incidents relating to one or more security threats in the network using a plurality of threat detectors over a predetermined time period, each of the network incidents including one or more behavior indicators; assigning the network incidents into one or more groups, wherein each group corresponds to a type of security threat; generating a graph for a particular group of the user device, wherein the graph includes a plurality of nodes each representing a behavior indicator in the particular group, and wherein generating the graph includes assigning an edge to connect two nodes of the plurality of nodes if the two nodes correspond to behavior indicators that belong to a same network incident; and displaying the graph on a graphical user interface for a user.Type: ApplicationFiled: April 18, 2022Publication date: July 28, 2022Inventors: Martin Kopp, Lukas Machlica
-
Patent number: 11336617Abstract: A method includes, at a server in a network, detecting for a user device network incidents relating to one or more security threats in the network using a plurality of threat detectors over a predetermined time period, each of the network incidents including one or more behavior indicators; assigning the network incidents into one or more groups, wherein each group corresponds to a type of security threat; generating a graph for a particular group of the user device, wherein the graph includes a plurality of nodes each representing a behavior indicator in the particular group, and wherein generating the graph includes assigning an edge to connect two nodes of the plurality of nodes if the two nodes correspond to behavior indicators that belong to a same network incident; and displaying the graph on a graphical user interface for a user.Type: GrantFiled: March 21, 2019Date of Patent: May 17, 2022Assignee: CISCO TECHNOLOGY, INC.Inventors: Martin Kopp, Lukas Machlica
-
Patent number: 11245675Abstract: In one embodiment, a traffic analysis service obtains telemetry data regarding encrypted traffic associated with a particular device in the network, wherein the telemetry data comprises Transport Layer Security (TLS) features of the traffic. The service determines, based on the TLS features from the obtained telemetry data, a set of one or more TLS fingerprints for the traffic associated with the particular device. The service calculates a measure of similarity between the set of one or more TLS fingerprints for the traffic associated with the particular device and a set of one or more TLS fingerprints of traffic associated with a second device. The service determines, based on the measure of similarity, that the particular device and the second device were operated by the same user.Type: GrantFiled: November 18, 2019Date of Patent: February 8, 2022Assignee: Cisco Technology, Inc.Inventors: Jan Kohout, Martin Kopp, Jan Brabec, Lukas Bajer
-
Patent number: 11169061Abstract: A method and system for processing particles contained in a liquid biological sample is presented. The method uses a rotatable vessel for processing particles contained in a liquid biological sample. The rotatable vessel has a longitudinal axis about which the vessel is rotatable, an upper portion having a top opening for receiving the liquid containing the particles, a lower portion for holding the liquid while the rotatable vessel is resting, the lower portion having a bottom, and an intermediate portion located between the upper portion and the lower portion, the intermediate portion having a lateral collection chamber for holding the liquid while the rotatable vessel is rotating. The method employs dedicated acceleration and deceleration profiles for sedimentation and re-suspension of the particles of interest.Type: GrantFiled: August 16, 2019Date of Patent: November 9, 2021Assignee: Roche Diagnostics Operations, Inc.Inventors: Claudio Cherubini, Martin Kopp, Nenad Milicevic, Daniel Mueller, Emad Sarofim, Goran Savatic
-
Publication number: 20210306350Abstract: In one embodiment, a device obtains input features for a neural network-based model. The device pre-defines a set of neurons of the model to represent known behaviors associated with the input features. The device constrains weights for a plurality of outputs of the model. The device trains the neural network-based model using the constrained weights for the plurality of outputs of the model and by excluding the pre-defined set of neurons from updates during the training.Type: ApplicationFiled: March 26, 2020Publication date: September 30, 2021Inventors: Petr Somol, Martin Kopp, Jan Kohout, Jan Brabec, Marc René Jacques Marie Dupont, Cenek Skarda, Lukas Bajer, Danila Khikhlukha
-
Patent number: 11019095Abstract: In one embodiment, a device in a network obtains log data regarding replication of files stored on an endpoint client to a file replication service. The device tracks, based on the obtained logs, encryption changes to the files that convert the files from unencrypted files to encrypted files. The device determines that the tracked encryption changes to the files are indicative of a ransomware infection on the endpoint client. The device initiates a mitigation action regarding the ransomware infection.Type: GrantFiled: January 30, 2019Date of Patent: May 25, 2021Assignee: Cisco Technology, Inc.Inventors: Martin Grill, Lukas Bajer, Martin Kopp, Jan Kohout
-
Publication number: 20210152526Abstract: In one embodiment, a traffic analysis service obtains telemetry data regarding encrypted traffic associated with a particular device in the network, wherein the telemetry data comprises Transport Layer Security (TLS) features of the traffic. The service determines, based on the TLS features from the obtained telemetry data, a set of one or more TLS fingerprints for the traffic associated with the particular device. The service calculates a measure of similarity between the set of one or more TLS fingerprints for the traffic associated with the particular device and a set of one or more TLS fingerprints of traffic associated with a second device. The service determines, based on the measure of similarity, that the particular device and the second device were operated by the same user.Type: ApplicationFiled: November 18, 2019Publication date: May 20, 2021Inventors: Jan Kohout, Martin Kopp, Jan Brabec, Lukas Bajer
-
Patent number: 10965704Abstract: In one embodiment, a device in a network receives traffic information regarding one or more secure sessions in the network. The device associates the one or more secure sessions with corresponding certificate validation check traffic indicated by the received traffic information. The device makes a self-signed certificate determination for an endpoint domain of a particular secure session based on whether the particular secure session is associated with certificate validation check traffic. The device causes the self-signed certificate determination for the endpoint domain to be used as input to a malware detector.Type: GrantFiled: June 20, 2019Date of Patent: March 30, 2021Assignee: Cisco Technology, Inc.Inventors: Martin Kopp, Martin Grill, Jan Kohout
-
Publication number: 20210006589Abstract: In one embodiment, a device in a network detects an encrypted traffic flow associated with a client in the network. The device captures contextual traffic data regarding the encrypted traffic flow from one or more unencrypted packets associated with the client. The device performs a classification of the encrypted traffic flow by using the contextual traffic data as input to a machine learning-based classifier. The device generates an alert based on the classification of the encrypted traffic flow.Type: ApplicationFiled: September 23, 2020Publication date: January 7, 2021Inventors: Jan Kohout, Blake Harrell Anderson, Martin Grill, David McGrew, Martin Kopp, Tomas Pevny
-
Patent number: 10805338Abstract: In one embodiment, a device in a network detects an encrypted traffic flow associated with a client in the network. The device captures contextual traffic data regarding the encrypted traffic flow from one or more unencrypted packets associated with the client. The device performs a classification of the encrypted traffic flow by using the contextual traffic data as input to a machine learning-based classifier. The device generates an alert based on the classification of the encrypted traffic flow.Type: GrantFiled: October 6, 2016Date of Patent: October 13, 2020Assignee: Cisco Technology, Inc.Inventors: Jan Kohout, Blake Harrell Anderson, Martin Grill, David McGrew, Martin Kopp, Tomas Pevny
-
Patent number: 10805377Abstract: A computing device having connectivity to a network stores one or more existing device models, where each of the one or more existing device models is a representation of a different client device used by a first authenticated user to access the network. The computing device obtains a device sample, which comprises network traffic data that is captured during a period of time and which is generated by a particular client device associated with the authenticated user of the network. The computing device determines, based on one or more relational criteria, whether the device sample should be assigned to one of the one or more existing device models or to an additional device model that has not yet been created. The computing device then determines relative identity of the particular client device based on whether the device sample is assigned to one of the one or more device models or to an additional device model that has not yet been created.Type: GrantFiled: May 18, 2017Date of Patent: October 13, 2020Assignee: CISCO TECHNOLOGY, INC.Inventors: Martin Grill, Jan Kohout, Martin Kopp
-
Publication number: 20200304462Abstract: A method includes, at a server in a network, detecting for a user device network incidents relating to one or more security threats in the network using a plurality of threat detectors over a predetermined time period, each of the network incidents including one or more behavior indicators; assigning the network incidents into one or more groups, wherein each group corresponds to a type of security threat; generating a graph for a particular group of the user device, wherein the graph includes a plurality of nodes each representing a behavior indicator in the particular group, and wherein generating the graph includes assigning an edge to connect two nodes of the plurality of nodes if the two nodes correspond to behavior indicators that belong to a same network incident; and displaying the graph on a graphical user interface for a user.Type: ApplicationFiled: March 21, 2019Publication date: September 24, 2020Inventors: Martin Kopp, Lukas Machlica
-
Patent number: 10749770Abstract: In one embodiment, a traffic analysis service obtains telemetry data regarding network traffic associated with a device in a network. The traffic analysis service forms a histogram of frequencies of the traffic features from the telemetry data for the device. The traffic features are indicative of endpoints with which the device communicated. The traffic analysis service associates a device type with the device, by comparing the histogram of the traffic features from the telemetry data to histograms of traffic features associated with other devices. The traffic analysis service initiates, based on the device type associated with the device, an adjustment to treatment of the traffic associated with the device by the network.Type: GrantFiled: October 10, 2018Date of Patent: August 18, 2020Assignee: Cisco Technology, Inc.Inventors: Jan Kohout, Martin Grill, Martin Kopp, Lukas Bajer