Patents by Inventor Ofer BEN NOON

Ofer BEN NOON has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20170093866
    Abstract: A system or method may include an in-vehicle network including an interface port for connecting an external device to the in-vehicle network; and a security unit connected to the in-vehicle network, the security unit adapted to enable an external device to communicate with the in-vehicle network, over the interface port, based on a security token received from the external device. A system or method may, based on a token, prevent an external device from at least one of: communicating with a selected set of components on in an in-vehicle network, communicating with a selected set of network segments in the in-vehicle network and performing a selected set of operations.
    Type: Application
    Filed: September 22, 2016
    Publication date: March 30, 2017
    Inventors: Ofer BEN-NOON, Yaron GALULA, Oron LAVI
  • Publication number: 20170013005
    Abstract: A system and method for providing security to a network may include monitoring, by a processor, traffic on a first and second network portions of an in-vehicle communication network; determining whether or not a first message detected on the first network portion is anomalous based on at least one of: an attribute of a second message detected on the second network portion and an absence of a second message from the second network portion over a predefined time period; and, if it is determined the first message is anomalous then performing at least one action.
    Type: Application
    Filed: September 22, 2016
    Publication date: January 12, 2017
    Inventors: Yaron GALULA, Ofer BEN-NOON, Ofer KAPOTA, Alexei KOVELMAN
  • Publication number: 20160381066
    Abstract: A system and method for providing security to a network may include maintaining, by a processor, a model of an expected behavior of data communications over an in-vehicle communication network; receiving, by the processor, a plurality of messages communicated over the network; determining, by the processor, based on the model and based on content attributes of the plurality of messages, whether or not at least one of the messages complies with the model; and if at least one message does not comply with the model then performing, by the processor, at least one action related to the message.
    Type: Application
    Filed: June 29, 2016
    Publication date: December 29, 2016
    Inventors: Yaron GALULA, Ofer BEN-NOON, Oron LAVI, Alexei KOVELMAN, Ofer KAPOTA
  • Publication number: 20160381059
    Abstract: A system and method for providing security to a network may include maintaining, by a processor, a model of an expected behavior of data communications over the in-vehicle communication network; receiving, by the processor, a message sent over the network; determining, by the controller, based on the model and based on a timing attribute of the message, whether or not the message complies with the model; and if the message does not comply with the model then performing, by the processor, at least one action related to the message.
    Type: Application
    Filed: June 29, 2016
    Publication date: December 29, 2016
    Inventors: Yaron GALULA, Ofer BEN-NOON, Oron LAVI, Ofer KAPOTA, Alexei KOVELMAN
  • Publication number: 20160381068
    Abstract: A system and method for providing security to a network may include maintaining, by a processor, a model of an expected behavior of data communications over the in-vehicle communication network; receiving, by the processor, a message sent over the network; determining, by the processor, based on the model and based on a timing attribute of the message, whether or not the message complies with the model; and if the message does not comply with the model then performing, by the processor, at least one action related to the message.
    Type: Application
    Filed: June 29, 2016
    Publication date: December 29, 2016
    Inventors: Yaron GALULA, Ofer BEN-NOON, Oron LAVI
  • Publication number: 20160381067
    Abstract: A system and method for providing security to a network may include maintaining, by a processor, a model of an expected behavior of data communications over the in-vehicle communication network; receiving, by the processor, a message sent over the network; determining, by the processor, based on the model and based on content in the message, whether or not the message complies with the model; and if the message does not comply with the model then performing, by the processor, at least one action related to the message.
    Type: Application
    Filed: June 29, 2016
    Publication date: December 29, 2016
    Inventors: Yaron GALULA, Ofer BEN-NOON, Oron LAVI
  • Publication number: 20160381055
    Abstract: A system and method for providing security to a network may include identifying a message sent over a network, the message related to a data transfer from an initiator to a target node, and transmitting, over the network, at least one disruptive message that causes the data transfer to fail.
    Type: Application
    Filed: June 29, 2016
    Publication date: December 29, 2016
    Inventors: Yaron GALULA, Ofer Ben-Noon, Oron Lavi, Ofer Kapota, Alexei Kovelman
  • Publication number: 20150191136
    Abstract: An in-vehicle communication network comprising: a bus and at least one node connected to the bus; an in-vehicle network operating system (OS) that manages OS processes, a secondary memory in which process codes for the processes are stored, and a primary memory, into which the OS loads a copy of a process code of a process to enable a processor to run the process and execute the process code; and a module hosted in the OS and having a hook in at least one position of the OS that provides information to the module responsive to operation of the OS that the module processes in accordance with executable instructions that the module comprises to determine if the in-vehicle OS is operating properly.
    Type: Application
    Filed: January 6, 2015
    Publication date: July 9, 2015
    Inventors: Ofer BEN NOON, Yaron GALULA, Oron LAVI
  • Publication number: 20150191151
    Abstract: Apparatus for providing security to an in-vehicle communication network having a bus and at least one node connected to the bus and having software responsive to which the node performs operations, the apparatus comprising: a first module configured to be connected to the at least one node and generate and transmit a hash of at least a portion of the node software in response to receiving a challenge; and a second module configured to be connected to the in-vehicle network and transmit a challenge to the first module requesting that the first module generate and transmit a hash of the at least a portion of the node software to the second module; wherein the second module is configured to determine if the hash received from the first module is generated responsive to a correct version of the node software.
    Type: Application
    Filed: January 6, 2015
    Publication date: July 9, 2015
    Inventors: Ofer BEN NOON, Yaron GALULA, Oron LAVI
  • Publication number: 20150195297
    Abstract: A system for providing security to an in-vehicle communication network, the system comprising: a data monitoring and processing hub; and at least one module configured to monitor messages in communication traffic propagating in a vehicle's in-vehicle network, the network having a bus and at least one node connected to the bus, the module comprising: a communication interface configured to support communication with the hub; a memory having software comprising data characterizing messages that the at least one node transmits and receives during normal operation of the node; at least one communication port via which the module receives and transmits messages configured to be connected to a portion of the in-vehicle network; a processor that processes messages received via the port from the portion of the in-vehicle network responsive to the software in the memory to: identify an anomalous message in the received messages indicative of exposure of the in-vehicle network to damage from a cyber attack; determine a
    Type: Application
    Filed: January 6, 2015
    Publication date: July 9, 2015
    Inventors: Ofer BEN NOON, Yaron GALULA, Oron LAVI
  • Publication number: 20150191135
    Abstract: A module for providing security to an in-vehicle communication network having a bus and at least one node connected to the bus, the module comprising: a memory having software comprising data characterizing messages that the at least one node transmits and receives via the bus during normal operation of the node; a communication port via which the module receives and transmits messages configured to be connected to a portion of the in-vehicle network; and a processor that processes messages received via the port from the portion of the in-vehicle network responsive to the software in the memory to: identify an anomalous message in the received messages indicative of exposure of the in-vehicle network to damage from a cyber attack; and cause the module to transmit at least one signal via the port to the portion of the in-vehicle network that alters the anomalous message so that the at least one node will discard it.
    Type: Application
    Filed: January 6, 2015
    Publication date: July 9, 2015
    Inventors: Ofer BEN NOON, Yaron GALULA, Oron LAVI