Patents by Inventor Oren Nechushtan
Oren Nechushtan has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20250030715Abstract: Systems, methods, and related technologies for analyzing traffic are described. In certain aspects, network traffic is analyzed and a domain name system (DNS) message is extracted from the network traffic. Subsequent network traffic is monitored and analyzed based on the DNS message and in view of one or more criteria. In response to the one or more criteria being satisfied, an indication of compromise (IoC) for a device is determined.Type: ApplicationFiled: February 26, 2024Publication date: January 23, 2025Inventors: Oded Comay, Oren Nechushtan
-
Publication number: 20240356966Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first media access control (MAC) address associated with a first communication on a first port of a first network device coupled to a network, accessing a second media access control (MAC) address associated with a second communication on a second port of a second network device coupled to the network, and determining that the second MAC address matches the first MAC address The method further includes identifying a device associated with the first or second communication as being associated with a spoofing event based on the second port differing from the first port and based on the first and second timestamps being within a threshold amount of time from one another and performing an action associated with the first or second port.Type: ApplicationFiled: July 1, 2024Publication date: October 24, 2024Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan
-
Patent number: 12028371Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.Type: GrantFiled: April 28, 2022Date of Patent: July 2, 2024Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
-
Patent number: 11916943Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.Type: GrantFiled: August 2, 2021Date of Patent: February 27, 2024Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Oded Comay, Oren Nechushtan
-
Publication number: 20230421466Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.Type: ApplicationFiled: September 11, 2023Publication date: December 28, 2023Inventors: Oren Nechushtan, Oded Comay
-
Patent number: 11792093Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.Type: GrantFiled: July 23, 2021Date of Patent: October 17, 2023Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Oren Nechushtan, Oded Comay
-
Publication number: 20230009167Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.Type: ApplicationFiled: July 21, 2022Publication date: January 12, 2023Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
-
Publication number: 20230006899Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.Type: ApplicationFiled: July 23, 2021Publication date: January 5, 2023Inventors: Oren Nechushtan, Oded Comay
-
Publication number: 20220255960Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.Type: ApplicationFiled: April 28, 2022Publication date: August 11, 2022Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
-
Patent number: 11405378Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.Type: GrantFiled: December 11, 2019Date of Patent: August 2, 2022Assignee: Forescout Technologies, Inc.Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
-
Patent number: 11349867Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.Type: GrantFiled: December 31, 2018Date of Patent: May 31, 2022Assignee: Forescout Technologies, Inc.Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
-
Publication number: 20210367960Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.Type: ApplicationFiled: August 2, 2021Publication date: November 25, 2021Inventors: Oded Comay, Oren Nechushtan
-
Patent number: 11108799Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.Type: GrantFiled: January 24, 2020Date of Patent: August 31, 2021Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Oded Comay, Oren Nechushtan
-
Publication number: 20210056212Abstract: Systems, methods, and related technologies for device monitoring and device risk monitoring are described. In certain aspects, an indicator associated with a security risk is set based on communication between a first device having an associated elevated security risk and a second device. The indicator can be stored and may be used as a basis for performing a security action.Type: ApplicationFiled: October 13, 2020Publication date: February 25, 2021Inventors: Tal Peled, Shlomit Tassa, Oren Nechushtan, Ariel Biton
-
Patent number: 10839084Abstract: Systems, methods, and related technologies for device monitoring and device risk monitoring are described. In certain aspects, an indicator associated with a security risk is set based on communication between a first device having an associated elevated security risk and a second device. The indicator can be stored and may be used as a basis for performing a security action.Type: GrantFiled: December 14, 2017Date of Patent: November 17, 2020Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Tal Peled, Shlomit Tassa, Oren Nechushtan, Ariel Biton
-
Publication number: 20200213352Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.Type: ApplicationFiled: December 31, 2018Publication date: July 2, 2020Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
-
Publication number: 20200162495Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.Type: ApplicationFiled: January 24, 2020Publication date: May 21, 2020Inventors: Oded Comay, Oren Nechushtan
-
Publication number: 20200120085Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.Type: ApplicationFiled: December 11, 2019Publication date: April 16, 2020Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
-
Patent number: 10574678Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.Type: GrantFiled: December 13, 2016Date of Patent: February 25, 2020Assignee: Forescout Technologies, Inc.Inventors: Oded Comay, Oren Nechushtan
-
Patent number: 10530764Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.Type: GrantFiled: December 19, 2016Date of Patent: January 7, 2020Assignee: FORESCOUT TECHNOLOGIES, INC.Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner