Patents by Inventor Oren Nechushtan

Oren Nechushtan has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11916943
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Grant
    Filed: August 2, 2021
    Date of Patent: February 27, 2024
    Assignee: FORESCOUT TECHNOLOGIES, INC.
    Inventors: Oded Comay, Oren Nechushtan
  • Publication number: 20230421466
    Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.
    Type: Application
    Filed: September 11, 2023
    Publication date: December 28, 2023
    Inventors: Oren Nechushtan, Oded Comay
  • Patent number: 11792093
    Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.
    Type: Grant
    Filed: July 23, 2021
    Date of Patent: October 17, 2023
    Assignee: FORESCOUT TECHNOLOGIES, INC.
    Inventors: Oren Nechushtan, Oded Comay
  • Publication number: 20230009167
    Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.
    Type: Application
    Filed: July 21, 2022
    Publication date: January 12, 2023
    Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
  • Publication number: 20230006899
    Abstract: Systems, methods, and related technologies for generating a network system map based on network traffic and possibly additional data are described. Network traffic may be received and parsed to obtain metadata associated with the network traffic. A network system may be identified based on the metadata. A network system map may be generated for the network system based on one or more of the metadata or the additional data.
    Type: Application
    Filed: July 23, 2021
    Publication date: January 5, 2023
    Inventors: Oren Nechushtan, Oded Comay
  • Publication number: 20220255960
    Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.
    Type: Application
    Filed: April 28, 2022
    Publication date: August 11, 2022
    Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
  • Patent number: 11405378
    Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.
    Type: Grant
    Filed: December 11, 2019
    Date of Patent: August 2, 2022
    Assignee: Forescout Technologies, Inc.
    Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
  • Patent number: 11349867
    Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.
    Type: Grant
    Filed: December 31, 2018
    Date of Patent: May 31, 2022
    Assignee: Forescout Technologies, Inc.
    Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
  • Publication number: 20210367960
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Application
    Filed: August 2, 2021
    Publication date: November 25, 2021
    Inventors: Oded Comay, Oren Nechushtan
  • Patent number: 11108799
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Grant
    Filed: January 24, 2020
    Date of Patent: August 31, 2021
    Assignee: FORESCOUT TECHNOLOGIES, INC.
    Inventors: Oded Comay, Oren Nechushtan
  • Publication number: 20210056212
    Abstract: Systems, methods, and related technologies for device monitoring and device risk monitoring are described. In certain aspects, an indicator associated with a security risk is set based on communication between a first device having an associated elevated security risk and a second device. The indicator can be stored and may be used as a basis for performing a security action.
    Type: Application
    Filed: October 13, 2020
    Publication date: February 25, 2021
    Inventors: Tal Peled, Shlomit Tassa, Oren Nechushtan, Ariel Biton
  • Patent number: 10839084
    Abstract: Systems, methods, and related technologies for device monitoring and device risk monitoring are described. In certain aspects, an indicator associated with a security risk is set based on communication between a first device having an associated elevated security risk and a second device. The indicator can be stored and may be used as a basis for performing a security action.
    Type: Grant
    Filed: December 14, 2017
    Date of Patent: November 17, 2020
    Assignee: FORESCOUT TECHNOLOGIES, INC.
    Inventors: Tal Peled, Shlomit Tassa, Oren Nechushtan, Ariel Biton
  • Publication number: 20200213352
    Abstract: Systems, methods, and related technologies including media access control (MAC) address spoofing detection are described. The MAC address spoofing detection and response may include accessing a first MAC address associated with a first communication on a first port of a first network device and accessing a second MAC address associated with a second communication on a second port of a second network device. Whether the first MAC address and the second MAC address match may be determined. Information associated with a third communication associated with the first MAC address on the first port of the first network device and information associated with a fourth communication associated with the second MAC address on the second port of the second network device may be accessed. An action may be performed associated with the second port of the second network device based on the second MAC address matching the first MAC address.
    Type: Application
    Filed: December 31, 2018
    Publication date: July 2, 2020
    Inventors: Ilya Fainberg, Abdelhamid Masarwa, Oren Nechushtan, Oded Comay
  • Publication number: 20200162495
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Application
    Filed: January 24, 2020
    Publication date: May 21, 2020
    Inventors: Oded Comay, Oren Nechushtan
  • Publication number: 20200120085
    Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.
    Type: Application
    Filed: December 11, 2019
    Publication date: April 16, 2020
    Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
  • Patent number: 10574678
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Grant
    Filed: December 13, 2016
    Date of Patent: February 25, 2020
    Assignee: Forescout Technologies, Inc.
    Inventors: Oded Comay, Oren Nechushtan
  • Patent number: 10530764
    Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.
    Type: Grant
    Filed: December 19, 2016
    Date of Patent: January 7, 2020
    Assignee: FORESCOUT TECHNOLOGIES, INC.
    Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
  • Publication number: 20190188389
    Abstract: Systems, methods, and related technologies for device monitoring and device risk monitoring are described. In certain aspects, an indicator associated with a security risk is set based on communication between a first device having an associated elevated security risk and a second device. The indicator can be stored and may be used as a basis for performing a security action.
    Type: Application
    Filed: December 14, 2017
    Publication date: June 20, 2019
    Inventors: Tal Peled, Shlomit Tassa, Oren Nechushtan, Ariel Biton
  • Publication number: 20180176210
    Abstract: A network access control (NAC) device detects a connection of an endpoint device at a network switch coupled to a network and restricts access of the endpoint device to prevent the endpoint device from accessing resources of the network. The NAC device establishes a connection with the endpoint device, validates a client certificate corresponding to the endpoint device to authenticate the endpoint device as a corporate device and grants the endpoint device access to the resources of the network.
    Type: Application
    Filed: December 19, 2016
    Publication date: June 21, 2018
    Inventors: Oded Comay, Kevin Benjamin Mayer, Oren Nechushtan, Tomer Reisner
  • Publication number: 20180167405
    Abstract: Systems, methods, and related technologies for analyzing traffic based on naming information are described. In certain aspects, name information and address information from a name translation response are stored. The name information is associated with a device based on the device sending a communication to an address associated with the name information.
    Type: Application
    Filed: December 13, 2016
    Publication date: June 14, 2018
    Inventors: Oded Comay, Oren Nechushtan