Patents by Inventor Simon Fellows

Simon Fellows has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 12556555
    Abstract: The cyber security appliance can include many AI models and modules working together including self-learning models that use unsupervised machine learning algorithms to model different entities in the telecommunications network via modelling their normal behavior and an assessment module. The assessment module can cooperate with the self-learning models that model the normal behavior of the communications and activities in the control plane and/or management plane in the telecommunications network in order to assess deviations in the control plane's/management plane's normal behavior to protect the telecommunications network from a cyber threat.
    Type: Grant
    Filed: November 21, 2022
    Date of Patent: February 17, 2026
    Assignee: Darktrace Holdings Limited
    Inventors: Simon Fellows, Jack Pearson
  • Patent number: 12549569
    Abstract: An automated sandbox generator for a cyber-attack exercise on a mimic network in a cloud environment can include various components. The cloud deployment component deploys the mimic network in a sandbox environment in the cloud environment. The mimic network can be a clone of components from a network that exists in an organization's environment and/or, predefined example components. The attack engine deploys a cyber threat to use an exploit for the wargaming cyber-attack exercise in the mimic network. The user interface displays, in real time, results of the wargaming cyber-attack exercise being conducted in the sandbox environment, to create a behavioral profile of how the cyber threat using the exploit would actually perform in that particular organization's environment as well as have human users interact with the cyber threat deployed by the attack engine during the cyber-attack on the mimic network, as it happens in real time, during the wargaming cyber-attack exercise.
    Type: Grant
    Filed: September 15, 2023
    Date of Patent: February 10, 2026
    Assignee: Darktrace Holdings Limited
    Inventors: Jake Lal, Frank Jasik, Simon Fellows, James Rees Wingar, Alexander Fox Thompson, Billy McDermot, John Boyer
  • Publication number: 20250322070
    Abstract: A computer-implemented method of investigating a potential cyber incident detected by a cyber security system is described. The method comprises using artificial intelligence (AI) based analysis to perform an investigation into the potential cyber incident based on one or more user-selected hypotheses selected by a user responsive to one or more alerts generated by the cyber security system. The method further comprises causing one or more actions to be performed based on an outcome of the investigation.
    Type: Application
    Filed: February 20, 2025
    Publication date: October 16, 2025
    Inventors: Tim Bazalgette, Simon Fellows, Patrick Osborne
  • Publication number: 20250317472
    Abstract: A cyber security appliance has one or more modules to interact with entities in an operational technology network and potentially in an informational technology network. The operational technology module can reference various machine-learning models trained on a normal pattern of life of users, devices, and/or controllers of the operational technology network. A comparator module cooperates with the operational technology module to compare the received data on the operational technology network to the normal pattern of life of any of the users, devices, and controllers to detect anomalies in the normal pattern of life for these entities in order to detect a cyber threat. An autonomous response module can be programmed to respond to counter the detected cyber threat.
    Type: Application
    Filed: June 18, 2025
    Publication date: October 9, 2025
    Inventors: Simon Fellows, Jack Stockdale
  • Publication number: 20250274471
    Abstract: An intelligent orchestration component can facilitate an AI augmented and adaptive interactive response loop between multiple AI-based engines. A cyber threat detection uses AI to detect a cyber threat. An autonomous response engine uses AI to mitigate the detected cyber threat. A cyber-security restoration engine uses AI to remediate nodes in the system to a trusted operational state. The prediction engine uses AI to conduct simulations of cyberattacks to assist in determining how a simulated cyberattack might occur in the system, and how to use the simulated cyberattack information to preempt possible escalations of an ongoing actual cyberattack.
    Type: Application
    Filed: May 13, 2025
    Publication date: August 28, 2025
    Inventors: Simon Fellows, Jack Stockdale, Matt Dunn
  • Patent number: 12363157
    Abstract: A cyber security appliance has one or more modules to interact with entities in an operational technology network and potentially in an informational technology network. The operational technology module can reference various machine-learning models trained on a normal pattern of life of users, devices, and/or controllers of the operational technology network. A comparator module cooperates with the operational technology module to compare the received data on the operational technology network to the normal pattern of life of any of the users, devices, and controllers to detect anomalies in the normal pattern of life for these entities in order to detect a cyber threat. An autonomous response module can be programmed to respond to counter the detected cyber threat.
    Type: Grant
    Filed: November 6, 2023
    Date of Patent: July 15, 2025
    Assignee: Darktrace Holdings Limited
    Inventors: Simon Fellows, Jack Stockdale
  • Patent number: 12341795
    Abstract: An intelligent orchestration module can facilitate an AI augmented and adaptive interactive response loop between multiple AI-based engines. A cyber threat detection uses AI to detect a cyber threat. An autonomous response engine uses AI to mitigate the detected cyber threat. A cyber-security restoration engine uses AI to remediate nodes in the system to a trusted operational state. The prediction engine uses AI to conduct simulations of cyberattacks to assist in determining how a simulated cyberattack might occur in the system, and how to use the simulated cyberattack information to preempt possible escalations of an ongoing actual cyberattack.
    Type: Grant
    Filed: November 21, 2022
    Date of Patent: June 24, 2025
    Assignee: Darktrace Holdings Limited
    Inventors: Simon Fellows, Jack Stockdale, Matt Dunn
  • Publication number: 20250119446
    Abstract: A cyber threat defense system is provided comprising: a processing component; and a non-transitory computer readable medium including one or more software modules accessible by the processing component, the one or more software modules comprising: a vehicle module configured to receive data from a first vehicle and a second vehicle and reference one or more machine-learning models using machine-learning and artificial intelligence (AI) algorithms, the one or more machine-learning models including a first machine-learning model trained on a normal pattern of life associated with the first vehicle and the second vehicle, and a comparator module configured to cooperate with the vehicle module to compare data received from the first vehicle and the second vehicle to the normal pattern of life associated with the first vehicle and the second vehicle to detect anomalies representing a cyber threat within the first vehicle or the second vehicle.
    Type: Application
    Filed: October 7, 2024
    Publication date: April 10, 2025
    Inventors: Samuel Goldsmith, Jack Pearson, Simon Fellows, David Evans
  • Publication number: 20250030725
    Abstract: An apparatus comprises a cyber security restoration engine configured to simulate an asset of a computing network that is involved in a simulated cyberattack. The cyber security restoration engine is configured to generate data representative of a simulated cyber security scenario involving the asset of the computing network. The simulated cyber security scenario is derived from a real world cyber security scenario mapped to the asset.
    Type: Application
    Filed: July 19, 2024
    Publication date: January 23, 2025
    Inventors: Simon Fellows, Dickon Humphrey, Timothy Bazalgette, Phillip Sellars, Jonathan Durston, Pallavi Hrisheekesh
  • Publication number: 20250030724
    Abstract: An apparatus comprises a cyber security restoration engine configured to restore an asset in a computing network that is involved in a cyberattack to a trusted operational state and prioritize remediation actions for the asset in the computing network. The cyber security restoration engine is configured to receive an indication that the asset in the computing network is involved in a cyber security scenario. The cyber security restoration engine is further configured to identify, based on a property of the asset, an ordered set of instructions forming a playbook that applies to the asset to at least partially address the cyber security scenario.
    Type: Application
    Filed: July 19, 2024
    Publication date: January 23, 2025
    Inventors: Simon Fellows, Dickon Humphrey
  • Publication number: 20240098100
    Abstract: An automated sandbox generator for a cyber-attack exercise on a mimic network in a cloud environment can include various components. The cloud deployment component deploys the mimic network in a sandbox environment in the cloud environment. The mimic network can be a clone of components from a network that exists in an organization's environment and/or, predefined example components. The attack engine deploys a cyber threat to use an exploit for the wargaming cyber-attack exercise in the mimic network. The user interface displays, in real time, results of the wargaming cyber-attack exercise being conducted in the sandbox environment, to create a behavioral profile of how the cyber threat using the exploit would actually perform in that particular organization's environment as well as have human users interact with the cyber threat deployed by the attack engine during the cyber-attack on the mimic network, as it happens in real time, during the wargaming cyber-attack exercise.
    Type: Application
    Filed: September 15, 2023
    Publication date: March 21, 2024
    Inventors: Jake Lal, Frank Jasik, Simon Fellows, James Rees Wingar, Alexander Fox Thompson, Billy McDermot, John Boyer
  • Publication number: 20240073242
    Abstract: A cyber security appliance has one or more modules to interact with entities in an operational technology network and potentially in an informational technology network. The operational technology module can reference various machine-learning models trained on a normal pattern of life of users, devices, and/or controllers of the operational technology network. A comparator module cooperates with the operational technology module to compare the received data on the operational technology network to the normal pattern of life of any of the users, devices, and controllers to detect anomalies in the normal pattern of life for these entities in order to detect a cyber threat. An autonomous response module can be programmed to respond to counter the detected cyber threat.
    Type: Application
    Filed: November 6, 2023
    Publication date: February 29, 2024
    Inventors: Simon Fellows, Jack Stockdale
  • Patent number: 11843628
    Abstract: A cyber security appliance has one or more modules to interact with entities in an operational technology network and potentially in an informational technology network. The operational technology module can reference various machine-learning models trained on a normal pattern of life of users, devices, and/or controllers of the operational technology network. A comparator module cooperates with the operational technology module to compare the received data on the operational technology network to the normal pattern of life of any of the users, devices, and controllers to detect anomalies in the normal pattern of life for these entities in order to detect a cyber threat. An autonomous response module can be programmed to respond to counter the detected cyber threat.
    Type: Grant
    Filed: February 19, 2019
    Date of Patent: December 12, 2023
    Assignee: Darktrace Holdings Limited
    Inventors: Simon Fellows, Jack Stockdale
  • Publication number: 20230239318
    Abstract: A cyber security restoration engine takes one or more autonomous remediation actions to remediate one or more nodes in a graph of a system being protected back to a trusted operational state in order to assist in a recovery from the cyber threat. The cyber security restoration engine has a tracking component the operational state of each node in the graph of the protected system. The communication module also cooperates with the cyber security restoration engine to communicate with at least one of an external backup system and a recovery service to invoke backup remediation actions and/or recovery remediation actions to remediate one or more nodes potentially compromised by the cyber threat back to a trusted operational state, for example the state before the detected compromise by the cyber threat occurred in the protected system.
    Type: Application
    Filed: November 21, 2022
    Publication date: July 27, 2023
    Applicant: Darktrace Hoidings Limited
    Inventors: Simon Fellows, Jack Stockdale, Matt Dunn
  • Publication number: 20190260781
    Abstract: A cyber security appliance has one or more modules to interact with entities in an operational technology network and potentially in an informational technology network. The operational technology module can reference various machine-learning models trained on a normal pattern of life of users, devices, and/or controllers of the operational technology network. A comparator module cooperates with the operational technology module to compare the received data on the operational technology network to the normal pattern of life of any of the users, devices, and controllers to detect anomalies in the normal pattern of life for these entities in order to detect a cyber threat. An autonomous response module can be programmed to respond to counter the detected cyber threat.
    Type: Application
    Filed: February 19, 2019
    Publication date: August 22, 2019
    Inventors: Simon Fellows, Jack Stockdale
  • Publication number: 20100304769
    Abstract: An inter-radio-access-technology device comprising: an interface for communicating over a wireless cellular network, and a processor arranged to execute code for performing operations handling communications via the interface according to a plurality of different radio access technologies. The processor is operable to execute code using any selected one of a plurality of different instruction sets, each set being configured for performing operations according to a respective one of the radio access technologies. The device is operable to dynamically switch between the radio access technologies, by selecting corresponding code for execution by the processor and selecting the corresponding instruction set for use in execution of the selected code.
    Type: Application
    Filed: November 12, 2008
    Publication date: December 2, 2010
    Applicant: ICERA INC.
    Inventors: Simon Fellows, Simon Huckett, Godfrey Da Costa