Patents by Inventor Steven R. Ocepek

Steven R. Ocepek has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 8756697
    Abstract: Systems and methods for determining vulnerability to session stealing are disclosed. An example method includes intercepting, at a first computing device, an intercepted packet sent from a client to a second computing device different than the first computing device, the intercepted packet including a first instruction in a first portion of the intercepted packet, determining, using a template, a second portion of the intercepted packet that is a value that is changed by a calculated amount each time that the client sends a packet, changing the value by the calculated amount to determine a next value for a next packet, replacing the second portion of the intercepted packet with the next value to generate a modified packet, replacing the first portion of the modified packet with a second instruction, and transmitting the modified packet to the second computing device.
    Type: Grant
    Filed: March 30, 2012
    Date of Patent: June 17, 2014
    Assignee: Trustwave Holdings, Inc.
    Inventors: Steven R. Ocepek, Wendel Guglielmetti Henrique
  • Publication number: 20120255022
    Abstract: Systems and methods for determining vulnerability to session stealing are disclosed. An example method includes intercepting, at a first computing device, an intercepted packet sent from a client to a second computing device different than the first computing device, the intercepted packet including a first instruction in a first portion of the intercepted packet, determining, using a template, a second portion of the intercepted packet that is a value that is changed by a calculated amount each time that the client sends a packet, changing the value by the calculated amount to determine a next value for a next packet, replacing the second portion of the intercepted packet with the next value to generate a modified packet, replacing the first portion of the modified packet with a second instruction, and transmitting the modified packet to the second computing device.
    Type: Application
    Filed: March 30, 2012
    Publication date: October 4, 2012
    Inventors: Steven R. Ocepek, Wendel Guglielmetti Henrique
  • Patent number: 7570625
    Abstract: A method, system, apparatus, and computer-readable medium to determine whether a device having access to a network is wireless. A method for determining whether a device is wireless includes sending a specially-constructed packet to the device via a network. The packet is constructed so that the source address for the packet is a physical address on the network for the device. If the device does not send a response to the packet, a determination is made that the device is wireless. If the device sends a response to the packet, a determination is made that the device is wired. In one embodiment of the invention, the physical address for the device is a Media Access Control (MAC) address. The initial packet may, for example, request the physical address for the device and may be sent in response to detecting a communication to or from the suspect device.
    Type: Grant
    Filed: January 10, 2006
    Date of Patent: August 4, 2009
    Assignee: TW Acquisition, Inc.
    Inventor: Steven R. Ocepek
  • Patent number: 7499999
    Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.
    Type: Grant
    Filed: May 31, 2006
    Date of Patent: March 3, 2009
    Assignee: Mirage Networks, Inc.
    Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
  • Patent number: 7448076
    Abstract: A peer connected device for controlling access by a client device to protected devices on a computer network. The peer connected device has a central processing unit and a network interface configured to receive address resolution requests broadcast on the computer network by the client device seeking access to one of the protected devices and to transmit address resolution replies generated by the apparatus on the computer network.
    Type: Grant
    Filed: October 22, 2002
    Date of Patent: November 4, 2008
    Assignee: Mirage Networks, Inc.
    Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
  • Patent number: 7124197
    Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.
    Type: Grant
    Filed: October 22, 2002
    Date of Patent: October 17, 2006
    Assignee: Mirage Networks, Inc.
    Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
  • Publication number: 20040054926
    Abstract: A peer connected device for controlling access by a client device to protected devices on a computer network. The peer connected device has a central processing unit and a network interface configured to receive address resolution requests broadcast on the computer network by the client device seeking access to one of the protected devices and to transmit address resolution replies generated by the apparatus on the computer network.
    Type: Application
    Filed: October 22, 2002
    Publication date: March 18, 2004
    Applicant: Wholepoint Corporation
    Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
  • Publication number: 20040049586
    Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.
    Type: Application
    Filed: October 22, 2002
    Publication date: March 11, 2004
    Applicant: Wholepoint Corporation
    Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola