Patents by Inventor Steven R. Ocepek
Steven R. Ocepek has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Patent number: 8756697Abstract: Systems and methods for determining vulnerability to session stealing are disclosed. An example method includes intercepting, at a first computing device, an intercepted packet sent from a client to a second computing device different than the first computing device, the intercepted packet including a first instruction in a first portion of the intercepted packet, determining, using a template, a second portion of the intercepted packet that is a value that is changed by a calculated amount each time that the client sends a packet, changing the value by the calculated amount to determine a next value for a next packet, replacing the second portion of the intercepted packet with the next value to generate a modified packet, replacing the first portion of the modified packet with a second instruction, and transmitting the modified packet to the second computing device.Type: GrantFiled: March 30, 2012Date of Patent: June 17, 2014Assignee: Trustwave Holdings, Inc.Inventors: Steven R. Ocepek, Wendel Guglielmetti Henrique
-
Publication number: 20120255022Abstract: Systems and methods for determining vulnerability to session stealing are disclosed. An example method includes intercepting, at a first computing device, an intercepted packet sent from a client to a second computing device different than the first computing device, the intercepted packet including a first instruction in a first portion of the intercepted packet, determining, using a template, a second portion of the intercepted packet that is a value that is changed by a calculated amount each time that the client sends a packet, changing the value by the calculated amount to determine a next value for a next packet, replacing the second portion of the intercepted packet with the next value to generate a modified packet, replacing the first portion of the modified packet with a second instruction, and transmitting the modified packet to the second computing device.Type: ApplicationFiled: March 30, 2012Publication date: October 4, 2012Inventors: Steven R. Ocepek, Wendel Guglielmetti Henrique
-
Patent number: 7570625Abstract: A method, system, apparatus, and computer-readable medium to determine whether a device having access to a network is wireless. A method for determining whether a device is wireless includes sending a specially-constructed packet to the device via a network. The packet is constructed so that the source address for the packet is a physical address on the network for the device. If the device does not send a response to the packet, a determination is made that the device is wireless. If the device sends a response to the packet, a determination is made that the device is wired. In one embodiment of the invention, the physical address for the device is a Media Access Control (MAC) address. The initial packet may, for example, request the physical address for the device and may be sent in response to detecting a communication to or from the suspect device.Type: GrantFiled: January 10, 2006Date of Patent: August 4, 2009Assignee: TW Acquisition, Inc.Inventor: Steven R. Ocepek
-
Patent number: 7499999Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.Type: GrantFiled: May 31, 2006Date of Patent: March 3, 2009Assignee: Mirage Networks, Inc.Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
-
Patent number: 7448076Abstract: A peer connected device for controlling access by a client device to protected devices on a computer network. The peer connected device has a central processing unit and a network interface configured to receive address resolution requests broadcast on the computer network by the client device seeking access to one of the protected devices and to transmit address resolution replies generated by the apparatus on the computer network.Type: GrantFiled: October 22, 2002Date of Patent: November 4, 2008Assignee: Mirage Networks, Inc.Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
-
Patent number: 7124197Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.Type: GrantFiled: October 22, 2002Date of Patent: October 17, 2006Assignee: Mirage Networks, Inc.Inventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
-
Publication number: 20040054926Abstract: A peer connected device for controlling access by a client device to protected devices on a computer network. The peer connected device has a central processing unit and a network interface configured to receive address resolution requests broadcast on the computer network by the client device seeking access to one of the protected devices and to transmit address resolution replies generated by the apparatus on the computer network.Type: ApplicationFiled: October 22, 2002Publication date: March 18, 2004Applicant: Wholepoint CorporationInventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola
-
Publication number: 20040049586Abstract: The present invention includes a method and apparatus for controlling data link layer access to protected servers on a computer network by a client device. Address resolution requests broadcast on the network by the client device seeking access to any network device are received and then processed to determine whether the client device is unknown. If the client device is unknown, restriction address resolution replies are transmitted to the protected devices to restrict access by the client device to the protected devices and allow access to an authentication server. The authentication server is monitored to determine if the client device is authorized or unauthorized by the authentication server. If the client device is authorized, access is allowed to the protected devices. If the client device is unauthorized, blocking address resolution replies are transmitted on the computer network to block access by the client device to all other network devices.Type: ApplicationFiled: October 22, 2002Publication date: March 11, 2004Applicant: Wholepoint CorporationInventors: Steven R. Ocepek, Brian A. Lauer, David A. Dziadziola