Patents by Inventor Zhipu Jin

Zhipu Jin has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 10911438
    Abstract: Techniques are provided for secure detection and management of compromised credentials. A first candidate credential is received, comprising a first username and a first password, wherein the first candidate credential was sent in a first request from a first client computer to log in to a first server computer. A first salt associated with the first username in a salt database is obtained. A first hashed credential is generated based on the first password and the first salt. The first hashed credential is transmitted to a set model server computer, wherein the set model server computer is configured to maintain a set model that represents a set of spilled credentials, determine whether the first hashed credential is represented in the set model, and in response to determining that the first hashed credential is represented in the set model, performing additional processing on the first hashed credential.
    Type: Grant
    Filed: July 2, 2018
    Date of Patent: February 2, 2021
    Assignee: Shape Security, Inc.
    Inventors: Zhipu Jin, Gautam Agrawal, Daniel G. Moen, Weiguo Liang, Xingang Wang
  • Patent number: 10637863
    Abstract: Enforcing a policy is described. A mapping between an IP address of a device and a user identity is identified at a first appliance, at least in part by correlating event information. The mapping is transmitted to a second appliance. A policy is applied by the second appliance to the device based at least in part on the user identity.
    Type: Grant
    Filed: March 31, 2017
    Date of Patent: April 28, 2020
    Assignee: Palo Alto Networks, Inc.
    Inventors: Song Wang, Michael Soren Jacobsen, Martin Walter, Suiqiang Deng, Zhipu Jin
  • Patent number: 10560478
    Abstract: Enforcing a policy is described. System log messages are received, via an interface, from a network device. At least a portion of the received system log messages are parsed to obtain an IP address and to obtain a user identifier. A policy to apply to a session associated with the IP address is determined, based at least in part on the user identifier. The policy is applied to the session.
    Type: Grant
    Filed: June 5, 2014
    Date of Patent: February 11, 2020
    Assignee: Palo Alto Networks, Inc.
    Inventors: Amro A. Younes, Zhipu Jin, Martin Walter, Michael Soren Jacobsen, Nicholai Gian Piagentini
  • Publication number: 20190007387
    Abstract: Techniques are provided for secure detection and management of compromised credentials. A first candidate credential is received, comprising a first username and a first password, wherein the first candidate credential was sent in a first request from a first client computer to log in to a first server computer. A first salt associated with the first username in a salt database is obtained. A first hashed credential is generated based on the first password and the first salt. The first hashed credential is transmitted to a set model server computer, wherein the set model server computer is configured to maintain a set model that represents a set of spilled credentials, determine whether the first hashed credential is represented in the set model, and in response to determining that the first hashed credential is represented in the set model, performing additional processing on the first hashed credential.
    Type: Application
    Filed: July 2, 2018
    Publication date: January 3, 2019
    Applicant: SHAPE SECURITY, INC.
    Inventors: Zhipu Jin, Gautam Agrawal, Daniel G. Moen, Weiguo Liang, Xingang Wang
  • Patent number: 9660992
    Abstract: Enforcing a policy is described. A mapping between an IP address of a device and a user identity is identified at a first appliance, at least in part by correlating event information. The mapping is transmitted to a second appliance. A policy is applied by the second appliance to the device based at least in part on the user identity.
    Type: Grant
    Filed: June 22, 2012
    Date of Patent: May 23, 2017
    Assignee: Palo Alto Networks, Inc.
    Inventors: Song Wang, Michael Jacobsen, Martin Walter, Suiqiang Deng, Zhipu Jin
  • Patent number: 9619260
    Abstract: Policy enforcement in an environment that includes virtualized systems is disclosed. Virtual machine information associated with a first virtual machine instance executing on a host machine is received. The information can be received from a variety of sources, including an agent, a log server, and a management infrastructure associated with the host machine. A policy is applied based at least in part on the received virtual machine information.
    Type: Grant
    Filed: April 2, 2015
    Date of Patent: April 11, 2017
    Assignee: Palo Alto Networks, Inc.
    Inventors: Song Wang, Martin Walter, Zhipu Jin, Wilson Xu
  • Publication number: 20150277943
    Abstract: Policy enforcement in an environment that includes virtualized systems is disclosed. Virtual machine information associated with a first virtual machine instance executing on a host machine is received. The information can be received from a variety of sources, including an agent, a log server, and a management infrastructure associated with the host machine. A policy is applied based at least in part on the received virtual machine information.
    Type: Application
    Filed: April 2, 2015
    Publication date: October 1, 2015
    Inventors: Song Wang, Martin Walter, Zhipu Jin, Wilson Xu
  • Patent number: 9047109
    Abstract: Policy enforcement in an environment that includes virtualized systems is disclosed. Virtual machine information associated with a first virtual machine instance executing on a host machine is received. The information can be received from a variety of sources, including an agent, a log server, and a management infrastructure associated with the host machine. A policy is applied based at least in part on the received virtual machine information.
    Type: Grant
    Filed: June 20, 2012
    Date of Patent: June 2, 2015
    Assignee: Palo Alto Networks, Inc.
    Inventors: Song Wang, Martin Walter, Zhipu Jin, Wilson Xu
  • Patent number: 8125920
    Abstract: An apparatus is provided in one example embodiment and includes a network element configured to receive a plurality of packets. The network element is configured to couple to a module, the module being configured to generate a data record that is based on information associated with the packets and capable of being interpreted according to a template in which multiple information elements can be positioned to create a hierarchical relationship within structured data. The structured data further includes references to the information elements. The network element further including an export module configured to export the data record to a next destination.
    Type: Grant
    Filed: May 14, 2009
    Date of Patent: February 28, 2012
    Assignee: Cisco Technology, Inc.
    Inventors: Paul J. Aitken, Benoit Claise, Gowri Dhandapani, Zhipu Jin, Nagaraj Varadharajan, Stanford L. Yates
  • Publication number: 20100226282
    Abstract: An apparatus is provided in one example embodiment and includes a network element configured to receive a plurality of packets. The network element is configured to couple to a module, the module being configured to generate a data record that is based on information associated with the packets and capable of being interpreted according to a template in which multiple information elements can be positioned to create a hierarchical relationship within structured data. The structured data further includes references to the information elements. The network element further including an export module configured to export the data record to a next destination.
    Type: Application
    Filed: May 14, 2009
    Publication date: September 9, 2010
    Inventors: Paul J. Aitken, Benoit Claise, Gowri Dhandapani, Zhipu Jin, Nagaraj Varadharajan, Stanford L. Yates