-
11.
公开(公告)号:US11303669B1
公开(公告)日:2022-04-12
申请号:US17497750
申请日:2021-10-08
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
IPC: H04L29/06 , H04L12/46 , H04L61/5007 , H04L61/5038
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.
-
公开(公告)号:US11171985B1
公开(公告)日:2021-11-09
申请号:US17357757
申请日:2021-06-24
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.
-
公开(公告)号:US20240430281A1
公开(公告)日:2024-12-26
申请号:US18341204
申请日:2023-06-26
Applicant: Airgap Networks Inc.
Inventor: Rajesh S. Tiwari , Satish M. Mohan , Ritesh R. Agrawal , Vinay Adavi
IPC: H04L9/40
Abstract: A technique to monitor device health of endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication. Message traffic is analyzed and anomalies are detected relative to normal message traffic that correspond to device health problems that may require service by a field technician.
-
公开(公告)号:US12074906B1
公开(公告)日:2024-08-27
申请号:US18529621
申请日:2023-12-05
Applicant: AIRGAP NETWORKS INC.
Inventor: Satish M. Mohan , Vinay Adavi , Ritesh R. Agrawal
CPC classification number: H04L63/1466 , H04L12/4641 , H04L63/1416
Abstract: A technique to provide early detection of ransomware is disclosed. Message traffic from secure gateways is monitored. Statistical anomaly detection and behavioral anomaly detection is performed. Visualization and alerts may be generated to aid operators to identify ransomware attacks and take proactive measures. In one implementation, the early detection of ransomware is performed in the cloud.
-
公开(公告)号:US11722519B1
公开(公告)日:2023-08-08
申请号:US18053531
申请日:2022-11-08
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
CPC classification number: H04L63/1466 , H04L12/4641 , H04L63/1416
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.
-
公开(公告)号:US11695799B1
公开(公告)日:2023-07-04
申请号:US17888419
申请日:2022-08-15
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
CPC classification number: H04L63/1466 , H04L12/4641 , H04L63/1416
Abstract: An extended enterprise browser supports using at least two different authentication certificates depending on factors such as a ransomware risk posture. Secure user access may be provided by using a trusted platform module to encrypt/decrypt the authentication certificates based on a secret key generated based on information from the trusted platform module and the extended enterprise browser. Man-in-the Middle (MITM) attacks of the authentication certificated by ransomware is prevented.
-
公开(公告)号:US11374964B1
公开(公告)日:2022-06-28
申请号:US17587604
申请日:2022-01-28
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication by overwriting the DHCP responses. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined. The security appliance may act in response to an initial detection of ransomware such that it does not ordinarily interfere with operation of a primary DHCP server.
-
公开(公告)号:US11303673B1
公开(公告)日:2022-04-12
申请号:US17497756
申请日:2021-10-08
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
IPC: H04L29/06 , H04L61/5014 , H04L12/46
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. A security appliance is set as the default gateway for intra-LAN communication by overwriting the DHCP responses. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.
-
19.
公开(公告)号:US11252183B1
公开(公告)日:2022-02-15
申请号:US17497765
申请日:2021-10-08
Applicant: Airgap Networks Inc.
Inventor: Ritesh R. Agrawal , Vinay Adavi , Satish M. Mohan
IPC: H04L29/06
Abstract: A technique to stop lateral movement of ransomware between endpoints in a VLAN is disclosed. The security appliance may be implemented on-prem or in cloud data center environments. A security appliance is set as the default gateway for intra-LAN communication. Message traffic from compromised endpoints is detected. Attributes of ransomware may be detected in the message traffic, as well as attempts to circumvent the security appliance. Compromised devices may be quarantined.
-
-
-
-
-
-
-
-