Systems and methods for mitigating border gateway protocol attacks in real-time

    公开(公告)号:US12063225B1

    公开(公告)日:2024-08-13

    申请号:US17331355

    申请日:2021-05-26

    CPC classification number: H04L63/1416 G06N20/00 H04L63/1441

    Abstract: An intelligent border gateway protocol (BGP) device for monitoring and mitigating BGP propagation is provided. The intelligent BGP device includes a transceiver, a processor, and a memory. The transceiver communicates with at least one router over of a communication network. The memory store computer-executable instructions, which, when executed by the processor, cause the intelligent BGP device to store a plurality of historical networking information. The instructions further cause the intelligent BGP device to receive, from a router, a request to analyze an update message, including at least an autonomous system number and a prefix. The instructions also cause the intelligent BGP device to compare the update message to the plurality of historical networking information. In addition, the instructions cause the intelligent BGP device to generate and transmit a probability that the update message is valid based upon the comparison.

    Systems and methods for protecting cellular network messages

    公开(公告)号:US11882449B1

    公开(公告)日:2024-01-23

    申请号:US17220446

    申请日:2021-04-01

    Inventor: Tao Wan

    Abstract: A client-side electronic device includes a receiver, a processor, and a memory. The receiver communicates with a message server over a communication medium of a communication network. The memory stores computer-executable instructions, which, when executed by the processor, cause the device to receive, from the message server, a broadcast message, a timestamp associated with the broadcast message, and a first digital signature of the broadcast message and a second digital signature of the timestamp. The executed instruction further cause the device to verify an integrity of the broadcast message based the first or second digital signatures, determine a freshness of the broadcast message based on the received timestamp, calculate a trust state of the broadcast message based on the integrity verification and the freshness determination, and store the broadcast message in the memory along with the calculated trust state.

    SYSTEMS AND METHODS FOR OBTAINING PERMANENT MAC ADDRESSES

    公开(公告)号:US20210036988A1

    公开(公告)日:2021-02-04

    申请号:US16941328

    申请日:2020-07-28

    Abstract: A network server is provided. The network server includes at least one processor in communication with at least one memory device. The network server is programmed to receive an access request originating from a user device, perform an authentication process for connecting with the user device, transmit, to the user device, a request message for a media access control (MAC) address of the user device, receive, from the user device, a response message including the MAC address of the user device, and determine whether to grant the access request based on the MAC address of the user device.

    Systems and methods for protecting cellular network messages

    公开(公告)号:US12207091B1

    公开(公告)日:2025-01-21

    申请号:US18419245

    申请日:2024-01-22

    Inventor: Tao Wan

    Abstract: A client-side electronic device includes a receiver, a processor, and a memory. The receiver communicates with a message server over a communication medium of a communication network. The memory stores computer-executable instructions, which, when executed by the processor, cause the device to receive, from the message server, a broadcast message, a timestamp associated with the broadcast message, and a first digital signature of the broadcast message and a second digital signature of the timestamp. The executed instruction further cause the device to verify an integrity of the broadcast message based the first or second digital signatures, determine a freshness of the broadcast message based on the received timestamp, calculate a trust state of the broadcast message based on the integrity verification and the freshness determination, and store the broadcast message in the memory along with the calculated trust state.

    Systems and method for authentication and authorization in networks using service based architecture

    公开(公告)号:US11622276B1

    公开(公告)日:2023-04-04

    申请号:US17193960

    申请日:2021-03-05

    Inventor: Tao Wan

    Abstract: Systems and methods for securing network communications between a first device and a second device over a service-based architecture, include receiving, at the first device, an access request including: a request to use a service of the service-based architecture, an authentication public key certificate associated with the second device or a proxy device therefore, a unique identifier of the second device, and a digital signature using the private key associated with the authentication public key certificate. The first device may verify the authentication public key certificate and generate an encrypted access response including an access token that allows access to the service, which is then transmitted back to the second device for further use in accessing the service-based architecture.

    Systems and method for authentication and authorization in networks using service based architecture

    公开(公告)号:US12185110B1

    公开(公告)日:2024-12-31

    申请号:US18130356

    申请日:2023-04-03

    Inventor: Tao Wan

    Abstract: Systems and methods for securing network communications between a first device and a second device over a service-based architecture, include receiving, at the first device, an access request including: a request to use a service of the service-based architecture, an authentication public key certificate associated with the second device or a proxy device therefore, a unique identifier of the second device, and a digital signature using the private key associated with the authentication public key certificate. The first device may verify the authentication public key certificate and generate an encrypted access response including an access token that allows access to the service, which is then transmitted back to the second device for further use in accessing the service-based architecture.

    Systems and methods for network device advanced privacy

    公开(公告)号:US12101631B1

    公开(公告)日:2024-09-24

    申请号:US17240511

    申请日:2021-04-26

    CPC classification number: H04W12/08 H04L63/0281 G16Y20/00

    Abstract: A privacy proxy device for maintaining privacy on a communication network is provided. The privacy proxy device includes a transceiver, a processor, and a memory. The transceiver communicates with at least one user device and at least one device capable of recording over a communication medium of the communication network. The memory store computer-executable instructions, which, when executed by the processor, cause the privacy proxy device to store a plurality of privacy settings including one or more recording settings. The instructions further cause the privacy proxy device to receive a request to record from a recording device of the at least one device capable of recording. The instructions also cause the privacy proxy device to compare the request to record to the plurality of privacy settings. In addition, the instructions cause the privacy proxy device to generate and transmit a response to the request to record based on the comparison.

    Systems and methods for HTTPS over proxy

    公开(公告)号:US12155635B1

    公开(公告)日:2024-11-26

    申请号:US17517747

    申请日:2021-11-03

    Inventor: Tao Wan

    Abstract: A computer device is provided for HTTPS over Proxy (HoP). The computer device includes a transceiver configured for operable communication with at least one client device of the communication network via a secure connection with a server device, and a processor including a memory configured to store computer-executable instructions. When executed by the processor, the instructions cause the computer device to receive, from a client device via the communication network, a communication request message including a desired domain, determine a communication authentication token associated with the desired domain, transmit, to the client device, the communication authentication token associated with the desired domain, wherein the client device is configured to validate the communication authentication token, and continue communication with the client device if the client device validates the communication authentication token.

Patent Agency Ranking