-
公开(公告)号:US20230275906A1
公开(公告)日:2023-08-31
申请号:US17682209
申请日:2022-02-28
Applicant: Mellanox Technologies Ltd.
Inventor: Ohad ZOHAR , Dotan Finkelshtein , Ariel Almog , Nir Getter , Amit Mandelbaum
CPC classification number: H04L63/1416 , H04L63/1425 , H04L63/1466 , G06N20/00 , G06F9/45558 , G06F2009/45595 , G06F2009/45587
Abstract: A method of determining if a virtual machine is executing a network attack may include using a computing device operating a processor: receiving a plurality of jobs from a plurality of virtual machines being executed across time slices on a host computer in a computer network; executing the plurality of jobs using the processor; receiving data from hardware counters of the processor; and based on the data, determining whether or not a virtual machine of the plurality of virtual machines is executing a network attack.
-
公开(公告)号:US12273380B2
公开(公告)日:2025-04-08
申请号:US17550867
申请日:2021-12-14
Applicant: Mellanox Technologies LTD.
Inventor: Dotan Finkelshtein , Alexander Bilkovskii , Roni Bar Yanai , Juan Jose Vegas Olmos
Abstract: A device receives a packet from a local network. The packet may be directed toward a cloud computing resource. The device determines that the packet is associated with a new packet flow. In response to determining that the packet is associated with the new packet flow, the device provides one or more packets from the new packet flow to a machine learning model for packet inspection. The device receives an output from the machine learning model and routes the new packet flow based on the output received from the machine learning model. The output indicates whether or not the new packet flow is associated with a network attack.
-
公开(公告)号:US20240370579A1
公开(公告)日:2024-11-07
申请号:US18142968
申请日:2023-05-03
Applicant: MELLANOX TECHNOLOGIES, LTD.
Inventor: Dotan Finkelshtein , Michael Tahar , Irit Granovsky , Yaniv Strassberg , Guy-Avraham Harel
Abstract: A system, circuit, and method are described, among other things. An illustrative system is disclosed to include a processor and a memory storing data for processing by the processor. The data, when processed, causes the processor to receive an initiator message comprising a request to access one or more registers of a plurality of registers, determine that the initiator message corresponds to an entry of a privilege access table, determine a configured level of access control for the initiator message to access the one or more requested registers based at least in part on a group mapping table, and provide a level of access to the one or more requested registers corresponding to the received initiator message based on the initiator message corresponding to the entry of the privilege access table and based, at least in part, on the determined configured level of access control.
-
公开(公告)号:US11374838B1
公开(公告)日:2022-06-28
申请号:US17214945
申请日:2021-03-29
Applicant: MELLANOX TECHNOLOGIES, LTD.
Inventor: Dotan Finkelshtein , Opher Gavriel Reviv
IPC: H04L29/06 , H04J3/06 , H04L29/12 , H04L43/0876
Abstract: A system includes a network adapter and a processor. The network adapter is configured to receive packets from a network, to process the received packets in accordance with a policy, and to derive a packet digest from the received packets. The processor is configured to adapt the policy based on the packet digest derived by the network adapter, and to provide the adapted policy to the network adapter for subsequent packet processing.
-
公开(公告)号:US11336273B1
公开(公告)日:2022-05-17
申请号:US17464703
申请日:2021-09-02
Applicant: MELLANOX TECHNOLOGIES, LTD.
Inventor: Dotan Finkelshtein , Aviv Hasson , Yaniv Strassberg , Ran Sela
IPC: H03K5/08 , H03K5/1252 , G01R19/165 , G06F21/75 , G06F21/55 , G06F1/28
Abstract: An Integrated Circuit (IC) includes functional circuitry and attack-protection circuitry (APC). The functional circuitry is to receive a supply voltage from a power-supply input. The APC is coupled to the power-supply input and includes a front-end circuit and an averaging circuit. The front-end circuit is to compare the supply voltage to a plurality of voltage thresholds, and to output a respective plurality of indications that indicate whether the supply voltage violates the respective voltage thresholds. The averaging circuit is to estimate, for a selected subset of the indications, respective duty-cycles at which the indications in the subset exceed the respective voltage thresholds. The APC is to trigger one or more attack detection events in response to the indications and the duty-cycles.
-
-
-
-