- 专利标题: Detecting malicious activities by imported software packages
-
申请号: US14837403申请日: 2015-08-27
-
公开(公告)号: US10019572B1公开(公告)日: 2018-07-10
- 发明人: Nima Sharifi Mehr
- 申请人: Amazon Technologies, Inc.
- 申请人地址: US WA Seattle
- 专利权人: Amazon Technologies, Inc.
- 当前专利权人: Amazon Technologies, Inc.
- 当前专利权人地址: US WA Seattle
- 代理机构: Thomas Horstemeyer, LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F21/55 ; G06F17/30 ; G06F21/56
摘要:
Disclosed are various embodiments for detecting malicious activities by imported software packages. A monitoring service determines that untrusted code executing in at least one computing device has invoked a privileged operation. A context in which the privileged operation is invoked is identified. The monitoring service determines whether the context and the privileged operation corresponds to an expected behavior of the untrusted code based at least in part on a past behavior profile of the untrusted code. An action is performed in response to determining that the context and the privileged operation do not correspond to the expected behavior.
信息查询