- 专利标题: Using indirection to facilitate software upgrades
-
申请号: US15721508申请日: 2017-09-29
-
公开(公告)号: US11163880B2公开(公告)日: 2021-11-02
- 发明人: Cat S. Zimmermann , Steven King
- 申请人: CrowdStrike, Inc.
- 申请人地址: US CA Irvine
- 专利权人: CrowdStrike, Inc.
- 当前专利权人: CrowdStrike, Inc.
- 当前专利权人地址: US CA Irvine
- 代理机构: Lee & Hayes, P.C.
- 主分类号: G06F21/56
- IPC分类号: G06F21/56 ; G06F21/55 ; H04L29/06 ; G06F8/656 ; G06F21/57 ; G06F8/65 ; G06F9/54
摘要:
A security agent for a host computing device may be implemented with multiple levels of indirection from an operating system (OS) kernel of the computing device in order to facilitate software upgrades for the security agent. An unserviceable kernel-mode component of the security agent may directly interface with the OS kernel and hook into a function (e.g., a security callback function) of the OS kernel in a first level of indirection, while a serviceable kernel-mode component of the security agent, which is upgradable, may indirectly interface with the OS kernel via the unserviceable kernel-mode component in a second level of indirection. The serviceable kernel-mode component may be configured to process events, and/or data related thereto, received from the OS kernel via the unserviceable kernel-mode component in order to monitor activity on the computing device for malware attacks.
公开/授权文献
- US11017086B2 Using indirection to facilitate software upgrades 公开/授权日:2021-05-25
信息查询