• 专利标题: Integrity Assurance and Rebootless Updating During Runtime
  • 申请号: US15051461
    申请日: 2016-02-23
  • 公开(公告)号: US20160170740A1
    公开(公告)日: 2016-06-16
  • 发明人: Ion-Alexandru Ionescu
  • 申请人: CrowdStrike, Inc.
  • 主分类号: G06F9/445
  • IPC分类号: G06F9/445
Integrity Assurance and Rebootless Updating During Runtime
摘要:
Techniques are described herein for, without rebooting a computing device, unloading at least a component of a kernel-mode component of the computing device and loading an updated version of the component of the kernel-mode component. The techniques may be performed by an integrity manager associated with the kernel-mode component. The integrity manager may also determine integrity of the kernel-mode component by causing the kernel-mode component to perform an action associated with a known reaction, determining whether the known reaction occurred, and in response, performing a remediation action or notifying a remote security service. Further, the integrity manager may determine whether any computing device lists include representations of components or connections associated with the kernel-mode component. The integrity manager may then remove the representations from the lists or remove the representations from responses to requests for contents of the computing device lists.
公开/授权文献
信息查询
0/0