- 专利标题: SECURITY COMPONENT FOR DEVICES ON AN ENUMERATED BUS
-
申请号: US17466861申请日: 2021-09-03
-
公开(公告)号: US20210397750A1公开(公告)日: 2021-12-23
- 发明人: Aaron LeMasters , Ion-Alexandru Ionescu
- 申请人: CrowdStrike, Inc.
- 申请人地址: US CA Irvine
- 专利权人: CrowdStrike, Inc.
- 当前专利权人: CrowdStrike, Inc.
- 当前专利权人地址: US CA Irvine
- 主分类号: G06F21/82
- IPC分类号: G06F21/82 ; G06F13/40 ; G06F21/71 ; G06F13/38 ; G06F21/56 ; G06F21/57 ; G06F21/55 ; G06F9/4401 ; G06F21/85
摘要:
A plug-and-play (PnP) driver associated with a security agent is described herein. The PnP driver attaches to device stacks of enumerated bus devices of a computing device as upper-device or lower-device filters based on the device classes of the enumerated bus devices. For example, the PnP driver may attach to the device stack of a hub or controller device as an upper-device filter and to device stacks of other devices as lower-device filters. Either while attaching or after attachment, the PnP driver may take action to alter, limit, or otherwise block functionality of an enumerated bus device. The PnP driver may also perform a system inventory of enumerated bus devices connected to the computing device and create fingerprints for one or more of the computing devices. Additionally, the PnP driver may create and remove control device objects (CDOs) to enable communication with user-mode processes or threads.
信息查询