SINGLE SOLUTION FOR USER ASSET CONTROL
    62.
    发明公开
    SINGLE SOLUTION FOR USER ASSET CONTROL 审中-公开
    用户资产控制的单一解决方案

    公开(公告)号:EP3314851A1

    公开(公告)日:2018-05-02

    申请号:EP16814965.6

    申请日:2016-05-25

    申请人: McAfee, LLC

    IPC分类号: H04L29/06 H04L9/32

    摘要: A system provides a way for a person to control access to digital assets, including financial accounts, through a common gateway that can interact on the person's behalf with service providers that manage the digital assets. Brokers may act as intermediaries between the gateway and the service providers, providing a common interface to the gateway and a specific interface to a service provider. Trigger events can cause the gateway to interact with the service providers, causing the service providers to take a desired action. The trigger events may include notification sent by the person, timed events, and other detected events.

    QUERY ENGINE FOR REMOTE ENDPOINT INFORMATION RETRIEVAL
    65.
    发明公开
    QUERY ENGINE FOR REMOTE ENDPOINT INFORMATION RETRIEVAL 无效
    QUERY ENGINE远程终点信息检索

    公开(公告)号:EP3314506A1

    公开(公告)日:2018-05-02

    申请号:EP16814921.9

    申请日:2016-05-23

    申请人: McAfee, LLC

    CPC分类号: G06F17/30424 G06F17/30545

    摘要: Embodiments are disclosed herein for remote retrieval of information from endpoints and comprise receiving a master query at an endpoint in a network environment and executing a set of one or more subqueries defined in the master query. Embodiments also comprise an execution of a first subquery that includes executing a function to produce a first output, applying one or more conditions to the first output to determine a second output, and determining a result of the master query based, at least in part, on the second output. In specific embodiments, the master query is received from another node over a network connection. In more specific embodiments, the function is executed on the endpoint to collect real-time information based on one or more parameters. In further embodiments, the function is one of a plug-in or a script.

    SECURE CONTENT PACKAGING USING MULTIPLE TRUSTED EXECUTION ENVIRONMENTS

    公开(公告)号:EP3175575A4

    公开(公告)日:2018-03-28

    申请号:EP15826300

    申请日:2015-05-28

    申请人: MCAFEE LLC

    IPC分类号: H04L9/08 G06F21/10 H04L29/06

    摘要: Technologies for secure content packaging include a source computing device that transmits a secure package to a destination computing device. The destination computing device establishes a content policy trusted execution environment and a key policy trusted execution environment. The content policy trusted execution environment may be established in a secure enclave using processor support. The key policy trusted execution environment may be established using a security engine. The key policy trusted execution environment evaluates a key access policy and decrypts a content key using a master wrapping key. The content policy trusted execution environment evaluates a content access policy and decrypts the content using the decrypted content key. Similarly, the source computing device authors the secure package using a content policy trusted execution environment and a key policy trusted execution environment. The master wrapping key may be provisioned to the computing devices during manufacture. Other embodiments are described and claimed.

    USING TRUSTED PLATFORM MODULE TO BUILD REAL TIME INDICATORS OF ATTACK INFORMATION
    68.
    发明公开
    USING TRUSTED PLATFORM MODULE TO BUILD REAL TIME INDICATORS OF ATTACK INFORMATION 无效
    使用可信平台模块构建攻击信息的实时指标

    公开(公告)号:EP3292498A1

    公开(公告)日:2018-03-14

    申请号:EP16789723.0

    申请日:2016-04-05

    申请人: McAfee, LLC

    IPC分类号: G06F21/44 H04L9/32 H04L9/08

    摘要: Managed devices containing a Trusted Platform Module (TPM) to provide a trusted environment generate a device certificate at initialization of the TPM and send the device certificate to a management console for storing in a certificate database. Upon detecting a file of interest, the TPM signs the file, adding to a signature list created by previous managed devices. The signature list can be used to analyze the spread of the file across the system of managed devices, including tracking the file to the first managed device to have had a copy, without requiring real-time access to the managed devices during the spread of the file. In some embodiments, additional security measures may be taken responsive to determining the first managed device and the path the file has taken across the system of managed devices.

    DYNAMIC FEATURE SET MANAGEMENT
    70.
    发明公开

    公开(公告)号:EP3180715A4

    公开(公告)日:2018-01-10

    申请号:EP15832183

    申请日:2015-06-25

    申请人: MCAFEE LLC

    摘要: In an example, a network is described with a plurality of data sources. Each data source may provide a feature, such as a data type that the data source collects or generates. A data aggregator may be connected to the network, and configured to collect, classify, and merge features as appropriate. The data aggregator includes a discriminator for classifying features, a merger, unmerger, converter, and evaluator. Features are provided to one or more expert systems configured to control one or more systems based on the features. Feedback to the data aggregator is used to evaluate the success of a merge. When a merge is found to be unhelpful, features may be unmerged.