Efficient patching
    2.
    发明授权
    Efficient patching 有权
    高效补丁

    公开(公告)号:US07890946B2

    公开(公告)日:2011-02-15

    申请号:US10880709

    申请日:2004-06-30

    IPC分类号: G06F9/44

    CPC分类号: G06F8/65

    摘要: A facility for augmenting software in a target computer system is described. The facility receives and augmentation specification in the target computer system. The augmentations specification specifies: (a) a function to be augmented, (b) a parameter of the function to be tested, (c) a test to apply to the specified parameter, and (d) and modification to perform to the behavior of the function if the specified test is not satisfied by the specified parameter. When the specified function is invoked on the target computer system, if the specified tested is not satisfied by the specified parameter, the facility performs the specified modification to the behavior of the specified function.

    摘要翻译: 描述了用于在目标计算机系统中增加软件的设施。 该设施在目标计算机系统中接收和扩充规范。 扩充规范规定:(a)要增强的功能,(b)要测试的功能的参数,(c)应用于指定参数的测试,(d)和修改以执行对 如果指定的测试不满足指定的参数的功能。 当在目标计算机系统上调用指定的函数时,如果指定的测试不符合指定的参数,则设备对指定的函数的行为执行指定的修改。

    Behavior blocking access control
    3.
    发明授权
    Behavior blocking access control 失效
    行为阻止访问控制

    公开(公告)号:US07818781B2

    公开(公告)日:2010-10-19

    申请号:US10957314

    申请日:2004-10-01

    IPC分类号: G06F17/00 H04K1/00 H04L9/00

    摘要: A facility for setting and revoking policies is provided. The facility receives a request from a controlling process a request to set a policy on a controlled process, and determines whether the controlling process has privilege to set the policy on the controlled process. If the facility determines that the controlling process has privilege to set the policy on the controlled process, the facility sets the policy on the controlled process, which causes the policy to be applied to the controlled process to determine whether the controlled process has authorization to access one or more resources.

    摘要翻译: 提供了设置和撤销政策的设施。 该设施从控制进程接收到一个请求以设置受控进程的策略,并且确定控制进程是否具有在受控进程上设置策略的权限。 如果设施确定控制过程具有在受控进程上设置策略的权限,则该设施将该策略设置在受控进程上,该策略将该策略应用于受控进程以确定受控进程是否具有访问权限 一个或多个资源。

    Automatic re-authentication
    4.
    发明授权
    Automatic re-authentication 有权
    自动重新认证

    公开(公告)号:US07475421B2

    公开(公告)日:2009-01-06

    申请号:US11275711

    申请日:2006-01-25

    IPC分类号: H04L9/00 G06F21/00 G06F15/16

    摘要: Upon successfully authenticating a client device with a server system, the client device and server system share auto-reconnect data. Upon subsequently losing and re-establishing communications with the server system, the client sends an auto-authenticate request to the server. The auto-authenticate request includes a session verifier that is based at least in part on the shared auto-reconnect data. The server validates the session verifier. If the validation is successful, the server automatically re-authenticates the client device.

    摘要翻译: 当客户端设备与服务器系统成功认证后,客户端设备和服务器系统共享自动重新连接数据。 随后丢失并重新建立与服务器系统的通信,客户端向服务器发送自动认证请求。 自动认证请求包括至少部分地基于共享的自动重连接数据的会话验证器。 服务器验证会话验证器。 如果验证成功,服务器将自动重新认证客户端设备。

    System and method of efficiently identifying and removing active malware from a computer
    5.
    发明授权
    System and method of efficiently identifying and removing active malware from a computer 有权
    从计算机有效识别和删除活动恶意软件的系统和方法

    公开(公告)号:US07673341B2

    公开(公告)日:2010-03-02

    申请号:US11012892

    申请日:2004-12-15

    IPC分类号: G06F12/14

    CPC分类号: H04L63/1408 G06F21/562

    摘要: The present invention provides a system, method, and computer-readable medium for identifying and removing active malware from a computer. Aspects of the present invention are included in a cleaner tool that may be obtained automatically with an update service or may be downloaded manually from a Web site or similar distribution system. The cleaner tool includes a specialized scanning engine that searches a computer for active malware. Since the scanning engine only searches for active malware, the amount of data downloaded and resource requirements of the cleaner tool are less than traditional antivirus software. The scanning engine searches specific locations on a computer, such as data mapped in memory, configuration files, and file metadata for data characteristic of malware. If malware is detected, the cleaner tool removes the malware from the computer.

    摘要翻译: 本发明提供一种用于从计算机识别和去除活动恶意软件的系统,方法和计算机可读介质。 本发明的方面包括在可以使用更新服务自动获得的清洁工具中,或者可以从网站或类似的分发系统手动下载。 更清洁的工具包括专门的扫描引擎,可在计算机上搜索主动恶意软件。 由于扫描引擎仅搜索活动的恶意软件,所以下载的数据量和清洁工具的资源需求比传统的防病毒软件要少。 扫描引擎在计算机上搜索特定位置,例如映射到内存中的数据,配置文件和文件元数据,以便恶意软件的特征。 如果检测到恶意软件,则清洁工具会从计算机中删除恶意软件。

    Computer security management, such as in a virtual machine or hardened operating system
    6.
    发明授权
    Computer security management, such as in a virtual machine or hardened operating system 有权
    计算机安全管理,如虚拟机或硬化操作系统

    公开(公告)号:US07409719B2

    公开(公告)日:2008-08-05

    申请号:US11019094

    申请日:2004-12-21

    IPC分类号: G06F21/00

    摘要: A security scheme provides security to one or more self-contained operating environment instances executing on a computer. The security scheme may include implementing a set of security applications that may be controlled by a supervisory process, or the like. Both the set of security applications and the supervisory process may operate on a host system of the computer, which may also provide a platform for execution of the one or more self-contained operating environments. The security scheme protects processes running in the one or more self-contained operating environment and processes running on the computer outside of the self-contained operating environments.

    摘要翻译: 安全方案为在计算机上执行的一个或多个自包含的操作环境实例提供安全性。 安全方案可以包括实现可由监督过程等控制的一组安全应用。 所述一组安全应用程序和监督过程可以在计算机的主机系统上操作,其还可以提供用于执行一个或多个独立操作环境的平台。 安全性方案保护在独立操作环境中运行的进程和在独立操作环境之外的计算机上运行的进程。

    Automatic re-authentication
    7.
    发明授权
    Automatic re-authentication 有权
    自动重新认证

    公开(公告)号:US07383571B2

    公开(公告)日:2008-06-03

    申请号:US11275681

    申请日:2006-01-24

    IPC分类号: H04L9/00 G06F15/16 G06F21/00

    摘要: Upon successfully authenticating a client device with a server system, the client device and server system share auto-reconnect data. Upon subsequently losing and re-establishing communications with the server system, the client sends an auto-authenticate request to the server. The auto-authenticate request includes a session verifier that is based at least in part on the shared auto-reconnect data. The server validates the session verifier. If the validation is successful, the server automatically re-authenticates the client device.

    摘要翻译: 当客户端设备与服务器系统成功认证后,客户端设备和服务器系统共享自动重新连接数据。 随后丢失并重新建立与服务器系统的通信,客户端向服务器发送自动认证请求。 自动认证请求包括至少部分地基于共享的自动重连接数据的会话验证器。 服务器验证会话验证器。 如果验证成功,服务器将自动重新认证客户端设备。

    Secure prompting
    10.
    发明授权
    Secure prompting 有权
    安全提示

    公开(公告)号:US07996682B2

    公开(公告)日:2011-08-09

    申请号:US11251946

    申请日:2005-10-17

    IPC分类号: G06F21/00

    CPC分类号: G06F21/57

    摘要: Techniques are described herein for securely prompting a user to confirm sensitive operations, input sensitive information or the like. The techniques include receiving or intercepting calls from applications to prompting routines. When a call to a prompting routine is received or intercepted a hint may be provided to the user to switch to a secure desktop. When the user switches from the user desktop to the secure desktop the particular prompt is displayed. The input to the prompt is received on the secure desktop and verified to have been provided by the user. The user input or a representation of the input is then returned to the application running on the user desktop. Using these techniques, interception of prompting messages by malware does not result in sensitive information being revealed. Furthermore, spoofing of new messages by malware does not lead to the dismissal of critical prompting.

    摘要翻译: 这里描述了用于安全地提示用户确认敏感操作,输入敏感信息等的技术。 这些技术包括接收或拦截来自应用程序的呼叫以提示例程。 当接收或拦截对提示例程的调用时,可以向用户提供切换到安全桌面的提示。 当用户从用户桌面切换到安全桌面时,会显示特定的提示。 在安全桌面上接收到提示的输入,并验证其已由用户提供。 用户输入或输入的表示然后返回到在用户桌面上运行的应用程序。 使用这些技术,通过恶意软件拦截提示消息不会导致敏感信息被显示。 此外,恶意软件欺骗新消息不会导致关键提示被解雇。