-
公开(公告)号:US08453245B2
公开(公告)日:2013-05-28
申请号:US11618470
申请日:2006-12-29
申请人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
发明人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
IPC分类号: G06F11/00
CPC分类号: G06F11/0748 , G06F11/079 , G06F21/577
摘要: Various embodiments detect security vulnerabilities and, responsively, can modify an affected program so that even if an exploit runs, the program's integrity can be maintained. In at least some embodiments, a local automatic vulnerability detection and response (AVD/R) component executes on a user's local machine to detect and mitigate potential vulnerabilities through the use of a shield; and, a remote automatic vulnerability detection and response (AVD/R) component executes to report perceived vulnerabilities so that one or more shields can be delivered and applied locally to mitigate perceived vulnerabilities.
摘要翻译: 各种实施例检测安全漏洞,并且响应地可以修改受影响的程序,使得即使运行漏洞,也可以维护程序的完整性。 在至少一些实施例中,本地自动漏洞检测和响应(AVD / R)组件在用户的本地机器上执行以通过使用屏蔽来检测和减轻潜在的漏洞; 并且执行远程自动漏洞检测和响应(AVD / R)组件来报告感知的漏洞,以便可以在本地传送和应用一个或多个屏蔽,以减轻感知到的漏洞。
-
公开(公告)号:US20080163374A1
公开(公告)日:2008-07-03
申请号:US11618470
申请日:2006-12-29
申请人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
发明人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
IPC分类号: G06F11/07
CPC分类号: G06F11/0748 , G06F11/079 , G06F21/577
摘要: Various embodiments detect security vulnerabilities and, responsively, can modify an affected program so that even if an exploit runs, the program's integrity can be maintained. In at least some embodiments, a local automatic vulnerability detection and response (AVD/R) component executes on a user's local machine to detect and mitigate potential vulnerabilities through the use of a shield; and, a remote automatic vulnerability detection and response (AVD/R) component executes to report perceived vulnerabilities so that one or more shields can be delivered and applied locally to mitigate perceived vulnerabilities.
摘要翻译: 各种实施例检测安全漏洞,并且响应地可以修改受影响的程序,使得即使运行漏洞,也可以维护程序的完整性。 在至少一些实施例中,本地自动漏洞检测和响应(AVD / R)组件在用户的本地机器上执行以通过使用屏蔽来检测和减轻潜在的漏洞; 并且执行远程自动漏洞检测和响应(AVD / R)组件来报告感知的漏洞,以便可以在本地传送和应用一个或多个屏蔽,以减轻感知到的漏洞。
-
公开(公告)号:US08959647B2
公开(公告)日:2015-02-17
申请号:US11679651
申请日:2007-02-27
申请人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
发明人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
IPC分类号: G06F7/04
CPC分类号: G06F21/52
摘要: In various embodiments, redirection techniques can be utilized to protect against insecure functionality, to mitigate scripting vulnerabilities, and to protect vulnerable exception handlers. In at least some embodiments, a program can be protected from a security vulnerability by using a runtime shield which changes the behavior of the program while it is running. The shield effectively provides a redirection solution that addresses the vulnerability while, at the same time, does not alter the particular program's executable code.
摘要翻译: 在各种实施例中,可以利用重定向技术来防止不安全的功能,减轻脚本漏洞以及保护易受攻击的异常处理程序。 在至少一些实施例中,可以通过使用在运行时改变程序的行为的运行时屏蔽来保护程序免受安全漏洞的影响。 该屏蔽有效地提供了解决该漏洞的重定向解决方案,同时不会更改特定程序的可执行代码。
-
公开(公告)号:US20080209563A1
公开(公告)日:2008-08-28
申请号:US11679651
申请日:2007-02-27
申请人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
发明人: Justin Rogers , Eric M. Lawrence , Henry F. Bridge
IPC分类号: G06F11/00
CPC分类号: G06F21/52
摘要: In various embodiments, redirection techniques can be utilized to protect against insecure functionality, to mitigate scripting vulnerabilities, and to protect vulnerable exception handlers. In at least some embodiments, a program can be protected from a security vulnerability by using a runtime shield which changes the behavior of the program while it is running. The shield effectively provides a redirection solution that addresses the vulnerability while, at the same time, does not alter the particular program's executable code.
摘要翻译: 在各种实施例中,可以利用重定向技术来防止不安全的功能,减轻脚本漏洞以及保护易受攻击的异常处理程序。 在至少一些实施例中,可以通过使用在运行时改变程序的行为的运行时屏蔽来保护程序免受安全漏洞的影响。 该屏蔽有效地提供了解决该漏洞的重定向解决方案,同时不会更改特定程序的可执行代码。
-
公开(公告)号:US20120066612A1
公开(公告)日:2012-03-15
申请号:US12881783
申请日:2010-09-14
申请人: Ritika Virmani , Jane T. Kim , Warren G. Stevens , Dave Risney , Todd Sahl , Andrew E. Olson , Sarah J. Bowers , Susan Makarian , Clint C. Jorgenson , Randall K. Winjum , Eric M. Lawrence
发明人: Ritika Virmani , Jane T. Kim , Warren G. Stevens , Dave Risney , Todd Sahl , Andrew E. Olson , Sarah J. Bowers , Susan Makarian , Clint C. Jorgenson , Randall K. Winjum , Eric M. Lawrence
CPC分类号: G06F9/4443 , G06F3/0481 , G06F9/451
摘要: Various embodiments provide a download bar user interface control that is designed to help users maintain focus on their browsing activities, while offering notifications regarding a file download. In at least some embodiments, the download bar user interface control is non-modal and is presented at a location within the browsing field-of-view that is selected to reduce user distraction. Various embodiments also provide a download manager user interface that enables multiple download-related tasks to be performed. In at least some embodiments, the download manager user interface is presented responsive to input to the download bar user interface control. Further to some embodiments, the download bar user interface control can be closed responsive to the download manager user interface being presented and download-related notifications and options transferred from the download bar user interface control to the download manager user interface.
摘要翻译: 各种实施例提供了一种下载栏用户界面控件,其被设计为帮助用户保持关注他们的浏览活动,同时提供关于文件下载的通知。 在至少一些实施例中,下载条用户界面控件是非模式的,并且被呈现在浏览视野内的位置,被选择以减少用户分心。 各种实施例还提供能够执行多个下载相关任务的下载管理器用户界面。 在至少一些实施例中,响应于对下载条用户界面控制的输入来呈现下载管理器用户界面。 除了一些实施例之外,可以响应于所呈现的下载管理器用户界面和从下载栏用户界面控制传送到下载管理器用户界面的下载相关通知和选项来关闭下载栏用户界面控件。
-
公开(公告)号:US08667573B2
公开(公告)日:2014-03-04
申请号:US13465426
申请日:2012-05-07
IPC分类号: H04L9/32
CPC分类号: H04L63/126 , H04L67/02
摘要: Described herein is a technique of protecting users against certain types of Internet attacks. The technique involves obtaining certificates from visited web sites and qualifying communications with those web sites based on the content of the certificates.
摘要翻译: 这里描述的是保护用户免遭某些类型的因特网攻击的技术。 该技术包括从访问的网站获取证书,并根据证书的内容与这些网站进行合格通信。
-
公开(公告)号:US20100211773A1
公开(公告)日:2010-08-19
申请号:US12772616
申请日:2010-05-03
IPC分类号: H04L9/32
CPC分类号: H04L63/126 , H04L67/02
摘要: Described herein is a technique of protecting users against certain types of Internet attacks. The technique involves obtaining certificates from visited web sites and qualifying communications with those web sites based on the content of the certificates.
摘要翻译: 这里描述的是保护用户免遭某些类型的因特网攻击的技术。 该技术包括从访问的网站获取证书,并根据证书的内容与这些网站进行合格通信。
-
公开(公告)号:US08949344B2
公开(公告)日:2015-02-03
申请号:US12210225
申请日:2008-09-15
CPC分类号: G06F9/546 , H04L67/02 , H04L67/306
摘要: Various embodiments enable local web applications to communicate asynchronously with web based services and applications based on a local device's current state and a user's communications preferences. In at least some embodiments, a synchronization engine receives a message in a “Web Inbox” from a web based service or application. In at least some embodiments, the synchronization engine notifies a local web application of the message, sends the message to the web application, and/or loads the web application if it is not in session. The web application's response to the message may be transferred to a “Web Outbox” where it resides until being sent to the web service. The synchronization engine then determines a time to transmit the response to the web service by querying the local device for its current state and a user's communication preferences.
摘要翻译: 各种实施例使得本地web应用能够基于本地设备的当前状态和用户的通信偏好与基于web的服务和应用异步地进行通信。 在至少一些实施例中,同步引擎从基于web的服务或应用程序在“Web收件箱”中接收消息。 在至少一些实施例中,同步引擎通知本地Web应用程序消息,将消息发送到Web应用程序,和/或在Web应用程序不处于会话中时加载该Web应用程序。 Web应用程序对该消息的响应可能会转移到其所在的“Web发件箱”,直到发送到Web服务。 同步引擎然后通过查询本地设备的当前状态和用户的通信偏好来确定将响应发送到web服务的时间。
-
公开(公告)号:US09244698B2
公开(公告)日:2016-01-26
申请号:US12881783
申请日:2010-09-14
申请人: Ritika Virmani , Jane T. Kim , Warren G. Stevens , Dave Risney , Todd Sahl , Andrew E. Olson , Sarah J. Bowers , Susan Makarian , Clint C. Jorgenson , Randall K. Winjum , Eric M. Lawrence
发明人: Ritika Virmani , Jane T. Kim , Warren G. Stevens , Dave Risney , Todd Sahl , Andrew E. Olson , Sarah J. Bowers , Susan Makarian , Clint C. Jorgenson , Randall K. Winjum , Eric M. Lawrence
IPC分类号: G06F3/048 , G06F9/44 , G06F3/0481
CPC分类号: G06F9/4443 , G06F3/0481 , G06F9/451
摘要: Various embodiments provide a download bar user interface control that is designed to help users maintain focus on their browsing activities, while offering notifications regarding a file download. In at least some embodiments, the download bar user interface control is non-modal and is presented at a location within the browsing field-of-view that is selected to reduce user distraction. Various embodiments also provide a download manager user interface that enables multiple download-related tasks to be performed. In at least some embodiments, the download manager user interface is presented responsive to input to the download bar user interface control. Further to some embodiments, the download bar user interface control can be closed responsive to the download manager user interface being presented and download-related notifications and options transferred from the download bar user interface control to the download manager user interface.
摘要翻译: 各种实施例提供了一种下载栏用户界面控件,其被设计为帮助用户保持关注他们的浏览活动,同时提供关于文件下载的通知。 在至少一些实施例中,下载条用户界面控件是非模式的,并且被呈现在浏览视野内的位置,被选择以减少用户分心。 各种实施例还提供能够执行多个下载相关任务的下载管理器用户界面。 在至少一些实施例中,响应于对下载条用户界面控制的输入来呈现下载管理器用户界面。 除了一些实施例之外,可以响应于所呈现的下载管理器用户界面和从下载栏用户界面控制传送到下载管理器用户界面的下载相关通知和选项来关闭下载栏用户界面控件。
-
公开(公告)号:US08176542B2
公开(公告)日:2012-05-08
申请号:US12772616
申请日:2010-05-03
IPC分类号: H04L9/32
CPC分类号: H04L63/126 , H04L67/02
摘要: Described herein is a technique of protecting users against certain types of Internet attacks. The technique involves obtaining certificates from visited web sites and qualifying communications with those web sites based on the content of the certificates.
摘要翻译: 这里描述的是保护用户免遭某些类型的因特网攻击的技术。 该技术包括从访问的网站获取证书,并根据证书的内容与这些网站进行合格通信。
-
-
-
-
-
-
-
-
-