Invention Grant
- Patent Title: Security privilege escalation exploit detection and mitigation
-
Application No.: US16903535Application Date: 2020-06-17
-
Publication No.: US11438159B2Publication Date: 2022-09-06
- Inventor: Andrew Sandoval , Eric Klonowski
- Applicant: Webroot Inc.
- Applicant Address: US CO Broomfield
- Assignee: Webroot Inc.
- Current Assignee: Webroot Inc.
- Current Assignee Address: US CO Broomfield
- Agency: Sprinkle IP Law Group
- Main IPC: H04L9/32
- IPC: H04L9/32 ; G06F21/50 ; G06F9/445

Abstract:
Examples of the present disclosure describe systems and methods for monitoring the security privileges of a process. In aspects, when a process is created, the corresponding process security token and privilege information is detected and recorded. At subsequent “checkpoints,” the security token is evaluated to determine whether the security token has been replaced, or whether new or unexpected privileges have been granted to the created process. When a modification to the security token is determined, a warning or indication of the modification is generated and the process may be terminated to prevent the use of the modified security token.
Public/Granted literature
- US20200382302A1 SECURITY PRIVILEGE ESCALATION EXPLOIT DETECTION AND MITIGATION Public/Granted day:2020-12-03
Information query