Invention Grant
- Patent Title: Security component for devices on an enumerated bus
-
Application No.: US17466861Application Date: 2021-09-03
-
Publication No.: US11966504B2Publication Date: 2024-04-23
- Inventor: Aaron LeMasters , Ion-Alexandru Ionescu
- Applicant: CrowdStrike, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: CROWDSTRIKE, INC.
- Current Assignee: CROWDSTRIKE, INC.
- Current Assignee Address: US CA Sunnyvale
- Agency: Lee & Hayes P.C.
- Main IPC: G06F21/82
- IPC: G06F21/82 ; G06F9/4401 ; G06F13/38 ; G06F13/40 ; G06F21/55 ; G06F21/56 ; G06F21/57 ; G06F21/71 ; G06F21/85 ; G06F13/20

Abstract:
A plug-and-play (PnP) driver associated with a security agent is described herein. The PnP driver attaches to device stacks of enumerated bus devices of a computing device as upper-device or lower-device filters based on the device classes of the enumerated bus devices. For example, the PnP driver may attach to the device stack of a hub or controller device as an upper-device filter and to device stacks of other devices as lower-device filters. Either while attaching or after attachment, the PnP driver may take action to alter, limit, or otherwise block functionality of an enumerated bus device. The PnP driver may also perform a system inventory of enumerated bus devices connected to the computing device and create fingerprints for one or more of the computing devices. Additionally, the PnP driver may create and remove control device objects (CDOs) to enable communication with user-mode processes or threads.
Public/Granted literature
- US20210397750A1 SECURITY COMPONENT FOR DEVICES ON AN ENUMERATED BUS Public/Granted day:2021-12-23
Information query