Invention Grant
- Patent Title: Managing privilege delegation on a computer device
-
Application No.: US18483318Application Date: 2023-10-09
-
Publication No.: US12135813B2Publication Date: 2024-11-05
- Inventor: John Goodridge , Georgina Shippey
- Applicant: Avecto Limited
- Applicant Address: GB Manchester
- Assignee: Avecto Limited
- Current Assignee: Avecto Limited
- Current Assignee Address: GB Manchester
- Agency: Morris, Manning & Martin, LLP
- Agent Adam J. Thompson, Esq.
- Priority: GB1802099 20180208
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/45 ; G06F21/60 ; G06F21/62

Abstract:
A computer device for managing privilege delegation to control creation of processes thereon is described. Creation of a process on a computer device is requested according to first privileges. An agent, cooperating with an operating system of the computer device, intercepts the request. The agent determines whether to create the process according to second privileges, different from the first privileges and if permitted, cause the process to be created accordingly. The agent hooks a query provided by the operating system to identify whether a control service is enabled. The agent enquires of the operating system whether to create the process according to the second privileges whereupon the hooked query is invoked. The agent confirms to the operating system that the control service is enabled, such that checks by the operating system are performed as if the operating system were enabled.
Public/Granted literature
- US20240037268A1 MANAGING PRIVILEGE DELEGATION ON A COMPUTER DEVICE Public/Granted day:2024-02-01
Information query