Invention Grant
- Patent Title: MIME handling security enforcement
- Patent Title (中): MIME处理安全执行
-
Application No.: US12685528Application Date: 2010-01-11
-
Publication No.: US08646078B2Publication Date: 2014-02-04
- Inventor: Venkatraman V Kudallur , Shankar Ganesh , Roberto A Franco , Vishu Gupta , John G Bedworth
- Applicant: Venkatraman V Kudallur , Shankar Ganesh , Roberto A Franco , Vishu Gupta , John G Bedworth
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Wolfe-SBMC
- Main IPC: G06F12/14
- IPC: G06F12/14 ; G08B23/00

Abstract:
A model restricts un-trusted data/objects from running on a user's machine without permission. The data is received by a protocol layer that reports a MIME type associated with the DATA, and caches the data and related cache file name (CFN). A MIME sniffer is arranged to identify a sniffed MIME type based on the cached data, the CFN, and the reported MIME type. Reconciliation logic evaluates the sniffed MIME type and the CFN to determine a reconciled MIME type, and to update the CFN. A class ID sniffer evaluates the updated CFN, the cached data, and the reconciled MIME type to determine an appropriate class ID. Security logic evaluates the updated CFN, the reported class ID, and other related system parameters to build a security matrix. Parameters from the security matrix are used to intercept data/objects before an un-trusted data/object can create a security breach on the machine.
Public/Granted literature
- US20100107251A1 MIME Handling Security Enforcement Public/Granted day:2010-04-29
Information query