Invention Grant
- Patent Title: Computer device with anti-tamper resource security
- Patent Title (中): 具有防篡改资源安全性的计算机设备
-
Application No.: US13601686Application Date: 2012-08-31
-
Publication No.: US08826419B2Publication Date: 2014-09-02
- Inventor: Mark James Austin
- Applicant: Mark James Austin
- Applicant Address: GB Cheadle Cheshire
- Assignee: Avecto Limited
- Current Assignee: Avecto Limited
- Current Assignee Address: GB Cheadle Cheshire
- Agency: Coats & Bennett, PLLC
- Priority: GB1115141.2 20110902
- Main IPC: H04L9/32
- IPC: H04L9/32 ; G06F21/00 ; G06F21/62 ; G06F15/16

Abstract:
A computer device provides an execution environment that supports a plurality of processes. A plurality of key resources are associated with a security application that may perform process elevation to grant privileged access rights to a user process. A security module controls access to the key resources using an access control list. An anti-tamper mechanism creates a protection group as a local security group and adds a deny access control entry to the access control list. The anti-tamper mechanism intercepts the user process and creates a revised access token identifying the user process as a member of the protection group. The security module matches the protection group in the revised access token of the user process against the deny access control entry in the access control list of the key resources thereby restricting access by the user process even though the user process otherwise has privileges to access those resources.
Public/Granted literature
- US20130061320A1 Computer Device with Anti-Tamper Resource Security Public/Granted day:2013-03-07
Information query