Invention Grant
- Patent Title: Hypervisor-based enterprise endpoint protection
- Patent Title (中): 基于虚拟机管理程序的企业端点保护
-
Application No.: US13676008Application Date: 2012-11-13
-
Publication No.: US08910238B2Publication Date: 2014-12-09
- Inventor: Sandor Lukacs , Dan H. Lutas , Raul V. Tosa
- Applicant: Bitdefender IPR Management Ltd.
- Applicant Address: CY Nicosia
- Assignee: Bitdefender IPR Management Ltd.
- Current Assignee: Bitdefender IPR Management Ltd.
- Current Assignee Address: CY Nicosia
- Agency: Law Office of Andrei D Popovici, PC
- Main IPC: G06F17/00
- IPC: G06F17/00

Abstract:
Described systems and methods allow the detection and prevention of malware and/or malicious activity within a network comprising multiple client computer systems, such as an enterprise network with multiple endpoints. Each endpoint operates a hardware virtualization platform, including a hypervisor exposing a client virtual machine (VM) and a security VM. The security VM is configured to have exclusive use of the network adapter(s) of the respective endpoint, and to detect whether data traffic to/from the client VM comprises malware or is indicative of malicious behavior. Upon detecting malware/malicious behavior, the security VM may block access of the client VM to the network, thus preventing the spread of malware to other endpoints. The client system may further comprise a memory introspection engine configured to perform malware scanning of the client VM from the level of the hypervisor.
Public/Granted literature
- US20140137180A1 Hypervisor-Based Enterprise Endpoint Protection Public/Granted day:2014-05-15
Information query