Invention Grant
US08966624B2 System and method for securing an input/output path of an application against malware with a below-operating system security agent
有权
使用低于操作系统安全代理来保护应用程序的输入/输出路径免受恶意软件的系统和方法
- Patent Title: System and method for securing an input/output path of an application against malware with a below-operating system security agent
- Patent Title (中): 使用低于操作系统安全代理来保护应用程序的输入/输出路径免受恶意软件的系统和方法
-
Application No.: US13076493Application Date: 2011-03-31
-
Publication No.: US08966624B2Publication Date: 2015-02-24
- Inventor: Ahmed Said Sallam
- Applicant: Ahmed Said Sallam
- Applicant Address: US CA Santa Clara
- Assignee: McAfee, Inc.
- Current Assignee: McAfee, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Baker Botts L.L.P.
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/56

Abstract:
A system for securing an electronic device may include a memory, a processor, one or more operating systems residing in the memory for execution by the processor, an input-output (I/O) device of the electronic device coupled to the operating system; and a security agent configured to execute on the electronic device at a level below all of the operating systems of the electronic device accessing the I/O device. The security agent may be further configured to: (i) trap, at a level below all of the operating systems of the electronic device accessing an input/output (I/O) device, an attempted access of a facility for I/O operation with the I/O device; and (ii) using one or more security rules, analyze the attempted access to determine whether the attempted access is indicative of malware.
Public/Granted literature
Information query