Invention Grant
US09596250B2 System and method for protecting against point of sale malware using memory scraping
有权
使用内存刮擦来保护销售点恶意软件的系统和方法
- Patent Title: System and method for protecting against point of sale malware using memory scraping
- Patent Title (中): 使用内存刮擦来保护销售点恶意软件的系统和方法
-
Application No.: US14709224Application Date: 2015-05-11
-
Publication No.: US09596250B2Publication Date: 2017-03-14
- Inventor: Raymond Lloyd Reddington
- Applicant: Trusted Knight Corporation
- Applicant Address: US MD Annapolis
- Assignee: Trusted Knight Corporation
- Current Assignee: Trusted Knight Corporation
- Current Assignee Address: US MD Annapolis
- Agency: Beyer Law Group
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/53 ; G06F21/52

Abstract:
A software, system and methodology for protecting against malware Point-of-Sale attacks that utilize, for example, memory scraping techniques. The application protects Point-of-sale hardware and its software against memory scraping malware attacks, and the loss of critical user credit card and confidential information often swiped at a terminal or stored in point of sale application databases. An embodiment of a method for blocking memory scraping attacks includes the following steps. Upon detecting a credit card swipe submission event from local hardware or comport event specific memory table events are flagged as unreadable, and immediately after allowing the data to be properly submitted, the system memory tables are cleared of data and specific memory processes are flagged as readable again. The method prevents memory scraping or point of sale malware from capturing swiped credit card data or input data, thereby protecting the user from theft of credit card data or other credentials.
Public/Granted literature
- US20150319183A1 SYSTEM AND METHOD FOR PROTECTING AGAINST POINT OF SALE MALWARE USING MEMORY SCRAPING Public/Granted day:2015-11-05
Information query