CN105453097B - 受约束驱动程序平台在用户模式下在沙箱中运行驱动程序 - Google Patents
受约束驱动程序平台在用户模式下在沙箱中运行驱动程序 Download PDFInfo
- Publication number
- CN105453097B CN105453097B CN201380077101.2A CN201380077101A CN105453097B CN 105453097 B CN105453097 B CN 105453097B CN 201380077101 A CN201380077101 A CN 201380077101A CN 105453097 B CN105453097 B CN 105453097B
- Authority
- CN
- China
- Prior art keywords
- driver
- platform
- constrained
- drivers
- deformation
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/45—Structures or tools for the administration of authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/70—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
- G06F21/12—Protecting executable software
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/52—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
- G06F21/53—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Software Systems (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Multimedia (AREA)
- Technology Law (AREA)
- Computing Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Stored Programmes (AREA)
- User Interface Of Digital Computer (AREA)
- Information Transfer Between Computers (AREA)
- Health & Medical Sciences (AREA)
- Bioethics (AREA)
- General Health & Medical Sciences (AREA)
- Telephonic Communication Services (AREA)
- Small-Scale Networks (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US13/906,902 US9075985B2 (en) | 2013-05-31 | 2013-05-31 | Restricted transmogrifying driver platform |
| US13/906902 | 2013-05-31 | ||
| PCT/US2013/060753 WO2014193443A1 (en) | 2013-05-31 | 2013-09-20 | Restricted driver platform runs drivers in sandbox in user mode |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| CN105453097A CN105453097A (zh) | 2016-03-30 |
| CN105453097B true CN105453097B (zh) | 2018-05-29 |
Family
ID=49293887
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201380077101.2A Active CN105453097B (zh) | 2013-05-31 | 2013-09-20 | 受约束驱动程序平台在用户模式下在沙箱中运行驱动程序 |
Country Status (11)
| Country | Link |
|---|---|
| US (1) | US9075985B2 (enExample) |
| EP (1) | EP3005208B1 (enExample) |
| JP (1) | JP6348173B2 (enExample) |
| KR (1) | KR102089826B1 (enExample) |
| CN (1) | CN105453097B (enExample) |
| AU (1) | AU2013390782B9 (enExample) |
| BR (1) | BR112015029296A2 (enExample) |
| CA (1) | CA2910252C (enExample) |
| MX (1) | MX352776B (enExample) |
| RU (1) | RU2646332C2 (enExample) |
| WO (1) | WO2014193443A1 (enExample) |
Families Citing this family (13)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| GB2525596B (en) | 2014-04-28 | 2021-05-26 | Arm Ip Ltd | Access control and code scheduling |
| CN104092691A (zh) * | 2014-07-15 | 2014-10-08 | 北京奇虎科技有限公司 | 免root权限的联网防火墙的实现方法及客户端 |
| US10289853B2 (en) | 2016-03-31 | 2019-05-14 | Microsoft Technology Licensing, Llc | Secure driver platform |
| US10282210B2 (en) * | 2016-06-13 | 2019-05-07 | Huawei Technologies Co., Ltd. | System and method for virtual hardware control |
| US10375111B2 (en) | 2016-11-12 | 2019-08-06 | Microsoft Technology Licensing, Llc | Anonymous containers |
| US10445257B2 (en) | 2017-04-30 | 2019-10-15 | Microsoft Technology Licensing, Llc | Execution of subset of driver code in separate protection domain |
| CN107171894A (zh) * | 2017-06-15 | 2017-09-15 | 北京奇虎科技有限公司 | 终端设备、分布式云端检测系统以及样本检测的方法 |
| CN107402784B (zh) * | 2017-07-07 | 2021-06-04 | 北京小米移动软件有限公司 | 应用管理方法及应用管理装置 |
| CN108234526B (zh) * | 2018-04-12 | 2020-06-26 | 厦门安胜网络科技有限公司 | 一种在沙箱中获取https数据的方法、装置、设备及可读介质 |
| CN109657457B (zh) * | 2018-12-27 | 2021-11-19 | 北京联创信安科技股份有限公司 | 一种面向业务环境的智能化内外双层沙箱管理系统 |
| DE102020200969A1 (de) * | 2020-01-28 | 2021-07-29 | Robert Bosch Gesellschaft mit beschränkter Haftung | Verfahren zum Instanziieren mindestens einer Ausführungsumgebung |
| KR20210125330A (ko) * | 2020-04-08 | 2021-10-18 | 삼성전자주식회사 | 보안 데이터 처리 방법 및 이를 지원하는 전자 장치 |
| WO2022053136A1 (en) * | 2020-09-09 | 2022-03-17 | Huawei Technologies Co., Ltd. | Heteromorphic i/o discovery and handshake |
Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN102037447A (zh) * | 2008-05-21 | 2011-04-27 | 奥普塔姆软件股份有限公司 | 基于通知的约束集翻译以实现命令性执行 |
Family Cites Families (21)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| AU2570399A (en) | 1998-01-30 | 1999-08-16 | 3Com Corporation | Software architecture for providing low level hardware device drivers from the user mode under multi-tasking operating systems |
| US7508532B2 (en) * | 2003-05-20 | 2009-03-24 | Microsoft Corporation | Method and system for sandboxing printer drivers |
| US7457626B2 (en) * | 2004-03-19 | 2008-11-25 | Microsoft Corporation | Virtual private network structure reuse for mobile computing devices |
| US7149832B2 (en) * | 2004-11-10 | 2006-12-12 | Microsoft Corporation | System and method for interrupt handling |
| US7784065B2 (en) * | 2005-02-07 | 2010-08-24 | Microsoft Corporation | Interface for consistent program interaction with auxiliary computing devices |
| US7603484B2 (en) * | 2005-04-21 | 2009-10-13 | Microsoft Corporation | Protocol for communication with a user-mode device driver |
| US20060242270A1 (en) | 2005-04-21 | 2006-10-26 | Microsoft Corporation | Isolation of user-mode device drivers |
| US7581051B2 (en) | 2005-05-16 | 2009-08-25 | Microsoft Corporation | Method for delivering interrupts to user mode drivers |
| US8659505B2 (en) * | 2005-08-31 | 2014-02-25 | Mircosoft Corporation | Auxiliary display device driver interface |
| GB2430523B (en) * | 2005-09-22 | 2010-02-17 | Software 2000 Ltd | Managing user permissions in a computer system |
| US8074231B2 (en) * | 2005-10-26 | 2011-12-06 | Microsoft Corporation | Configuration of isolated extensions and device drivers |
| US20070101342A1 (en) * | 2005-10-31 | 2007-05-03 | Microsoft Corporation | Automated device driver management |
| US7941813B1 (en) | 2006-02-17 | 2011-05-10 | Parallels Holdings, Ltd. | System and method for using virtual machine for driver installation sandbox |
| US8281387B2 (en) * | 2006-06-30 | 2012-10-02 | Intel Corporation | Method and apparatus for supporting a virtual private network architecture on a partitioned platform |
| CN101478407B (zh) * | 2008-01-03 | 2011-05-25 | 联想(北京)有限公司 | 在线安全登录的方法及装置 |
| US8429741B2 (en) | 2008-08-29 | 2013-04-23 | Google, Inc. | Altered token sandboxing |
| US8381288B2 (en) | 2008-09-30 | 2013-02-19 | Intel Corporation | Restricted component access to application memory |
| US9262628B2 (en) | 2009-09-11 | 2016-02-16 | Empire Technology Development Llc | Operating system sandbox |
| US8775802B1 (en) * | 2009-10-23 | 2014-07-08 | Secure Vector | Computer security system and method |
| US8997078B2 (en) * | 2011-04-12 | 2015-03-31 | Pivotal Software, Inc. | Release lifecycle management system for a multi-node application |
| US20130067531A1 (en) * | 2011-09-12 | 2013-03-14 | Microsoft Corporation | Access Brokering Based on Declarations and Consent |
-
2013
- 2013-05-31 US US13/906,902 patent/US9075985B2/en active Active
- 2013-09-20 AU AU2013390782A patent/AU2013390782B9/en not_active Ceased
- 2013-09-20 MX MX2015016351A patent/MX352776B/es active IP Right Grant
- 2013-09-20 CA CA2910252A patent/CA2910252C/en active Active
- 2013-09-20 WO PCT/US2013/060753 patent/WO2014193443A1/en not_active Ceased
- 2013-09-20 KR KR1020157036987A patent/KR102089826B1/ko not_active Expired - Fee Related
- 2013-09-20 EP EP13771308.7A patent/EP3005208B1/en active Active
- 2013-09-20 RU RU2015150949A patent/RU2646332C2/ru active
- 2013-09-20 CN CN201380077101.2A patent/CN105453097B/zh active Active
- 2013-09-20 JP JP2016516500A patent/JP6348173B2/ja not_active Expired - Fee Related
- 2013-09-20 BR BR112015029296A patent/BR112015029296A2/pt not_active Application Discontinuation
Patent Citations (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN102037447A (zh) * | 2008-05-21 | 2011-04-27 | 奥普塔姆软件股份有限公司 | 基于通知的约束集翻译以实现命令性执行 |
Also Published As
| Publication number | Publication date |
|---|---|
| US9075985B2 (en) | 2015-07-07 |
| JP6348173B2 (ja) | 2018-06-27 |
| CA2910252A1 (en) | 2014-12-04 |
| KR20160015300A (ko) | 2016-02-12 |
| AU2013390782B9 (en) | 2019-07-04 |
| CN105453097A (zh) | 2016-03-30 |
| KR102089826B1 (ko) | 2020-05-27 |
| RU2015150949A (ru) | 2017-06-01 |
| CA2910252C (en) | 2020-09-08 |
| BR112015029296A2 (pt) | 2017-07-25 |
| MX2015016351A (es) | 2016-04-13 |
| WO2014193443A1 (en) | 2014-12-04 |
| AU2013390782B2 (en) | 2019-06-20 |
| US20140359706A1 (en) | 2014-12-04 |
| EP3005208B1 (en) | 2019-01-02 |
| JP2016526226A (ja) | 2016-09-01 |
| EP3005208A1 (en) | 2016-04-13 |
| MX352776B (es) | 2017-12-07 |
| AU2013390782A1 (en) | 2015-11-12 |
| RU2646332C2 (ru) | 2018-03-02 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN105453097B (zh) | 受约束驱动程序平台在用户模式下在沙箱中运行驱动程序 | |
| EP3568789B1 (en) | Signature verification of field-programmable gate array programs | |
| CN110199271B (zh) | 用于现场可编程门阵列虚拟化的方法和设备 | |
| US9032423B2 (en) | Dependency based configuration package activation | |
| US9645814B1 (en) | Generating and publishing applications for multiple platforms | |
| US9286142B2 (en) | Methods and systems for supporting a rendering API using a runtime environment | |
| US10101985B1 (en) | Scalable ecosystem for enterprise mobility | |
| EP4020236A1 (en) | Isolating memory within trusted execution environments | |
| US11386214B2 (en) | Web application execution with secure element extension | |
| US20190310882A1 (en) | Multiple application instances in operating systems that utilize a single process for application execution | |
| US9392047B1 (en) | Facilitating application compatibility across devices | |
| TW201407377A (zh) | 用於提供存取虛擬命名空間中資源的虛擬整合呼叫 | |
| CN110475141B (zh) | 基于rn的视频播放方法、系统及电子设备和存储介质 | |
| US20180300160A1 (en) | Host and Component Relationship between Applications | |
| CN106233226A (zh) | 在具有多操作系统环境的移动装置上执行的寄载应用内的服务代替的进程内俘获 | |
| US11082491B2 (en) | Propagating origin information for applications during application installation | |
| CN104769917B (zh) | 内容容纳的设备和方法 | |
| Zamani et al. | Android Basic Architecture including Operating System using their Application | |
| CN105493019A (zh) | 基于输入上下文的输入处理 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| GR01 | Patent grant | ||
| GR01 | Patent grant |