JP6348173B2 - 制限されたドライバープラットフォームが、ユーザーモードにおいてサンドボックス内でドライバーを実行する - Google Patents

制限されたドライバープラットフォームが、ユーザーモードにおいてサンドボックス内でドライバーを実行する Download PDF

Info

Publication number
JP6348173B2
JP6348173B2 JP2016516500A JP2016516500A JP6348173B2 JP 6348173 B2 JP6348173 B2 JP 6348173B2 JP 2016516500 A JP2016516500 A JP 2016516500A JP 2016516500 A JP2016516500 A JP 2016516500A JP 6348173 B2 JP6348173 B2 JP 6348173B2
Authority
JP
Japan
Prior art keywords
driver
security platform
tasks
vpn
enabled
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
JP2016516500A
Other languages
English (en)
Japanese (ja)
Other versions
JP2016526226A (ja
JP2016526226A5 (enExample
Inventor
ディアス−クエラル,ヘラルド
グプタ,ディラジ・カント
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Microsoft Corp
Microsoft Technology Licensing LLC
Original Assignee
Microsoft Corp
Microsoft Technology Licensing LLC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Microsoft Corp, Microsoft Technology Licensing LLC filed Critical Microsoft Corp
Publication of JP2016526226A publication Critical patent/JP2016526226A/ja
Publication of JP2016526226A5 publication Critical patent/JP2016526226A5/ja
Application granted granted Critical
Publication of JP6348173B2 publication Critical patent/JP6348173B2/ja
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/12Protecting executable software
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/52Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
    • G06F21/53Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Software Systems (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Multimedia (AREA)
  • Technology Law (AREA)
  • Computing Systems (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Stored Programmes (AREA)
  • User Interface Of Digital Computer (AREA)
  • Information Transfer Between Computers (AREA)
  • Telephonic Communication Services (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Small-Scale Networks (AREA)
JP2016516500A 2013-05-31 2013-09-20 制限されたドライバープラットフォームが、ユーザーモードにおいてサンドボックス内でドライバーを実行する Expired - Fee Related JP6348173B2 (ja)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US13/906,902 US9075985B2 (en) 2013-05-31 2013-05-31 Restricted transmogrifying driver platform
US13/906,902 2013-05-31
PCT/US2013/060753 WO2014193443A1 (en) 2013-05-31 2013-09-20 Restricted driver platform runs drivers in sandbox in user mode

Publications (3)

Publication Number Publication Date
JP2016526226A JP2016526226A (ja) 2016-09-01
JP2016526226A5 JP2016526226A5 (enExample) 2016-11-10
JP6348173B2 true JP6348173B2 (ja) 2018-06-27

Family

ID=49293887

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2016516500A Expired - Fee Related JP6348173B2 (ja) 2013-05-31 2013-09-20 制限されたドライバープラットフォームが、ユーザーモードにおいてサンドボックス内でドライバーを実行する

Country Status (11)

Country Link
US (1) US9075985B2 (enExample)
EP (1) EP3005208B1 (enExample)
JP (1) JP6348173B2 (enExample)
KR (1) KR102089826B1 (enExample)
CN (1) CN105453097B (enExample)
AU (1) AU2013390782B9 (enExample)
BR (1) BR112015029296A2 (enExample)
CA (1) CA2910252C (enExample)
MX (1) MX352776B (enExample)
RU (1) RU2646332C2 (enExample)
WO (1) WO2014193443A1 (enExample)

Families Citing this family (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2525596B (en) * 2014-04-28 2021-05-26 Arm Ip Ltd Access control and code scheduling
CN104092691A (zh) * 2014-07-15 2014-10-08 北京奇虎科技有限公司 免root权限的联网防火墙的实现方法及客户端
US10289853B2 (en) 2016-03-31 2019-05-14 Microsoft Technology Licensing, Llc Secure driver platform
US10282210B2 (en) * 2016-06-13 2019-05-07 Huawei Technologies Co., Ltd. System and method for virtual hardware control
US10375111B2 (en) * 2016-11-12 2019-08-06 Microsoft Technology Licensing, Llc Anonymous containers
US10445257B2 (en) 2017-04-30 2019-10-15 Microsoft Technology Licensing, Llc Execution of subset of driver code in separate protection domain
CN107171894A (zh) * 2017-06-15 2017-09-15 北京奇虎科技有限公司 终端设备、分布式云端检测系统以及样本检测的方法
CN107402784B (zh) * 2017-07-07 2021-06-04 北京小米移动软件有限公司 应用管理方法及应用管理装置
CN108234526B (zh) * 2018-04-12 2020-06-26 厦门安胜网络科技有限公司 一种在沙箱中获取https数据的方法、装置、设备及可读介质
CN109657457B (zh) * 2018-12-27 2021-11-19 北京联创信安科技股份有限公司 一种面向业务环境的智能化内外双层沙箱管理系统
DE102020200969A1 (de) * 2020-01-28 2021-07-29 Robert Bosch Gesellschaft mit beschränkter Haftung Verfahren zum Instanziieren mindestens einer Ausführungsumgebung
KR20210125330A (ko) * 2020-04-08 2021-10-18 삼성전자주식회사 보안 데이터 처리 방법 및 이를 지원하는 전자 장치
CN116171424B (zh) * 2020-09-09 2025-06-06 华为技术有限公司 异构i/o设备发现和握手

Family Cites Families (22)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
AU2570399A (en) 1998-01-30 1999-08-16 3Com Corporation Software architecture for providing low level hardware device drivers from the user mode under multi-tasking operating systems
US7508532B2 (en) * 2003-05-20 2009-03-24 Microsoft Corporation Method and system for sandboxing printer drivers
US7457626B2 (en) * 2004-03-19 2008-11-25 Microsoft Corporation Virtual private network structure reuse for mobile computing devices
US7149832B2 (en) * 2004-11-10 2006-12-12 Microsoft Corporation System and method for interrupt handling
US7784065B2 (en) * 2005-02-07 2010-08-24 Microsoft Corporation Interface for consistent program interaction with auxiliary computing devices
US20060242270A1 (en) 2005-04-21 2006-10-26 Microsoft Corporation Isolation of user-mode device drivers
US7603484B2 (en) * 2005-04-21 2009-10-13 Microsoft Corporation Protocol for communication with a user-mode device driver
US7581051B2 (en) 2005-05-16 2009-08-25 Microsoft Corporation Method for delivering interrupts to user mode drivers
US8659505B2 (en) * 2005-08-31 2014-02-25 Mircosoft Corporation Auxiliary display device driver interface
GB2430523B (en) * 2005-09-22 2010-02-17 Software 2000 Ltd Managing user permissions in a computer system
US8074231B2 (en) * 2005-10-26 2011-12-06 Microsoft Corporation Configuration of isolated extensions and device drivers
US20070101342A1 (en) * 2005-10-31 2007-05-03 Microsoft Corporation Automated device driver management
US7941813B1 (en) 2006-02-17 2011-05-10 Parallels Holdings, Ltd. System and method for using virtual machine for driver installation sandbox
US8281387B2 (en) * 2006-06-30 2012-10-02 Intel Corporation Method and apparatus for supporting a virtual private network architecture on a partitioned platform
CN101478407B (zh) * 2008-01-03 2011-05-25 联想(北京)有限公司 在线安全登录的方法及装置
US8850409B2 (en) * 2008-05-21 2014-09-30 Optumsoft, Inc. Notification-based constraint set translation to imperative execution
US8429741B2 (en) 2008-08-29 2013-04-23 Google, Inc. Altered token sandboxing
US8381288B2 (en) 2008-09-30 2013-02-19 Intel Corporation Restricted component access to application memory
US9262628B2 (en) 2009-09-11 2016-02-16 Empire Technology Development Llc Operating system sandbox
US8775802B1 (en) * 2009-10-23 2014-07-08 Secure Vector Computer security system and method
US9015710B2 (en) * 2011-04-12 2015-04-21 Pivotal Software, Inc. Deployment system for multi-node applications
US20130067531A1 (en) * 2011-09-12 2013-03-14 Microsoft Corporation Access Brokering Based on Declarations and Consent

Also Published As

Publication number Publication date
WO2014193443A1 (en) 2014-12-04
EP3005208A1 (en) 2016-04-13
KR20160015300A (ko) 2016-02-12
JP2016526226A (ja) 2016-09-01
CN105453097B (zh) 2018-05-29
KR102089826B1 (ko) 2020-05-27
AU2013390782B2 (en) 2019-06-20
EP3005208B1 (en) 2019-01-02
US9075985B2 (en) 2015-07-07
RU2646332C2 (ru) 2018-03-02
CA2910252A1 (en) 2014-12-04
US20140359706A1 (en) 2014-12-04
RU2015150949A (ru) 2017-06-01
AU2013390782B9 (en) 2019-07-04
CN105453097A (zh) 2016-03-30
AU2013390782A1 (en) 2015-11-12
BR112015029296A2 (pt) 2017-07-25
MX352776B (es) 2017-12-07
CA2910252C (en) 2020-09-08
MX2015016351A (es) 2016-04-13

Similar Documents

Publication Publication Date Title
JP6348173B2 (ja) 制限されたドライバープラットフォームが、ユーザーモードにおいてサンドボックス内でドライバーを実行する
CN110178136B (zh) 现场可编程门阵列程序的签名验证的方法和设备
CN110199271B (zh) 用于现场可编程门阵列虚拟化的方法和设备
US9032423B2 (en) Dependency based configuration package activation
JP5249315B2 (ja) クローズド・システムのためのプログラミング・フレームワーク
CN105849697B (zh) 升级电子装置的操作系统的方法和设备
US20180096113A1 (en) Content Protection for a Screen Sharing Experience
US10908948B2 (en) Multiple application instances in operating systems that utilize a single process for application execution
US20150350123A1 (en) User terminal apparatus, communication system, and method of controlling user terminal apparatus
US9792418B2 (en) Secure connected digital media platform
US9392047B1 (en) Facilitating application compatibility across devices
US20180300160A1 (en) Host and Component Relationship between Applications
CN110475141A (zh) 基于rn的视频播放方法、系统及电子设备和存储介质
CN106233226A (zh) 在具有多操作系统环境的移动装置上执行的寄载应用内的服务代替的进程内俘获
CN105493019A (zh) 基于输入上下文的输入处理

Legal Events

Date Code Title Description
A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20160920

A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20160920

A977 Report on retrieval

Free format text: JAPANESE INTERMEDIATE CODE: A971007

Effective date: 20170928

A131 Notification of reasons for refusal

Free format text: JAPANESE INTERMEDIATE CODE: A131

Effective date: 20171006

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20171228

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20180501

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20180530

R150 Certificate of patent or registration of utility model

Ref document number: 6348173

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

LAPS Cancellation because of no payment of annual fees