RU2646332C2 - Ограниченная платформа драйверов, которая запускает драйверы в песочнице в пользовательском режиме - Google Patents
Ограниченная платформа драйверов, которая запускает драйверы в песочнице в пользовательском режиме Download PDFInfo
- Publication number
- RU2646332C2 RU2646332C2 RU2015150949A RU2015150949A RU2646332C2 RU 2646332 C2 RU2646332 C2 RU 2646332C2 RU 2015150949 A RU2015150949 A RU 2015150949A RU 2015150949 A RU2015150949 A RU 2015150949A RU 2646332 C2 RU2646332 C2 RU 2646332C2
- Authority
- RU
- Russia
- Prior art keywords
- driver
- tasks
- vpn
- transform
- platform
- Prior art date
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/45—Structures or tools for the administration of authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/70—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
- G06F21/12—Protecting executable software
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/52—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
- G06F21/53—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Software Systems (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Multimedia (AREA)
- Technology Law (AREA)
- Computing Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Stored Programmes (AREA)
- User Interface Of Digital Computer (AREA)
- Information Transfer Between Computers (AREA)
- Health & Medical Sciences (AREA)
- Bioethics (AREA)
- General Health & Medical Sciences (AREA)
- Telephonic Communication Services (AREA)
- Small-Scale Networks (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US13/906,902 US9075985B2 (en) | 2013-05-31 | 2013-05-31 | Restricted transmogrifying driver platform |
| US13/906,902 | 2013-05-31 | ||
| PCT/US2013/060753 WO2014193443A1 (en) | 2013-05-31 | 2013-09-20 | Restricted driver platform runs drivers in sandbox in user mode |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| RU2015150949A RU2015150949A (ru) | 2017-06-01 |
| RU2646332C2 true RU2646332C2 (ru) | 2018-03-02 |
Family
ID=49293887
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| RU2015150949A RU2646332C2 (ru) | 2013-05-31 | 2013-09-20 | Ограниченная платформа драйверов, которая запускает драйверы в песочнице в пользовательском режиме |
Country Status (11)
| Country | Link |
|---|---|
| US (1) | US9075985B2 (enExample) |
| EP (1) | EP3005208B1 (enExample) |
| JP (1) | JP6348173B2 (enExample) |
| KR (1) | KR102089826B1 (enExample) |
| CN (1) | CN105453097B (enExample) |
| AU (1) | AU2013390782B9 (enExample) |
| BR (1) | BR112015029296A2 (enExample) |
| CA (1) | CA2910252C (enExample) |
| MX (1) | MX352776B (enExample) |
| RU (1) | RU2646332C2 (enExample) |
| WO (1) | WO2014193443A1 (enExample) |
Families Citing this family (13)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| GB2525596B (en) | 2014-04-28 | 2021-05-26 | Arm Ip Ltd | Access control and code scheduling |
| CN104092691A (zh) * | 2014-07-15 | 2014-10-08 | 北京奇虎科技有限公司 | 免root权限的联网防火墙的实现方法及客户端 |
| US10289853B2 (en) | 2016-03-31 | 2019-05-14 | Microsoft Technology Licensing, Llc | Secure driver platform |
| US10282210B2 (en) * | 2016-06-13 | 2019-05-07 | Huawei Technologies Co., Ltd. | System and method for virtual hardware control |
| US10375111B2 (en) | 2016-11-12 | 2019-08-06 | Microsoft Technology Licensing, Llc | Anonymous containers |
| US10445257B2 (en) | 2017-04-30 | 2019-10-15 | Microsoft Technology Licensing, Llc | Execution of subset of driver code in separate protection domain |
| CN107171894A (zh) * | 2017-06-15 | 2017-09-15 | 北京奇虎科技有限公司 | 终端设备、分布式云端检测系统以及样本检测的方法 |
| CN107402784B (zh) * | 2017-07-07 | 2021-06-04 | 北京小米移动软件有限公司 | 应用管理方法及应用管理装置 |
| CN108234526B (zh) * | 2018-04-12 | 2020-06-26 | 厦门安胜网络科技有限公司 | 一种在沙箱中获取https数据的方法、装置、设备及可读介质 |
| CN109657457B (zh) * | 2018-12-27 | 2021-11-19 | 北京联创信安科技股份有限公司 | 一种面向业务环境的智能化内外双层沙箱管理系统 |
| DE102020200969A1 (de) * | 2020-01-28 | 2021-07-29 | Robert Bosch Gesellschaft mit beschränkter Haftung | Verfahren zum Instanziieren mindestens einer Ausführungsumgebung |
| KR20210125330A (ko) * | 2020-04-08 | 2021-10-18 | 삼성전자주식회사 | 보안 데이터 처리 방법 및 이를 지원하는 전자 장치 |
| WO2022053136A1 (en) * | 2020-09-09 | 2022-03-17 | Huawei Technologies Co., Ltd. | Heteromorphic i/o discovery and handshake |
Citations (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO1999039254A2 (en) * | 1998-01-30 | 1999-08-05 | 3Com Corporation | Providing low level hardware device driver from user mode under multi-tasking operating systems |
| US20040252325A1 (en) * | 2003-05-20 | 2004-12-16 | Mark Lawrence | Method and system for sandboxing printer drivers |
| US20060242270A1 (en) * | 2005-04-21 | 2006-10-26 | Microsoft Corporation | Isolation of user-mode device drivers |
| US20060253859A1 (en) * | 2005-04-21 | 2006-11-09 | Microsoft Corporation | Protocol for communication with a user-mode device driver |
| US20060259675A1 (en) * | 2005-05-16 | 2006-11-16 | Microsoft Corporation | Method for delivering interrupts to user mode drivers |
| US20070079385A1 (en) * | 2005-09-22 | 2007-04-05 | Software 2000 Limited | Managing user permissions in a computer system |
| US20070088890A1 (en) * | 2004-11-10 | 2007-04-19 | Microsoft Corporation | System and method for interrupt handling |
| US20080005791A1 (en) * | 2006-06-30 | 2008-01-03 | Ajay Gupta | Method and apparatus for supporting a virtual private network architecture on a partitioned platform |
| US20100082926A1 (en) * | 2008-09-30 | 2010-04-01 | Ravi Sahita | Restricted Component Access to Application Memory |
| RU2443012C2 (ru) * | 2005-10-26 | 2012-02-20 | Майкрософт Корпорейшн | Конфигурация изолированных расширений и драйверов устройств |
Family Cites Families (12)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7457626B2 (en) * | 2004-03-19 | 2008-11-25 | Microsoft Corporation | Virtual private network structure reuse for mobile computing devices |
| US7784065B2 (en) * | 2005-02-07 | 2010-08-24 | Microsoft Corporation | Interface for consistent program interaction with auxiliary computing devices |
| US8659505B2 (en) * | 2005-08-31 | 2014-02-25 | Mircosoft Corporation | Auxiliary display device driver interface |
| US20070101342A1 (en) * | 2005-10-31 | 2007-05-03 | Microsoft Corporation | Automated device driver management |
| US7941813B1 (en) | 2006-02-17 | 2011-05-10 | Parallels Holdings, Ltd. | System and method for using virtual machine for driver installation sandbox |
| CN101478407B (zh) * | 2008-01-03 | 2011-05-25 | 联想(北京)有限公司 | 在线安全登录的方法及装置 |
| US8850409B2 (en) * | 2008-05-21 | 2014-09-30 | Optumsoft, Inc. | Notification-based constraint set translation to imperative execution |
| US8429741B2 (en) | 2008-08-29 | 2013-04-23 | Google, Inc. | Altered token sandboxing |
| US9262628B2 (en) | 2009-09-11 | 2016-02-16 | Empire Technology Development Llc | Operating system sandbox |
| US8775802B1 (en) * | 2009-10-23 | 2014-07-08 | Secure Vector | Computer security system and method |
| US8997078B2 (en) * | 2011-04-12 | 2015-03-31 | Pivotal Software, Inc. | Release lifecycle management system for a multi-node application |
| US20130067531A1 (en) * | 2011-09-12 | 2013-03-14 | Microsoft Corporation | Access Brokering Based on Declarations and Consent |
-
2013
- 2013-05-31 US US13/906,902 patent/US9075985B2/en active Active
- 2013-09-20 AU AU2013390782A patent/AU2013390782B9/en not_active Ceased
- 2013-09-20 MX MX2015016351A patent/MX352776B/es active IP Right Grant
- 2013-09-20 CA CA2910252A patent/CA2910252C/en active Active
- 2013-09-20 WO PCT/US2013/060753 patent/WO2014193443A1/en not_active Ceased
- 2013-09-20 KR KR1020157036987A patent/KR102089826B1/ko not_active Expired - Fee Related
- 2013-09-20 EP EP13771308.7A patent/EP3005208B1/en active Active
- 2013-09-20 RU RU2015150949A patent/RU2646332C2/ru active
- 2013-09-20 CN CN201380077101.2A patent/CN105453097B/zh active Active
- 2013-09-20 JP JP2016516500A patent/JP6348173B2/ja not_active Expired - Fee Related
- 2013-09-20 BR BR112015029296A patent/BR112015029296A2/pt not_active Application Discontinuation
Patent Citations (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO1999039254A2 (en) * | 1998-01-30 | 1999-08-05 | 3Com Corporation | Providing low level hardware device driver from user mode under multi-tasking operating systems |
| US20040252325A1 (en) * | 2003-05-20 | 2004-12-16 | Mark Lawrence | Method and system for sandboxing printer drivers |
| US20070088890A1 (en) * | 2004-11-10 | 2007-04-19 | Microsoft Corporation | System and method for interrupt handling |
| US20060242270A1 (en) * | 2005-04-21 | 2006-10-26 | Microsoft Corporation | Isolation of user-mode device drivers |
| US20060253859A1 (en) * | 2005-04-21 | 2006-11-09 | Microsoft Corporation | Protocol for communication with a user-mode device driver |
| US20060259675A1 (en) * | 2005-05-16 | 2006-11-16 | Microsoft Corporation | Method for delivering interrupts to user mode drivers |
| US20070079385A1 (en) * | 2005-09-22 | 2007-04-05 | Software 2000 Limited | Managing user permissions in a computer system |
| RU2443012C2 (ru) * | 2005-10-26 | 2012-02-20 | Майкрософт Корпорейшн | Конфигурация изолированных расширений и драйверов устройств |
| US20080005791A1 (en) * | 2006-06-30 | 2008-01-03 | Ajay Gupta | Method and apparatus for supporting a virtual private network architecture on a partitioned platform |
| US20100082926A1 (en) * | 2008-09-30 | 2010-04-01 | Ravi Sahita | Restricted Component Access to Application Memory |
Also Published As
| Publication number | Publication date |
|---|---|
| US9075985B2 (en) | 2015-07-07 |
| JP6348173B2 (ja) | 2018-06-27 |
| CA2910252A1 (en) | 2014-12-04 |
| KR20160015300A (ko) | 2016-02-12 |
| AU2013390782B9 (en) | 2019-07-04 |
| CN105453097A (zh) | 2016-03-30 |
| KR102089826B1 (ko) | 2020-05-27 |
| RU2015150949A (ru) | 2017-06-01 |
| CA2910252C (en) | 2020-09-08 |
| BR112015029296A2 (pt) | 2017-07-25 |
| MX2015016351A (es) | 2016-04-13 |
| WO2014193443A1 (en) | 2014-12-04 |
| AU2013390782B2 (en) | 2019-06-20 |
| US20140359706A1 (en) | 2014-12-04 |
| CN105453097B (zh) | 2018-05-29 |
| EP3005208B1 (en) | 2019-01-02 |
| JP2016526226A (ja) | 2016-09-01 |
| EP3005208A1 (en) | 2016-04-13 |
| MX352776B (es) | 2017-12-07 |
| AU2013390782A1 (en) | 2015-11-12 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| RU2646332C2 (ru) | Ограниченная платформа драйверов, которая запускает драйверы в песочнице в пользовательском режиме | |
| CN110199271B (zh) | 用于现场可编程门阵列虚拟化的方法和设备 | |
| US12314781B2 (en) | Sharing extension points to allow an application to share content via a sharing extension | |
| CN110178136B (zh) | 现场可编程门阵列程序的签名验证的方法和设备 | |
| EP3610403B1 (en) | Isolated container event monitoring | |
| JP6397500B2 (ja) | 仮想マシン・マネージャーによって支援される選択的コード完全性強制 | |
| JP5676477B2 (ja) | プライバシー保護のためのデュアルスクリプトエンジンをもつブラウザ | |
| US10908948B2 (en) | Multiple application instances in operating systems that utilize a single process for application execution | |
| US20180096113A1 (en) | Content Protection for a Screen Sharing Experience | |
| CN103765431B (zh) | 应用的内容处理 |