发明名称 SYSTEM AND METHOD TO MITIGATE MALICIOUS CALLS
摘要 Systems and methods are provided in example embodiments for mitigating malicious calls. The system can be configured to receive a function call, determine the location of a memory page that initiated the function call, determine if the memory page is associated with a trusted module, and block the function call if the memory page is not associated with the trusted module. In addition, the system can determine the return address for the function call and block the function call if the return address does not belong to the trusted module. Further, the system can determine a parameter for the function call, determine if the parameter is a known parameter used by the process that called the function, and block the function call if the parameter is not the known parameter used by the process that called the function.
申请公布号 US2015379267(A1) 申请公布日期 2015.12.31
申请号 US201414318242 申请日期 2014.06.27
申请人 Szor Peter;Mathur Rachit 发明人 Szor Peter;Mathur Rachit
分类号 G06F21/56;G06F21/55 主分类号 G06F21/56
代理机构 代理人
主权项 1. At least one computer-readable medium comprising one or more instructions that when executed by a processor: receive a function call; determine the return address for the function call; and block the function call if the return address does not belong to a trusted module.
地址 Santa Clara CA US