发明名称 Distributed polymorphic transformation of served content
摘要 A computer-implemented method includes receiving, at a computer security server system located between the Internet and a client computing device that makes requests over the Internet, a request for content directed to a particular content server system; forwarding the received request, with the computer security server system, to the particular content server system; receiving code from the particular server system in response to the request; applying a security countermeasure to the received code to created transformed code; providing the transformed code to the client computing device; receiving a communication from the client computing device; and determining that software on the client computing device has attempted to interact with the received code rather than the transformed code.
申请公布号 US9112900(B1) 申请公布日期 2015.08.18
申请号 US201414503346 申请日期 2014.09.30
申请人 Shape Security, Inc. 发明人 Peacock Timothy Dylan;Call Justin D.;Yang Siying;Agarwal Sumit
分类号 G06F7/04;H04L29/06;G06F17/22 主分类号 G06F7/04
代理机构 Fish & Richardson P.C. 代理人 Fish & Richardson P.C.
主权项 1. A computer-implemented method, comprising: receiving, at a computer security server system located between the Internet and a client computing device that makes requests over the Internet, a request for content directed to a particular content server system; forwarding the received request, with the computer security server system and over the Internet, to the particular content server system; receiving, over the Internet, code from the particular content server system in response to the request; applying a security countermeasure to the received code to create transformed code, wherein the security countermeasure comprises re-coding portions of the received code that are to be executed on the client computing device, into a second version that is to be executed on the client computing device and is different than a version received from the particular content server system; providing the transformed code to the client computing device over a network; receiving a communication from the client computing device over the network; and determining from the received communication from the client computing device that software on the client computing device has attempted to interact with the received code rather than with the transformed code.
地址 Palo Alto CA US