发明名称 Data leak prevention from a device with an operating system
摘要 A data leak from a computer can be prevented by intercepting one or more system calls from an unknown application and applying different policies to the intercepted action associated with the system call(s) depending on the data itself and the metadata of a document associated with the system call.
申请公布号 US8978092(B2) 申请公布日期 2015.03.10
申请号 US201213398909 申请日期 2012.02.17
申请人 Hewlett-Packard Development Company, L.P. 发明人 Balinsky Helen;Perez David Subiros;Simske Steven J
分类号 H04L29/06 主分类号 H04L29/06
代理机构 Leffert & Polglaze 代理人 Leffert & Polglaze ;Myrum Tod
主权项 1. A method comprising: capturing a system call issued by an application program, the system call identifying data in relation to which functionality of the system call is requested to be performed by the application program; determining whether the system call is a potential data leaking system call from an identity of the system call itself regardless of an identity of the application program that issued the system call; in response to determining that the system call is the potential data leaking system call, determining whether the application program is authorized to request performance of the functionality of the system call; in response to determining that the system call is the potential leaking system call and that the application program is authorized to request the performance of the functionality of the system call, or in response determining that the system call is not the potential data leaking system call, permitting the system call to continue to an operating system for the functionality thereof to be performed without logging the performance of the functionality; in response to determining that the application is not authorized to request the performance of the functionality of the system call, modifying the performance of the functionality of the system call by the operating system.
地址 Houston TX US