发明名称 Method and system for filtering communications to prevent exploitation of a software vulnerability
摘要 A method and system for protecting an application that implements a communication protocol against exploitation of a communication-based vulnerability is provided. A protection system provides a protection policy that specifies how to recognize messages that expose a specific vulnerability and specifies actions to take when the vulnerability is exposed. A protection policy specifies the sequence of messages and their payload characteristics that expose a vulnerability. The protection system may specify the sequences of messages using a message protocol state machine. A message protocol state machine of an application represents the states that the application transitions through as it receives various messages. The message protocol state machine of the protection policy may be a portion of the message protocol state machine of the application relating to the vulnerability. The protection system uses the message protocol state machine to track the states that lead up to the exposing of the vulnerability.
申请公布号 US2005198110(A1) 申请公布日期 2005.09.08
申请号 US20040955963 申请日期 2004.09.30
申请人 MICROSOFT CORPORATION 发明人 GARMS JASON;GUO CHUANXIONG;SIMON DANIEL R.;WANG JIAHE H.;ZUGENMAIER ALF P.
分类号 G06F21/22;H04L12/26;H04L29/06;(IPC1-7):G06F15/16;G06F11/30 主分类号 G06F21/22
代理机构 代理人
主权项
地址