发明名称 Integrity assurance and rebootless updating during runtime
摘要 Techniques are described herein for, without rebooting a computing device, unloading at least a component of a kernel-mode component of the computing device and loading an updated version of the component of the kernel-mode component. The techniques may be performed by an integrity manager associated with the kernel-mode component. The integrity manager may also determine integrity of the kernel-mode component by causing the kernel-mode component to perform an action associated with a known reaction, determining whether the known reaction occurred, and in response, performing a remediation action or notifying a remote security service. Further, the integrity manager may determine whether any computing device lists include representations of components or connections associated with the kernel-mode component. The integrity manager may then remove the representations from the lists or remove the representations from responses to requests for contents of the computing device lists.
申请公布号 AU2015231756(A1) 申请公布日期 2016.09.15
申请号 AU20150231756 申请日期 2015.03.12
申请人 CROWDSTRIKE, INC. 发明人 IONESCU, ION-ALEXANDRU
分类号 G06F21/00;G06F9/30 主分类号 G06F21/00
代理机构 代理人
主权项
地址