首页> 外国专利> u043du0435u0440u0430u0437u0440u0443u0448u0430u0435u043cu044bu0439 white list

u043du0435u0440u0430u0437u0440u0443u0448u0430u0435u043cu044bu0439 white list

机译:u043d u0435 u0440 u0430 u0437 u0440 u0443 u0448 u0430 u0435 u043c u044b u0439白名单

摘要

In an example, there is disclosed a security architecture for enhanced, non-invasive whitelisting of executable objects. When an executable object tries to perform an action, a security engine seamlessly intercepts the action and determines whether the action is whitelisted, blacklisted, or graylisted, assigning the action a corresponding security score. Whitelisted actions may be allowed, blacklisted actions may be disallowed, and graylisted actions may require additional verification from a user. Because the score is assigned to the combination of the executable object and the action, false positives may be avoided, such as those that may occur when an executable object is prefetched but has not yet tried to perform any useful work.
机译:在一个示例中,公开了一种用于可执行对象的增强的非侵入式白名单的安全架构。当可执行对象尝试执行操作时,安全引擎会无缝地拦截该操作,并确定该操作是列入白名单,列入黑名单还是列入灰名单,并为该行动分配相应的安全评分。可能允许列入白名单的动作,可能不允许加入黑名单的动作,并且列入灰名单的动作可能需要用户进行其他验证。因为分数被分配给可执行对象和操作的组合,所以可以避免误报,例如在预取可执行对象但尚未尝试执行任何有用工作时可能发生的误报。

著录项

相似文献

  • 专利
  • 外文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号