首页> 外国专利> Exploit detection based on profiling events

Exploit detection based on profiling events

机译:基于事件分析的漏洞利用检测

摘要

Certain embodiments described herein execute, for an application, an application in a system having an operating system, event trace for the application, analyze each instruction pointer from the event trace, An electronic device is provided that can be configured to determine whether a pointer indicates an orphan page of memory. An orphan page may be an area of code that is not associated with an application, an area of unidentified code, or an abnormal code that is not associated with an application. Further, the event trace is an embedded application that is a part of the operating system.
机译:本文描述的某些实施例对于应用而言在具有操作系统的系统中执行应用,对该应用进行事件跟踪,从该事件跟踪分析每个指令指针。提供一种电子设备,该电子设备可以被配置为确定指针是否指示内存的孤立页面。孤立页面可能是与应用程序无关的代码区域,未识别代码的区域或与应用程序无关的异常代码。此外,事件跟踪是作为操作系统一部分的嵌入式应用程序。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号