首页> 外国专利> Responding to detected application vulnerability exploits

Responding to detected application vulnerability exploits

机译:响应检测到的应用程序漏洞利用

摘要

A security module detects attempted exploitations of vulnerabilities of an application executing on a computer. A robust function of the application having native error handling functionality is identified. The security module wraps the robust function with an exception handler that catches a “security violation” exception. The exception handler returns an error code of a type that is handled by the application's native error handling functionality. The security module also hooks the application. When a hook is followed, the security module determines whether a vulnerability in the application is being exploited. If an attempted exploit is detected, the security module throws the security violation exception. The application's native error handling functionality unwinds the call stack for the application until it reaches the exception handler wrapping the robust function. The exception handler catches the security violation exception and returns the error code to the application's native error handling functionality.
机译:安全模块检测企图利用计算机上执行的应用程序的漏洞。确定具有本机错误处理功能的应用程序的健壮功能。安全模块通过捕获“安全违规”异常的异常处理程序包装了健壮的功能。异常处理程序返回由应用程序的本机错误处理功能处理的类型的错误代码。安全模块还可以钩住应用程序。遵循挂钩后,安全模块将确定是否正在利用应用程序中的漏洞。如果检测到尝试利用,安全模块将引发安全违规异常。应用程序的本机错误处理功能会取消应用程序的调用堆栈,直到到达包装了健壮功能的异常处理程序为止。异常处理程序捕获安全违规异常,并将错误代码返回给应用程序的本机错误处理功能。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号