Patent · US Active

Behavioral-based control of access to encrypted content by a process

US10657277B2 · kind B2 · utility

1Cited by
17References
19Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 20, 2017
Grant dateMay 19, 2020
Priority date
Expiry dateNov 20, 2037

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/2107
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Securing an endpoint against exposure to unsafe content includes encrypting files to prevent unauthorized access, and monitoring an exposure state of a process to potentially unsafe content by applying behavioral rules to determine whether the exposure state is either exposed or secure, where (1) the process is initially identified as secure, (2) the process is identified as exposed when the process opens a network connection to a URL that is not internal to an enterprise network of the endpoint and that has a poor reputation, (3) the process is identified as exposed when it opens a file identified as exposed, and (4) the process is identified as exposed when another exposed process opens a handle to the process. Access to the files may be restricted when the process is exposed by controlling access through a file system filter that conditionally decrypts files for the process according to its exposure state.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.