×

Behavioral-based control of access to encrypted content by a process

  • US 10,657,277 B2
  • Filed: 11/20/2017
  • Issued: 05/19/2020
  • Est. Priority Date: 02/12/2016
  • Status: Active Grant
First Claim
Patent Images

1. A computer program product for securing an endpoint against exposure to unsafe or unknown content, the computer program product comprising computer-executable code embodied in a non-transitory computer readable medium that, when executing on the endpoint performs the steps of:

  • encrypting a plurality of files on the endpoint to prevent unauthorized access to the plurality of files;

    monitoring an exposure state of a process on the endpoint to potentially unsafe content by applying a plurality of behavioral rules to determine whether the exposure state of the process is either exposed or secure, wherein the process is initially identified as secure, and the process is identified as exposed when the process accesses an object identified as exposed; and

    restricting access by the process to the plurality of files when the process is exposed by controlling access to the plurality of files through a file system filter that conditionally decrypts one or more of the plurality of files for the process according to the exposure state of the process.

View all claims
  • 4 Assignments
Timeline View
Assignment View
    ×
    ×