Match Document Document Title
7257718 Cipher message assist instructions  
A method, system and program product for enciphering or deciphering storage of a computing environment by specifying, via an instruction, a unit of storage to be enciphered or deciphered. The unit...
7257840 Preventing network data injection attacks using duplicate-ACK and reassembly gap approaches  
Approaches for preventing TCP data injection attacks in packet-switched networks are disclosed. An ACK message or dummy segment is sent to verify the authenticity of the data in the re-assembly...
7257841 Computer virus infection information providing method, computer virus infection information providing system, infection information providing apparatus, and computer memory product  
The present invention provides a computer virus infection information providing system for providing infection information such as the time of infection to the users and thereby permitting the...
7254720 Precise exit logic for removal of security overlay of instruction space  
A circuit generally comprising a first memory, a processor and a logic block is disclosed. The first memory may store (i) a write instruction to store a non-highest security value of at least three...
7251829 Data analysis and security system  
A process that collects and analyzes data from computer mainframe system events and/or messages as they occur, utilizing a System Management Facility (SMF) interface, a SubSystem Interface (SSI),...
7249379 Method and apparatus for implementing process-based security in a computer system  
A method is disclosed for providing process-based security in a special purpose computer system, comprising the steps of: configuring the special purpose computer with an operating system and at...
7246376 Method and apparatus for security management in a networked environment  
In a networked environment, where multiple Internet Service Providers and multi-vendor equipment are involved in e-Business services and applications offering, the risk of overloading the Internet...
H002196 Method for intercepting specific system calls in a specific application from applications space for security  
One or more specified system calls of a running process are trapped in kernel space from user space. While the process is stopped, information associated with the process is read and a security...
7240199 System and method for verifying delivery and integrity of electronic messages  
A server receives a message from a sender and transmits the message to a recipient. The server normally transmits the message in a first path to the recipient. When the sender indicates at a...
7236610 Authenticating executable code and executions thereof  
The techniques for authenticating executable code employs keys ( 609 ) to modify the code ( 611 ). In static watermarking, the code is watermarked by using the key to determine positions in the...
7234165 Malware scanning of compressed computer files  
A malware scanner ( 8 ) operates to scan compressed computer files ( 16 ) by compressing the malware signatures ( 17 ) using the same compression algorithm as used for the compressed computer file...
7234163 Method and apparatus for preventing spoofing of network addresses  
A method is disclosed for preventing spoofing of network addresses. A binding is established between an Internet Protocol (IP) address, a Media Access Control (MAC) address, and a port. An Address...
7234166 Event sequence detection  
The invention relates to event sequence detection suitable for an intrusion detection system (IDS), for example. An event sequence including two or more stages in order, each of the stages...
7234164 Method and system for blocking execution of malicious code  
A method of preventing execution of malicious code included in program code executable by a computer system may include reading program code from a storage medium, identifying at least a section of...
7234168 Hierarchy-based method and apparatus for detecting attacks on a computer system  
A method of provisioning a computer against computer attacks includes constructing a hierarchy characterizing different computer attacks and counter measures, and traversing this hierarchy to...
7231666 Method and apparatus for preventing buffer overflow security exploits  
A method, apparatus, and computer instructions for managing a data buffer. Data for the data buffer is received. A security action is performed in response to detecting data for the data buffer...
7231665 Prevention of operating system identification through fingerprinting techniques  
Outgoing data units, such as packets, from a computer system that contain data characteristic of an operating system executing on the computer system are intercepted before they are transmitted on...
7231668 Network policy management and effectiveness system  
A method, apparatus, and article of manufacture for maintaining policy compliance on a computer network is provided. The method provides the steps of electronically monitoring network user...
7228566 Automated computer system security compromise  
A system is provided for performing penetration testing of a target computer network by installing a remote agent in the target computer network. The system includes a local agent provided in a...
7228563 Shell code blocking system and method  
A method includes hooking a critical operating system function, originating a call to the critical operating system function with a call module of a parent application, stalling the call,...
7225466 Systems and methods for message threat management  
The present invention is directed to systems and methods for detecting unsolicited and threatening communications and communicating threat information related thereto. Threat information is...
7225468 Methods and apparatus for computer network security using intrusion detection and prevention  
A method provides security to a computer network by selectively blocking network transmissions from selected IP addresses. The method includes the steps of: establishing a risk threshold whereby...
7219239 Method for batching events for transmission by software agent  
In one embodiment, the present invention provides for receiving security events from a network device by a distributed software agent of a network security system, determining a priority of each...
7216367 Safe memory scanning  
A kernel mode memory scanning driver for use in safely scanning loaded drivers in the memory of computer systems utilizing Windows® NT based operating systems, such as Windows® 2000, Windows®...
7216364 System security approaches using state tables  
A method and system that ensures system security is disclosed. Specifically, the method and system formulate a finite automaton that corresponds to a number of patterns. Then, as data units are put...
7216366 Storage based apparatus for antivirus  
Detecting computer viruses includes providing a disk space having at least a portion that is partitioned into separate segments, each segment being accessed by at least one of a plurality of hosts....
7213264 Architecture to thwart denial of service attacks  
A monitoring device disposed for thwarting denial of service attacks on the data center is described. The monitoring device includes a plurality of probe devices that are disposed to collect...
7213154 Query data packet processing and network scanning method and apparatus  
A method for detecting within a networked computer a target vulnerability such as a Trojan Horse residing therein is disclosed, wherein the vulnerability is characterized by a signature response to...
7213153 Application program interface interception system and method  
A method of intercepting application program interface, including dynamic installation of associated software, within the user portion of an operating system. An API interception control server in...
7213260 Systems and methods for upstream threat pushback  
The present invention is directed to systems and methods for detecting and preventing the delivery of unsolicited communications. A communication transmitted over a communications network is...
7207066 Method for protecting a microcomputer system against manipulation of data stored in a storage arrangement of the microcomputer system  
A method for protecting a microcomputer system against manipulation of data stored in a storage arrangement of the microcomputer system, in particular for protecting a program stored in the storage...
7207065 Apparatus and method for developing secure software  
A computer readable medium includes executable instructions to analyze program instructions for security vulnerabilities. The executable instructions convert diverse program instruction formats to...
7203961 Preventing network reset denial of service attacks  
Approaches for preventing TCP RST attacks and TCP SYN attacks in packet-switched networks are disclosed. In one approach, upon receiving a TCP RST packet, a first endpoint node challenges the...
7203960 Anti-virus method and system guaranteeing a maximum delay for streaming data  
The present application describes an anti-virus network system and method guaranteeing a maximum scan delay for streaming data. The maximum scan period can be predetermined or dynamically...
7203959 Stream scanning through network proxy servers  
Methods, systems, and computer readable media for managing transmission of a requested computer file ( 140 ) from a remote host compute ( 125 ) to a client computer ( 120 ). A proxy server computer...
7203833 History based rights computation for managed code  
In the access control model of security, an access control matrix associates rights for operations on objects with subjects. An approach for assigning rights to code at run-time involves...
7200758 Encapsulation of a TCPA trusted platform module functionality within a server management coprocessor subsystem  
A system for executing cryptographic services on a baseboard management controller separated from a main processor, with the baseboard management controller having isolated execution and memory...
7200866 System and method for defending against distributed denial-of-service attack on active network  
A system for defending against a distributed denial-of-service attack includes an intrusion detection system, an active security management system and an active security node. The intrusion...
7197145 Method for setting up radio bearer in mobile communication system  
A method for setting up a radio bearer in a radio interface protocol, including transferring ciphering performance information from a designated layer to a radio resource control (RRC) layer,...
7194537 Method for scrambling information about network devices that is placed in email message  
The present invention relates to sending control or monitoring information between two hardware devices utilizing email. Control information relating to either a first hardware device or a second...
7191437 System and method for reliable disk firmware update within a networked storage fabric  
A system and method for the reliable firmware update of a disk connected to a fibre channel loop fabric allows the specified filers and other predetermined system devices connected to the fabric to...
7185360 System for distributed network authentication and access control  
A user gains access to a private network by connecting to a network, either through a hardwired or wireless connection, and then initiates an Internet access request targeting any website. If the...
7181603 Method of secure function loading  
Redirecting function calls through a protected environment to effect secure linkage of program modules. In one embodiment, a program module, such as a player application for example, may make...
7178166 Vulnerability assessment and authentication of a computer by a local scanner  
Providing a user with assurance that a computer is secure based on a vulnerability assessment completed by a browser-compatible scanner operating on the computer. If the scanner finds a...
7174566 Integrated network intrusion detection  
Intrusion preludes may be detected (including detection using fabricated responses to blocked network requests), and particular sources of network communications may be singled out for greater...
7171689 System and method for tracking and filtering alerts in an enterprise and generating alert indications for analysis  
A system and method for declaring alert indications that occur in an enterprise comprising translating a number of device outputs into a common format event using a number of translation files, and...
7171690 Wireless malware scanning back-end system and method  
A system, method and computer program product are provided for scanning a plurality of mobile wireless devices for malware. A request is received to update an anti-malware scanner installed on a...
7171688 System, method and computer program for the detection and restriction of the network activity of denial of service attack software  
A system, method and computer program for detecting and restricting remotely controlled distributed denial of service software. This detection is based upon characteristic patterns seen in denial...
7162739 Method and apparatus for blocking unwanted windows  
In one embodiment, a computer program blocks windows categorized as bad windows, while allowing windows categorized as good windows to be displayed. The computer program may categorize a window by...
7159149 Heuristic detection and termination of fast spreading network worm attacks  
Methods, apparati, and computer program products for detecting and responding to fast-spreading network worm attacks include a network monitoring module ( 110 ), which observes ( 205 ) failed...