IP Library Granted Patent US 9,256,431
Granted Patent B2
US 9,256,431 · App. 13/939,064 · Granted Feb 9, 2016

Synthetic processing diversity within a homogeneous processing environment

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,256,431
App. No.
13/939,064
Granted
Feb 9, 2016
Kind
B2
Abstract

A method of increasing processing diversity on a computer system includes: loading a plurality of instruction streams, each of the plurality of instruction streams being equivalent; executing, in a context, a first stream of the plurality of instruction streams; stopping execution of the first stream at a first location of the first stream; and executing, in the context, a second stream of the plurality of instruction streams at a second location of the second stream, the second location corresponding to the first location of the first stream.

Claims (32)

1. A method of increasing processing diversity on a computer system, the method comprising:

a) loading a plurality of computer program executable instruction streams, each of the plurality of computer program executable instruction streams sharing the same registers and the same stacks, wherein the instruction streams are functionally equivalent and representing the same portions of a computer program;

b) executing a first instruction stream of the plurality of computer program executable instruction streams to execute a first portion of the computer program;

c) stopping execution of the first instruction stream at a first random location of the computer program;

d) randomly selecting, by an instruction selector, a second instruction stream of the plurality of computer program executable instruction streams;

e) executing said selected second instruction stream at a second location of the computer program to execute a second portion of the computer program immediately following the first portion, wherein the second location corresponds to the first location; and

f) stopping execution of the second instruction stream at a third random location of the computer program, wherein steps b to f are repeated until all of the plurality of computer program executable instruction streams are executed.

2. The method of claim 1 , wherein each of the plurality of computer program executable instruction streams is loaded from a binary and is identical to the rest of the plurality of computer program executable instruction streams.

3. The method of claim 1 , wherein each of the plurality of computer program executable instruction streams is generated from an instruction stream loaded from a binary and is identical to the rest of the plurality of computer program executable instruction streams.

4. The method of claim 1 , wherein the method of increasing processing diversity on the computer system is performed using a virtualization program executing on the computer system.

5. The method of claim 1 , wherein the method of increasing processing diversity on the computer system is performed using a hardware instruction selector.

6. A non-transitory computer readable medium embodying program instructions for execution by a data processing apparatus, the program instructions adapting the processing apparatus for:

a) loading a plurality of computer program executable instruction streams, each of the plurality of computer program executable instruction streams sharing the same registers and the same stacks, wherein the instruction streams are functionally equivalent and representing the same portions of a computer program;

b) executing a first instruction stream of the plurality of computer program executable instruction streams to execute a first portion of the computer program;

c) stopping execution of the first instruction stream at a first random location of the computer program;

d) randomly selecting a second instruction stream of the plurality of computer program executable instruction streams;

e) executing said selected second instruction stream at a second location of the computer program to execute a second portion of the computer program immediately following the first portion, wherein the second location corresponds to the first location; and

f) stopping execution of the second instruction stream at a third random location of the computer program, wherein steps b to f are repeated until all of the plurality of computer program executable instruction streams are executed.

7. The non-transitory computer readable medium of claim 6 , wherein each of the plurality of computer program executable instruction streams is loaded from a binary and is identical to the rest of the plurality of computer program executable instruction streams.

8. The non-transitory computer readable medium of claim 6 , wherein each of the plurality of computer program executable instruction streams is generated from an instruction stream loaded from a binary and is identical to the rest of the plurality of computer program executable instruction streams.

9. The non-transitory computer readable medium of claim 6 , wherein the non-transitory computer readable medium further embodies a virtualization program, and wherein the virtualization program comprises the program instructions.

10. A computer system comprising a processor and memory storing program instructions, the computer system being configured to:

a) load a plurality of computer program executable instruction streams, each of the plurality of computer program executable instruction streams sharing the same registers and the same stacks wherein the instruction streams are functionally equivalent and representing the same portions of a computer program;

b) execute a first instruction stream of the plurality of computer program executable instruction streams to execute a first portion of the computer program;

c) stop execution of the first instruction stream at a first random location of the computer program;

d) randomly select, by an instruction selector, a second instruction stream of the plurality of computer program executable instruction streams;

e) execute said selected second instruction stream at a second location of the computer program to execute a second portion of the computer program immediately following the first portion, wherein the second location corresponds to the first location; and

f) stop execution of the second instruction stream at a third random location of the computer program, wherein steps b to f are repeated until all of the plurality of computer program executable instruction streams are executed.

11. The system of claim 10 , wherein the plurality of computer program executable instruction streams is loaded from a binary.

12. The system of claim 10 , wherein the plurality of computer program executable instruction streams is generated from an instruction stream loaded from a binary.

13. The system of claim 10 , wherein a virtualization program executing on the computer system configures the computer system to: execute, in the context, the first stream of the plurality of computer program executable instruction streams; stop execution of the first stream at the first location; and execute, in the context, the second stream of the plurality of instruction streams.

14. The system of claim 10 , further comprising a hardware instruction selector configured to execute, in the context, the first stream of the plurality of computer program executable instruction streams; stop execution of the first stream at the first location; and execute, in the context, the second stream of the plurality of instruction streams.

Assignments (14)
RELEASE OF SECURITY INTEREST Recorded Apr 2, 2025
From: UBS AG, STAMFORD BRANCH
To: FORCEPOINT, LLC; BITGLASS, LLC
Reel/Frame 070706/0263 →
CHANGE OF NAME Recorded Mar 21, 2025
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: EVERFOX HOLDINGS LLC
Reel/Frame 070585/0524 →
PARTIAL PATENT RELEASE AND REASSIGNMENT AT REEL/FRAME 055052/0302 Recorded Oct 3, 2023
From: CREDIT SUISSE, AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
To: FORCEPOINT FEDERAL HOLDINGS LLC (F/K/A FORCEPOINT LLC)
Reel/Frame 065103/0147 →
SECURITY INTEREST Recorded Sep 29, 2023
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: APOLLO ADMINISTRATIVE AGENCY LLC, AS COLLATERAL AGENT
Reel/Frame 065086/0822 →
CHANGE OF NAME Recorded May 12, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056216/0309 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, LLC (FKA PORTAUTHORITY TECHNOLOGIES, INC.); RAYTHEON OAKLEY SYSTEMS, LLC; FORCEPOINT FEDERAL LLC (FKA RAYTHEON CYBER PRODUCTS, LLC, FKA RAYTHEON CYBER PRODUCTS, INC.)
Reel/Frame 055492/0146 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 1, 2017
From: FORCEPOINT FEDERAL LLC
To: FORCEPOINT LLC
Reel/Frame 043397/0460 →
CHANGE OF NAME Recorded Feb 16, 2016
From: RAYTHEON CYBER PRODUCTS, LLC
To: FORCEPOINT FEDERAL LLC
Reel/Frame 037821/0818 →
PATENT SECURITY AGREEMENT Recorded Jun 9, 2015
From: WEBSENSE, INC.; RAYTHEON OAKLEY SYSTEMS, LLC; RAYTHEON CYBER PRODUCTS, LLC (FORMERLY KNOWN AS RAYTHEON CYBER PRODUCTS, INC.); PORT AUTHORITY TECHNOLOGIES, INC.
To: RAYTHEON COMPANY
Reel/Frame 035859/0282 →
CHANGE OF NAME Recorded Jun 2, 2015
From: RAYTHEON CYBER PRODUCTS, INC.
To: RAYTHEON CYBER PRODUCTS, LLC
Reel/Frame 035806/0367 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 28, 2015
From: RAYTHEON BBN TECHNOLOGIES CORP.
To: RAYTHEON CYBER PRODUCTS, INC.
Reel/Frame 035794/0226 →
CONFIRMATORY LICENSE Recorded Aug 19, 2013
From: RAYTHEON BBN TECHNOLOGIES CORPORATION
To: AFRL/RIJ
Reel/Frame 031032/0722 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 19, 2013
From: MATTHEWS, DAVID; MARTZ, ROBERT
To: RAYTHEON BBN TECHNOLOGIES, CORP.
Reel/Frame 030842/0662 →