IP Library Granted Patent US 10,061,919
Granted Patent B2
US 10,061,919 · App. 15/632,237 · Granted Aug 28, 2018

Computing platform security methods and apparatus

Inventors: Paritosh Saxena (Portland, OR); Adrian M. M. T. Dunbar (London, GB); Michael S. Hughes (San Francisco, CA); John Teddy (Portland, OR); David Michael Durham (Beaverton, OR); Balaji Vembu (Folsom, CA); Prashant Dewan (Hillsboro, OR); Debra Cablao (Hillsboro, OR); Nicholas D. Triantafillou (Portland, OR); Jason M. Surprise (Beaverton, OR)
Assignee: McAfee, LLC
G06F21/552G06F1/28G06F21/554G06F21/558G06F21/566G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,061,919
App. No.
15/632,237
Granted
Aug 28, 2018
Kind
B2
Abstract

Computing platform security methods and apparatus are disclosed. An example apparatus includes a security application to configure a security task, the security task to detect a malicious element on a computing platform, the computing platform including a central processing unit and a graphics processing unit; and an offloader to determine whether the central processing unit or the graphics processing unit is to execute the security task; and when the graphics processing unit is to execute the security task, offload the security task to the graphics processing unit for execution.

Claims (31)

1. An apparatus to reduce malware effects on a local computing platform, the apparatus comprising:

a receiver responsive to a scan of an external computing platform to retrieve data corresponding to an indication of a malicious element from the external computing platform, the data including an indication of whether a task executed by the external computing platform was preempted; and

a trigger event analyzer to reduce malware effects of the malicious element on a local computing platform by initiating at least one of a memory scan of a process that preempted the task or a restriction of the process that preempted the task, the at least one of the memory scan or the restriction based on the data, at least one of the receiver or the trigger event analyzer including hardware.

2. The apparatus as defined in claim 1 , wherein the data includes traffic pattern information associated with the indication of the malicious element.

3. The apparatus as defined in claim 1 , wherein the local computing platform includes at least one of an endpoint device, a server or a network aggregator.

4. The apparatus as defined in claim 1 , wherein the data includes a target memory type of the malicious element.

5. The apparatus as defined in claim 1 , wherein the malicious element is a first malicious element, and further including a reporter to access second data associated with a second indication of a second malicious element on the local computing platform.

6. The apparatus as defined in claim 5 , wherein the reporter is to convey a pattern corresponding to a target computing process associated with the second malicious element.

7. The apparatus as defined in claim 6 , further including a scan initiator to initiate a scan of the target computing process on the local computing platform.

8. The apparatus as defined in claim 6 , further including a scan initiator to prioritize a scan of the local computing platform based on the target computing process associated with the second malicious element.

9. The apparatus as defined in claim 1 , wherein the data includes an Internet protocol address associated with the malicious element as a candidate malware signature.

10. A computer-implemented method to reduce malware effects on an external computing platform, the method comprising:

accessing data corresponding to an indication of a malicious element from an external computing platform based on a scan of the external computing platform, the data including an indication of whether a task executed by the external computing platform was preempted; and

reducing, by executing an instruction with a processor, malware effects of the malicious element on a local computing platform by, based on the data, initiating at least one of a memory scan of a process that preempted the task or a restriction of the process that preempted the task.

11. The computer-implemented method as defined in claim 10 , wherein the data includes traffic pattern information associated with the indication of the malicious element.

12. The computer-implemented method as defined in claim 10 , wherein the local computing platform includes at least one of an endpoint device, a server or a network aggregator.

13. The computer-implemented method as defined in claim 10 , wherein the data identifies a target memory type of the malicious element.

14. The computer-implemented method as defined in claim 10 , wherein the malicious element is a malicious element, and further including conveying second data associated with a second indication of a second malicious element associated with the local computing platform.

15. The computer-implemented method as defined in claim 14 , further including retrieving a pattern corresponding to a target computing process associated with the second malicious element.

16. The computer-implemented method as defined in claim 15 , further including initiating a scan of the target computing process on the local computing platform.

17. The computer-implemented method as defined in claim 15 , further including prioritizing a scan of the local computing platform based on the target computing process associated with the second malicious element.

18. The computer-implemented method as defined in claim 10 , wherein the data includes an Internet protocol address associated with the malicious element as a candidate malware signature.

19. A tangible machine readable storage medium comprising instructions that, when executed, cause a machine to, at least:

obtain, from an external computing platform, data corresponding to an indication of a malicious element identified by a scan of the external computing platform, the data including an indication of whether a task executed by the external computing platform was preempted; and

reduce malware effects of the malicious element on a local computing platform by initiating, based on the data, at least one of a memory scan of a process that preempted the task or a restriction of the process that preempted the task.

20. The storage medium as defined in claim 19 , wherein the data includes traffic pattern information associated with the indication of the malicious element.

21. The storage medium as defined in claim 19 , wherein the data includes a target memory type of first malicious element.

22. The storage medium as defined in claim 19 , wherein the malicious element is a first malicious element, and the instructions, when executed, cause the machine to convey second data associated with a second indication of a second malicious element of the local computing platform.

23. The storage medium as defined in claim 22 , wherein the instructions, when executed, cause the machine to retrieve a pattern corresponding to a target computing process associated with the second malicious element.

24. The storage medium as defined in claim 23 , wherein the instructions, when executed, cause the machine to initiate a scan of the target computing process on the local computing platform.

25. The storage medium as defined in claim 23 , wherein the instructions, when executed, cause the machine to prioritize a scan of the local computing platform based on the target computing process associated with the second malicious element.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
CHANGE OF NAME Recorded Apr 4, 2018
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 046857/0072 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 18, 2017
From: CABLAO, DEBRA; DURHAM, DAVID MICHAEL; HUGHES, MICHAEL S.; TEDDY, JOHN; VEMBU, BALAJI; SAXENA, PARITOSH; DEWAN, PRASHANT; DUNBAR, ADRIAN M.M.T.; SURPRISE, JASON M.; TRIANTAFILLOU, NICHOLAS D.
To: MCAFEE INC.
Reel/Frame 043332/0171 →
Continuity (2)
Continuation 14523886 · Oct 25, 2014
Related Publication 20170293758A1 · Oct 12, 2017