IP Library Granted Patent US 11,281,472
Granted Patent B2
US 11,281,472 · App. 16/780,383 · Granted Mar 22, 2022

System and method for securing compromised information handling systems

Inventors: Craig Chaiken (Pflugerville, TX); Balasingh P. Samuel (Round Rock, TX); Steven Downum (Pflugerville, TX)
Assignee: Dell Products L.P.
G06F9/4411G06F9/45558G06F11/2273G06F21/572G06F21/577H04L9/3247G06F11/2284G06F2009/45579G06F2009/45587
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,281,472
App. No.
16/780,383
Granted
Mar 22, 2022
Kind
B2
Abstract

An information handling system includes a basic input/output system having a virtual advanced configuration and power interface device. A processor may download a device driver for a particular virtual advanced configuration and power interface device, wherein the device driver includes a code for a security feature and a signed file that includes a list of identifiers of compromised information handling systems. The processor may determine whether the information handling system is compromised based on the list of identifiers of compromised information handling systems in the signed file, and execute the code for the security feature.

Claims (31)

1. A method comprising:

downloading, by a processor of an information handling system, a device driver for a virtual advanced configuration and power interface device, wherein the device driver includes a code for a security feature and a signed file that includes a list of identifiers of compromised information handling systems;

determining whether the information handling system is compromised based on the list of identifiers of compromised information handling systems; and

in response to the determining that the information handling system is compromised, executing the code for the security feature, wherein the security feature is one of security features that include downloading data in a storage device of the information handling system, erasing the data in the storage device of the information handling system, and encrypting the data in the storage device of the information handling system.

2. The method of claim 1 , wherein the security feature is selected by an owner of the information handling system.

3. The method of claim 1 , further comprising subsequent to the executing the security feature, sending a notification to a manufacturer of the information handling system.

4. The method of claim 3 , further comprising subsequent to the sending the notification, incrementing a version of the device driver.

5. The method of claim 1 , wherein the security features can be selected by an owner of the information handling system.

6. The method of claim 5 , wherein the security features include installing a password to access the information handling system and freezing an operating system of the information handling system.

7. The method of claim 1 , wherein each one of the security features is associated with a particular virtual advanced configuration and power interface device.

8. The method of claim 1 , further comprising subsequent to the executing the code for the security feature, executing a second code associated a second security feature selected by an owner of the information handling system.

9. The method of claim 1 , wherein the virtual advanced configuration and power interface device is added to a basic input/output system.

10. The method of claim 1 , further comprising integrating a security library of the device driver to a hardware component of the information handling system.

11. An information handling system, comprising:

a basic input/output system that includes a virtual advanced configuration and power interface device; and

a processor configured to:

download a device driver for a particular virtual advanced configuration and power interface device, wherein the device driver includes a code for a security feature and a signed file that includes a list of identifiers of compromised information handling systems, and wherein the particular virtual advanced configuration and power interface device is disabled;

determine whether the information handling system is compromised based on the list of identifiers of compromised information handling systems in the signed file; and

in response to a determination that the information handling system is compromised, enable the particular virtual advanced configuration and power interface device and execute the code for the security feature.

12. The information handling system of claim 11 , wherein the particular virtual advanced configuration and power interface device is a child of the virtual advanced configuration and power interface device.

13. The information handling system of claim 11 , wherein the particular virtual advanced configuration and power interface device is added during power on self-test of the basic input/output system.

14. The information handling system of claim 11 , wherein the virtual advanced configuration and power interface device is added during manufacture of the information handling system.

15. The information handling system of claim 11 , wherein the execution of the code for the security feature is performed during device driver runtime.

16. A method comprising:

adding, by a processor while booting an information handling system, an advanced configuration and power interface device to a basic input/output system of the information handling system;

receiving, at the information handling system, an update for an advanced configuration and power interface device driver associated with the advanced configuration and power interface device, wherein the update includes a signed file with a list of compromised information handling systems; and

when the information handling system is compromised based on the list of compromised information handling systems, then installing the advanced configuration and power interface device driver that includes a code to apply a security feature selected by an owner of the information handling system and applying the security feature, wherein the security feature is one of security features that include installing a password to access the information handling system and freezing an operating system of the information handling system.

17. The method of claim 16 , further comprising updating a manufacturer of the information handling system that the advanced configuration and power interface device driver has been installed and the security feature has been applied.

18. The method of claim 17 , further comprising incrementing a version number of the advanced configuration and power interface device driver subsequent to the updating the signed file.

19. The method of claim 16 , further comprising adding a security library of the advanced configuration and power interface device driver to a hardware component of the information handling system.

20. The method of claim 16 , further comprising verifying a signature of the signed file prior to the installing the advanced configuration and power interface device driver.

Assignments (13)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0081) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0441 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0917) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0509 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052852/0022) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0582 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST AT REEL 052771 FRAME 0906 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0298 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0081 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0917 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052852/0022 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY AGREEMENT Recorded May 28, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052771/0906 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 3, 2020
From: CHAIKEN, CRAIG; SAMUEL, BALA; DOWNUM, STEVEN
To: DELL PRODUCTS, LP
Reel/Frame 051703/0738 →