- Patent Title: Systems and methods involving aspects of hardware virtualization such as hypervisor, detection and interception of code or instruction execution including API calls, and/or other features
-
Application No.: US14955018Application Date: 2015-11-30
-
Publication No.: US09648045B2Publication Date: 2017-05-09
- Inventor: Edward T. Mooring , Craig Howard
- Applicant: Lynx Software Technologies, Inc.
- Applicant Address: US CA San Jose
- Assignee: Lynx Software Technologies, Inc.
- Current Assignee: Lynx Software Technologies, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Knobbe Martens Olson & Bear, LLP
- Main IPC: G06F21/52
- IPC: G06F21/52 ; H04L29/06 ; G06F9/455 ; G06F9/50 ; H04L29/00

Abstract:
Systems, methods, computer readable media and articles of manufacture consistent with innovations herein are directed to computer virtualization, computer security and/or memory access. According to some illustrative implementations, innovations herein may utilize and/or involve a separation kernel hypervisor which may include the use of a guest operating system virtual machine protection domain, a virtualization assistance layer, and/or a instruction execution detection/interception mechanism (which may be proximate in temporal and/or spatial locality to malicious code, but isolated from it). The instruction execution detection/interception mechanism may perform processing, inter alia, for detection and/or notification of, and actions upon by a monitoring guest, code execution by a monitored guest involving predetermined physical memory locations, such as API calls. Such actions may include interception of API calls within the monitored guest and simulation thereof by the monitoring guest or another authorized guest.
Public/Granted literature
Information query