The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 15, 2021

Filed:

Sep. 27, 2018
Applicant:

Twistlock, Ltd., Herzliya, IL;

Inventors:

Liron Levin, Herzliya, IL;

Dima Stopel, Herzliya, IL;

Michael Velbaum, Herzliya, IL;

Alon Adler, Bat-Yam, IL;

Michael Kletselman, Tel Aviv, IL;

John Morello, Baton Rouge, LA (US);

Assignee:

TWISTLOCK, Ltd., Herzliya, IL;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 9/455 (2018.01); H04L 29/06 (2006.01); G06F 16/23 (2019.01); G06N 20/00 (2019.01); G06F 21/53 (2013.01); G06K 9/62 (2006.01); G06F 9/445 (2018.01); G06F 21/51 (2013.01); G06F 21/54 (2013.01);
U.S. Cl.
CPC ...
G06F 9/45558 (2013.01); G06F 9/44505 (2013.01); G06F 16/2379 (2019.01); G06F 21/51 (2013.01); G06F 21/53 (2013.01); G06F 21/54 (2013.01); G06K 9/6256 (2013.01); G06N 20/00 (2019.01); H04L 63/20 (2013.01); G06F 2009/45583 (2013.01); G06F 2009/45587 (2013.01); G06F 2009/45591 (2013.01); G06F 2009/45595 (2013.01);
Abstract

A system and method for serverless runtime application self-protection. The method includes embedding a serverless defender function into a function serverless bundle containing an application deployment bundle of a serverless application, wherein the embedding further comprises modifying the function serverless bundle to include a serverless defender shared library and a security policy, wherein the serverless defender shared library is configured to install at least one hook into at least one system call of the serverless application when the serverless application is executed, wherein each hook only allows running of system calls and library functions that satisfy the security policy during execution of the serverless application, wherein the serverless defender function is loaded at a system when the serverless application is initiated by the system, wherein the serverless defender function is configured to perform at least one mitigation action when the security policy is violated during execution of the serverless application.


Find Patent Forward Citations

Loading…