The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Oct. 01, 2024

Filed:

May. 30, 2023
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Brian A. Rinaldi, Tucson, AZ (US);

Clint A. Hardy, Tucson, AZ (US);

Lokesh M. Gupta, Tucson, AZ (US);

Kevin J. Ash, Tucson, AZ (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/56 (2013.01); G06F 12/14 (2006.01);
U.S. Cl.
CPC ...
G06F 21/56 (2013.01); G06F 12/1458 (2013.01); G06F 2212/1052 (2013.01); G06F 2221/034 (2013.01);
Abstract

Provided are a computer program product, system, and method for using trap cache segments to detect malicious processes. A trap cache segment to the cache for data in the storage and indicated as a trap cache segment. Cache segments are added to the cache having data from the storage that are not indicated as trap cache segments. A memory function call from a process executing in the computer system reads data from a region of a memory device to output the read data to a buffer of the memory device. A determination is made as to whether the region of the memory device includes the trap cache segment. The memory function call is blocked and the process is treated as a potentially malicious process in response to determining that the region includes the trap cache segment.


Find Patent Forward Citations

Loading…