Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

9 results about "Code signing" patented technology

Code signing is the process of digitally signing executables and scripts to confirm the software author and guarantee that the code has not been altered or corrupted since it was signed. The process employs the use of a cryptographic hash to validate authenticity and integrity.

Identifying vulnerabilities in binary files using a code signature

Techniques for identifying vulnerabilities in binary files using a code signature are disclosed. In some embodiments, a system, a process, and / or a computer program product for identifying vulnerabilities in binary files using a code signature includes collecting a plurality of binary files associated with a vulnerability (e.g., a known vulnerability); determining a function in the plurality of binary files that includes the vulnerability; and automatically generating a code signature (e.g., including wildcarding one or more instructions of the function) for detecting the vulnerability in the plurality of binary files.
Owner:PALO ALTO NETWORKS INC

Utilizing hardware tokens in conjunction with HSM for code signing

Utilizing hardware tokens in conjunction with a Hardware Security Module (HSM) for code signing includes, subsequent to storing a private key of a developer, receiving a request to sign a digest of software from the developer; receiving an approval from the developer to enable use of the private key; and responsive to the approval, encrypting and signing the digest utilizing the private key to attest the software is from the developer. The steps can further include, responsive to failing to receive the approval, denying the request. In this manner, a cloud based HSM approach can be trusted similarly to a physical hardware token approach, as well as providing the additional security benefits of an HSM over a physical hardware token.
Owner:DIGICERT INC

Digital signatures for applications within virtual machines

Techniques for securely providing a digital signature for an application within a virtual machine is disclosed. In one embodiment, the techniques are realized as a method comprising authenticating a physical machine on which the virtual machine is hosted, generating a setup token in response to authenticating the physical machine, storing data relating to the setup token, initiating a code sign client using the setup token, authenticating the code sign client using the setup token and the data relating to the setup token, storing a server security credential and a client security credential, sending a server request for a digital signature to a code sign server, sending an external request for the digital signature to an external code sign service, receiving the digital signature in response to the external request, sending the digital signature to the code sign client, and binding the digital signature to the application.
Owner:BARCLAYS EXECUTION SERVICES LTD

Automatic real user monitoring (RUM) instrumentation

Systems and methods are disclosed to develop and use a tool to enable an application package to be instrumented with automatic real user monitoring (RUM) without accessing the original source code. A package, such as Android application bundle (AAB) or Android package kit (APK), is imported and decoded and a generated source code file and / or manifest is obtained. Instrumentation is then added at a location corresponding to a code signature in the generated source code file (e.g., an operation to be instrumented before and / or after the operation). The generated source code file is then compiled and packaged into an APK and / or AAB file. The resulting application package is available for downloading, installation, and use on user devices with the instrumentation having been automatically added and without access to the original source code.
Owner:MICRO FOCUS LLC

Automated code signature generation for windows .net binaries

PendingUS20260080058A1Platform integrity maintainanceCode generationCode signing
Various embodiments provide a system, method, and device for generating a signature for Windows .NET binaries. The method incudes (i) generate a file signature based on code using a hashing technique, and (ii) classify a sample using the file signature based on the code.
Owner:PALO ALTO NETWORKS INC

Identifying vulnerabilities in binary files using a code signature

Techniques for identifying vulnerabilities in binary files using a code signature are disclosed. In some embodiments, a system, a process, and / or a computer program product for identifying vulnerabilities in binary files using a code signature includes collecting a plurality of binary files associated with a vulnerability (e.g., a known vulnerability); determining a function in the plurality of binary files that includes the vulnerability; and automatically generating a code signature (e.g., including wildcarding one or more instructions of the function) for detecting the vulnerability in the plurality of binary files.
Owner:PALO ALTO NETWORKS INC

Granular secure user access to private resources

Methods, systems and computer program products are provided for granular secure user access to private resources. Increased granularity of security policies for user access may reduce security threats to resources. Security policies indicating user access to secure resources may be based on various combinations of user identities, client-side process (e.g., sub-process) identities, device identities, device types, device locations, resource access types, intelligent access (e.g., selective traffic routing), etc. For example, a security policy may indicate user A, using computing device B executing process C with process signature S (e.g., a signing signature thumbprint, etc.) may access private resource D. A process identity may be indicated by at least one of a process name, a code signing signature, a thumbprint, a process version, or a process publisher. Resource access security policy determinations and / or enforcement may be performed by security clients and / or security engines (e.g., SASE providing ZTNA).
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Automatic code signing generation for windows.net binaries

Various embodiments provide a system, method, and apparatus for generating signatures for Windows .NET binary files. The method includes (i) generating a file signature based on code using hashing techniques, and (ii) classifying samples based on the code using the file signature.
Owner:PALO ALTO NETWORKS INC

Scalable code signature approach for control-flow integrity

A processor and methods of detecting a corrupted instruction stream within a processor include executing, by the processor, a program including a plurality of basic blocks, each of which includes a sequence of instructions to be executed by the processor without branching. The method includes implicitly initializing a first cyclic-redundancy-check (CRC) generator based on a first portion of an address of a first instruction in a first basic block and a second CRC generator based on a second portion of the address of the first instruction, generating, by the first CRC generator, a first CRC output according to a first polynomial and, by the second CRC generator, a second CRC output according to a second polynomial, and when an end of the first basic block is reached without encountering an instruction to transfer control from a first function to a second function, selectively deferring a CRC check operation.
Owner:NXP BV