Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

4 results about "Hooking" patented technology

In computer programming, the term hooking covers a range of techniques used to alter or augment the behaviour of an operating system, of applications, or of other software components by intercepting function calls or messages or events passed between software components. Code that handles such intercepted function calls, events or messages is called a hook.

Information hooking method and device, computer device, readable storage medium and program product

This application relates to an information attachment method, apparatus, computer device, computer-readable storage medium, and computer program product. The method includes: obtaining an initial session; the initial session containing a dynamic service pointer; if a first security service in the security services is in the initial session's first attachment state, determining the target memory of the initial session; the first security service is a service in the firewall participating in the initial session processing; pointing the dynamic service pointer in the initial session to the target memory, and attaching the service extension information of the first security service to the initial session; for the next first security service in the security services, re-executing the step of determining the target memory of the initial session if the first security service in the security services is in the initial attachment state, until the service extension information of the last first security service in the security services is attached to the initial session, thus obtaining the target session. This method can improve the concurrency performance of the firewall.
Owner:CHINA TELECOM CLOUD TECH CO LTD

An Inline Hook Method and Apparatus for Compiled Languages

This application relates to an inline hooking method and apparatus for compiled languages. The method includes: responding to a received inline hooking request, determining the size of the target function to be inline hooked; determining whether the target function can be inline hooked based on the size of the target function and the difference between the address of the hook function and the address of the target function; a hook function, a function used to execute the functionality of the target function by calling a jump function; when it is determined that the target function can be inline hooked, copying the instruction code of the target function to a preset memory area, and revising the content of the copied instruction code to obtain the jump function of the target function; writing a target jump instruction at the beginning of the target function, and using the target jump instruction to redirect the call to the target function to the hook function. This method solves the problem that existing inline hooking methods are not applicable to compiled languages.
Owner:ZHEJIANG DAHUA TECH CO LTD

Malicious firmware vulnerability utilization detection system based on sandbox behavior analysis

The invention relates to the technical field of malicious software protection, in particular to a malicious firmware vulnerability utilization detection system based on sandbox behavior analysis, which comprises a protocol analysis constraint establishment module for loading to-be-detected firmware according to a sandbox environment, configuring a register address range of a virtual network card and a virtual USB controller, generating a virtual peripheral protocol analysis tree, and establishing a virtual peripheral protocol analysis result; and traversing leaf nodes in the virtual peripheral protocol parse tree. According to the method, in combination with interrupt time sequence discrete analysis, the hidden interrupt hooking behavior can be recognized from the microscopic time dimension by continuously recording the instruction execution clock cycle number corresponding to the target interrupt vector and calculating the time-consuming window and the dispersion value, and the limitation that a traditional sandbox only pays attention to the function level is overcome; malicious codes hidden in a bottom layer are pulled out by using the time sequence side channel characteristics, so that the detection success rate and the false alarm suppression capability aiming at unknown vulnerability utilization and persistent attacks of firmware are improved, and the deep security threat of embedded equipment is perceived.
Owner:GUANGZHOU WEIAN TECHNOLOGY CO LTD

Portable power tools

PendingJP2026110813AAcute anglePortable power
To provide a portable power tool that allows for an easily visible information display area without increasing the size of the machine. [Solution] The hook 30 is substantially L-shaped with a bent portion 31, and comprises a hook base 32 on the grip 11 side of the bent portion 31, and a hooking portion 36 on the tip side of the bent portion 31. When viewed from the direction of extension of the hooking portion 36, with the bent portion 31 side being the upward direction, the tip direction of the hooking portion 36 being the downward direction, the direction perpendicular to the upward and downward direction and when viewed from the direction of extension of the hook base 32, with the bent portion 31 side being the forward direction, the opposite direction of the forward direction being the backward direction, and the direction perpendicular to both the upward and downward direction and the forward and backward direction being the left and right direction, at least a part of the hook base 32 extends diagonally in a direction that forms an acute angle with respect to the direction of extension of the hooking portion 36.
Owner:MAX CO LTD