METHOD AND SYSTEM FOR CONTROLLING ACCESS TO CONFIDENTIAL INFORMATION IN OPERATING SYSTEM Russian patent published in 2024 - IPC G06F21/62 

Abstract RU 2825554 C1

FIELD: computer engineering.

SUBSTANCE: technical result is achieved through steps of generating a secure file containing a label which determines file access policies, wherein the label is a set of metadata; receiving a request to perform an action with a protected file in the file system from a user application using an OS I/O manager; intercepting said request sent to OS I/O manager using filtering driver and performing its processing, during which the label data set is recognized and obtained, and the label access policies are compared with the user application data, wherein if the action with the file is allowed during said check, then control is transferred from the filtering driver to the file system driver; processing the request using the file system driver and performing the action contained in said request; returning control to the filtering driver from the file system driver and informing it about the completion of the request processing by the file system driver; returning control to the OS I/O manager from the filtering driver; if action with the file is prohibited during said check, then access to the file is blocked and control is returned to the OS I/O manager from the filtering driver.

EFFECT: higher security of access to confidential information in OS.

5 cl, 7 dwg

Similar patents RU2825554C1

Title Year Author Number
METHOD OF PROTECTING DATA IN A COMPUTING SYSTEM 2019
  • Elfimov Andrej Vladimirovich
RU2715293C1
SYSTEM AND METHOD OF INTERCEPTING FILE STREAMS 2023
  • Matveev Lev Lazarevich
RU2816551C1
SYSTEM AND METHOD OF PROTECTING COMPUTER APPLICATIONS 2011
  • Rusakov Vjacheslav Evgen'Evich
  • Shirjaev Aleksandr Vasil'Evich
RU2460133C1
METHOD OF PROTECTING AVAILABILITY AND SECURITY OF STORED DATA AND SYSTEM FOR ADJUSTABLE PROTECTION OF STORED DATA 2014
  • Kosolapov Jurij Vladimirovich
RU2584755C2
SYSTEM AND METHOD OF ISOLATING RESOURCES USING RESOURCE MANAGERS 2013
  • Moiseev Stanislav Vladimirovich
  • Ershov Mikhail Aleksandrovich
RU2571380C2
SYSTEM AND METHOD OF OPENING FILES CREATED BY VULNERABLE APPLICATIONS 2015
  • Efremov Andrej Anatolevich
  • Ladikov Andrej Vladimirovich
  • Solodovnikov Andrej Yurevich
  • Monastyrskij Aleksej Vladimirovich
RU2606883C2
METHOD AND SYSTEM FOR MAINTAINING CONFORMITY OF NAME SPACE WITH FILE SYSTEM 2005
  • Kristiansen Nil R.
  • Tkhind Ravinder S.
  • Khavevala Sarosh Sirus
RU2408060C2
MOBILE COMMUNICATION DEVICE AND METHOD FOR OPERATION THEREOF 2014
  • Stern Allon Dzh.
RU2672712C2
MOBILE COMMUNICATION DEVICE AND METHOD FOR OPERATION THEREOF 2014
  • Stern Allon Dzh.
  • Khejli Dzhon
RU2673969C2
METHOD OF AUTHORISING OPERATION TO BE PERFORMED ON TARGETED COMPUTING DEVICE 2014
  • Stern Allon Dzh.
RU2675902C2

RU 2 825 554 C1

Authors

Preobrazhenskii Evgenii Iurevich

Rodionov Denis Valentinovich

Mikhailov Anatolii Viktorovich

Dates

2024-08-27Published

2023-10-18Filed