发明授权
US07827311B2 Client side protection against drive-by pharming via referrer checking
有权
客户端通过引荐来源检查来防范驱动程序
- 专利标题: Client side protection against drive-by pharming via referrer checking
- 专利标题(中): 客户端通过引荐来源检查来防范驱动程序
-
申请号: US11746188申请日: 2007-05-09
-
公开(公告)号: US07827311B2公开(公告)日: 2010-11-02
- 发明人: Shaun Cooley , Rowan Trollope
- 申请人: Shaun Cooley , Rowan Trollope
- 申请人地址: US CA Mountain View
- 专利权人: Symantec Corporation
- 当前专利权人: Symantec Corporation
- 当前专利权人地址: US CA Mountain View
- 代理机构: Gunnison, McKay & Hodgson, L.L.P.
- 代理商 Forrest Gunnison
- 主分类号: G06F15/16
- IPC分类号: G06F15/16 ; G06F15/173 ; G06F11/00
摘要:
HTTP requests initiated from a web browser of a client computer system are proxied prior to release to a router, such as a home router. HTTP requests identifying a referrer URL corresponding to routable, public IP address and a target URL corresponding to a non-routable, private IP address are determined to be indicative of a drive-by pharming attack, and are blocked from sending to the router. HTTP requests not identifying a referrer URL corresponding to a routable, public IP address and a target URL corresponding to a non-routable, private IP address, the HTTP request are not determined to be indicative of a drive-by pharming attack, and are released for sending to the router. In some embodiments, an HTTP response received in response to a released HTTP request is proxied prior to release to the web browser. An HTTP response having content of type text/html or script is modified as indicated to prevent malicious activity and released to the web browser.
公开/授权文献
信息查询