US Patent Application 17727896. Vulnerability Mitigation Resource Running Embedded Operating System on Hybrid Core simplified abstract

From WikiPatents
Jump to navigation Jump to search

Vulnerability Mitigation Resource Running Embedded Operating System on Hybrid Core

Organization Name

Dell Products L.P.


Inventor(s)

Shekar Babu Suryanarayana of Bangalore (IN)


Sumanth Vidyadhara of Bangalore (IN)


Vulnerability Mitigation Resource Running Embedded Operating System on Hybrid Core - A simplified explanation of the abstract

  • This abstract for appeared for US patent application number 17727896 Titled 'Vulnerability Mitigation Resource Running Embedded Operating System on Hybrid Core'

Simplified Explanation

This abstract describes a method for managing vulnerabilities in an information handling system. During the operation of the system, vulnerability information is collected to identify potentially vulnerable resources. A vulnerability determination code (VDC) is then calculated based on this information, which indicates a scan zone that includes different components corresponding to different regions of the vulnerable resources. After a system reset, a vulnerability aware (VA) boot sequence is performed. This sequence determines whether to perform a comprehensive vulnerability detection (CVD) boot, which involves booting a separate operating system dedicated to conducting a targeted vulnerability assessment. This dedicated operating system, known as an embedded OS (EOS), scans the specific scan zone components indicated by the VDC.


Original Abstract Submitted

A vulnerability management method acquires, during an OS runtime of an information handling system, vulnerability information indicating potentially vulnerable resources of the system. Disclosed methods calculate a vulnerability determination code (VDC) based on the vulnerability information. The VDC may indicate a scan zone that includes one or more scan zone components. Each component may correspond to a region of a potentially vulnerable resource. After a system reset, disclosed methods may perform a vulnerability aware (VA) boot sequence. The VA boot sequence may include, prior to booting a runtime operating system, determining, in accordance with the vulnerability information, whether to perform a comprehensive vulnerability detection (CVD) boot. A CVD boot refers to a boot sequence configured to boot a distinct operating system dedicated to performing a targeted vulnerability assessment that includes scanning the scan zone components indicated by the VDC. This dedicated OS may be implemented as an embedded OS (EOS).