US 12,462,002 B2
Device protection using pre-execution command interception and user authentication
Yevgeni Gehtman, Modi'in (IL); Tomer Shachar, Beer-Sheva (IL); and Maxim Balin, Gan-Yavne (IL)
Assigned to Dell Products L.P., Round Rock, TX (US)
Filed by Dell Products L.P., Round Rock, TX (US)
Filed on Dec. 15, 2022, as Appl. No. 18/081,765.
Prior Publication US 2024/0202295 A1, Jun. 20, 2024
Int. Cl. G06F 21/31 (2013.01)
CPC G06F 21/31 (2013.01) 20 Claims
OG exemplary drawing
 
1. A method, comprising:
obtaining, by at least one software entity associated with an operating system kernel of at least one processing device comprising a processor coupled to a memory, a request from a user to execute at least one command;
determining, by the at least one software entity associated with the operating system kernel, subsequent to the obtaining and prior to an execution of the at least one obtained command, whether the at least one obtained command is a command of at least one designated command type requiring a multi-factor authentication,
wherein the determining further comprises one or more designated command properties and one or more designated command criteria, of the at least one obtained command, that identify commands of the designated command type, wherein commands of the at least one designated command type require a multi-factor authentication of a user that submitted the respective command prior to an execution of the respective command;
initiating a multi-factor authentication of the user, following the obtaining the request from the user and prior to the execution of the at least one command, in response to determining that the at least one obtained command is a command of the at least one designated command type requiring the multi-factor authentication; and
initiating an execution of the at least one command based at least in part on a result of the multi-factor authentication of the user.