US 12,143,362 B2
Context-aware service query filtering
Vasantha Kumar Dhanasekar, Pune (IN); Shirish Vijayvargiya, Pune (IN); and Leena Shuklendu Soman, Pune (IN)
Assigned to VMware LLC, Palo Alto, CA (US)
Filed by VMWARE, INC., Palo Alto, CA (US)
Filed on Feb. 17, 2022, as Appl. No. 17/673,841.
Claims priority of application No. 202141060246 (IN), filed on Dec. 23, 2021.
Prior Publication US 2023/0208810 A1, Jun. 29, 2023
Int. Cl. G06F 21/00 (2013.01); H04L 9/40 (2022.01); G06F 9/455 (2018.01); G06F 9/50 (2006.01); G06F 21/56 (2013.01)
CPC H04L 63/0254 (2013.01) [H04L 63/1491 (2013.01); H04L 63/205 (2013.01)] 21 Claims
OG exemplary drawing
 
1. A method, comprising:
intercepting a service query from a virtualized computing instance supported by the computer system to pause forwarding of the service query towards a destination;
obtaining, from a guest introspection agent running on a guest operating system of the virtualized computing instance, context information collected by the guest introspection agent and associated with an application, wherein the service query originates from the application running on the virtualized computing instance and the context information comprises information additional to an identity of the application; and
in response to determination that the service query is a potential security threat based on the context information, performing service query filtering to inspect the service query for malicious activity;
otherwise, in response to determination that the service query is not a potential security threat based on the context information, skipping the service query filtering and allowing forwarding of the service query towards the destination.