CN102231745A - Safety system and method for network application - Google Patents

Safety system and method for network application Download PDF

Info

Publication number
CN102231745A
CN102231745A CN201110191147XA CN201110191147A CN102231745A CN 102231745 A CN102231745 A CN 102231745A CN 201110191147X A CN201110191147X A CN 201110191147XA CN 201110191147 A CN201110191147 A CN 201110191147A CN 102231745 A CN102231745 A CN 102231745A
Authority
CN
China
Prior art keywords
user
current accessed
website
url
network application
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201110191147XA
Other languages
Chinese (zh)
Inventor
季昕华
夏红卫
吴锐
杨晖
张贇
林金明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shengqu Information Technology (Shanghai) Co., Ltd.
Original Assignee
Shanda Computer Shanghai Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanda Computer Shanghai Co Ltd filed Critical Shanda Computer Shanghai Co Ltd
Priority to CN201110191147XA priority Critical patent/CN102231745A/en
Publication of CN102231745A publication Critical patent/CN102231745A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

The invention provides a safety system and a method for network application. A client of a safety system of network application is activated by registration of the network application; input information of a user is monitored by a monitoring module; a determination module determines whether there is an account number or a username of the network application in the input information of the user, so that it can be determined whether a present access website is a fishing website; an alarming prompt is rapidly issued to the user by a prompt module and an unknown URL of the present access website is reported for examination so as to update a monochrome list database with the examined URL of the present access website. Therefore, correct rates of identification of a fishing website and prevention of access can be improved; probability of a huge loss caused by pilferage of an account number of the network application of the user can be reduced substantially; besides, the method has advantages of wide coverage, a plurality of channels for notification and high timeliness.

Description

A kind of safety system of network application and method
Technical field
The present invention relates to the IT security fields, relate in particular to a kind of safety system and method for network application.
Background technology
So-called " fishing website " is a kind of network fraud behavior, refer to that the lawless person utilizes various means, the URL of counterfeit true website (is a URL(uniform resource locator), claim web page address again) and content of pages, perhaps utilize the leak on the true Website server program in some webpage of website, to insert dangerous HTML code, lure that the user inputs number of the account, password etc. into, gain the private data in family by cheating with this.
Online game (OnlineGame) claims " game on line " again, be called for short " network game ", finger is transmission medium with the Internet, with recreation carrier server and subscriber computer is processing terminal, with the game client software be the information interaction window be intended to realize amusement, leisure, exchange and obtain the individuality MMOG that just invents with sustainability.
And at present, during user's internet usage vigilance of self and sense of risk generally a little less than, induced by social engineering means such as fishing website, spoofing, not clear mails easily, visit number of the account, user name and the password of some unofficial fishing website input network games, cause the network game account stolen, cause loss economically.
Take precautions against deception and the attack of fishing website to user's network game account in the prior art, the means that reduce the stolen rate of network game account generally have following two kinds:
1, the network game operator is to prevent that the user from entering fishing website mainly is by technology such as education, prompting, the filtration of service end spoofing or non-technological means user's number of the account to be protected.
2, third party's security client, as the online fail-safe software, by built-in blacklist strategy, find then to report to the police with the website of blacklist coupling in supervisory user browser website.
There are following several point defects in above-mentioned means:
1, user's educational costs height, coverage rate are wide inadequately, can only relate to partly user.
2, message source is too many, can't thoroughly close down, and for example the user might land on the PC terminal receiving a spoofing on the mobile phone terminal fully.
3, third party's security client is owing to can't accurately know the number of the account title that the user plays, so input of the judgement user of hommization more, can only rely on the blacklist of URL to judge, has certain retardance, and the blacklist of this type of URL is generally collected by third party's security client oneself or information etc. is shared by anti-phishing alliance, renewal speed is slow, breaks away from the user and uses in real time.
Summary of the invention
The object of the present invention is to provide a kind of safety system and method for network application, can effectively discern fishing website and point out the user, reduce the stolen probability that causes huge loss of number of the account of user's network application.
For addressing the above problem, the present invention proposes a kind of safety system of network application, comprising: be installed in the subscriber terminal equipment system client and with the system server of described system client interactive communication, wherein,
Described system server is used to store and upgrade the black and white lists storehouse of website, and the blacklist in the described black and white lists storehouse comprises the URL of the fishing website of having examined, and the white list in the described black and white lists storehouse comprises the URL of the security website that has examined;
Described system client comprises:
Monitor module, be used for real-time listening user's input information;
Judge module is used for judging whether described input information includes the number of the account or the user name of described network application; If not, described monitoring module continues the input information of monitoring users; If, described judge module judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module extracts the URL of current accessed website and judges described current accessed website is in described blacklist or white list;
Reminding module, be used for blocking described current accessed website according to the final judged result of described judge module, or allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server to the user.
Further, when the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the described black and white lists storehouse.
Further, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module continued the number of times of the described current accessed of visit website to described system server report of user.
Further, described system server also is used to store user's effective information, and described user's effective information comprises one or more of registration ID, phone number, mail account and instant communication client account.
Further, described reminding module also is used for using notice by one or more of mobile phone, mail and instant communication client unusually to the account that the user sends network application.
Further, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module used notice unusually to the account that the user sends described network application.
Further, when the URL of described current accessed website was not in described blacklist and white list, described reminding module used notice unusually to the account that the user sends described network application.
Further, the safety system of described network application comprises that also reception activates the unit, is used for receiving the number of the account or the user name of the account of described network application after the account login of described network application, activates described system client.
Further, described network application is online game, microblogging, blog, forum, personal space, network trading user side or instant communication client.
Accordingly, the present invention also provides a kind of method of using the safety system of above-mentioned network application, may further comprise the steps:
Login described network application and start described system client, the input information of described monitoring module monitoring users;
Described judge module is judged number of the account or the user name that whether includes described network application in the described input information, and if not, described monitoring module continues the input information of monitoring users; If, described judge module judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module extracts the URL of current accessed website and judges described current accessed website is in described blacklist or white list;
Described reminding module is blocked described current accessed website according to the final judged result of described judge module, or allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server to the user.
Further, when the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the blacklist or white list in described black and white lists storehouse.
Compared with prior art, the safety system of network application of the present invention and method, activate the system client of the safety system of described network application by the login of described network application, monitor module real-time listening user input, judge module judges that number of the account that whether described network application is arranged in user's the input or user name are to judge whether the current accessed website is fishing website, send vigilant prompting and report audit to be updated in the described black and white lists storehouse the unknown URL of current accessed website to the user rapidly by reminding module, improve the identification fishing website and stoped the accuracy of visiting, reduce the stolen probability that causes huge loss of number of the account of user's network application greatly, broad covered area, the advice method channel is many, the promptness height.
Description of drawings
Fig. 1 is the structural representation of the safety system of network application of the present invention;
Fig. 2 is the operational flowchart of the safety system of application network application of the present invention.
Embodiment
Be described in further detail below in conjunction with the safety system and the method for the drawings and specific embodiments the network application of the present invention's proposition.
As shown in Figure 1, the present invention proposes a kind of safety system of network application, comprising: be installed in the subscriber terminal equipment system client 1 and with the system server 2 of described system client 1 interactive communication, wherein,
Described system server 2 is used to store and upgrade the black and white lists storehouse 21 of website, and the blacklist in the described black and white lists storehouse 21 comprises the URL of the fishing website of having examined, and the white list in the described black and white lists storehouse comprises the URL of the security website that has examined; Described system client 1 comprises monitors module 11, judge module 12, reminding module 13.
Monitor module 11, be used for real-time listening user's input information;
Judge module 12 is used for judging whether described input information includes the number of the account or the user name of described network application; If not, described monitoring module 11 continues the input information of monitoring users; If, described judge module 12 judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module 12 extracts the URL of current accessed websites and judges described current accessed website is in described blacklist or white list;
Reminding module 13, be used for blocking described current accessed website according to the final judged result of described judge module 12, allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server 2 to the user
When the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the blacklist or white list in described black and white lists storehouse.
Preferably, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module can also continue the number of times of the described current accessed of visit website to described system server report of user; Described system server is also stored user's effective information, comprise one or more that register ID, phone number, mail account and instant communication client account, when the URL of described current accessed website in described blacklist, when the user selects to continue the described current accessed of visit website, or when the URL of described current accessed website was not in described blacklist and white list, described reminding module also used notice by one or more of mobile phone, mail and instant communication client to the account that the user sends network application unusually.
Preferably, the safety system of described network application comprises that also reception activates the unit, is used for receiving the number of the account or the user name of the account of described network application after the account login of network application, activates described system client.
Need to prove that whether the URL that the URL that judge module 12 is judged the current accessed website can judge the current accessed website whether in described blacklist or white list the time earlier in blacklist, if not, continues to judge whether in described white list; Whether the URL that also can judge the current accessed website earlier in white list, if not, continues to judge whether in described blacklist.
Accordingly, the present invention also provides a kind of method of using the safety system of above-mentioned network application.
As shown in Figure 3, the method for the safety system of the above-mentioned network application of application provided by the invention may further comprise the steps:
Login described network application and start described system client, the input information of described monitoring module monitoring users;
Described judge module is judged number of the account or the user name that whether includes described network application in the described input information, and if not, described monitoring module continues the input information of monitoring users; If, described judge module judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module extracts the URL of current accessed website and judges described current accessed website is in described blacklist or white list;
Described reminding module is blocked described current accessed website according to the final judged result of described judge module, allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server to the user.
In the present embodiment, whether the URL that judge module is judged the current accessed website in described blacklist or white list the time, and whether the URL that judges earlier the current accessed website in blacklist, if not, continues to judge whether in described white list.
When the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the blacklist or white list in described black and white lists storehouse.
Preferably, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module can also continue the number of times of the described current accessed of visit website to described system server report of user; Described system server is also stored user's effective information, comprise one or more that register ID, phone number, mail account and instant communication client account, when the URL of described current accessed website in described blacklist, when the user selects to continue the described current accessed of visit website, or when the URL of described current accessed website was not in described blacklist and white list, described reminding module also used notice by one or more of mobile phone, mail and instant communication client to the account that the user sends described network application unusually; The safety system of described network application comprises that also reception activates the unit, and after the logging in network application, described reception activates number of the account or the user name that the unit receives the account of described network application, activates described system client.
Described network application is online game, microblogging, blog, forum, personal space, network trading user side or instant communication client.
With online game (being called for short " network game ") is example, further elaborates anti-fishing principle.
The user needs to input the number of the account or the user name of network game in game process, and this number of the account or user name have only online game system to get, the present invention activates the system client of the safety system of network application by the network game login, monitor the input information of module real-time listening user keyboard, judge module is by judging in described input information place process and the input information whether network game number of the account or user name are arranged, and the very first time filters out most non-fishing website; Secondly, the user might use the number of the account or the user name of network game fully on the similar legitimate site in the Internet, and as google, Baidu etc., judge module filters by the white list of system server, can be with large quantities of normal websites filter out the reduction False Rate once more; Moreover, when the URL in the current accessed website does not all belong to blacklist and white list, the URL that is the current accessed website is the situation of unknown URL, and the user imports the number of the account or the user name of network game on this website, send vigilant prompting to the user rapidly by reminding module, and report audit to be updated in the described black and white lists storehouse the unknown URL of current accessed website, improve the identification fishing website and stoped the accuracy of visiting, reduced user's the stolen probability that causes huge loss of network game number of the account greatly.
In sum, the safety system of network application of the present invention and method are applicable to various users, and educational costs reduces, broad covered area, and the advice method channel is many, the promptness height.
Obviously, those skilled in the art can carry out various changes and modification to invention and not break away from the spirit and scope of the present invention.Like this, if of the present invention these are revised and modification belongs within the scope of claim of the present invention and equivalent technologies thereof, then the present invention also is intended to comprise these changes and modification interior.

Claims (18)

1. the safety system of a network application is characterized in that, comprising: be installed in the subscriber terminal equipment system client and with the system server of described system client interactive communication, wherein,
Described system server is used to store and upgrade the black and white lists storehouse of website, and the blacklist in the described black and white lists storehouse comprises the URL of the fishing website of having examined, and the white list in the described black and white lists storehouse comprises the URL of the security website that has examined;
Described system client comprises:
Monitor module, be used for real-time listening user's input information;
Judge module is used for judging whether described input information includes the number of the account or the user name of described network application; If not, described monitoring module continues the input information of monitoring users; If, described judge module judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module extracts the URL of current accessed website and judges described current accessed website is in described blacklist or white list;
Reminding module, be used for blocking described current accessed website according to the final judged result of described judge module, or allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server to the user.
2. the safety system of network application as claimed in claim 1 is characterized in that, when the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the blacklist or white list in described black and white lists storehouse.
3. the safety system of network application as claimed in claim 2, it is characterized in that, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module continued the number of times of the described current accessed of visit website to described system server report of user.
4. the safety system of network application as claimed in claim 1, it is characterized in that, described system server also is used to store user's effective information, and described user's effective information comprises one or more of registration ID, phone number, mail account and instant communication client account.
5. the safety system of network application as claimed in claim 4 is characterized in that, described reminding module also is used for using notice by one or more of mobile phone, mail and instant communication client unusually to the account that the user sends described network application.
6. the safety system of network application as claimed in claim 5, it is characterized in that, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module used notice unusually to the account that the user sends described network application.
7. the safety system of network application as claimed in claim 5 is characterized in that, when the URL of described current accessed website was not in described blacklist and white list, described reminding module used notice unusually to the account that the user sends described network application.
8. as the safety system of each described network application in the claim 1 to 7, it is characterized in that, also comprise receiving and activate the unit, be used for after the account login of described network application, receive the number of the account or the user name of the account of described network application, activate described system client.
9. as the safety system of each described network application in the claim 1 to 7, it is characterized in that described network application is online game, microblogging, blog, forum, personal space, network trading user side or instant communication client.
10. an application rights requires the method for the safety system of 1 described network application, it is characterized in that, comprising:
Login described network application and start described system client, the input information of described monitoring module monitoring users;
Described judge module is judged number of the account or the user name that whether includes described network application in the described input information, and if not, described monitoring module continues the input information of monitoring users; If, described judge module judges whether the process at described input information place is browser, and if not, above-mentioned judgement circulates, if whether the URL that described judge module extracts the URL of current accessed website and judges described current accessed website is in described blacklist or white list;
Described reminding module is blocked described current accessed website according to the final judged result of described judge module, allow the user to continue to visit described current accessed website, or carry out indicating risk and report the URL of described current accessed website for audit to described system server to the user.
11. method as claimed in claim 10 is characterized in that, when the URL of described current accessed website was in described white list, described reminding module allowed the user to continue to visit described current accessed website;
When the URL of described current accessed website is in described blacklist, described reminding module is blocked described current accessed website and is allowed the user select whether to continue to visit described current accessed website, if the user selects, described reminding module allows the user to continue to visit described current accessed website, if the user selects not, described reminding module is closed described current accessed website;
When the URL of described current accessed website is not in described blacklist and white list, described reminding module allows the user to continue to visit described current accessed website, but the URL that reports described current accessed website to the vigilant fishing website of user prompt and to described system server is for audit, and the URL of the described current accessed website that described system server will have been examined is updated in the described black and white lists storehouse.
12. method as claimed in claim 11, it is characterized in that, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module continued the number of times of the described current accessed of visit website to described system server report of user.
13. method as claimed in claim 10 is characterized in that, described system server also is used to store user's effective information, and described user's effective information comprises one or more of registration ID, phone number, mail account and instant communication client account.
14. method as claimed in claim 13 is characterized in that, described reminding module also is used for using notice by one or more of mobile phone, mail and instant communication client unusually to the account that the user sends described network application.
15. method as claimed in claim 14, it is characterized in that, when the URL of described current accessed website in described blacklist, when the user selected to continue the described current accessed of visit website, described reminding module used notice unusually to the account that the user sends described network application.
16. method as claimed in claim 14 is characterized in that, when the URL of described current accessed website was not in described blacklist and white list, described reminding module used notice unusually to the account that the user sends described network application.
17., it is characterized in that after the described network application of login, described reception activates number of the account or the user name that the unit receives the account of described network application, starts described system client as each described method in the claim 10 to 16.
18., it is characterized in that described network application is online game, microblogging, blog, forum, personal space, network trading user side or instant communication client as each described method in the claim 10 to 16.
CN201110191147XA 2011-07-08 2011-07-08 Safety system and method for network application Pending CN102231745A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110191147XA CN102231745A (en) 2011-07-08 2011-07-08 Safety system and method for network application

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110191147XA CN102231745A (en) 2011-07-08 2011-07-08 Safety system and method for network application

Publications (1)

Publication Number Publication Date
CN102231745A true CN102231745A (en) 2011-11-02

Family

ID=44844278

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110191147XA Pending CN102231745A (en) 2011-07-08 2011-07-08 Safety system and method for network application

Country Status (1)

Country Link
CN (1) CN102231745A (en)

Cited By (30)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102546618A (en) * 2011-12-29 2012-07-04 北京神州绿盟信息安全科技股份有限公司 Method, device, system and website for detecting fishing website
CN102638448A (en) * 2012-02-27 2012-08-15 珠海市君天电子科技有限公司 Method for judging phishing websites based on non-content analysis
CN102710646A (en) * 2012-06-06 2012-10-03 珠海市君天电子科技有限公司 Method and system for collecting phishing websites
CN102724190A (en) * 2012-06-11 2012-10-10 腾讯科技(深圳)有限公司 Method and device for blocking and prompting malicious URL (uniform resource locator)
CN102760215A (en) * 2012-06-27 2012-10-31 北京奇虎科技有限公司 Method and system for unlocking user interface based on image identification
CN102769632A (en) * 2012-07-30 2012-11-07 珠海市君天电子科技有限公司 Method and system for grading detection and prompt of fishing website
CN103106369A (en) * 2013-01-22 2013-05-15 西安Tcl软件开发有限公司 File sharing method and device based on media server
CN103152354A (en) * 2013-03-19 2013-06-12 北京奇虎科技有限公司 Method and system for promoting dangerous website and client device
CN103425926A (en) * 2012-05-14 2013-12-04 腾讯科技(深圳)有限公司 Application program starting method, list configuring method, terminal and server
CN103428186A (en) * 2012-05-24 2013-12-04 中国移动通信集团公司 Method and device for detecting phishing website
CN103516693A (en) * 2012-06-28 2014-01-15 中国电信股份有限公司 Method and device for identifying phishing website
WO2014012471A1 (en) * 2012-07-17 2014-01-23 Tencent Technology (Shenzhen) Company Limited Method, system and client terminal for detection of phishing websites
CN103631805A (en) * 2012-08-24 2014-03-12 腾讯科技(深圳)有限公司 Method and device for displaying search result
CN103905394A (en) * 2012-12-27 2014-07-02 腾讯科技(深圳)有限公司 Method and device for protecting user information
CN103916371A (en) * 2013-01-06 2014-07-09 阿里巴巴集团控股有限公司 Webpage security monitoring method and client
CN104243460A (en) * 2014-09-03 2014-12-24 飞天诚信科技股份有限公司 Anti-phishing method
CN104486454A (en) * 2014-11-24 2015-04-01 北京百度网讯科技有限公司 Network data processing method and domain name resolution method and device
CN104580155A (en) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 Safety protection method
WO2015058640A1 (en) * 2013-10-24 2015-04-30 腾讯科技(深圳)有限公司 Secure access method, system and apparatus
CN104954332A (en) * 2014-03-27 2015-09-30 腾讯科技(深圳)有限公司 Website identification method and device
CN105005722A (en) * 2015-06-26 2015-10-28 北京北信源软件股份有限公司 Access control method and apparatus for mobile storage device
CN105282112A (en) * 2014-07-15 2016-01-27 中兴通讯股份有限公司 Terminal and method for detecting security of data interaction in terminal
CN105561580A (en) * 2015-12-24 2016-05-11 北京奇虎科技有限公司 Network protecting method and device based on game platform
CN106559395A (en) * 2015-09-29 2017-04-05 北京东土军悦科技有限公司 A kind of data message detection method and device based on industrial network
CN106650447A (en) * 2016-12-28 2017-05-10 北京安天电子设备有限公司 Method and system for preventing PowerShell malicious code execution
CN108076027A (en) * 2016-11-16 2018-05-25 蓝盾信息安全技术有限公司 A kind of adaptive black and white lists access control method and system based on attribute
WO2018166318A1 (en) * 2017-03-17 2018-09-20 平安科技(深圳)有限公司 Method and device for displaying website, and computer readable storage medium
CN109525586A (en) * 2018-11-29 2019-03-26 杭州迪普科技股份有限公司 Security policy configuration method and device based on URL
CN109831492A (en) * 2013-08-14 2019-05-31 华为技术有限公司 Access the method and device of OTT application, server push message
CN115277222A (en) * 2022-07-29 2022-11-01 中国电信股份有限公司 Method and device for blocking Uniform Resource Locator (URL) information and electronic equipment

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101155028A (en) * 2006-09-26 2008-04-02 阿里巴巴公司 Method and system for safe login of website
CN101222481A (en) * 2007-01-09 2008-07-16 阿里巴巴公司 Method and client terminal for safely submitting user information
CN101600207A (en) * 2009-06-18 2009-12-09 中兴通讯股份有限公司 A kind of SP access control method and system based on WAP
CN101714272A (en) * 2009-11-19 2010-05-26 北京邮电大学 Method for protecting number and password of bank card from stealing by phishing website

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101155028A (en) * 2006-09-26 2008-04-02 阿里巴巴公司 Method and system for safe login of website
CN101222481A (en) * 2007-01-09 2008-07-16 阿里巴巴公司 Method and client terminal for safely submitting user information
CN101600207A (en) * 2009-06-18 2009-12-09 中兴通讯股份有限公司 A kind of SP access control method and system based on WAP
CN101714272A (en) * 2009-11-19 2010-05-26 北京邮电大学 Method for protecting number and password of bank card from stealing by phishing website

Cited By (40)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102546618A (en) * 2011-12-29 2012-07-04 北京神州绿盟信息安全科技股份有限公司 Method, device, system and website for detecting fishing website
CN102638448A (en) * 2012-02-27 2012-08-15 珠海市君天电子科技有限公司 Method for judging phishing websites based on non-content analysis
CN103425926B (en) * 2012-05-14 2016-02-24 腾讯科技(深圳)有限公司 The method of application program launching method, configured list, terminal and server
CN103425926A (en) * 2012-05-14 2013-12-04 腾讯科技(深圳)有限公司 Application program starting method, list configuring method, terminal and server
CN103428186A (en) * 2012-05-24 2013-12-04 中国移动通信集团公司 Method and device for detecting phishing website
CN102710646A (en) * 2012-06-06 2012-10-03 珠海市君天电子科技有限公司 Method and system for collecting phishing websites
CN102710646B (en) * 2012-06-06 2016-08-03 珠海市君天电子科技有限公司 Method and system for collecting phishing websites
CN102724190A (en) * 2012-06-11 2012-10-10 腾讯科技(深圳)有限公司 Method and device for blocking and prompting malicious URL (uniform resource locator)
CN102724190B (en) * 2012-06-11 2016-01-06 腾讯科技(深圳)有限公司 Malice URL tackles reminding method and device
CN102760215A (en) * 2012-06-27 2012-10-31 北京奇虎科技有限公司 Method and system for unlocking user interface based on image identification
CN103516693A (en) * 2012-06-28 2014-01-15 中国电信股份有限公司 Method and device for identifying phishing website
WO2014012471A1 (en) * 2012-07-17 2014-01-23 Tencent Technology (Shenzhen) Company Limited Method, system and client terminal for detection of phishing websites
US9210189B2 (en) 2012-07-17 2015-12-08 Tencent Technology (Shenzhen) Company Limited Method, system and client terminal for detection of phishing websites
CN102769632A (en) * 2012-07-30 2012-11-07 珠海市君天电子科技有限公司 Method and system for grading detection and prompt of fishing website
CN103631805A (en) * 2012-08-24 2014-03-12 腾讯科技(深圳)有限公司 Method and device for displaying search result
CN103905394A (en) * 2012-12-27 2014-07-02 腾讯科技(深圳)有限公司 Method and device for protecting user information
CN103916371A (en) * 2013-01-06 2014-07-09 阿里巴巴集团控股有限公司 Webpage security monitoring method and client
CN103106369A (en) * 2013-01-22 2013-05-15 西安Tcl软件开发有限公司 File sharing method and device based on media server
CN103152354B (en) * 2013-03-19 2015-12-02 北京奇虎科技有限公司 To method, system and client device that dangerous website is pointed out
CN103152354A (en) * 2013-03-19 2013-06-12 北京奇虎科技有限公司 Method and system for promoting dangerous website and client device
CN109831492A (en) * 2013-08-14 2019-05-31 华为技术有限公司 Access the method and device of OTT application, server push message
CN109831492B (en) * 2013-08-14 2021-06-22 华为技术有限公司 Method and device for accessing OTT application and server push message
WO2015058640A1 (en) * 2013-10-24 2015-04-30 腾讯科技(深圳)有限公司 Secure access method, system and apparatus
CN104954332A (en) * 2014-03-27 2015-09-30 腾讯科技(深圳)有限公司 Website identification method and device
CN104954332B (en) * 2014-03-27 2019-08-30 腾讯科技(深圳)有限公司 A kind of recognition methods of website and device
CN105282112A (en) * 2014-07-15 2016-01-27 中兴通讯股份有限公司 Terminal and method for detecting security of data interaction in terminal
CN104243460B (en) * 2014-09-03 2018-04-27 飞天诚信科技股份有限公司 One kind realizes network anti-phishing method
CN104243460A (en) * 2014-09-03 2014-12-24 飞天诚信科技股份有限公司 Anti-phishing method
CN104486454B (en) * 2014-11-24 2018-07-13 北京百度网讯科技有限公司 Processing method, domain name analytic method and the device of network data
CN104486454A (en) * 2014-11-24 2015-04-01 北京百度网讯科技有限公司 Network data processing method and domain name resolution method and device
CN104580155A (en) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 Safety protection method
CN105005722A (en) * 2015-06-26 2015-10-28 北京北信源软件股份有限公司 Access control method and apparatus for mobile storage device
CN106559395B (en) * 2015-09-29 2019-12-03 北京东土军悦科技有限公司 A kind of data message detection method and device based on industrial network
CN106559395A (en) * 2015-09-29 2017-04-05 北京东土军悦科技有限公司 A kind of data message detection method and device based on industrial network
CN105561580A (en) * 2015-12-24 2016-05-11 北京奇虎科技有限公司 Network protecting method and device based on game platform
CN108076027A (en) * 2016-11-16 2018-05-25 蓝盾信息安全技术有限公司 A kind of adaptive black and white lists access control method and system based on attribute
CN106650447A (en) * 2016-12-28 2017-05-10 北京安天电子设备有限公司 Method and system for preventing PowerShell malicious code execution
WO2018166318A1 (en) * 2017-03-17 2018-09-20 平安科技(深圳)有限公司 Method and device for displaying website, and computer readable storage medium
CN109525586A (en) * 2018-11-29 2019-03-26 杭州迪普科技股份有限公司 Security policy configuration method and device based on URL
CN115277222A (en) * 2022-07-29 2022-11-01 中国电信股份有限公司 Method and device for blocking Uniform Resource Locator (URL) information and electronic equipment

Similar Documents

Publication Publication Date Title
CN102231745A (en) Safety system and method for network application
CN102299918A (en) Network transaction safety system and method thereof
US10339298B2 (en) Weak password support in a multi-user environment
US20190215330A1 (en) Detecting attacks on web applications using server logs
RU2510982C2 (en) User evaluation system and method for message filtering
CN106529288A (en) Account risk identification method and device
CN101714272B (en) Method for protecting number and password of bank card from stealing by phishing website
CN108295477B (en) Game account safety detection method, system and device based on big data
US20110289597A1 (en) Method and Apparatus for Remediating Unauthorized Sharing of Account Access to Online Resources
US20090216795A1 (en) System and method for detecting and blocking phishing attacks
CN103685289B (en) Method and device for detecting phishing website
WO2017214427A1 (en) Detection and prevention of fraudulent activity on social media accounts
CN109698809A (en) A kind of recognition methods of account abnormal login and device
CN105119909A (en) Fake website detection method and fake website detection system based on page visual similarity
CN103136255A (en) Method and device for information management
Abroshan et al. Phishing attacks root causes
Njilla et al. Game theoretic modeling of security and trust relationship in cyberspace
Schrittwieser et al. Ethics in security research which lines should not be crossed?
CN113987508A (en) Vulnerability processing method, device, equipment and medium
Zhang A comparative study on sanction system of cyber aider from perspectives of German and Chinese criminal law
Garba et al. The Current state of cybersecurity readiness in Nigeria organizations
Lee Understanding security threats in virtual worlds
CN112702349B (en) Network attack defense method and device and electronic bidding transaction platform
CN115168830A (en) Login method and login device for detecting user login environment
CN113986843A (en) Data risk early warning processing method and device and electronic equipment

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
ASS Succession or assignment of patent right

Owner name: SHENGQU INFORMATION TECH (SHANGHAI) CO., LTD.

Free format text: FORMER OWNER: SHANDA NETWORKING CO., LTD.

Effective date: 20130926

C41 Transfer of patent application or patent right or utility model
COR Change of bibliographic data

Free format text: CORRECT: ADDRESS; FROM: 201203 PUDONG NEW AREA, SHANGHAI TO: 200241 MINHANG, SHANGHAI

TA01 Transfer of patent application right

Effective date of registration: 20130926

Address after: 200241 No. 1, building 690, blue wave road, Zhangjiang hi tech park, Shanghai

Applicant after: Shengqu Information Technology (Shanghai) Co., Ltd.

Address before: 201203 712-A room, No. 625 Zhangjiang Road, Shanghai, Pudong New Area

Applicant before: Shanda computer (Shanghai) Co., Ltd.

C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20111102