CN105554144A - Application data processing method, device and system - Google Patents

Application data processing method, device and system Download PDF

Info

Publication number
CN105554144A
CN105554144A CN201510999922.2A CN201510999922A CN105554144A CN 105554144 A CN105554144 A CN 105554144A CN 201510999922 A CN201510999922 A CN 201510999922A CN 105554144 A CN105554144 A CN 105554144A
Authority
CN
China
Prior art keywords
client
application program
application
event
services package
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510999922.2A
Other languages
Chinese (zh)
Inventor
张晨
刘伟
王力
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd, Qizhi Software Beijing Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to CN201510999922.2A priority Critical patent/CN105554144A/en
Publication of CN105554144A publication Critical patent/CN105554144A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services
    • H04L67/568Storing data temporarily at an intermediate stage, e.g. caching
    • H04L67/5682Policies or rules for updating, deleting or replacing the stored data
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/54Presence management, e.g. monitoring or registration for receipt of user log-on information, or the connection status of the users

Abstract

The invention discloses an application data processing method, device and system, relating to the technical field of information. The method comprises the following steps: monitoring a client side event; judging whether the client side event is a preset client side event or not; and if so, calling an interface of an eliminating service package corresponding to an application program, such that the eliminating service package performs an eliminating operation, and eliminating application data of the application program. The application data processing method, device and system disclosed by the invention are applied to processing the application data.

Description

The processing method of application data, Apparatus and system
Technical field
The present invention relates to areas of information technology, particularly relate to a kind of processing method of application data, Apparatus and system.
Background technology
Along with the maturation of mobile terminal is with universal, progress into enterprise field with the individual mobile terminal that mobile phone, panel computer are representative, this phenomenon is called as from carrying device office (BringYourOwnDevice, BYOD).Predict according to internal authority consulting firm Gartner, will support that employee runs enterprise's office application program on individual mobile terminal to the enterprises of 2014 90%, employee uses individual mobile terminal to handle official business has become a kind of trend that cannot reverse.But this kind of phenomenon being called as BYOD (BringYourOwnDevice, from carrying device office) is that enterprise information security brings new challenge: as individual application is applied mixed with enterprise, for enterprise brings Information Security Risk; Lose or stolen mobile terminal, can bring hidden danger etc. of divulging a secret to enterprise.
At present, in order to protect enterprise information security, enterprise security manager application program occurs thereupon, wherein, and the risk etc. that enterprise security manager application program can be avoided the application data on mobile terminal illegally to be uploaded by malicious application, share and leak.Application data on described mobile terminal is the application data that on mobile terminal, application program produces in running.But, when user unload security management application program or security management application program exist abnormal time, the application data on mobile terminal still can be faced with by the risk revealed, and therefore application data is carried out removing and is very important.Usually, with the authority of user cannot the application data of application programs remove time, improve authority by the mode putting forward power, and power of carrying needs the mode of being authorized by root to realize, but in leaching process, failed situation can be there is.
Summary of the invention
In view of this, the invention provides a kind of processing method of application data, Apparatus and system, main purpose be can application programs produce application data remove.
According to one aspect of the invention, provide a kind of processing method of application data, comprising:
Client event is monitored;
Judge whether described client event is default client event;
If so, the interface of the then corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
According to another aspect of the present invention, provide the processing method of another kind of application data, comprising:
The installation kit obtaining application program encapsulates, and makes to be packaged with removing services package in described application program;
Described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
According to another aspect of the present invention, provide a kind of client, comprising:
Monitoring unit, for monitoring client event;
Judging unit, for judging whether described client event is default client event;
Call unit, if for judging that described client event is as presetting client event, the then interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, remove the application data of its place application program, wherein, removing services package is packaged with in described application program.
According to another aspect of the present invention, provide a kind of server, comprising:
Encapsulation unit, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program;
Issue unit, for described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, remove the application data of its place application program.
According to the present invention another aspect again, provide a kind for the treatment of system of application data, comprising:
Server, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program, and described application program is issued to client;
Client, for monitoring client event; Judge whether described client event is default client event; If so, the interface of the then corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
By technique scheme, the technical scheme that the embodiment of the present invention provides at least has following advantages:
The embodiment of the present invention provides a kind of processing method, Apparatus and system of application data.First client event is monitored; Judge whether described client event is default client event; If so, then call the corresponding interface removing services package in described client, described removing services package is for removing the application data of its place application program.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
Above-mentioned explanation is only the general introduction of technical solution of the present invention, in order to technological means of the present invention can be better understood, and can be implemented according to the content of specification, and can become apparent, below especially exemplified by the specific embodiment of the present invention to allow above and other objects of the present invention, feature and advantage.
Accompanying drawing explanation
By reading hereafter detailed description of the preferred embodiment, various other advantage and benefit will become cheer and bright for those of ordinary skill in the art.Accompanying drawing only for illustrating the object of preferred implementation, and does not think limitation of the present invention.And in whole accompanying drawing, represent identical parts by identical reference symbol.In the accompanying drawings:
Fig. 1 shows the process flow figure of a kind of application data that the embodiment of the present invention provides;
Fig. 2 shows the process flow figure of the another kind of application data that the embodiment of the present invention provides;
Fig. 3 shows the structural representation of a kind of client that the embodiment of the present invention provides;
Fig. 4 shows the structural representation of a kind of server that the embodiment of the present invention provides;
Fig. 5 shows the structural representation of a kind of server that the embodiment of the present invention provides;
Fig. 6 shows the structural representation of the treatment system of a kind of application data that the embodiment of the present invention provides.
Embodiment
Below with reference to accompanying drawings exemplary embodiment of the present disclosure is described in more detail.Although show exemplary embodiment of the present disclosure in accompanying drawing, however should be appreciated that can realize the disclosure in a variety of manners and not should limit by the embodiment set forth here.On the contrary, provide these embodiments to be in order to more thoroughly the disclosure can be understood, and complete for the scope of the present disclosure can be conveyed to those skilled in the art.
Before the processing method of the application data that the embodiment of the present invention provides is described, first, the system architecture of the enterprise management system of the mobile terminal that the embodiment of the present invention relies on is described.The enterprise management system of the mobile terminal that the embodiment of the present invention provides is enterprise-oriented mobile terminal enterprise management platform, comprise the service end that is deployed in corporate intranet and be arranged on the client on mobile terminal that needs are managed, in the embodiment of the present invention, the service end being deployed in corporate intranet is called server, is arranged on and needs the client on the mobile terminal that is managed to be called business administration client.Wherein:
The major function of server comprises: the application managing, issue corporate intranet, and management, issue security strategy etc., server also provides abundant mobile terminal Commitment, Accounting and Management of Unit Supply instrument, enterprise administrator can check the details of the mobile terminal that each needs are managed by server, comprise: terminal models, system version, IMEI (InternationalMobileEquipmentIdentificationNumber, international mobile equipment identification number), sequence number, MSISDN (mobile station identity number, be commonly called as phone number), whether off-line, whether Root (power user), change the password time, whether fail-safe software is installed, power information, radio network information etc.The major function of business administration client comprises: data are anti-divulges a secret, and performs security strategy etc., and anti-the divulging a secret of data comprises data encryption, data isolation etc., and the data of encryption can relate to the data in system file; Or financial sffairs paper, the data of producing in file, sale file, market file, human resources file etc. that user selectes; Can also be the data of individual subscriber file, such as: photo, video, daily record etc.
The enterprise management system of the mobile terminal that the embodiment of the present invention provides; the anti-mechanism of divulging a secret of data based on business administration client; do not affecting on the basis that enterprise staff is subject to individual application use sense; establish a safety, independently service area memory headroom on mobile terminals; service area memory headroom (abbreviation service area) refers to the memory headroom distributing to business administration client, and all enterprise's application and data are stored in shielded service area.Accordingly, memory headroom in the memory headroom of mobile terminal outside the memory headroom of service area is called individual district memory headroom (being called for short individual district), all individual applications and data are stored in individual district, individual application cannot access business data, thus avoids business data by individual application unauthorized access, access.The enterprise management system of the mobile terminal that the embodiment of the present invention provides; not only by business data and personal data completely isolated; protect enterprise's application and data better, also experience for enterprise staff provides indiscriminate individual application, reach the effect of " dual-use ".
Server end establishes a private space, for storing the application program of uploading onto the server in end, can be described as enterprise's application library.Server end safeguards there is application management list, application management list comprises title and the version number of the application program of all ends of having uploaded onto the server, other information of this application program can certainly be comprised, such as: uplink time, installation kit size, installation etc.Keeper can check, editing application managing listings, checks the statistical informations such as the installation of each application program.
Server end can generate and safeguard the list of the installable application program that each client is corresponding, and is pushed in corresponding client by this list, and this list is illustrated in the application market of service area by client, freely downloads and installs for user.
The processing method of a kind of application data that the embodiment of the present invention provides, as shown in Figure 1, described method comprises:
101, client event is monitored.
102, judge whether client event is default client event.
Wherein, described default client event is client unloading event or client anomalous event.
If 103 client events are for presetting client event, the then interface of the corresponding removing services package of invokes application.
Further, so that described removing services package performs clear operation, the application data of its place application program is removed.Wherein, described removing services package is for removing the application data of its place application program.For the embodiment of the present invention, remove in services package and be provided with interface, when client Anti-Sniffer to client event meet default client event after, call corresponding interface, the removing services package making interface corresponding performs clear operation.Remove services package and can only remove the data of the application program at its place, after the data of application program are eliminated, be equivalent to reinstall, be i.e. the application recovery state of installing first.
Wherein, described default client event can be client unloading event or client anomalous event, and wherein said client anomalous event can for client be by root event, also can carry out data dump event for client is requested.When the client of user is lost or user leaves office, user can use other client to send data dump request.
Wherein, described application program can issue for server, is specifically as follows the application program after reinforcing.Wherein, application program is packaged with removing services package.The function of application program is changed by the mode dynamic of encapsulation.Described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
Obtain the installation kit of the application program downloaded from default download address;
Described installation kit is unpacked;
According to default packing rule, in described installation kit, inject the removing bag that described default packing rule is corresponding, wherein, the application data of described removing bag for removing its place application program.
Or by described application program decompress(ion), and carry out decompiling;
File after decompiling is processed, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling; Remove services package and need be compiled into smali file, then insert the original after application program decompress(ion).
Resolved the Androidmanifest.xml file after decompress(ion) by script, the relevant service statement of services package is removed in write, and wherein, service statement comprises the title, purposes and path etc. of removing services package.
Decompiling file after process is carried out back compiling, signature, complete the insertion of removing services package in described application program.
The processing method of a kind of application data that the embodiment of the present invention provides.First client event is monitored; Judge whether described client event is default client event; If so, the corresponding interface removing services package in described client is then called; Described removing services package is for removing the application data of its place application program.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
Embodiments provide the processing method of another kind of application data, as shown in Figure 2, described method comprises:
201, the installation kit obtaining application program encapsulates.
Further, to make to be packaged with removing services package in described application program.
For the embodiment of the present invention, before step 201, specifically can also comprise: the System Privileges obtaining described application program.
202, application program is issued to client.
Wherein, the method for packing removing services package has detailed elaboration in the embodiment shown in fig. 1, does not repeat them here.
For the embodiment of the present invention, server end can adopt two kinds of application programs to issue mode: freely install and solar obligation.The application program that free mounting means issues is presented in the application market of client, freely installs for user; The application that solar obligation mode issues, user need install and could use client.
Wherein, server end is reinforced the application program uploaded, encryption, and consolidation process can prevent application program reverse.The installation kit of all application programs uploaded all through Viral diagnosis and consolidation process, thus stop malice distort, code injection, internal memory amendment, steal the threat such as data, decompiling.
The main process reinforced is: extract the global configuration file in application program and executable file; Resolve executable file, obtain first code; Protecting code is inserted in first code and obtains second code, and second code is encrypted; According to the entrance amendment global configuration file of protecting code; Amended global configuration file and executable file are repacked and generates reinforcement application program.
Protecting code can comprise and add to executable file the code that shell conciliates shell; such as: the collapse code separating shell trigger code and decompiling instrument; the collapse code separating shell trigger code and decompiling instrument can be inserted in the code of each class in first code; when solution shell trigger code is performed, calls solution shell code and such is decrypted.
Second code is encrypted and comprises: extract being reconstructed at least partially of second code; Implant the chained library of the code for deciphering reconstruct, chained library is loaded by java local interface (JavaNativeInterface is called for short JNI) in decrypting process.
Reinforcing needs to be reconstructed dex file, and reorientation after being recombinated by each joint data modification of dex file also generates new dex.
Application programs carries out consolidation process, application program can be prevented by reverse easily thus obtain the key message such as key code system, add the function of data encryption simultaneously, increase coefficient of safety to application program.Set forth with the consolidation process being embodied as routine application programs installation kit in android system: the installation kit of application programs carries out the content that consolidation process is exactly mainly the class.dex file changing application program, some algorithm for encryption are carried out to this content, at apk (AndroidPackage, Android installation kit) go deciphering when running again dynamically, also raw content; To ensure that it meets the intrinsic form of dex file when amendment class.dex file.
The main process of encryption is: realized by .so (dynamic link library) file, mainly injecting codes in the application, make to go during apk initialization to call this .so file, ensure that the opportunity of .so running paper is more Zao than the time of the reading and writing of files of application program, if evening, file will to become " state of half encryption ", cause file corruption.By encryption .so file can tackle the All Files operation of this application program, thus realizes encryption.
The processing method of the another kind of application data that the embodiment of the present invention provides.First client event is monitored; Judge whether described client event is default client event; If so, the corresponding interface removing services package in described client is then called; So that described removing services package performs clear operation, remove the application data that described application program is corresponding.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
Further, as the specific implementation of Fig. 1, embodiments provide a kind of client, as shown in Figure 3, described client comprises: monitoring unit 31, judging unit 32, call unit 33.
Monitoring unit 31, for monitoring client event.
Judging unit 32, for judging whether described client event is default client event.
Call unit 33, if for judging that described client event is as presetting client event, the then interface of the corresponding removing services package of invokes application.
Further, so that described removing services package performs clear operation, the application data of its place application program is removed.Described default client event is client unloading event or client anomalous event.
Described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
Obtain the installation kit of the application program downloaded from default download address;
Described installation kit is unpacked;
According to default packing rule, in described installation kit, inject the removing bag that described default packing rule is corresponding, wherein, the application data of described removing bag for removing its place application program.
Described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
By described application program decompress(ion), and carry out decompiling;
File after decompiling is processed, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Decompiling file after process is carried out back compiling, signature, complete the insertion of removing services package in described application program.
A kind of client that the embodiment of the present invention provides.First client event is monitored; Judge whether described client event is default client event; If so, the corresponding interface removing services package in described client is then called; So that described removing services package performs clear operation, remove the application data that described application program is corresponding.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
Further, as the specific implementation of Fig. 2, embodiments provide a kind of server, as shown in Figure 4, described server comprises: encapsulation unit 41, issue unit 42.
Encapsulation unit 41, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program;
Issue unit, for described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, remove the application data of its place application program.
Further, as Fig. 5, described device also comprises: acquiring unit 43.
Acquiring unit 43, for obtaining the System Privileges of described application program.
Described encapsulation unit 41 comprises:
Acquisition module, for obtaining the installation kit of the application program downloaded from default download address;
Parse module, for unpacking described installation kit;
Injection module, for according to default packing rule, injects the removing bag that described default packing rule is corresponding in described installation kit, wherein, and the application data of described removing bag for removing its place application program.
Described encapsulation unit 41 comprises:
Decompression module, for by described application program decompress(ion), and carries out decompiling;
Processing module, for processing the file after decompiling, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Insert module, for the decompiling file after process is carried out back compiling, signature, completes the insertion of removing services package in described application program.
A kind of server that the embodiment of the present invention provides.First client event is monitored; Judge whether described client event is default client event; If so, the corresponding interface removing services package in described client is then called; So that described removing services package performs clear operation, remove the application data that described application program is corresponding.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
Embodiments provide a kind for the treatment of system of application data, as shown in Figure 6, described system comprises: server 51 and client 52.
Server 51, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program, and described application program is issued to client;
Client 52, for monitoring client event; Judge whether described client event is default client event; If so, the interface of the then corresponding removing services package of invokes application.
Further, so that described removing services package performs clear operation, the application data of its place application program is removed.
In embodiments of the present invention, the treatment system of described application data is the enterprise management system of the enterprise of mobile terminal device, be enterprise-oriented mobile terminal administration platform, its server end is deployed in corporate intranet, and client is arranged on the mobile terminal that need be managed.
The major function of server end comprises: the application program managing, issue corporate intranet, and management, issue security strategy etc., server end also provides abundant mobile terminal Commitment, Accounting and Management of Unit Supply instrument, enterprise administrator can check the details of the mobile terminal that each needs are managed by server end, as: terminal models, system version, IMEI (InternationalMobileEquipmentIdentificationNumber, international mobile equipment identification number), sequence number, MSISDN (mobile station identity number, be commonly called as phone number), whether off-line, whether Root (power user), change the password time, whether fail-safe software is installed, power information, radio network information etc.
The major function of client comprises: data prevent divulging a secret, performing security strategy etc.Anti-the divulging a secret of data comprises data dump etc.
The anti-mechanism of divulging a secret of client-based data, client establishes the district that works alone on mobile terminals, and all enterprise's application and data are stored in shielded service area.Accordingly, the memory headroom outside service area is called individual district, and all individual applications and data are stored in individual district, and individual application cannot access business data, thus avoids business data by individual application unauthorized access, access.
Server end establishes a private space, for storing the application program of uploading onto the server in end, can be described as enterprise's application library.Server end safeguards there is application management list, application management list comprises title and the version number of the application program of all ends of having uploaded onto the server, other information of this application program can certainly be comprised, such as: uplink time, installation kit size, installation etc.Keeper can check, editing application managing listings, checks the statistical informations such as the installation of each application program.
Server end is the unified console based on web, is responsible for the management of client, the application program issuing corporate intranet and management, distributing policy etc.
Client is for the strategy that performs server end and issue and mobile office.
The function of client is mainly manifested in the following aspects:
A. work alone district
The anti-mechanism of divulging a secret of client-based data, client establishes the district that works alone on mobile terminals, and all enterprise's application and data are stored in shielded service area.Accordingly, the memory headroom outside service area is called individual district, and all individual applications and data are stored in individual district, and individual application cannot access business data, thus avoids business data by individual application unauthorized access, access.Service area in mobile terminal and individual Qu Ke switch.
B. service area is provided with the application such as E-mail address, calendar, contact person, note, browser and application market.
Can check, send and receive e-mail in E-mail address.
Calendar can check the appointment that exchange is synchronous, newly-built, editor's calendar appointment.
Can newly-built or importing contact person in contact person.The contact person of service area and message registration and individual district completely isolated, the message registration occurred in service area can be set and whether be presented at individual district.
Note and the individual district of service area are completely isolated.
Browser provides web page access function.
By the application program that application market download server end pushes.
Present the following aspects of menu of server end:
A. enterprise's application library
Server end establishes a private space, and for storing the application program of uploading onto the server in end, be called enterprise's application library, enterprise's application library is for generating application market.Server end can extract the information such as the logo of application program automatically, facilitates the management of keeper, and application program can be handed down to client.
B. security strategy is issued
The kind of client area screen locking password, complexity and replacement cycle etc. are set.
Arrange after client exceeds Offtime, can not access client service area.
Forbid service area screenshotss, forbid copying from service area, paste, shear content to individual district; Camera based on geographical position is forbidden.
Periodic detection client whether by root or escape from prison, and sets corresponding processing method.
C. administrative client
When client exists security threat, remove the data of client, comprise mailbox, the file of storage, relevant security strategy and configuration file etc., but do not affect the data in individual district.
When the mobile terminal at client place is lost, send lock command, the service area of locking client, to protect the data of service area.
When user forgets the screen locking password of service area or in particular cases keeper needs access client, send unlock command, remove the screen locking password of service area.
When user forgets that the screen locking password of service area or keeper need involuntary conversion service area screen locking password, send new screen locking password.
When the mail of client does not upgrade for a long time, send synchronous commands for mail, make client synchronization mail.Because the frequency of client synchronization mail is not identical, when keeper sends emergency mail, mail synchronization function can be utilized, guarantee that a client gets the mail in time.
Utilize the locating information that client is collected, location, position is carried out to client, facilitate keeper to understand the position of client.
When the mobile terminal at client place is lost, send and start ring order, client is given the alarm.
Batch PUSH message or url are to client.PUSH message has two kinds of forms: PUSH message and sending out notice, and message is only presented in the message widget of service area desktop, and notice will show content of announcement by bullet window when user enters service area.
The treatment system of a kind of application data that the embodiment of the present invention provides.First client event is monitored; Judge whether described client event is default client event; If so, the corresponding interface removing services package in described client is then called; So that described removing services package performs clear operation, remove the application data that described application program is corresponding.With at present when user authority cannot the application data of application programs remove time, the application data realizing application programs by the mode putting forward power is carried out removing and is compared, the embodiment of the present invention is by monitoring client event, can ensure that realizing application data corresponding to described application program removes, thus the fail safe of application data can be ensured.
The present invention also discloses following proposal:
The processing method of A1, a kind of application data, described method comprises:
Client event is monitored;
Judge whether described client event is default client event;
If so, the interface of the then corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
A2, method according to A1, described default client event is client unloading event or client anomalous event.
A3, method according to A1, described application program is the application program after reinforcing.
A4, method according to A1, described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
Obtain the installation kit of the application program downloaded from default download address;
Described installation kit is unpacked;
According to default packing rule, in described installation kit, inject the removing bag that described default packing rule is corresponding, wherein, the application data of described removing bag for removing its place application program.
A5, method according to A1, described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
By described application program decompress(ion), and carry out decompiling;
File after decompiling is processed, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Decompiling file after process is carried out back compiling, signature, complete the insertion of removing services package in described application program.
The processing method of B6, a kind of application data, described method comprises:
The installation kit obtaining application program encapsulates, and makes to be packaged with removing services package in described application program;
Described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, described removing services package performs clear operation, removes the application data of its place application program.
B7, method according to B6, before the installation kit of described acquisition application program encapsulates, described method also comprises:
Obtain the System Privileges of described application program.
B8, method according to B6, the installation kit of described acquisition application program carries out encapsulation and comprises:
Obtain the installation kit of the application program downloaded from default download address;
Described installation kit is unpacked;
According to default packing rule, in described installation kit, inject the removing bag that described default packing rule is corresponding, wherein, the application data of described removing bag for removing its place application program.
B9, method according to B6, the installation kit of described acquisition application program carries out encapsulation and comprises:
By described application program decompress(ion), and carry out decompiling;
File after decompiling is processed, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Decompiling file after process is carried out back compiling, signature, complete the insertion of removing services package in described application program.
C10, a kind of client, described client comprises
Monitoring unit, for monitoring client event;
Judging unit, for judging whether described client event is default client event;
Call unit, if for judging that described client event is as presetting client event, the then interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
C11, client according to C10, described default client event is client unloading event or client anomalous event.
C12, client according to C10, described application program is the application program after reinforcing.
C13, client according to 10, described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
Obtain the installation kit of the application program downloaded from default download address;
Described installation kit is unpacked;
According to default packing rule, in described installation kit, inject the removing bag that described default packing rule is corresponding, wherein, the application data of described removing bag for removing its place application program.
C14, client according to C10, described removing services package is placed in application program in the mode of encapsulation, and described packaged type is:
By described application program decompress(ion), and carry out decompiling;
File after decompiling is processed, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Decompiling file after process is carried out back compiling, signature, complete the insertion of removing services package in described application program.
D15, a kind of server, described server comprises:
Encapsulation unit, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program;
Issue unit, for described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, remove the application data of its place application program.
D16, server according to D15, described server also comprises:
Acquiring unit, for obtaining the System Privileges of described application program.
D17, server according to D15, described encapsulation unit comprises:
Acquisition module, for obtaining the installation kit of the application program downloaded from default download address;
Parse module, for unpacking described installation kit;
Injection module, for according to default packing rule, injects the removing bag that described default packing rule is corresponding in described installation kit, wherein, and the application data of described removing bag for removing its place application program.
D18, server according to D15, described encapsulation unit comprises:
Decompression module, for by described application program decompress(ion), and carries out decompiling;
Processing module, for processing the file after decompiling, is included in the code after decompiling the service statement of inserting and removing and adding removing services package in code corresponding to services package and the Androidmanifest.xml file after decompiling;
Insert module, for the decompiling file after process is carried out back compiling, signature, completes the insertion of removing services package in described application program.
The treatment system of E19, a kind of application data, described system comprises: the client as described in any one of C10-C14 and the server as described in any one of D15-D18.
In the above-described embodiments, the description of each embodiment is all emphasized particularly on different fields, in certain embodiment, there is no the part described in detail, can see the associated description of other embodiments.
Be understandable that, the correlated characteristic in said method and device can reference mutually.In addition, " first ", " second " in above-described embodiment etc. are for distinguishing each embodiment, and do not represent the quality of each embodiment.
Those skilled in the art can be well understood to, and for convenience and simplicity of description, the system of foregoing description, the specific works process of device and unit, with reference to the corresponding process in preceding method embodiment, can not repeat them here.
Intrinsic not relevant to any certain computer, virtual system or miscellaneous equipment with display at this algorithm provided.Various general-purpose system also can with use based on together with this teaching.According to description above, the structure constructed required by this type systematic is apparent.In addition, the present invention is not also for any certain programmed language.It should be understood that and various programming language can be utilized to realize content of the present invention described here, and the description done language-specific is above to disclose preferred forms of the present invention.
In specification provided herein, describe a large amount of detail.But can understand, embodiments of the invention can be put into practice when not having these details.In some instances, be not shown specifically known method, structure and technology, so that not fuzzy understanding of this description.
Similarly, be to be understood that, in order to simplify the disclosure and to help to understand in each inventive aspect one or more, in the description above to exemplary embodiment of the present invention, each feature of the present invention is grouped together in single embodiment, figure or the description to it sometimes.But, the method for the disclosure should be construed to the following intention of reflection: namely the present invention for required protection requires feature more more than the feature clearly recorded in each claim.Or rather, as claims below reflect, all features of disclosed single embodiment before inventive aspect is to be less than.Therefore, the claims following embodiment are incorporated to this embodiment thus clearly, and wherein each claim itself is as independent embodiment of the present invention.
Those skilled in the art are appreciated that and adaptively can change the module in the equipment in embodiment and they are arranged in one or more equipment different from this embodiment.Module in embodiment or unit or assembly can be combined into a module or unit or assembly, and multiple submodule or subelement or sub-component can be put them in addition.Except at least some in such feature and/or process or unit be mutually repel except, any combination can be adopted to combine all processes of all features disclosed in this specification (comprising adjoint claim, summary and accompanying drawing) and so disclosed any method or equipment or unit.Unless expressly stated otherwise, each feature disclosed in this specification (comprising adjoint claim, summary and accompanying drawing) can by providing identical, alternative features that is equivalent or similar object replaces.
In addition, those skilled in the art can understand, although embodiments more described herein to comprise in other embodiment some included feature instead of further feature, the combination of the feature of different embodiment means and to be within scope of the present invention and to form different embodiments.Such as, in the following claims, the one of any of embodiment required for protection can use with arbitrary compound mode.
All parts embodiment of the present invention with hardware implementing, or can realize with the software module run on one or more processor, or realizes with their combination.It will be understood by those of skill in the art that the some or all functions that microprocessor or digital signal processor (DSP) can be used in practice to realize the some or all parts in the processing method of the application data according to the embodiment of the present invention, Apparatus and system.The present invention can also be embodied as part or all equipment for performing method as described herein or device program (such as, computer program and computer program).Realizing program of the present invention and can store on a computer-readable medium like this, or the form of one or more signal can be had.Such signal can be downloaded from internet website and obtain, or provides on carrier signal, or provides with any other form.
The present invention will be described instead of limit the invention to it should be noted above-described embodiment, and those skilled in the art can design alternative embodiment when not departing from the scope of claims.In the claims, any reference symbol between bracket should be configured to limitations on claims.Word " comprises " not to be got rid of existence and does not arrange element in the claims or step.Word "a" or "an" before being positioned at element is not got rid of and be there is multiple such element.The present invention can by means of including the hardware of some different elements and realizing by means of the computer of suitably programming.In the unit claim listing some devices, several in these devices can be carry out imbody by same hardware branch.Word first, second and third-class use do not represent any order.Can be title by these word explanations.

Claims (10)

1. a processing method for application data, is characterized in that, comprising:
Client event is monitored;
Judge whether described client event is default client event;
If so, the interface of the then corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
2. method according to claim 1, is characterized in that, described default client event is client unloading event or client anomalous event.
3. a processing method for application data, is characterized in that, comprising:
The installation kit obtaining application program encapsulates, and makes to be packaged with removing services package in described application program;
Described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, described removing services package performs clear operation, removes the application data of its place application program.
4. method according to claim 3, is characterized in that, before the installation kit of described acquisition application program encapsulates, described method also comprises:
Obtain the System Privileges of described application program.
5. a client, is characterized in that, comprises
Monitoring unit, for monitoring client event;
Judging unit, for judging whether described client event is default client event;
Call unit, if for judging that described client event is as presetting client event, the then interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, removes the application data of its place application program.
6. client according to claim 5, is characterized in that, described default client event is client unloading event or client anomalous event.
7. client according to claim 5, is characterized in that, described application program is the application program after reinforcing.
8. a server, is characterized in that, comprising:
Encapsulation unit, encapsulates for the installation kit obtaining application program, makes to be packaged with removing services package in described application program;
Issue unit, for described application program is issued to client, so that when client confirms described client event for presetting client event, the interface of the corresponding removing services package of invokes application, so that described removing services package performs clear operation, remove the application data of its place application program.
9. server according to claim 8, is characterized in that, described server also comprises:
Acquiring unit, for obtaining the System Privileges of described application program.
10. a treatment system for application data, is characterized in that, comprises the client described in any one of claim 5-7 and the server described in any one of claim 8-9.
CN201510999922.2A 2015-12-25 2015-12-25 Application data processing method, device and system Pending CN105554144A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510999922.2A CN105554144A (en) 2015-12-25 2015-12-25 Application data processing method, device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510999922.2A CN105554144A (en) 2015-12-25 2015-12-25 Application data processing method, device and system

Publications (1)

Publication Number Publication Date
CN105554144A true CN105554144A (en) 2016-05-04

Family

ID=55833076

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510999922.2A Pending CN105554144A (en) 2015-12-25 2015-12-25 Application data processing method, device and system

Country Status (1)

Country Link
CN (1) CN105554144A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106850701A (en) * 2017-04-13 2017-06-13 深信服科技股份有限公司 A kind of mobile terminal shares partition method and system
CN108289111A (en) * 2017-01-09 2018-07-17 阿里巴巴集团控股有限公司 service providing method, device, terminal device and operating system
CN109828954A (en) * 2018-12-24 2019-05-31 北京奇安信科技有限公司 Data method for deleting and device

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103500116A (en) * 2013-10-29 2014-01-08 中科创达软件股份有限公司 Method and system for clearing data generated by application program
CN103942044A (en) * 2014-03-18 2014-07-23 北京领通科技有限公司 Remote assistance method and system in application of mobile terminal
CN104021321A (en) * 2014-06-17 2014-09-03 北京奇虎科技有限公司 Reinforcing protection method and device for software installation package
CN104182682A (en) * 2013-05-23 2014-12-03 贝壳网际(北京)安全技术有限公司 Method, system, client and server for intercepting advertisements in software installation package
CN104252373A (en) * 2014-10-17 2014-12-31 北京奇虎科技有限公司 Method and device for clearing application data

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104182682A (en) * 2013-05-23 2014-12-03 贝壳网际(北京)安全技术有限公司 Method, system, client and server for intercepting advertisements in software installation package
CN103500116A (en) * 2013-10-29 2014-01-08 中科创达软件股份有限公司 Method and system for clearing data generated by application program
CN103942044A (en) * 2014-03-18 2014-07-23 北京领通科技有限公司 Remote assistance method and system in application of mobile terminal
CN104021321A (en) * 2014-06-17 2014-09-03 北京奇虎科技有限公司 Reinforcing protection method and device for software installation package
CN104252373A (en) * 2014-10-17 2014-12-31 北京奇虎科技有限公司 Method and device for clearing application data

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108289111A (en) * 2017-01-09 2018-07-17 阿里巴巴集团控股有限公司 service providing method, device, terminal device and operating system
CN106850701A (en) * 2017-04-13 2017-06-13 深信服科技股份有限公司 A kind of mobile terminal shares partition method and system
CN109828954A (en) * 2018-12-24 2019-05-31 北京奇安信科技有限公司 Data method for deleting and device
CN109828954B (en) * 2018-12-24 2021-03-12 奇安信科技集团股份有限公司 Data erasing method and device

Similar Documents

Publication Publication Date Title
CN107220083B (en) Method and system for installation-free operation of application program in android system
EP2764462B1 (en) Method of generating, from an initial package file comprising an application to be secured and an initial configuration file, a package file for securing the application, and associated computer program product and computing device
US8893298B2 (en) Network linker for secure execution of unsecured apps on a device
US9396325B2 (en) Provisioning an app on a device and implementing a keystore
US9135434B2 (en) System and method for third party creation of applications for mobile appliances
US9542552B2 (en) Extensible platform for securing apps on a mobile device using policies and customizable action points
CN103647784B (en) A kind of method and apparatus of public and private isolation
CN103713904A (en) Method, related device and system for installing applications in working area of mobile terminal
CN110225488A (en) Method and apparatus for profile to be arranged
CN112912880A (en) Container builder for personalized web services
CN106372465A (en) Safety management method and system for dynamic link library and electronic equipment
CN103390026A (en) Mobile intelligent terminal security browser and working method thereof
CN103824016A (en) Application anti-uninstalling method and equipment
CN105530261B (en) The guard method of privacy information and device
CN106096395A (en) A kind of protection treating method and apparatus of Android application
CN104268479A (en) Text operation isolating method, device and mobile terminal
CN105975867B (en) A kind of data processing method
CN106778348A (en) A kind of method and apparatus for isolating private data
CN104462997A (en) Method, device and system for protecting work data in mobile terminal
CN105528543A (en) Remote antivirus method, client, console and system
CN104252373A (en) Method and device for clearing application data
CN105631307B (en) Screenshotss method, apparatus and system
CN102945337A (en) On-line self-help management method and system of Subversion user password
CN105554144A (en) Application data processing method, device and system
CN106096396A (en) The information concealing method of a kind of Android application and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20160504

RJ01 Rejection of invention patent application after publication