CN106940764A - A kind of user authentication method and terminal device - Google Patents

A kind of user authentication method and terminal device Download PDF

Info

Publication number
CN106940764A
CN106940764A CN201610007044.6A CN201610007044A CN106940764A CN 106940764 A CN106940764 A CN 106940764A CN 201610007044 A CN201610007044 A CN 201610007044A CN 106940764 A CN106940764 A CN 106940764A
Authority
CN
China
Prior art keywords
user
page
terminal device
subdata
data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610007044.6A
Other languages
Chinese (zh)
Inventor
曾岳伟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Alibaba Group Holding Ltd
Original Assignee
Alibaba Group Holding Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Alibaba Group Holding Ltd filed Critical Alibaba Group Holding Ltd
Priority to CN201610007044.6A priority Critical patent/CN106940764A/en
Publication of CN106940764A publication Critical patent/CN106940764A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/316User authentication by observing the pattern of computer usage, e.g. typical user behaviour

Abstract

The invention discloses a kind of user authentication method.When accessing user by terminal device access specified page, collection accesses the behavioral data of user, the behavioral data that the validated user on terminal device is produced when browsing specified page is obtained from historical record, the similitude between the behavioral data of the behavioral data and validated user that access user is calculated, is judged to access whether user is validated user according to similitude.So as on the premise of avoiding user from perceiving and intervening verification process, improve the security and reliability of checking, improve the usage experience of user.

Description

A kind of user authentication method and terminal device
Technical field
The present invention relates to communication technical field, more particularly to a kind of user authentication method.The application is gone back simultaneously It is related to a kind of terminal device.
Background technology
With the fast development of information technology and network technology, people are more next to the demand of identity recognizing technology More, the requirement to its security reliability is also more and more stricter.Identification based on conventional cipher certification Technology has exposed many weak points in actual information network application, and based on face feature or The verification mode of mobile terminal short message is also increasingly mature in recent years and shows in actual applications greatly excellent More property.
However, inventor has found during the present invention is realized, either existing short-message verification mode Or recognition of face mode, is required to user and is cooperated and could realized using the mobile terminal of itself.This The subscriber authentication process also resulted in current system of account is very high for the dependence of mobile terminal. Once user has not very lost the mobile terminal of oneself, then the platform operation business of network or service are provided Business be difficult determine it is current initiate authentication request or password give for change request for user or illegal Molecule.Even current complex recognition of face verification mode, is running into customer mobile terminal and body In the case that part certificate is lost, can not also ensure the accounts information of user will not be stolen by criminal.
As can be seen here, when user performs a sensitive request by mobile terminal, system can only pass through and refer to Show that user does a password authentification, either short-message verification or recognition of face just can determine that user whether be I, each operation in above-mentioned verification process is required for the user just to know using mobile terminal compounding practice Road result, and there is leak for security.And if the mobile phone and identity card of user are lost together, The security of user account is just more dangerous.Therefore, how independent of operation mobile terminal In the case of, the security of user's checking is improved, as those skilled in the art's technical problem urgently to be resolved hurrily.
The content of the invention
The invention provides a kind of user authentication method.On the basis of security and reliability is ensured, Checking can be completed during by the normal using terminal equipment of user, the usage experience of user is improved. This method is applied to the terminal device with sensor, comprises the following steps:
When accessing user by terminal device access specified page, the row for accessing user is gathered For data, the behavioral data is the attribute data of the terminal device under each particular moment, the spy At the time of timing is corresponding when carving as user triggering page events, the attribute data is the terminal The data for each specified attribute that sensor described in equipment utilization is got;
The validated user obtained from historical record on the terminal device is produced when browsing the specified page Raw behavioral data;
It is similar between the calculating behavioral data and the behavioral data of the validated user for accessing user Property, judge whether the access user is the validated user according to the similitude.
Preferably, the behavioral data for calculating the behavioral data and the validated user for accessing user Between similitude, according to the similitude judge it is described access user whether be the validated user, tool Body includes:
According to the behavioral data of the validated user, the behavioral data of the access user and it is described specify The weight of the page, generates the validation value for accessing user under the specified page;
The testing under other specified pages currently browsed according to the validation value and the access user Card value generates comprehensive verification value;
Judge whether the comprehensive verification value is higher than default threshold value;
If so, confirming that the access user is the validated user;
If it is not, confirming that the access user is disabled user.
Preferably, the page events at least include with Types Below:
Into the specified page;
Exited from the specified page;
Browse the specified page;
Page button in the specified page is operated.
Preferably, the behavioral data is obtained especially by the following manner:
It regard attribute data of the terminal device when the specified page is accessed as the first subdata;
It regard attribute data of the terminal device when the specified page is browsed as the second subdata;
Attribute data when page button of the terminal device in the specified page is operated as 3rd subdata, and when the specified page is rejected, attribute data is used as using the terminal device Four subdatas;
According to first subdata, second subdata, the 3rd subdata and the described 4th Subdata generates the behavioral data.
Preferably, the 3rd subdata and the 4th subdata are obtained especially by the following manner:
Detect whether the operation for occurring for the page button;
If there is the operation for the page button, the 3rd subdata is recorded, and judge the finger Determine whether the page is switched;
If not occurring the operation for the page button, judge whether the specified page is switched;
If the specified page is switched, the attribute of the terminal device when specified page is rejected Data are recorded as the 4th subdata, and according to first subdata, second subdata, 3rd subdata and the 4th subdata generate the behavioral data.
Preferably, the attribute data is obtained in a first direction for the terminal device by the sensor The sense that the sensed data and/or the terminal device got are got in a second direction by the sensor Answer data.
Preferably, according to the behavioral data of the validated user, the behavioral data of the access user and The weight of the specified page, generates the validation value for accessing user under the specified page, specifically For:
Determine similar between the behavioral data of the validated user and the behavioral data of the access user Value, and according to the validation value of the weight and the similar value generation specified page.
Correspondingly, the application also proposed a kind of terminal device, and the terminal device has sensor, also Including:
Acquisition module, when accessing user by terminal device access specified page, gathers described visit The behavioral data of user is asked, the behavioral data is the attribute number of the terminal device under each particular moment According to, at the time of the particular moment is that the user triggers corresponding during page events, the attribute data The data of each specified attribute got for the terminal device using the sensor;
Acquisition module, the validated user obtained from historical record on the terminal device is browsing the finger Determine the behavioral data produced during the page;
Processing module, calculate behavioral data and the validated user for accessing user behavioral data it Between similitude, according to the similitude judge it is described access user whether be the validated user.
Preferably, the processing module is specifically included:
First generation submodule, according to the behavioral data of the validated user, the behavior of the access user The weight of data and the specified page, generates the checking for accessing user under the specified page Value;
Second generation submodule, according to the validation value and the access user currently browsed its Validation value generation comprehensive verification value under his specified page;
Judging submodule, judges whether the comprehensive verification value is higher than default threshold value, in result for when being Confirm that the access user is the validated user, and when result is no, confirm the access user For disabled user.
Preferably, the page events at least include with Types Below:
Into the specified page;
Exited from the specified page;
Browse the specified page;
Page button in the specified page is operated.
Preferably, the acquisition module obtains the behavioral data especially by the following manner:
It regard attribute data of the terminal device when the specified page is accessed as the first subdata;
It regard attribute data of the terminal device when the specified page is browsed as the second subdata;
Attribute data when page button of the terminal device in the specified page is operated as 3rd subdata, and when the specified page is rejected, attribute data is used as using the terminal device Four subdatas;
According to first subdata, second subdata, the 3rd subdata and the described 4th Subdata generates the behavioral data.
Preferably, the acquisition module obtains the 3rd subdata and described especially by the following manner 4th subdata:
Detect whether the operation for occurring for the page button;
If there is the operation for the page button, the 3rd subdata is recorded, and judge the finger Determine whether the page is switched;
If not occurring the operation for the page button, judge whether the specified page is switched;
If the specified page is switched, the attribute of the terminal device when specified page is rejected Data are recorded as the 4th subdata, and according to first subdata, second subdata, 3rd subdata and the 4th subdata generate the behavioral data.
Preferably, the attribute data is obtained in a first direction for the terminal device by the sensor The sense that the sensed data and/or the terminal device got are got in a second direction by the sensor Answer data.
Preferably, it is described first generation submodule specifically for:
Determine similar between the behavioral data of the validated user and the behavioral data of the access user Value, and according to the validation value of the weight and the similar value generation specified page.
By the technical scheme of application the application, specified page is being browsed by terminal device obtaining user When the behavioral data that produces after, given birth to according to behavioral data, the historical behavior data of specified page and weight Into validation value corresponding with specified page, and currently browsed according to validation value and the user other The validation value generation comprehensive verification value of specified page, the height based on comprehensive verification value and default threshold value is true Whether recognize the user is validated user.So that on the premise of avoiding user from perceiving and intervening verification process, The security and reliability of checking are improved, the usage experience of user is improved.
Brief description of the drawings
Fig. 1 is a kind of schematic flow sheet for user authentication method that the application is proposed;
Fig. 2 is that a kind of flow of the acquisition method for user behavior data that the application specific embodiment is proposed is shown It is intended to;
Fig. 3 is that the reporting for a kind of user behavior data that the application specific embodiment is proposed is shown with analysis process It is intended to;
Fig. 4 is a kind of schematic flow sheet for user authentication method that the application specific embodiment is proposed;
Fig. 5 is the form schematic diagram of record user behavior data in the application specific embodiment;
Fig. 6 is a kind of structural representation for terminal device that the application is proposed.
Embodiment
The problem of in view of in background technology, present applicant proposes a kind of user authentication method.To solve The problem of user's checking is cumbersome in the prior art and security has hidden danger.Because this method is used by obtaining Items of equipment data of the family in browsing pages are judged, it is therefore desirable to applied at the end with sensor End equipment.In specific application scenarios, the terminal device can be the current mobile terminal generally used, Such as mobile phone, flat board.But the equipment that other users can be taken is may also be simultaneously, such as notebook, tool The difference of the application apparatus of body has no effect on the protection domain of the application.
As shown in figure 1, this method comprises the following steps:
S101, when accessing user by terminal device access specified page, gathers described access and uses The behavioral data at family.
Because user is in page browsing, user trigger page events when, user at different time end, The horizontal and vertical angle of adept machine all can be variant, is with personalized Biology seed coating data.Therefore The application is intended to the data of terminal device in a series of interactions for carrying out with the page based on user to judge Whether it is user, these data the application is referred to as behavioral data, behavior data specifically may be used Segment every attribute data of the terminal device used to user.However, being only to detect terminal in real time These attribute datas be inadequate because posture of the user when performing different operations all differs Sample, therefore the attribute data obtained by terminal device is also different, so must have by some obvious The page events of feature are recorded and judged respectively.
The issuable action of institute during browsing pages based on current user, the application's is preferable to carry out Example is provided with the page events of following several types:
(1) specified page is entered.
(2) exited from specified page;
(3) specified page is browsed;
(4) page button in specified page is operated.
Based on above-mentioned different page events classification, the application preferred embodiment is targetedly proposed accordingly Attribute data acquisition modes.The multiple function having for current terminal device, gravity sensing energy Enough the most intuitively posture of reaction user when using a terminal, therefore the application preferred embodiment will The sensed data and/or terminal device that terminal device is got in a first direction by sensor pass through sensing The sensed data that device is got in a second direction is set to attribute data.
Herein it should be noted that because user for the operating process of some page is typically all to be introduced into, Then browse, click on button and exit, therefore following acquisition modes are only more square under current technology Just the mode of data fast can be obtained, those skilled in the art can take other modes on this basis (such as monitoring, action induction) is obtained, and these belong to the protection domain of the application:
Step a) regard attribute data of the terminal device when the specified page is accessed as first Subdata:
The user is entered the specific page by the step when the user accesses the specified page The attribute data of the terminal device is used as the first subdata during face;
Step b) regard attribute data of the terminal device when the specified page is browsed as second Subdata:
The step shows the content of specified page to user, and by the category of terminal device during user's browsing content Property data are used as the second subdata;
Attribute number when step c) is operated page button of the terminal device in the specified page According to as the 3rd subdata, and by the terminal device when the specified page is rejected attribute data It is used as the 4th subdata:
The step when user is operated to the page button in the specified page terminal set Standby attribute data as the 3rd subdata, and by the user from the specified page exit when described in The attribute data of terminal device is used as the 4th subdata;
Step d) according to first subdata, second subdata, the 3rd subdata and 4th subdata generates the behavioral data.
It should be noted that in above-mentioned steps c), because user by page button may perform bag Include and exit polytype operation such as current page, therefore in the specific embodiment of the application, it will it is real When detect whether occur for the page button operation, if occur for the page button operation, The 3rd subdata is recorded, and judges whether the specified page is switched;If not occurring for described The operation of page button, judges whether the specified page is switched, and is carried out based on following judged result Processing:
(1) if the specified page is switched, the terminal device when specified page is rejected Attribute data is recorded as the 4th subdata, and according to first subdata, second subnumber The behavioral data is generated according to, the 3rd subdata and the 4th subdata;
(2) if the specified page is not switched, continue to show in the specified page to the user Hold.
S102, the validated user obtained from historical record on the terminal device is browsing the specific page The behavioral data produced during face.
It should be noted that the behavior number that validated user is produced when browsing the specified page in the step According to can be the default behavioral data of technical staff, or specified page historical behavior data, the former Can be more convenient quick, and the latter then can flexibly be adjusted according to actual conditions, technical staff can be based on Application scenarios are flexibly selected, the side by way of obtaining behavioral data in historical record and in S101 Formula is identical, will not be repeated here.
S103, is calculated between the behavioral data for accessing user and the behavioral data of the validated user Similitude, judges whether the access user is the validated user according to the similitude.
Behavioral data of the active user under different page events is being obtained by S101 and is being passed through S102 has obtained accessing after behavioral data of the user under different page events, you can based on different user Between behavioral data determine similitude between the two, and based on similitude judge access user whether be Validated user.
In the preferred embodiment of the application, because page events have polytype, therefore technology people Member can set corresponding weight for different page events in advance, be subsequently based on the reference data value of the page The validation value of specified page is generated with the similar value of behavioral data.Idiographic flow is as follows:
Step a) according to the behavioral data of the validated user, the behavioral data of the access user and The weight of the specified page, generates the validation value for accessing user under the specified page;
Step b) is according to the validation value and the access user in other specific pages currently browsed Validation value generation comprehensive verification value under face;
Step c) judges whether the comprehensive verification value is higher than default threshold value;
If so, confirming that the access user is the validated user;
If it is not, confirming that the access user is disabled user.
By above-mentioned technical proposal, when accessing user by terminal device access specified page, collection is visited The behavioral data of user is asked, the validated user obtained from historical record on terminal device is browsing specific page Between the behavioral data produced during face, the behavioral data for calculating the behavioral data and validated user that access user Similitude, according to similitude judge access user whether be validated user.So as to avoid user from perceiving And on the premise of intervention verification process, improve the security and reliability of checking, improve user Usage experience.
In order to which the technological thought of the present invention is expanded on further, in conjunction with specific application scenarios, to the present invention Technical scheme illustrate.The specific embodiment is applied to behavior safety analysis gravity property data On, pass through mobile terminal device (mobile phone, flat board) front and rear angles 0-360 (vertical direction), left and right corner Degree 0-360 degree (correspondence horizontal direction) obtains gravity property data of the user under different page events.
As shown in Fig. 2 the stream being acquired for the critical data in the application specific embodiment for user Journey schematic diagram.After user, which enters, needs to record the page of behavioral data, hanging down when the record page has just enter into Squareness, level angle, time, subsequently when user's normal browsing content of pages, record page browsing When vertical angle and level angle, and time.And judge whether user clicks on button in real time, If user clicks button, record clicks on the mobile phone vertical angle and level angle during button, with timely Between, and judge whether user switches the page;Correspondingly, if user does not click on button, determine whether Whether user switches the page.After user have switched the page, terminate page interval 1s record, and remember Vertically and horizontally angle value when record is exited, if opposite user does not switch the page, comes back to the page clear The pattern look at.
As shown in figure 3, showing for reporting for user behavior data in the application specific embodiment with analysis process It is intended to, based on different page modules, obtains the behavioral data of user under the different pages.Treat user's closing After the page, upload user behavioral data to service end.Follow-up system is modules current data and history Data carry out the similitude of similarity system design, output module and historical data.Finally, it is crucial according to each The weight calculation of business module goes out score value, and unactivated page weight is zero.After comprehensive analysis, providing is The similitude of my no operation.Specifically, can be based on a specific analysis result (0-100 points) by taking Business end decides whether to verify or punished.
The flow that user behavior data is handled in the flow and Fig. 3 that are gathered based on user data in Fig. 2, The overall user's checking flow of the specific embodiment as shown in figure 4, when user carry out sensitive traffic operation or During person's information browse, terminal device calls security module analysis and decision, and acquisition is the similar of operation in person Property score value, and determine whether I operate, if then continue regular traffic operation, if otherwise forbidding industry Business operation is browsed.
For the ease of the behavioral data of user in above-mentioned flow is stored, the specific embodiment is proposed A kind of form of specific record user behavior data, by the time recorded, the type of the event recorded And the ID compositions of the page.
As can be seen here, the angle for the collection adept machine of user that the scheme of embodiments above passes through selectivity Data, user need not perceive the also requirement without authority, and due to being operated when each user is using system The angle of mobile phone, operating time, scene all has respective uniqueness, can reduce the possibility of acquaintance's crime Property.And when user does a high-risk operation, the program can combine the current peration data of user, go through History data do a similarity system design, when recognize data similarity in the past few days it is high in the case of, then Think that operation is credible;When recognizing, data fluctuations in the past few days are apparent, then it is assumed that operation is insincere, Reduce user to a certain extent bothers rate, improves the usage experience of user.
Correspondingly, the application also proposed a kind of terminal device, have sensor on the terminal device, such as Shown in Fig. 6, the terminal device also includes:
Acquisition module 610, when accessing user by terminal device access specified page, collection is described The behavioral data of user is accessed, the behavioral data is the attribute of the terminal device under each particular moment Data, at the time of the particular moment is that the user triggers corresponding during page events, the attribute number According to the data of each specified attribute got for the terminal device using the sensor;
Acquisition module 620, the validated user obtained from historical record on the terminal device is browsing described The behavioral data produced during specified page;
Processing module 630, calculates the behavioral data of the behavioral data and the validated user for accessing user Between similitude, according to the similitude judge it is described access user whether be the validated user.
In specific application scenarios, the processing module is specifically included:
First generation submodule, according to the behavioral data of the validated user, the behavior of the access user The weight of data and the specified page, generates the checking for accessing user under the specified page Value;
Second generation submodule, according to the validation value and the access user currently browsed its Validation value generation comprehensive verification value under his specified page;
Judging submodule, judges whether the comprehensive verification value is higher than default threshold value, in result for when being Confirm that the access user is the validated user, and when result is no, confirm the access user For disabled user.
In specific application scenarios, the page events at least include with Types Below:
Into the specified page;
Exited from the specified page;
Browse the specified page;
Page button in the specified page is operated.
In specific application scenarios, the acquisition module obtains the behavior number especially by the following manner According to:
It regard attribute data of the terminal device when the specified page is accessed as the first subdata;
It regard attribute data of the terminal device when the specified page is browsed as the second subdata;
Attribute data when page button of the terminal device in the specified page is operated as 3rd subdata, and when the specified page is rejected, attribute data is used as using the terminal device Four subdatas;
According to first subdata, second subdata, the 3rd subdata and the described 4th Subdata generates the behavioral data.
In specific application scenarios, the acquisition module obtains the 3rd son especially by the following manner Data and the 4th subdata:
Detect whether the operation for occurring for the page button;
If there is the operation for the page button, the 3rd subdata is recorded, and judge the finger Determine whether the page is switched;
If not occurring the operation for the page button, judge whether the specified page is switched;
If the specified page is switched, the attribute of the terminal device when specified page is rejected Data are recorded as the 4th subdata, and according to first subdata, second subdata, 3rd subdata and the 4th subdata generate the behavioral data.
In specific application scenarios, the attribute data is existed for the terminal device by the sensor The sensed data got on first direction and/or the terminal device are by the sensor in second direction On the sensed data that gets.
In specific application scenarios, it is described first generation submodule specifically for:
Determine similar between the behavioral data of the validated user and the behavioral data of the access user Value, and according to the validation value of the weight and the similar value generation specified page.
By the technical scheme of application the application, when accessing user by terminal device access specified page, Collection accesses the behavioral data of user, and the validated user obtained from historical record on terminal device is being browsed The behavioral data produced during specified page, calculates the behavior number of the behavioral data and validated user that access user Similitude between, judges to access whether user is validated user according to similitude.So as to avoid using On the premise of family perceives and intervenes verification process, the security and reliability of checking are improved, is lifted The usage experience of user.
Through the above description of the embodiments, those skilled in the art can be understood that this hair It is bright to be realized by hardware, the mode of necessary general hardware platform can also be added to realize by software. Understood based on such, technical scheme can be embodied in the form of software product, and this is soft It (can be CD-ROM, USB flash disk is mobile hard that part product, which can be stored in a non-volatile memory medium, Disk etc.) in, including some instructions are make it that a computer equipment (can be personal computer, take It is engaged in device, or network equipment etc.) perform method described in each implement scene of the invention.
It will be appreciated by those skilled in the art that accompanying drawing is a schematic diagram for being preferable to carry out scene, in accompanying drawing Module or necessary to flow not necessarily implements the present invention.
It will be appreciated by those skilled in the art that the module in device in implement scene can be according to implement scene Description be distributed in the device of implement scene, can also be carried out respective change and is disposed other than this implementation In one or more devices of scene.The module of above-mentioned implement scene can merge into a module, also may be used To be further split into multiple submodule.
The invention described above sequence number is for illustration only, and the quality of implement scene is not represented.
Disclosed above is only several specific implementation scenes of the present invention, and still, the present invention is not limited to This, the changes that any person skilled in the art can think of should all fall into protection scope of the present invention.

Claims (14)

1. a kind of user authentication method, applied to the terminal device with sensor, it is characterised in that should Method includes:
When accessing user by terminal device access specified page, the row for accessing user is gathered For data, the behavioral data is the attribute data of the terminal device under each particular moment, the spy At the time of timing is corresponding when carving as user triggering page events, the attribute data is the terminal The data for each specified attribute that sensor described in equipment utilization is got;
The validated user obtained from historical record on the terminal device is produced when browsing the specified page Raw behavioral data;
It is similar between the calculating behavioral data and the behavioral data of the validated user for accessing user Property, judge whether the access user is the validated user according to the similitude.
2. the method as described in claim 1, it is characterised in that the calculating row for accessing user For the similitude between the behavioral data of data and the validated user, according to judging the similitude Access whether user is the validated user, specifically include:
According to the behavioral data of the validated user, the behavioral data of the access user and it is described specify The weight of the page, generates the validation value for accessing user under the specified page;
The testing under other specified pages currently browsed according to the validation value and the access user Card value generates comprehensive verification value;
Judge whether the comprehensive verification value is higher than default threshold value;
If so, confirming that the access user is the validated user;
If it is not, confirming that the access user is disabled user.
3. the method as described in claim 1, it is characterised in that the page events at least include following Type:
Into the specified page;
Exited from the specified page;
Browse the specified page;
Page button in the specified page is operated.
4. the method as described in claim 1, it is characterised in that the behavioral data is especially by following Mode is obtained:
It regard attribute data of the terminal device when the specified page is accessed as the first subdata;
It regard attribute data of the terminal device when the specified page is browsed as the second subdata;
Attribute data when page button of the terminal device in the specified page is operated as 3rd subdata, and when the specified page is rejected, attribute data is used as using the terminal device Four subdatas;
According to first subdata, second subdata, the 3rd subdata and the described 4th Subdata generates the behavioral data.
5. the method such as right and as described in requiring 4, it is characterised in that the 3rd subdata and described 4th subdata is obtained especially by the following manner:
Detect whether the operation for occurring for the page button;
If there is the operation for the page button, the 3rd subdata is recorded, and judge the finger Determine whether the page is switched;
If not occurring the operation for the page button, judge whether the specified page is switched;
If the specified page is switched, the attribute of the terminal device when specified page is rejected Data are recorded as the 4th subdata, and according to first subdata, second subdata, 3rd subdata and the 4th subdata generate the behavioral data.
6. the method as described in claim any one of 1-5, it is characterised in that
The attribute data is the sense that the terminal device is got in a first direction by the sensor The sensed data for answering data and/or the terminal device to be got in a second direction by the sensor.
7. method as claimed in claim 6, it is characterised in that according to the behavior number of the validated user According to the weight of the, behavioral data and the specified page for accessing user, the access user is generated Validation value under the specified page, be specially:
Determine similar between the behavioral data of the validated user and the behavioral data of the access user Value, and according to the validation value of the weight and the similar value generation specified page.
8. there is sensor, it is characterised in that the terminal on a kind of terminal device, the terminal device Equipment also includes:
Acquisition module, when accessing user by terminal device access specified page, gathers described visit The behavioral data of user is asked, the behavioral data is the attribute number of the terminal device under each particular moment According to, at the time of the particular moment is that the user triggers corresponding during page events, the attribute data The data of each specified attribute got for the terminal device using the sensor;
Acquisition module, the validated user obtained from historical record on the terminal device is browsing the finger Determine the behavioral data produced during the page;
Processing module, calculate behavioral data and the validated user for accessing user behavioral data it Between similitude, according to the similitude judge it is described access user whether be the validated user.
9. terminal device as claimed in claim 8, it is characterised in that the processing module is specifically included:
First generation submodule, according to the behavioral data of the validated user, the behavior of the access user The weight of data and the specified page, generates the checking for accessing user under the specified page Value;
Second generation submodule, according to the validation value and the access user currently browsed its Validation value generation comprehensive verification value under his specified page;
Judging submodule, judges whether the comprehensive verification value is higher than default threshold value, in result for when being Confirm that the access user is the validated user, and when result is no, confirm the access user For disabled user.
10. terminal device as claimed in claim 8, it is characterised in that the page events are at least wrapped Include with Types Below:
Into the specified page;
Exited from the specified page;
Browse the specified page;
Page button in the specified page is operated.
11. terminal device as claimed in claim 8, it is characterised in that the acquisition module specifically leads to Cross in the following manner and obtain the behavioral data:
It regard attribute data of the terminal device when the specified page is accessed as the first subdata;
It regard attribute data of the terminal device when the specified page is browsed as the second subdata;
Attribute data when page button of the terminal device in the specified page is operated as 3rd subdata, and when the specified page is rejected, attribute data is used as using the terminal device Four subdatas;
According to first subdata, second subdata, the 3rd subdata and the described 4th Subdata generates the behavioral data.
12. the terminal device such as right and as described in requiring 11, it is characterised in that the acquisition module is specific The 3rd subdata and the 4th subdata are obtained in the following manner:
Detect whether the operation for occurring for the page button;
If there is the operation for the page button, the 3rd subdata is recorded, and judge the finger Determine whether the page is switched;
If not occurring the operation for the page button, judge whether the specified page is switched;
If the specified page is switched, the attribute of the terminal device when specified page is rejected Data are recorded as the 4th subdata, and according to first subdata, second subdata, 3rd subdata and the 4th subdata generate the behavioral data.
13. the terminal device as described in claim any one of 8-12, it is characterised in that
The attribute data is the sense that the terminal device is got in a first direction by the sensor The sensed data for answering data and/or the terminal device to be got in a second direction by the sensor.
14. method as claimed in claim 6, it is characterised in that the first generation submodule is specific For:
Determine similar between the behavioral data of the validated user and the behavioral data of the access user Value, and according to the validation value of the weight and the similar value generation specified page.
CN201610007044.6A 2016-01-05 2016-01-05 A kind of user authentication method and terminal device Pending CN106940764A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610007044.6A CN106940764A (en) 2016-01-05 2016-01-05 A kind of user authentication method and terminal device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610007044.6A CN106940764A (en) 2016-01-05 2016-01-05 A kind of user authentication method and terminal device

Publications (1)

Publication Number Publication Date
CN106940764A true CN106940764A (en) 2017-07-11

Family

ID=59468558

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610007044.6A Pending CN106940764A (en) 2016-01-05 2016-01-05 A kind of user authentication method and terminal device

Country Status (1)

Country Link
CN (1) CN106940764A (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110348188A (en) * 2019-05-31 2019-10-18 阿里巴巴集团控股有限公司 One seed nucleus body method of calibration and device
CN111339829A (en) * 2020-01-19 2020-06-26 海通证券股份有限公司 User identity authentication method, device, computer equipment and storage medium
CN112395576A (en) * 2021-01-18 2021-02-23 北京芯盾时代科技有限公司 Verification method and device
US11218493B2 (en) 2019-05-31 2022-01-04 Advanced New Technologies Co., Ltd. Identity verification

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103533546A (en) * 2013-10-29 2014-01-22 无锡赛思汇智科技有限公司 Implicit user verification and privacy protection method based on multi-dimensional behavior characteristics
US20150295714A1 (en) * 2012-11-09 2015-10-15 Zte Corporation Data security verification method and device
CN105049421A (en) * 2015-06-24 2015-11-11 百度在线网络技术(北京)有限公司 Authentication method based on use behavior characteristic of user, server, terminal, and system

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20150295714A1 (en) * 2012-11-09 2015-10-15 Zte Corporation Data security verification method and device
CN103533546A (en) * 2013-10-29 2014-01-22 无锡赛思汇智科技有限公司 Implicit user verification and privacy protection method based on multi-dimensional behavior characteristics
CN105049421A (en) * 2015-06-24 2015-11-11 百度在线网络技术(北京)有限公司 Authentication method based on use behavior characteristic of user, server, terminal, and system

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110348188A (en) * 2019-05-31 2019-10-18 阿里巴巴集团控股有限公司 One seed nucleus body method of calibration and device
US11218493B2 (en) 2019-05-31 2022-01-04 Advanced New Technologies Co., Ltd. Identity verification
CN111339829A (en) * 2020-01-19 2020-06-26 海通证券股份有限公司 User identity authentication method, device, computer equipment and storage medium
CN112395576A (en) * 2021-01-18 2021-02-23 北京芯盾时代科技有限公司 Verification method and device
CN112395576B (en) * 2021-01-18 2021-05-07 北京芯盾时代科技有限公司 Verification method and device

Similar Documents

Publication Publication Date Title
CN109255211B (en) Mobile security countermeasure
US8752146B1 (en) Providing authentication codes which include token codes and biometric factors
CN105335641B (en) A kind of auth method and device based on fingerprint recognition
Buriro et al. Please hold on: Unobtrusive user authentication using smartphone's built-in sensors
Shahzad et al. Secure unlocking of mobile touch screen devices by simple gestures: You can see it but you can not do it
CN104408341B (en) Smart phone user identity identifying method based on gyroscope behavioural characteristic
EP3905102A1 (en) Method and device for determining operation based on facial expression groups, and electronic device
CN104239768B (en) Personal account information safety management system and method based on biological information verification
CN104376011B (en) Realize method for secret protection and device
CN107992739A (en) User authentication method, apparatus and system
CN104573456A (en) Terminal interface control method
KR20170056045A (en) Method and apparatus of fraud detection for analyzing behavior pattern
WO2015088479A1 (en) Eye reflected content for verification of user liveliness
CN106940764A (en) A kind of user authentication method and terminal device
CN109600336A (en) Store equipment, identifying code application method and device
CN106027520A (en) Method and device for detecting and processing stealing of website accounts
CN104598792A (en) Terminal
CN105159475B (en) A kind of characters input method and device
CN105930726B (en) A kind of processing method and user terminal of malicious operation behavior
US11698956B2 (en) Open data biometric identity validation
CN104346550B (en) A kind of information processing method and a kind of electronic equipment
CN107403086A (en) Purview certification method, apparatus and system
CN104007929A (en) Gesture recognition based mobile terminal unlocking method and mobile terminal
CN110414271A (en) A kind of private data guard method, device and computer readable storage medium
CN105608357A (en) Fingerprint verification method, fingerprint verification device and terminal

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
REG Reference to a national code

Ref country code: HK

Ref legal event code: DE

Ref document number: 1238748

Country of ref document: HK

RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20170711