CN107003918A - 用于提供验证应用完整性的方法和设备 - Google Patents
用于提供验证应用完整性的方法和设备 Download PDFInfo
- Publication number
- CN107003918A CN107003918A CN201580064545.1A CN201580064545A CN107003918A CN 107003918 A CN107003918 A CN 107003918A CN 201580064545 A CN201580064545 A CN 201580064545A CN 107003918 A CN107003918 A CN 107003918A
- Authority
- CN
- China
- Prior art keywords
- application
- code
- modified
- unmodified
- checksum
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F11/00—Error detection; Error correction; Monitoring
- G06F11/07—Responding to the occurrence of a fault, e.g. fault tolerance
- G06F11/08—Error detection or correction by redundancy in data representation, e.g. by using checking codes
- G06F11/10—Adding special bits or symbols to the coded information, e.g. parity check, casting out 9's or 11's
- G06F11/1004—Adding special bits or symbols to the coded information, e.g. parity check, casting out 9's or 11's to protect a block of data words, e.g. CRC or checksum
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/64—Protecting data integrity, e.g. using checksums, certificates or signatures
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3247—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3263—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
- H04L9/3268—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Quality & Reliability (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Health & Medical Sciences (AREA)
- Software Systems (AREA)
- Computer Hardware Design (AREA)
- General Health & Medical Sciences (AREA)
- Bioethics (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| EP14306920.1 | 2014-11-28 | ||
| EP14306920.1A EP3026559A1 (en) | 2014-11-28 | 2014-11-28 | Method and device for providing verifying application integrity |
| PCT/EP2015/077836 WO2016083541A1 (en) | 2014-11-28 | 2015-11-26 | Method and device for providing verifying application integrity |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| CN107003918A true CN107003918A (zh) | 2017-08-01 |
Family
ID=52023431
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201580064545.1A Pending CN107003918A (zh) | 2014-11-28 | 2015-11-26 | 用于提供验证应用完整性的方法和设备 |
Country Status (6)
| Country | Link |
|---|---|
| US (1) | US20170262658A1 (enExample) |
| EP (2) | EP3026559A1 (enExample) |
| JP (1) | JP2017538217A (enExample) |
| KR (1) | KR20170087887A (enExample) |
| CN (1) | CN107003918A (enExample) |
| WO (1) | WO2016083541A1 (enExample) |
Cited By (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN109446056A (zh) * | 2018-09-11 | 2019-03-08 | 平安科技(深圳)有限公司 | 代码验证方法、装置、电子设备及介质 |
| CN112445487A (zh) * | 2019-09-02 | 2021-03-05 | 深圳Tcl新技术有限公司 | 一种dex优化方法、系统、智能终端及存储介质 |
| CN115659333A (zh) * | 2022-10-13 | 2023-01-31 | 南方科技大学 | 一种基于二进制插桩的沙箱、内存隔离方法及存储介质 |
Families Citing this family (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR102028091B1 (ko) * | 2017-10-19 | 2019-10-02 | 한국전자통신연구원 | 덱스 파일의 메모리 적재 장치 및 방법 |
| KR101920597B1 (ko) | 2017-11-16 | 2018-11-21 | 숭실대학교산학협력단 | 동적 코드 추출 기반 자동 분석 방지 우회 및 코드 로직 해석 장치 |
| CN110162311A (zh) * | 2018-02-13 | 2019-08-23 | 中兴通讯股份有限公司 | 一种应用安装方法、应用安装包的生成方法 |
| CN108898006B (zh) * | 2018-05-30 | 2020-04-03 | 百富计算机技术(深圳)有限公司 | Html5文件安全保护方法、系统及终端设备 |
| KR102657534B1 (ko) * | 2019-02-07 | 2024-04-16 | 삼성전자주식회사 | 어플리케이션의 무결성을 검증하는 전자 장치 및 어플리케이션의 무결성을 검증하기 위한 방법 |
| KR102113966B1 (ko) | 2019-11-25 | 2020-05-21 | 숭실대학교산학협력단 | 분석회피기법 우회 장치, 방법 및 이를 수행하기 위한 프로그램을 기록한 기록매체 |
| US20210056220A1 (en) * | 2019-08-22 | 2021-02-25 | Mediatek Inc. | Method for improving confidentiality protection of neural network model |
| US11431510B1 (en) * | 2020-04-30 | 2022-08-30 | Wells Fargo Bank, N.A. | Code-sign white listing (CSWL) |
| CN113157283B (zh) * | 2021-04-07 | 2025-07-22 | 深圳市优博讯科技股份有限公司 | 一种apk安装方法及系统 |
| WO2023279319A1 (en) * | 2021-07-08 | 2023-01-12 | Irdeto B.V. | Protected data packages |
| US11934537B1 (en) * | 2023-11-22 | 2024-03-19 | Integrity Security Services Llc | Systems and methods for validation of a device |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20100318983A1 (en) * | 2009-06-12 | 2010-12-16 | Hon Hai Precision Industry Co., Ltd. | Method for installing patch file |
| CN102163268A (zh) * | 2010-02-18 | 2011-08-24 | 汤姆森许可贸易公司 | 在执行期间验证软件代码的完整性的方法和设备 |
| CN102222196A (zh) * | 2010-04-16 | 2011-10-19 | 汤姆森特许公司 | 验证自修改的计算机代码校验和的方法、装置及程序载体 |
| US20130061222A1 (en) * | 2011-09-07 | 2013-03-07 | Pantech Co., Ltd. | Apparatus and method for managing optimized virtualization module |
| US20130318357A1 (en) * | 2011-02-11 | 2013-11-28 | Siemens Health Care Diagnostics Inc. | System and Method for Secure Software Update |
Family Cites Families (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US6067575A (en) * | 1995-12-08 | 2000-05-23 | Sun Microsystems, Inc. | System and method for generating trusted, architecture specific, compiled versions of architecture neutral programs |
| JP2007226277A (ja) * | 2004-04-02 | 2007-09-06 | Matsushita Electric Ind Co Ltd | 仮想マシン改ざん検査方法、および仮想マシン改ざん検査装置 |
| JP2007233426A (ja) * | 2004-04-05 | 2007-09-13 | Matsushita Electric Ind Co Ltd | アプリケーション実行装置 |
| GB0806284D0 (en) * | 2008-04-07 | 2008-05-14 | Metaforic Ltd | Profile-guided tamper-proofing |
| EP2467800B1 (en) * | 2009-11-13 | 2021-06-30 | Irdeto B.V. | System and method to protect java bytecode code against static and dynamic attacks within hostile execution environments |
| US8650439B2 (en) * | 2010-12-07 | 2014-02-11 | Samsung Electronics Co., Ltd. | Apparatus and method for fault tolerant FOTA update |
-
2014
- 2014-11-28 EP EP14306920.1A patent/EP3026559A1/en not_active Withdrawn
-
2015
- 2015-11-26 WO PCT/EP2015/077836 patent/WO2016083541A1/en not_active Ceased
- 2015-11-26 CN CN201580064545.1A patent/CN107003918A/zh active Pending
- 2015-11-26 US US15/531,441 patent/US20170262658A1/en not_active Abandoned
- 2015-11-26 JP JP2017528125A patent/JP2017538217A/ja not_active Ceased
- 2015-11-26 KR KR1020177014009A patent/KR20170087887A/ko not_active Withdrawn
- 2015-11-26 EP EP15801799.6A patent/EP3224721A1/en not_active Withdrawn
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20100318983A1 (en) * | 2009-06-12 | 2010-12-16 | Hon Hai Precision Industry Co., Ltd. | Method for installing patch file |
| CN102163268A (zh) * | 2010-02-18 | 2011-08-24 | 汤姆森许可贸易公司 | 在执行期间验证软件代码的完整性的方法和设备 |
| CN102222196A (zh) * | 2010-04-16 | 2011-10-19 | 汤姆森特许公司 | 验证自修改的计算机代码校验和的方法、装置及程序载体 |
| US20130318357A1 (en) * | 2011-02-11 | 2013-11-28 | Siemens Health Care Diagnostics Inc. | System and Method for Secure Software Update |
| US20130061222A1 (en) * | 2011-09-07 | 2013-03-07 | Pantech Co., Ltd. | Apparatus and method for managing optimized virtualization module |
Cited By (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN109446056A (zh) * | 2018-09-11 | 2019-03-08 | 平安科技(深圳)有限公司 | 代码验证方法、装置、电子设备及介质 |
| CN109446056B (zh) * | 2018-09-11 | 2023-03-21 | 平安科技(深圳)有限公司 | 代码验证方法、装置、电子设备及介质 |
| CN112445487A (zh) * | 2019-09-02 | 2021-03-05 | 深圳Tcl新技术有限公司 | 一种dex优化方法、系统、智能终端及存储介质 |
| CN115659333A (zh) * | 2022-10-13 | 2023-01-31 | 南方科技大学 | 一种基于二进制插桩的沙箱、内存隔离方法及存储介质 |
Also Published As
| Publication number | Publication date |
|---|---|
| JP2017538217A (ja) | 2017-12-21 |
| WO2016083541A1 (en) | 2016-06-02 |
| EP3026559A1 (en) | 2016-06-01 |
| KR20170087887A (ko) | 2017-07-31 |
| US20170262658A1 (en) | 2017-09-14 |
| EP3224721A1 (en) | 2017-10-04 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20170270319A1 (en) | Method and device for providing verifying application integrity | |
| US20170262656A1 (en) | Method and device for providing verifying application integrity | |
| CN107003918A (zh) | 用于提供验证应用完整性的方法和设备 | |
| EP3026560A1 (en) | Method and device for providing verifying application integrity | |
| CN112507328B (zh) | 一种文件签名方法、计算设备及存储介质 | |
| JP6332970B2 (ja) | 安全なソフトウェアの更新のためのシステム及び方法 | |
| CN101657792B (zh) | 可信部件更新系统和方法 | |
| US20060161761A1 (en) | Systems and methods for validating executable file integrity using partial image hashes | |
| CN101199159A (zh) | 安全引导 | |
| KR101805310B1 (ko) | Tpm 기반의 사용자 장치 및 이를 이용한 펌웨어 갱신 방법 | |
| WO2017166561A1 (zh) | 一种基于安卓系统apk下载方法及其系统 | |
| US20210216636A1 (en) | Determining Authenticity of Binary Images | |
| CN112463224A (zh) | 一种系统启动控制方法、装置、设备及可读存储介质 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PB01 | Publication | ||
| PB01 | Publication | ||
| SE01 | Entry into force of request for substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| TA01 | Transfer of patent application right |
Effective date of registration: 20190514 Address after: France Applicant after: Interactive Digital CE Patent Holding Company Address before: I Si Eli Murli Nor, France Applicant before: Thomson Licensing SA |
|
| TA01 | Transfer of patent application right | ||
| WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20170801 |
|
| WD01 | Invention patent application deemed withdrawn after publication |