CN107003918A - 用于提供验证应用完整性的方法和设备 - Google Patents

用于提供验证应用完整性的方法和设备 Download PDF

Info

Publication number
CN107003918A
CN107003918A CN201580064545.1A CN201580064545A CN107003918A CN 107003918 A CN107003918 A CN 107003918A CN 201580064545 A CN201580064545 A CN 201580064545A CN 107003918 A CN107003918 A CN 107003918A
Authority
CN
China
Prior art keywords
application
code
modified
unmodified
checksum
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201580064545.1A
Other languages
English (en)
Chinese (zh)
Inventor
查理·萨尔蒙-勒加尼厄
穆罕默德·卡罗米
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
InterDigital CE Patent Holdings SAS
Original Assignee
Thomson Licensing SAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Thomson Licensing SAS filed Critical Thomson Licensing SAS
Publication of CN107003918A publication Critical patent/CN107003918A/zh
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F11/00Error detection; Error correction; Monitoring
    • G06F11/07Responding to the occurrence of a fault, e.g. fault tolerance
    • G06F11/08Error detection or correction by redundancy in data representation, e.g. by using checking codes
    • G06F11/10Adding special bits or symbols to the coded information, e.g. parity check, casting out 9's or 11's
    • G06F11/1004Adding special bits or symbols to the coded information, e.g. parity check, casting out 9's or 11's to protect a block of data words, e.g. CRC or checksum
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/64Protecting data integrity, e.g. using checksums, certificates or signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3247Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving digital signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
    • H04L9/3268Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Quality & Reliability (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Health & Medical Sciences (AREA)
  • Software Systems (AREA)
  • Computer Hardware Design (AREA)
  • General Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • Storage Device Security (AREA)
  • Stored Programmes (AREA)
CN201580064545.1A 2014-11-28 2015-11-26 用于提供验证应用完整性的方法和设备 Pending CN107003918A (zh)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
EP14306920.1 2014-11-28
EP14306920.1A EP3026559A1 (en) 2014-11-28 2014-11-28 Method and device for providing verifying application integrity
PCT/EP2015/077836 WO2016083541A1 (en) 2014-11-28 2015-11-26 Method and device for providing verifying application integrity

Publications (1)

Publication Number Publication Date
CN107003918A true CN107003918A (zh) 2017-08-01

Family

ID=52023431

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201580064545.1A Pending CN107003918A (zh) 2014-11-28 2015-11-26 用于提供验证应用完整性的方法和设备

Country Status (6)

Country Link
US (1) US20170262658A1 (enExample)
EP (2) EP3026559A1 (enExample)
JP (1) JP2017538217A (enExample)
KR (1) KR20170087887A (enExample)
CN (1) CN107003918A (enExample)
WO (1) WO2016083541A1 (enExample)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109446056A (zh) * 2018-09-11 2019-03-08 平安科技(深圳)有限公司 代码验证方法、装置、电子设备及介质
CN112445487A (zh) * 2019-09-02 2021-03-05 深圳Tcl新技术有限公司 一种dex优化方法、系统、智能终端及存储介质
CN115659333A (zh) * 2022-10-13 2023-01-31 南方科技大学 一种基于二进制插桩的沙箱、内存隔离方法及存储介质

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR102028091B1 (ko) * 2017-10-19 2019-10-02 한국전자통신연구원 덱스 파일의 메모리 적재 장치 및 방법
KR101920597B1 (ko) 2017-11-16 2018-11-21 숭실대학교산학협력단 동적 코드 추출 기반 자동 분석 방지 우회 및 코드 로직 해석 장치
CN110162311A (zh) * 2018-02-13 2019-08-23 中兴通讯股份有限公司 一种应用安装方法、应用安装包的生成方法
CN108898006B (zh) * 2018-05-30 2020-04-03 百富计算机技术(深圳)有限公司 Html5文件安全保护方法、系统及终端设备
KR102657534B1 (ko) * 2019-02-07 2024-04-16 삼성전자주식회사 어플리케이션의 무결성을 검증하는 전자 장치 및 어플리케이션의 무결성을 검증하기 위한 방법
KR102113966B1 (ko) 2019-11-25 2020-05-21 숭실대학교산학협력단 분석회피기법 우회 장치, 방법 및 이를 수행하기 위한 프로그램을 기록한 기록매체
US20210056220A1 (en) * 2019-08-22 2021-02-25 Mediatek Inc. Method for improving confidentiality protection of neural network model
US11431510B1 (en) * 2020-04-30 2022-08-30 Wells Fargo Bank, N.A. Code-sign white listing (CSWL)
CN113157283B (zh) * 2021-04-07 2025-07-22 深圳市优博讯科技股份有限公司 一种apk安装方法及系统
WO2023279319A1 (en) * 2021-07-08 2023-01-12 Irdeto B.V. Protected data packages
US11934537B1 (en) * 2023-11-22 2024-03-19 Integrity Security Services Llc Systems and methods for validation of a device

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20100318983A1 (en) * 2009-06-12 2010-12-16 Hon Hai Precision Industry Co., Ltd. Method for installing patch file
CN102163268A (zh) * 2010-02-18 2011-08-24 汤姆森许可贸易公司 在执行期间验证软件代码的完整性的方法和设备
CN102222196A (zh) * 2010-04-16 2011-10-19 汤姆森特许公司 验证自修改的计算机代码校验和的方法、装置及程序载体
US20130061222A1 (en) * 2011-09-07 2013-03-07 Pantech Co., Ltd. Apparatus and method for managing optimized virtualization module
US20130318357A1 (en) * 2011-02-11 2013-11-28 Siemens Health Care Diagnostics Inc. System and Method for Secure Software Update

Family Cites Families (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6067575A (en) * 1995-12-08 2000-05-23 Sun Microsystems, Inc. System and method for generating trusted, architecture specific, compiled versions of architecture neutral programs
JP2007226277A (ja) * 2004-04-02 2007-09-06 Matsushita Electric Ind Co Ltd 仮想マシン改ざん検査方法、および仮想マシン改ざん検査装置
JP2007233426A (ja) * 2004-04-05 2007-09-13 Matsushita Electric Ind Co Ltd アプリケーション実行装置
GB0806284D0 (en) * 2008-04-07 2008-05-14 Metaforic Ltd Profile-guided tamper-proofing
EP2467800B1 (en) * 2009-11-13 2021-06-30 Irdeto B.V. System and method to protect java bytecode code against static and dynamic attacks within hostile execution environments
US8650439B2 (en) * 2010-12-07 2014-02-11 Samsung Electronics Co., Ltd. Apparatus and method for fault tolerant FOTA update

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20100318983A1 (en) * 2009-06-12 2010-12-16 Hon Hai Precision Industry Co., Ltd. Method for installing patch file
CN102163268A (zh) * 2010-02-18 2011-08-24 汤姆森许可贸易公司 在执行期间验证软件代码的完整性的方法和设备
CN102222196A (zh) * 2010-04-16 2011-10-19 汤姆森特许公司 验证自修改的计算机代码校验和的方法、装置及程序载体
US20130318357A1 (en) * 2011-02-11 2013-11-28 Siemens Health Care Diagnostics Inc. System and Method for Secure Software Update
US20130061222A1 (en) * 2011-09-07 2013-03-07 Pantech Co., Ltd. Apparatus and method for managing optimized virtualization module

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109446056A (zh) * 2018-09-11 2019-03-08 平安科技(深圳)有限公司 代码验证方法、装置、电子设备及介质
CN109446056B (zh) * 2018-09-11 2023-03-21 平安科技(深圳)有限公司 代码验证方法、装置、电子设备及介质
CN112445487A (zh) * 2019-09-02 2021-03-05 深圳Tcl新技术有限公司 一种dex优化方法、系统、智能终端及存储介质
CN115659333A (zh) * 2022-10-13 2023-01-31 南方科技大学 一种基于二进制插桩的沙箱、内存隔离方法及存储介质

Also Published As

Publication number Publication date
JP2017538217A (ja) 2017-12-21
WO2016083541A1 (en) 2016-06-02
EP3026559A1 (en) 2016-06-01
KR20170087887A (ko) 2017-07-31
US20170262658A1 (en) 2017-09-14
EP3224721A1 (en) 2017-10-04

Similar Documents

Publication Publication Date Title
US20170270319A1 (en) Method and device for providing verifying application integrity
US20170262656A1 (en) Method and device for providing verifying application integrity
CN107003918A (zh) 用于提供验证应用完整性的方法和设备
EP3026560A1 (en) Method and device for providing verifying application integrity
CN112507328B (zh) 一种文件签名方法、计算设备及存储介质
JP6332970B2 (ja) 安全なソフトウェアの更新のためのシステム及び方法
CN101657792B (zh) 可信部件更新系统和方法
US20060161761A1 (en) Systems and methods for validating executable file integrity using partial image hashes
CN101199159A (zh) 安全引导
KR101805310B1 (ko) Tpm 기반의 사용자 장치 및 이를 이용한 펌웨어 갱신 방법
WO2017166561A1 (zh) 一种基于安卓系统apk下载方法及其系统
US20210216636A1 (en) Determining Authenticity of Binary Images
CN112463224A (zh) 一种系统启动控制方法、装置、设备及可读存储介质

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
TA01 Transfer of patent application right

Effective date of registration: 20190514

Address after: France

Applicant after: Interactive Digital CE Patent Holding Company

Address before: I Si Eli Murli Nor, France

Applicant before: Thomson Licensing SA

TA01 Transfer of patent application right
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20170801

WD01 Invention patent application deemed withdrawn after publication