CN111629005A - Anti-cheating method and device, electronic equipment and storage medium - Google Patents

Anti-cheating method and device, electronic equipment and storage medium Download PDF

Info

Publication number
CN111629005A
CN111629005A CN202010471440.0A CN202010471440A CN111629005A CN 111629005 A CN111629005 A CN 111629005A CN 202010471440 A CN202010471440 A CN 202010471440A CN 111629005 A CN111629005 A CN 111629005A
Authority
CN
China
Prior art keywords
abnormal
target website
pressure values
time period
preset time
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202010471440.0A
Other languages
Chinese (zh)
Inventor
刘骎
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Supertool Internet Technology Ltd
Original Assignee
Beijing Supertool Internet Technology Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Supertool Internet Technology Ltd filed Critical Beijing Supertool Internet Technology Ltd
Priority to CN202010471440.0A priority Critical patent/CN111629005A/en
Publication of CN111629005A publication Critical patent/CN111629005A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • H04L63/1425Traffic logging, e.g. anomaly detection

Abstract

The application relates to an anti-cheating method, an anti-cheating device, electronic equipment and a storage medium, and belongs to the technical field of network security. The anti-cheating method comprises the following steps: acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered; and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information. In the embodiment of the application, the problem of low identification efficiency of abnormal flow generated on the website by an existing anti-cheating method aiming at an automatic script is solved by acquiring the sensing information generated when the button element aiming at the target website collected in the preset time period is triggered and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.

Description

Anti-cheating method and device, electronic equipment and storage medium
Technical Field
The application belongs to the technical field of network security, and particularly relates to an anti-cheating method and device, electronic equipment and a storage medium.
Background
As the network security situation becomes more and more complex, events threatening network security such as malicious activities, abnormal attacks and the like occur, and the network is attacked, the problems of network data leakage, server crash and the like are easily caused, so that the network security events are very necessary to be processed in time.
The existing anti-cheating mode at the website end mainly judges whether the website flow belongs to abnormal flow through whether the same cookie or IP browses the webpage for multiple times or repeatedly requests for multiple times. One of the common cheating ways is that the user will complete different clicking actions through the automatic script implementation. The method can conveniently clear cookie information of the browser and continuously change the IP by using a proxy IP method so as to bypass the anti-cheating rule, so that the existing traditional anti-cheating method has low identification efficiency aiming at abnormal flow generated on a website by an automatic script.
Disclosure of Invention
In view of the above, an object of the present application is to provide an anti-cheating method, an anti-cheating device, an electronic device, and a storage medium, so as to solve the problem of low recognition efficiency of the existing anti-cheating method.
The embodiment of the application is realized as follows:
in a first aspect, an embodiment of the present application provides an anti-cheating method, including: acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered; and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information. In the embodiment of the application, the problem of low identification efficiency of abnormal flow generated on the website by an existing anti-cheating method aiming at an automatic script is solved by acquiring the sensing information generated when the button element aiming at the target website is triggered and acquired within a certain time period and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
With reference to one possible implementation manner of the embodiment of the first aspect, the sensing information includes a pressure value; judging whether the access flow for accessing the target website is abnormal or not based on the sensing information, wherein the judging step comprises the following steps: acquiring the number of times that the pressure values in the preset time period are equal; judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not; and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal. In the embodiment of the application, whether the access flow of the target website is abnormal is judged by judging whether the ratio of the number of times that the pressure values are equal in the preset time period to the total number of times that the pressure values are equal in the preset time period is greater than a preset threshold, if the ratio of the number of times that the pressure values are equal in the preset time period to the total number of times that the pressure values are equal in the preset time period to the preset threshold is greater than the preset threshold, the access flow of the target website in the preset time period is represented to be abnormal, and because the judgment of the abnormality is no longer to judge whether the website flow belongs to abnormal flow by judging whether the same cookie or IP browses the webpage for multiple times or repeatedly requests for multiple times, the inaccuracy of human behavior is taken as a core, if too consistent pressure information is generated in a period, the abnormality is judged, the existing cheating mode.
With reference to one possible implementation manner of the embodiment of the first aspect, the obtaining the number of times that the pressure values in the preset time period are equal includes: and obtaining the number of times that the pressure values from different mobile terminals accessing the target website are equal in the preset time period. In the embodiment of the application, only when the pressure values generated by different mobile terminals are equal, the statistics is included, that is, if too consistent pressure information is generated among different users, the abnormality is determined, and the accuracy is improved.
With reference to one possible implementation manner of the embodiment of the first aspect, the sensing information includes a pressure value; judging whether the access flow for accessing the target website is abnormal or not based on the sensing information, wherein the judging step comprises the following steps: acquiring the times of pressure values of which the difference between the pressure values in the preset time period is within a set error range; judging whether the access flow of the target website is abnormal or not by judging whether the ratio of the pressure value frequency of the difference of the pressure values in the preset time period within the set error range to the total pressure value frequency is greater than a preset threshold or not; and when the ratio of the number of times of the pressure values of which the difference between the pressure values is within the set error range in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal. In the embodiment of the application, because the difference between the pressure values is within the set error range, the abnormal approach of the pressure values between the two is represented, and therefore the pressure information generated by the same person can be considered, when the abnormality is judged, whether the access flow for accessing the target website is abnormal is judged by judging whether the ratio of the number of times of the pressure values within the set error range to the total number of times of the pressure values within the preset time period is greater than the preset threshold value, so as to enhance the security of the network.
With reference to a possible implementation manner of the embodiment of the first aspect, after determining whether an access flow for accessing the target website is abnormal based on the sensing information, the method further includes: and if the abnormal access flow for accessing the target website is judged based on the sensing information, tracking and recording the abnormal access flow for accessing the target website in real time. In the embodiment of the application, when the abnormal access flow of the access target website is judged to be abnormal based on the sensing information, the abnormal access flow of the access target website is tracked and recorded in real time, so that measures can be further taken to ensure the network security.
With reference to a possible implementation manner of the embodiment of the first aspect, before determining whether an access flow for accessing the target website is abnormal based on the sensing information, the method further includes: removing abnormal values in the sensing information; correspondingly, judging whether the access flow for accessing the target website is abnormal or not based on the sensing information comprises the following steps: and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information from which the abnormal value is removed. According to the embodiment of the application, after the sensing information which is acquired within the preset time period and generated when the button element aiming at the target website is triggered is acquired, the abnormal value in the sensing information is removed, and then whether the access flow for accessing the target website is abnormal or not is judged based on the sensing information after the abnormal value is removed, so that the interference of abnormal information is reduced, and the judgment efficiency and accuracy are improved.
In a second aspect, an embodiment of the present application further provides an anti-cheating device, including: the device comprises an acquisition module and a judgment module; the acquisition module is used for acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered; and the judging module is used for judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
In combination with one possible implementation manner of the embodiment of the second aspect, the sensing information includes a pressure value; the judging module is used for: acquiring the number of times that the pressure values in the preset time period are equal; judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not; and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal.
In a third aspect, an embodiment of the present application further provides an electronic device, including: a memory and a processor, the processor coupled to the memory; the memory is used for storing programs; the processor is configured to invoke a program stored in the memory to perform the method according to the first aspect embodiment and/or any possible implementation manner of the first aspect embodiment.
In a fourth aspect, embodiments of the present application further provide a storage medium, on which a computer program is stored, where the computer program is executed by a processor to perform the method provided in the foregoing first aspect and/or any one of the possible implementation manners of the first aspect.
Additional features and advantages of the application will be set forth in the description which follows, and in part will be obvious from the description, or may be learned by the practice of the embodiments of the application. The objectives and other advantages of the application may be realized and attained by the structure particularly pointed out in the written description and drawings.
Drawings
In order to more clearly illustrate the embodiments of the present application or the technical solutions in the prior art, the drawings needed to be used in the embodiments will be briefly described below, and it is obvious that the drawings in the following description are only some embodiments of the present application, and it is obvious for those skilled in the art to obtain other drawings without creative efforts. The foregoing and other objects, features and advantages of the application will be apparent from the accompanying drawings. Like reference numerals refer to like parts throughout the drawings. The drawings are not intended to be to scale as practical, emphasis instead being placed upon illustrating the subject matter of the present application.
Fig. 1 shows a schematic flowchart of an anti-cheating method provided in an embodiment of the present application.
Fig. 2 shows a schematic block diagram of an anti-cheating device according to an embodiment of the present application.
Fig. 3 shows a schematic structural diagram of an electronic device provided in an embodiment of the present application.
Detailed Description
The technical solutions in the embodiments of the present application will be described below with reference to the drawings in the embodiments of the present application.
It should be noted that: like reference numbers and letters refer to like items in the following figures, and thus, once an item is defined in one figure, it need not be further defined and explained in subsequent figures. Meanwhile, relational terms such as "first," "second," and the like may be used solely in the description herein to distinguish one entity or action from another entity or action without necessarily requiring or implying any actual such relationship or order between such entities or actions. Also, the terms "comprises," "comprising," or any other variation thereof, are intended to cover a non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements does not include only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus. Without further limitation, an element defined by the phrase "comprising an … …" does not exclude the presence of other identical elements in a process, method, article, or apparatus that comprises the element.
Further, the term "and/or" in the present application is only one kind of association relationship describing the associated object, and means that three kinds of relationships may exist, for example, a and/or B may mean: a exists alone, A and B exist simultaneously, and B exists alone.
The problem that the existing anti-cheating method is low in recognition efficiency in view of abnormal traffic generated on a website by an automation script is solved. The embodiment of the present application provides an anti-cheating method, and the anti-cheating method provided in the embodiment of the present application will be described below with reference to fig. 1.
Step S101: and acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered.
In the embodiment of the application, by adding an automation script (for example, JS code) to key button elements (for example, buttons for submitting an order, making a reservation for a test drive, registering a user, and the like) of a target website, when the user accesses the target website through a mobile terminal (for example, a smart phone or a tablet computer), if the button elements on a website page are triggered (for example, clicked), sensing information (for example, pressure information) generated when the user triggers the button elements is collected through the automation script, and the collected sensing information is sent to a server through the automation script. The server side acquires sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered, so that whether the access flow for accessing the target website is abnormal or not is judged.
The target website can be selected according to the requirement, that is, the target website can be changed, and correspondingly, the button element is changed along with the change of the target website, and if the target website is a website of a type of making a taxi for a reservation, the button element can be a button for submitting an order, registering a user and the like; for another example, when the target website is a network related to a car, the button element may be a button for appointment test driving, user registration, or the like.
The preset time period can be set according to requirements, such as one minute, two minutes, three minutes, five minutes and the like.
Step S102: and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
After the sensing information which is acquired within the preset time period and generated when the button element for the target website is triggered is acquired, in one implementation mode, whether the access flow for accessing the target website is abnormal is directly judged based on the sensing information. As another embodiment, abnormal values in the sensing information, such as abnormal pressure values of 0 and/or 1, may be removed, and then whether the access flow for accessing the target website is abnormal may be determined based on the sensing information from which the abnormal values are removed.
As an implementation manner, the process of determining whether the access flow for accessing the target website is abnormal based on the sensing information may be: acquiring the number of times that the pressure values in the preset time period are equal; judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not; and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal. For convenience of understanding, it is assumed that 200 pressure values are collected in 2 minutes, wherein 50 pressure values are obtained for x1 (that is, the ratio of the number of times that the pressure values are equal to the total number of times that the pressure values are equal to 1/4), 5 pressure values are obtained for x2 (that is, the ratio of the number of times that the pressure values are equal to the total number of times that the pressure values are equal to 1/40), and 3 pressure values are obtained for x3 (that is, the ratio of the number of times that the pressure values are equal to the total number of times that the pressure values are equal to 3/200).
Optionally, the number of times that the pressure values in the preset time period are equal is the number of times that the pressure values from different mobile terminals accessing the target website in the preset time period are equal, that is, the pressure values generated by the different mobile terminals are equal, and are counted up, and if the same mobile terminal generates the equal pressure values, the pressure values are not counted up. In the embodiment of the application, based on the sensing information, the inaccuracy of real person behaviors is taken as a core, if too consistent pressure information is generated among different users, the abnormality is determined, that is, when the ratio of the number of times that the pressure values are equal in the preset time period to the total number of times that the pressure values are equal in the preset time period is greater than a preset threshold value, the access flow for accessing the target website in the preset time period is represented to be abnormal.
As another embodiment, the process of determining whether the access flow for accessing the target website is abnormal based on the sensing information may be: acquiring the times of pressure values of which the difference between the pressure values in the preset time period is within a set error range; judging whether the access flow of the target website is abnormal or not by judging whether the ratio of the pressure value frequency of the difference of the pressure values in the preset time period within the set error range to the total pressure value frequency is greater than a preset threshold or not; and when the ratio of the number of times of the pressure values of which the difference between the pressure values is within the set error range in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal. This embodiment is different from the former (equal pressure values) in that the pressure values are not completely equal, but are counted up as long as the difference between the pressure values is within a set error (e.g., 1%), and the difference between the pressure values is within the set error range, indicating that the pressure values are abnormally close to each other, and thus can be regarded as pressure information generated by the same person.
As an embodiment, after determining whether an access flow for accessing the target website is abnormal based on the sensing information, the method further includes: and if the abnormal access flow for accessing the target website is judged based on the sensing information, tracking and recording the abnormal access flow for accessing the target website in real time. And if the access flow for accessing the target website is judged to be abnormal, tracking and recording the abnormal access flow for accessing the target website in real time so as to further take measures to ensure the network security.
In the embodiment of the application, the sensing information generated when the button element aiming at the target website is triggered and collected in the preset time period is obtained, and whether the access flow for accessing the target website is abnormal or not is judged based on the sensing information, so that the problem that the existing anti-cheating method has low recognition efficiency aiming at the abnormal flow generated on the website by the automatic script is solved.
The embodiment of the present application further provides an anti-cheating device 100, as shown in fig. 2. The anti-cheating device 100 includes: an obtaining module 110 and a determining module 120.
The obtaining module 110 is configured to obtain sensing information, which is acquired within a preset time period and generated when a button element for a target website is triggered.
A determining module 120, configured to determine whether an access flow for accessing the target website is abnormal based on the sensing information.
Optionally, the sensing information comprises a pressure value; the determining module 120 is configured to: acquiring the number of times that the pressure values in the preset time period are equal; judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not; and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal. Optionally, the determining module 120 is configured to obtain the number of times that pressure values from different mobile terminals accessing the target website within the preset time period are equal.
Optionally, the sensing information comprises a pressure value; the determining module 120 is configured to: acquiring the times of pressure values of which the difference between the pressure values in the preset time period is within a set error range; judging whether the access flow of the target website is abnormal or not by judging whether the ratio of the pressure value frequency of the difference of the pressure values in the preset time period within the set error range to the total pressure value frequency is greater than a preset threshold or not; and when the ratio of the number of times of the pressure values of which the difference between the pressure values is within the set error range in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal.
Optionally, the anti-cheating device 100 further comprises: and a tracking and recording module, configured to perform real-time tracking and recording on the abnormal access traffic of the target website if the determining module 120 determines that the access traffic of the target website is abnormal based on the sensing information after determining whether the access traffic of the target website is abnormal based on the sensing information.
Optionally, the anti-cheating device 100 further comprises: and the eliminating module is used for eliminating abnormal values in the sensing information before the judging module 120 judges whether the access flow for accessing the target website is abnormal or not based on the sensing information. Accordingly, the determining module 120 is configured to determine whether an access flow for accessing the target website is abnormal based on the sensing information from which the abnormal value is removed.
The anti-cheating device 100 provided in the embodiment of the present application has the same implementation principle and technical effect as those of the aforementioned method embodiment, and for the sake of brief description, reference may be made to the corresponding contents in the aforementioned method embodiment where no part of the embodiment of the device is mentioned.
As shown in fig. 3, fig. 3 is a block diagram illustrating a structure of an electronic device 200 according to an embodiment of the present disclosure. The electronic device 200 includes: a communication module 210, a memory 220, a communication bus 230, and a processor 240.
The communication module 210, the memory 220, and the processor 240 are electrically connected to each other directly or indirectly to realize data transmission or interaction. For example, the components may be electrically coupled to each other via one or more communication buses 230 or signal lines. The communication module 210 is configured to receive and transmit a configuration message. The memory 220 is used for storing a computer program, such as a software functional module shown in fig. 2, i.e., the anti-cheating device 100. The anti-cheating device 100 includes at least one software function module, which may be stored in the memory 220 in the form of software or firmware (firmware) or solidified in an Operating System (OS) of the electronic device 200. The processor 240 is configured to execute an executable module stored in the memory 220, such as a software functional module or a computer program included in the anti-cheating device 100. For example, the processor 240 is configured to obtain sensing information generated when a button element for a target website acquired within a preset time period is triggered; and the system is used for judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
The Memory 220 may be, but is not limited to, a Random Access Memory (RAM), a Read Only Memory (ROM), a Programmable Read-Only Memory (PROM), an Erasable Read-Only Memory (EPROM), an electrically Erasable Read-Only Memory (EEPROM), and the like.
The processor 240 may be an integrated circuit chip having signal processing capabilities. The processor may be a general-purpose processor, including a Central Processing Unit (CPU), a Network Processor (NP), and the like; but also Digital Signal Processors (DSPs), Application Specific Integrated Circuits (ASICs), Field Programmable Gate Arrays (FPGAs) or other programmable logic devices, discrete Gate or transistor logic devices, discrete hardware components. The various methods, steps, and logic blocks disclosed in the embodiments of the present application may be implemented or performed. A general purpose processor may be a microprocessor or the processor 240 may be any conventional processor or the like.
The electronic device 200 includes, but is not limited to, a web server, a cloud server, a security server, and the like.
The embodiment of the present application further provides a non-volatile computer-readable storage medium (hereinafter, referred to as a storage medium), where the storage medium stores a computer program, and the computer program is executed by the computer, such as the electronic device 200, to perform the anti-cheating method described above.
It should be noted that, in the present specification, the embodiments are all described in a progressive manner, each embodiment focuses on differences from other embodiments, and the same and similar parts among the embodiments may be referred to each other.
In the embodiments provided in the present application, it should be understood that the disclosed apparatus and method can be implemented in other ways. The apparatus embodiments described above are merely illustrative, and for example, the flowchart and block diagrams in the figures illustrate the architecture, functionality, and operation of possible implementations of apparatus, methods and computer program products according to various embodiments of the present application. In this regard, each block in the flowchart or block diagrams may represent a module, segment, or portion of code, which comprises one or more executable instructions for implementing the specified logical function(s). It should also be noted that, in some alternative implementations, the functions noted in the block may occur out of the order noted in the figures. For example, two blocks shown in succession may, in fact, be executed substantially concurrently, or the blocks may sometimes be executed in the reverse order, depending upon the functionality involved. It will also be noted that each block of the block diagrams and/or flowchart illustration, and combinations of blocks in the block diagrams and/or flowchart illustration, can be implemented by special purpose hardware-based systems which perform the specified functions or acts, or combinations of special purpose hardware and computer instructions.
In addition, functional modules in the embodiments of the present application may be integrated together to form an independent part, or each module may exist separately, or two or more modules may be integrated to form an independent part.
The functions, if implemented in the form of software functional modules and sold or used as a stand-alone product, may be stored in a computer readable storage medium. Based on such understanding, the technical solution of the present application or portions thereof that substantially contribute to the prior art may be embodied in the form of a software product stored in a storage medium and including instructions for causing a computer device (which may be a personal computer, a notebook computer, a server, or an electronic device) to execute all or part of the steps of the method according to the embodiments of the present application. And the aforementioned storage medium includes: various media capable of storing program codes, such as a usb disk, a removable hard disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), a magnetic disk, or an optical disk.
The above description is only for the specific embodiments of the present application, but the scope of the present application is not limited thereto, and any person skilled in the art can easily conceive of the changes or substitutions within the technical scope of the present application, and shall be covered by the scope of the present application. Therefore, the protection scope of the present application shall be subject to the protection scope of the claims.

Claims (10)

1. An anti-cheating method, comprising:
acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered;
and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
2. The method of claim 1, wherein the sensory information comprises pressure values; judging whether the access flow for accessing the target website is abnormal or not based on the sensing information, wherein the judging step comprises the following steps:
acquiring the number of times that the pressure values in the preset time period are equal;
judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not;
and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal.
3. The method of claim 2, wherein obtaining the number of times the pressure values in the preset time period are equal comprises:
and obtaining the number of times that the pressure values from different mobile terminals accessing the target website are equal in the preset time period.
4. The method of claim 1, wherein the sensory information comprises pressure values; judging whether the access flow for accessing the target website is abnormal or not based on the sensing information, wherein the judging step comprises the following steps:
acquiring the times of pressure values of which the difference between the pressure values in the preset time period is within a set error range;
judging whether the access flow of the target website is abnormal or not by judging whether the ratio of the pressure value frequency of the difference of the pressure values in the preset time period within the set error range to the total pressure value frequency is greater than a preset threshold or not;
and when the ratio of the number of times of the pressure values of which the difference between the pressure values is within the set error range in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal.
5. The method according to claim 1, wherein after determining whether an access traffic to the target website is abnormal based on the sensing information, the method further comprises:
and if the abnormal access flow for accessing the target website is judged based on the sensing information, tracking and recording the abnormal access flow for accessing the target website in real time.
6. The method according to any one of claims 1 to 5, wherein before determining whether an access traffic to the target website is abnormal based on the sensing information, the method further comprises:
removing abnormal values in the sensing information;
correspondingly, judging whether the access flow for accessing the target website is abnormal or not based on the sensing information comprises the following steps:
and judging whether the access flow for accessing the target website is abnormal or not based on the sensing information from which the abnormal value is removed.
7. An anti-cheating device, comprising:
the acquisition module is used for acquiring sensing information which is acquired within a preset time period and generated when a button element aiming at a target website is triggered;
and the judging module is used for judging whether the access flow for accessing the target website is abnormal or not based on the sensing information.
8. The apparatus of claim 7, wherein the sensory information comprises a pressure value; the judging module is used for:
acquiring the number of times that the pressure values in the preset time period are equal;
judging whether the access flow for accessing the target website is abnormal or not by judging whether the ratio of the number of times that the pressure values are equal to the total number of times of the pressure values in the preset time period is greater than a preset threshold or not;
and when the ratio of the number of times that the pressure values are equal to each other in the preset time period to the total number of times of the pressure values is greater than the preset threshold value, representing that the access flow for accessing the target website in the preset time period is abnormal.
9. An electronic device, comprising:
a memory and a processor, the processor coupled to the memory;
the memory is used for storing programs;
the processor to invoke a program stored in the memory to perform the method of any of claims 1-6.
10. A storage medium having stored thereon a computer program which, when executed by a processor, performs the method according to any one of claims 1-6.
CN202010471440.0A 2020-05-28 2020-05-28 Anti-cheating method and device, electronic equipment and storage medium Pending CN111629005A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202010471440.0A CN111629005A (en) 2020-05-28 2020-05-28 Anti-cheating method and device, electronic equipment and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202010471440.0A CN111629005A (en) 2020-05-28 2020-05-28 Anti-cheating method and device, electronic equipment and storage medium

Publications (1)

Publication Number Publication Date
CN111629005A true CN111629005A (en) 2020-09-04

Family

ID=72260872

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202010471440.0A Pending CN111629005A (en) 2020-05-28 2020-05-28 Anti-cheating method and device, electronic equipment and storage medium

Country Status (1)

Country Link
CN (1) CN111629005A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114143049A (en) * 2021-11-18 2022-03-04 北京明略软件系统有限公司 Abnormal flow detection method, abnormal flow detection device, storage medium and electronic equipment

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20130196649A1 (en) * 2012-01-27 2013-08-01 Qualcomm Incorporated Mobile device to detect unexpected behaviour
CN107045400A (en) * 2016-02-06 2017-08-15 宸鸿科技(厦门)有限公司 Multipoint pressure touch detection method and multipoint pressure touch module
CN108681908A (en) * 2018-05-17 2018-10-19 广州爱九游信息技术有限公司 Anti- cheat method, device, computing device and storage medium

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20130196649A1 (en) * 2012-01-27 2013-08-01 Qualcomm Incorporated Mobile device to detect unexpected behaviour
CN107045400A (en) * 2016-02-06 2017-08-15 宸鸿科技(厦门)有限公司 Multipoint pressure touch detection method and multipoint pressure touch module
CN108681908A (en) * 2018-05-17 2018-10-19 广州爱九游信息技术有限公司 Anti- cheat method, device, computing device and storage medium

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114143049A (en) * 2021-11-18 2022-03-04 北京明略软件系统有限公司 Abnormal flow detection method, abnormal flow detection device, storage medium and electronic equipment

Similar Documents

Publication Publication Date Title
CN111401416B (en) Abnormal website identification method and device and abnormal countermeasure identification method
CN106033579B (en) Data processing method and device
US20160080229A1 (en) Application performance monitoring method and device
CN109450879A (en) User access activity monitoring method, electronic device and computer readable storage medium
CN111522711A (en) Data monitoring processing system, method, execution end, monitoring end and electronic equipment
CN115445212A (en) Game gift bag pushing method and device, computer equipment and storage medium
CN112434238A (en) Webpage quality detection method and device, electronic equipment and storage medium
CN110535910B (en) Method and device for recalling breakpoint user and storage medium
CN113949560B (en) Network security identification method, device, server and storage medium
CN111756745A (en) Alarm method, alarm device and terminal equipment
CN111447081A (en) Data chain generation method, device, server and storage medium
CN112948224A (en) Data processing method, device, terminal and storage medium
CN109240664B (en) Method and terminal for collecting user behavior information
CN111629005A (en) Anti-cheating method and device, electronic equipment and storage medium
CN113961431A (en) Service monitoring method and device
CN113609111A (en) Big data testing method and system
CN111612550A (en) Advertisement trigger cheating identification method and device, electronic equipment and storage medium
CN107644028B (en) Method and system for collecting webpage data
CN110909032A (en) Method and device for managing data in block chain
CN115174238B (en) Network attack source identification method and device
CN115758300B (en) Data processing method, device, electronic equipment and storage medium
JP2019168760A (en) Access method estimation system, and access method estimation method
CN110113228B (en) Network connection detection method and device
CN115859279A (en) Host behavior detection method and device, electronic equipment and storage medium
CN112529308A (en) Event prediction method, device and storage medium

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20200904

RJ01 Rejection of invention patent application after publication