TWI675310B - 防止重打包的方法及其裝置 - Google Patents

防止重打包的方法及其裝置 Download PDF

Info

Publication number
TWI675310B
TWI675310B TW106130944A TW106130944A TWI675310B TW I675310 B TWI675310 B TW I675310B TW 106130944 A TW106130944 A TW 106130944A TW 106130944 A TW106130944 A TW 106130944A TW I675310 B TWI675310 B TW I675310B
Authority
TW
Taiwan
Prior art keywords
installation package
digital watermark
target file
watermark information
repackaged
Prior art date
Application number
TW106130944A
Other languages
English (en)
Chinese (zh)
Other versions
TW201814576A (zh
Inventor
陳耀光
王加水
Original Assignee
香港商阿里巴巴集團服務有限公司
Alibaba Group Services Limited
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 香港商阿里巴巴集團服務有限公司, Alibaba Group Services Limited filed Critical 香港商阿里巴巴集團服務有限公司
Publication of TW201814576A publication Critical patent/TW201814576A/zh
Application granted granted Critical
Publication of TWI675310B publication Critical patent/TWI675310B/zh

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/12Protecting executable software
    • G06F21/14Protecting executable software against software analysis or reverse engineering, e.g. by obfuscation
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/55Detecting local intrusion or implementing counter-measures
    • G06F21/56Computer malware detection or handling, e.g. anti-virus arrangements
    • G06F21/566Dynamic detection, i.e. detection performed at run-time, e.g. emulation, suspicious activities
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/16Program or content traceability, e.g. by watermarking
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/51Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/55Detecting local intrusion or implementing counter-measures
    • G06F21/56Computer malware detection or handling, e.g. anti-virus arrangements
    • G06F21/562Static detection
    • G06F21/563Static detection by source code analysis
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/60Software deployment
    • G06F8/61Installation
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/106Enforcing content protection by specific content processing
    • G06F21/1063Personalisation
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/03Indexing scheme relating to G06F21/50, monitoring users, programs or devices to maintain the integrity of platforms
    • G06F2221/033Test or assess software

Landscapes

  • Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Technology Law (AREA)
  • Multimedia (AREA)
  • General Health & Medical Sciences (AREA)
  • Virology (AREA)
  • Health & Medical Sciences (AREA)
  • Editing Of Facsimile Originals (AREA)
  • Storage Device Security (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
  • Medical Treatment And Welfare Office Work (AREA)
  • Debugging And Monitoring (AREA)
  • Stored Programmes (AREA)
TW106130944A 2016-10-11 2017-09-11 防止重打包的方法及其裝置 TWI675310B (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201610887188.5 2016-10-11
CN201610887188.5A CN106971098B (zh) 2016-10-11 2016-10-11 一种防重打包的方法及其装置

Publications (2)

Publication Number Publication Date
TW201814576A TW201814576A (zh) 2018-04-16
TWI675310B true TWI675310B (zh) 2019-10-21

Family

ID=59334735

Family Applications (1)

Application Number Title Priority Date Filing Date
TW106130944A TWI675310B (zh) 2016-10-11 2017-09-11 防止重打包的方法及其裝置

Country Status (11)

Country Link
US (1) US10685117B2 (enExample)
EP (1) EP3528149B1 (enExample)
JP (1) JP6746156B2 (enExample)
KR (1) KR102192880B1 (enExample)
CN (1) CN106971098B (enExample)
ES (1) ES2874781T3 (enExample)
PH (1) PH12019500785A1 (enExample)
PL (1) PL3528149T3 (enExample)
SG (1) SG11201903264RA (enExample)
TW (1) TWI675310B (enExample)
WO (1) WO2018068633A1 (enExample)

Families Citing this family (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106971098B (zh) 2016-10-11 2020-06-02 阿里巴巴集团控股有限公司 一种防重打包的方法及其装置
CN107256349B (zh) * 2017-06-13 2020-02-28 广州阿里巴巴文学信息技术有限公司 动态库防盗用方法、装置、电子设备及可读存储介质
KR101920597B1 (ko) * 2017-11-16 2018-11-21 숭실대학교산학협력단 동적 코드 추출 기반 자동 분석 방지 우회 및 코드 로직 해석 장치
CN108304697B (zh) * 2017-12-11 2020-05-19 深圳壹账通智能科技有限公司 检测app二次打包的方法、装置及移动终端
CN109739544B (zh) * 2018-12-25 2022-11-04 北京三快在线科技有限公司 用于生成应用安装包的方法、装置及电子设备
CN109901981A (zh) * 2019-02-28 2019-06-18 北京智游网安科技有限公司 一种截屏泄露处理方法、智能终端及存储介质
CN110704816B (zh) * 2019-09-29 2021-10-22 武汉极意网络科技有限公司 接口破解的识别方法、装置、设备及存储介质
CN113127859B (zh) * 2019-12-30 2024-04-12 Oppo广东移动通信有限公司 待检测文件的检测方法、装置、终端及存储介质
CN113132421B (zh) * 2019-12-30 2022-11-04 Oppo广东移动通信有限公司 文件检测方法、装置、终端及存储介质
CN113127418B (zh) * 2019-12-30 2024-08-27 Oppo广东移动通信有限公司 文件检测方法、装置、终端及存储介质
CN113709195B (zh) * 2020-05-20 2024-05-28 广州汽车集团股份有限公司 一种车辆软件升级方法、装置及系统
CN112069468B (zh) * 2020-08-26 2023-05-30 上海上讯信息技术股份有限公司 一种页面动态水印的方法及设备
CN113641964B (zh) * 2021-10-19 2022-05-17 北京邮电大学 重打包应用检测方法、电子设备及存储介质

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TW480439B (en) * 1998-12-17 2002-03-21 Inventec Corp Method for examining correctness of system operation
US20130232540A1 (en) * 2012-03-02 2013-09-05 Hassen Saidi Method and system for application-based policy monitoring and enforcement on a mobile device
CN104239757A (zh) * 2014-09-30 2014-12-24 北京奇虎科技有限公司 应用程序防止逆向的方法及装置、运行方法及终端
CN104932902A (zh) * 2015-07-09 2015-09-23 魅族科技(中国)有限公司 一种生成apk文件的方法及终端
CN105205356A (zh) * 2015-09-17 2015-12-30 清华大学深圳研究生院 一种app应用重打包检测方法

Family Cites Families (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP3989577B2 (ja) * 1996-10-22 2007-10-10 株式会社野村総合研究所 デジタル文書のマーキング装置及びマーク認識装置
US7421586B2 (en) * 1999-05-12 2008-09-02 Fraunhofer Gesselschaft Protecting mobile code against malicious hosts
US20060010430A1 (en) * 2001-05-04 2006-01-12 Thales Device and process for the signature, the marking and the authentication of computer programs
US7877613B2 (en) * 2002-09-04 2011-01-25 Fraunhofer-Gesellschaft Zur Foerderung Der Angewandten Forschung E.V. Protecting mobile code against malicious hosts
US7784044B2 (en) * 2002-12-02 2010-08-24 Microsoft Corporation Patching of in-use functions on a running computer system
WO2008010508A1 (en) * 2006-07-18 2008-01-24 Panasonic Corporation Command generation device
US8024571B2 (en) * 2006-12-22 2011-09-20 Schlumberger Technology Corporation Method of and system for watermarking application modules
US8375458B2 (en) * 2007-01-05 2013-02-12 Apple Inc. System and method for authenticating code executing on computer system
US8950007B1 (en) * 2008-04-07 2015-02-03 Lumension Security, Inc. Policy-based whitelisting with system change management based on trust framework
CN102246295B (zh) * 2008-12-10 2013-09-04 住友电木株式会社 颗粒状半导体封装用环氧树脂组合物及使用它的半导体装置以及半导体装置的制造方法
JP5056995B1 (ja) * 2012-04-24 2012-10-24 大日本印刷株式会社 改竄検知が可能なアプリケーションプログラムの配布実行方法
US20120317421A1 (en) * 2012-06-19 2012-12-13 Concurix Corporation Fingerprinting Executable Code
KR101498820B1 (ko) * 2013-11-06 2015-03-05 순천향대학교 산학협력단 안드로이드 환경에서의 어플리케이션 리패키징 탐지 방법
US9619665B2 (en) * 2014-07-22 2017-04-11 Cheng-Han KO Method and system for adding dynamic labels to a file and encrypting the file
KR101695639B1 (ko) * 2014-08-13 2017-01-16 (주)잉카엔트웍스 클라우드 기반의 애플리케이션 보안 서비스 제공 방법 및 시스템
CN105956456B (zh) * 2016-04-26 2019-02-19 南京邮电大学 一种对Android系统进行四重联合签名验证的实现方法
CN106971098B (zh) * 2016-10-11 2020-06-02 阿里巴巴集团控股有限公司 一种防重打包的方法及其装置

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TW480439B (en) * 1998-12-17 2002-03-21 Inventec Corp Method for examining correctness of system operation
US20130232540A1 (en) * 2012-03-02 2013-09-05 Hassen Saidi Method and system for application-based policy monitoring and enforcement on a mobile device
CN104239757A (zh) * 2014-09-30 2014-12-24 北京奇虎科技有限公司 应用程序防止逆向的方法及装置、运行方法及终端
CN104932902A (zh) * 2015-07-09 2015-09-23 魅族科技(中国)有限公司 一种生成apk文件的方法及终端
CN105205356A (zh) * 2015-09-17 2015-12-30 清华大学深圳研究生院 一种app应用重打包检测方法

Also Published As

Publication number Publication date
JP2019535087A (ja) 2019-12-05
KR102192880B1 (ko) 2020-12-22
CN106971098B (zh) 2020-06-02
JP6746156B2 (ja) 2020-08-26
CN106971098A (zh) 2017-07-21
EP3528149A4 (en) 2019-10-16
US20190243974A1 (en) 2019-08-08
US10685117B2 (en) 2020-06-16
EP3528149B1 (en) 2021-04-07
ES2874781T3 (es) 2021-11-05
PL3528149T3 (pl) 2021-10-11
TW201814576A (zh) 2018-04-16
PH12019500785A1 (en) 2019-11-11
EP3528149A1 (en) 2019-08-21
KR20190061075A (ko) 2019-06-04
SG11201903264RA (en) 2019-05-30
WO2018068633A1 (zh) 2018-04-19

Similar Documents

Publication Publication Date Title
TWI675310B (zh) 防止重打包的方法及其裝置
KR102201844B1 (ko) 서비스 처리 방법 및 장치
CN109491695B (zh) 一种集成安卓应用的增量更新方法
KR101471589B1 (ko) 공통중간언어 기반 프로그램을 위한 보안 제공 방법
CN103646082B (zh) 一种文件校验的方法及装置
JP2018503157A (ja) アプリケーション整合性の検証を提供する方法及びデバイス
US20170262656A1 (en) Method and device for providing verifying application integrity
US20170262657A1 (en) Method and device for providing verifying application integrity
WO2016078130A1 (zh) 一种防逆向apk文件的动态加载方法
JP2017538217A (ja) アプリケーション整合性の検証を提供する方法及びデバイス
WO2016054880A1 (zh) 扩展apk文件应用的方法及装置
CN105574411A (zh) 一种动态脱壳方法、装置和设备
JP7432523B2 (ja) 動的メモリ保護
US20150026483A1 (en) Systems and Methods for Mobile Application Protection
CN109960509A (zh) 应用加固的方法、装置、计算设备及计算机存储介质
KR20180028666A (ko) 역공학 방지 방법 및 장치
WO2019024392A1 (zh) 依赖包工具的验证方法、存储介质、电子设备及系统
CN115292709B (zh) 一种基于sm3算法的云平台信任链构建方法
CN108572853A (zh) 系统隐藏方法的接口提供方法、装置和计算设备
TWI682296B (zh) 映像檔打包方法及映像檔打包系統
CN108052344A (zh) 一种内核差异检测方法及装置
US20250384136A1 (en) Self-Version Verification for Shared Libraries
CN105487846A (zh) 快速开发x86/x64平台shellcode的方法及系统
CN112416300B (zh) 应用程序安装包生成方法、装置与电子设备
CN117272377A (zh) 权限数据处理方法、装置及电子设备

Legal Events

Date Code Title Description
MM4A Annulment or lapse of patent due to non-payment of fees