WO2013097673A1 - 数据调用方法和装置 - Google Patents

数据调用方法和装置 Download PDF

Info

Publication number
WO2013097673A1
WO2013097673A1 PCT/CN2012/087296 CN2012087296W WO2013097673A1 WO 2013097673 A1 WO2013097673 A1 WO 2013097673A1 CN 2012087296 W CN2012087296 W CN 2012087296W WO 2013097673 A1 WO2013097673 A1 WO 2013097673A1
Authority
WO
WIPO (PCT)
Prior art keywords
service
name
mobile terminal
user
data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2012/087296
Other languages
English (en)
French (fr)
Inventor
丁祎
李元
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to US14/368,550 priority Critical patent/US9628939B2/en
Publication of WO2013097673A1 publication Critical patent/WO2013097673A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/08Access security
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/60Subscription-based services using application servers or record carriers, e.g. SIM application toolkits
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/20Transfer of user or subscriber data
    • H04W8/205Transfer to or from user equipment or user record carrier

Definitions

  • the present invention relates to the field of communications technologies, and in particular, to a data calling method for private data.
  • mobile terminals such as mobile phones have become a necessity for people's daily lives.
  • mobile terminal manufacturers and mobile service providers have also provided more and more application services.
  • application services collect user privacy information without the user's knowledge, and threaten users' security.
  • mobile terminals which have more and more existing applications and functions, because there are many users' private data, they need to be protected.
  • the operating system has certain requirements for each APP (application). If an application needs to read the user's private data (such as address book, SMS, etc.), it will pop up a prompt to inform the user that the application needs to use the user's private data when the application is installed. Then you can install the application. However, after installation, the application will not be interrupted at any time during the use of private data, nor will the user be prompted to inform the user that the private data is being used.
  • APP application
  • the present invention has been made in order to provide a data calling method and apparatus for overcoming the above problems or at least partially solving or slowing down the above-mentioned problems.
  • a data invocation method comprising: receiving a service request requesting to use a first service, the first service requiring use of privacy data of a mobile terminal, wherein the service request includes the first a service name of the service; sending, according to the service name, a prompt to the user of the mobile terminal whether to allow the first service to use the private data; determining, according to the input of the user, allowing the requested first The service uses the private data; determines a jump service name corresponding to the service name, and invokes the first service according to the jump service name, where the jump service name is the mobile terminal each time service 5 list maintained by the system in the first service of the service name is the name of the modified service start, the service name is different from the jump list of services in addition to the other of said first and services The service name of the service.
  • a data call apparatus comprising: a receiving module for receiving a request to use the service of a first service request of the first service requires the use of 5 private data of the mobile terminal, the service request
  • the service module includes the service name of the first service
  • the prompting module is configured to send, according to the service name, a prompt to the user of the mobile terminal whether the first service uses the private data, and a confirmation module, Determining, according to the input of the user, that the requested first service is allowed to use the private data
  • the calling module configured to: after the confirming module determines to allow the requested first service to use the private data, Determining a jump service name corresponding to the service name, and calling the first service according to the jump service name 5 , wherein the jump service name is 5 pairs of systems each time the mobile terminal starts The service name of the first service in the maintained service list is modified, and the jump service name is different from the service list except the first service Other service name
  • a computer program comprising computer readable code 5, when said computer readable code is run on a server, causing said server to perform according to any of claims 1-9 The data invocation method described in the item.
  • a computer readable medium storing the computer program according to claim 18 is provided.
  • the beneficial effects of the invention are:
  • a mobile terminal by modifying the private data service (a first service) name service, upon receiving a request to use the service (a first service) 5 to ask the user whether to allow the use of private data of the mobile terminal, the user is charged in the In the case of the case, the service (first service) is called by the modified service name (jump service name).
  • the service (first service) is called by the modified service name (jump service name).
  • jump service name the modified service name
  • each access and use of the mobile terminal's private data by the application can be known by the user, and then the user decides whether to allow the application to use the private data, thereby solving the problem that the user's private data cannot be effectively protected in the prior art.
  • the problem that the user uses the application security is not high, and the security of the privacy data of the mobile terminal is improved.
  • FIG. 1 is a flow chart of steps of a data invoking method according to Embodiment 1 of the present application
  • FIG. 2 is a flow chart of steps of a data invoking method according to Embodiment 2 of the present application
  • FIG. 3 is a flowchart according to Embodiment 3 of the present application
  • FIG. 4 is a block diagram showing the structure of a data invoicing apparatus according to Embodiment 4 of the present application
  • FIG. 5 is a block diagram schematically showing a server for executing the method according to the present invention. as well as
  • Fig. 6 schematically shows a memory unit for holding or carrying a program code implementing a method according to the invention.
  • Embodiment 1 Referring to FIG. 1, a flow chart of steps of a data calling method according to Embodiment 1 of the present application is shown.
  • Step S102 Receive a service request requesting to use the first service.
  • the first service needs to use the privacy data of the mobile terminal, and the service request includes the service name of the first service.
  • the first service may be an existing service, such as a short message service, and the service name of the first service is the original service name of the existing service, such as ISMS.
  • a service request for requesting use of the privacy data of the mobile terminal may be received by a service (or called a service process) of the system.
  • a service is an abstract wrapper.
  • a service (or multiple) can correspond to a process. This process is dedicated to something, so it is called a service process.
  • a service process Take android system as an example, the difference between a service process and a normal process is that the service process has an android-specific interface (service interface).
  • Similar android system services can be divided into two categories according to different startup methods, which are started by the android dalvik virtual machine. And not launched by the android daivik virtual machine, the latter can be called native service. Services initiated by non-system android virtual machine programs (such as the 360cailback service mentioned later) cannot be registered to the system service list through the system interface.
  • Step S104 Send, according to the service name, a prompt to the user of the mobile terminal whether to allow the first service to use the private data.
  • the privacy data related to the service in the mobile terminal is used because the first service requirement is used. Therefore, the system server sends a prompt to the user of the mobile terminal whether to allow the use of the privacy data related to the service, and on the other hand, prompts the user to have the service to use the privacy. Data; on the other hand, it is up to the user to decide whether the privacy data is willing to be used by the service.
  • Step S W6 allows the requested first service to use the privacy data according to the user's input.
  • Step S108 Determine a jump service name corresponding to the service name, and invoke the first service according to the jump service name.
  • the jump service name is used to repair the service name of the first service in the service list maintained by the system (the service list maintained by the ServiceManager) each time the mobile terminal starts up.
  • the changed service name, the jump service name is different from the ⁇ ⁇ " name of the service other than the first service in the service list.
  • the jump service name is a new service name modified by the original service name of the first service, and the original service name is modified to a new service name, so that when the service is invoked, the service is not directly called, but is first sent to the user.
  • the use of privacy data prompts the service only if the user is allowed to use the private data, thus avoiding the disclosure and use of private data without the user's knowledge.
  • the service name of the service (first service) using the privacy data of the mobile terminal is modified, and when the request for using the service (the first service) is received, the user is first asked whether to permit the use of the privacy data of the mobile terminal.
  • the service (first service) is called by the modified service name (jump service name).
  • the application can be known to the user for each access and use of the mobile terminal's private data, and then the user decides whether to allow the application to use the private data, and the person can solve the problem that the user's private data cannot be effectively valid in the prior art. Protection, the problem of low security of the user's application, improves the security of the privacy data of the mobile terminal.
  • FIG. 2 a flow chart of a step of a data invoking method according to a second embodiment of the present application is shown.
  • the mobile terminal is configured to use the Android operating system 5 to set the first service as a short message service, and the mobile terminal needs to use the privacy data 5 of the mobile terminal to set the service name of the first service to be the ISMS o.
  • the data invocation method of this implementation includes the following steps:
  • Step S202 When the mobile terminal starts, modify the service name of the first service in the service list maintained by the system, and modify the service name to the jump service name.
  • the 'system' in this embodiment means that the jump service name of the first service modified by the ServiceManager service tube in the Android system is different from the original service name, and is different from the service of other services except the first service in the list. Name.
  • the present step 5 the service name can be modified to a short message service ISMS ISMO, "ISMO" is merely illustrative, and those skilled in the art can modify the service name to any suitable name under the foregoing principles.
  • the modified jump service name is the same as the length of the service name.
  • the service names are the same length before and after the repair, and can not damage the data structure inside the program, and will not cause overflow or other problems of the program storage stack, and minimize the impact of the modification on the existing process.
  • Step S204 Send an instruction to register the second service and/or intercept the service to the system.
  • the second service is configured to send a prompt to the user of the mobile terminal whether to allow the first service to use the private data, and determine, according to the input of the user, whether the requested first service is allowed to use the private data; or the second service is used for
  • the interception service is invoked, and the interception service sends a prompt to the user of the mobile terminal whether to allow the first service to use the private data, and after the user returns the processing result, the interception service returns the processing result to the second service.
  • interception and prompting of the invoking of the private data may also be implemented by other persons in the appropriate manner according to actual needs by those skilled in the art, without having to register a new service, such as using a command or a program to transfer.
  • Step S206 the system determines the second service and / or interception services if there privilege 5 if registered, proceed to step S208; if not, then refused registration process ends.
  • This step is an optional step, mainly for restricted users, to avoid mis-repair or illegal modification to ensure system security.
  • Step S208 Register the second service with the service name, and / or , register the interception service.
  • a new service called ISMS is registered, and / or intercepted.
  • Registering a new service with the original service name can effectively guarantee the stability of the system, so that the system can directly find the original service name when calling the original service.
  • the new service is executed, it will not cause the original service name to be found.
  • the service could not be executed, or other problems such as system crashes or crashes.
  • the second service interceptor or service may be implemented separately transmitted to allow the use of private data presented to the user of the mobile terminal, and in the end set 3 ⁇ 4 allow or disallow the user to input the first service usage data privacy functions can be registered separately of 5 Second service or interception service; it is also possible to split some functions from the above functions, such as sending a prompt to the user of the mobile terminal whether or not the user is allowed to use the private data, and the function of receiving the input of the user is separated, by the intercepting service
  • the service is completed, and the second service invokes the interception service, and receives the input information of the user returned by the interception service, and then determines according to the input information of the user: ft the first service uses the private data, and implements the interception and prompting of the private data call.
  • the interception and prompting of the private data call are effectively realized, and the registration of the new service using the original service name also effectively ensures the stability of the system.
  • the service functions can be made clearer and the existing service functions can be effectively utilized, such as the function of the existing display interception interface.
  • the second service is further configured to: after the disease is allowed to use the privacy data by the first service, the jump service name corresponding to the service name is invoked, and the first service corresponding to the jump service name is invoked.
  • the second service determines the jump service name, and then calls the first service, which ensures the consistency and consistency of the service call.
  • the jump service name may also be determined in other ways, and then the first service is invoked.
  • the second service is set to be registered, and the second service separately sends a prompt to the user of the mobile terminal whether to allow the use of the private data, and determines whether the first service is allowed or not using the private data according to the input of the user.
  • the current service of the short message service is named ISM0, and the original service name ISMS points to a new service (second service) for intercepting and prompting the use of private data.
  • Step S210 The system receives a service request requesting to use the first service.
  • the first service needs to use the privacy data of the mobile terminal, and the service name of the first service can be obtained through the service request.
  • the system server receives the service request for requesting to use the short message service, and obtains the service name of the short message service as ISMS.
  • Step S212 Invoking the second service according to the service name, and sending a prompt to the user of the mobile terminal whether to allow the first service to use the private data.
  • the second service After the second service is registered by using the service name, when the system receives the service name, it searches the service list maintained by the system, and the service name corresponds to the second service. Therefore, the second service 5 is called to send the user to the mobile terminal. A hint that allows the first service to use private data.
  • Step S214 Receive user input, and the second service determines whether to allow the first service to use the privacy data of the mobile terminal according to the user input. If the permission is sufficient, step S216 is performed; if the service is not allowed to end.
  • Step S216 The second service is determined by the jump service name corresponding to the service name, and the first service corresponding to the jump service name is called.
  • the correspondence between the service name and the jump service name is stored in the system.
  • the second service determines that the user: 3 ⁇ 4 the first service uses its private data, directly finds the new service name corresponding to the original service name (ie, the service name) (ie, jumps the service name), and then calls the original corresponding to the new service name. Service (ie the first service).
  • the second service determines a new service name corresponding to the original service name ISMS.
  • ISM0 searches for the service name ISM0 in the service list, and then uses the service name ISM0 to call the short message service according to the original process and use the privacy data of the mobile terminal.
  • the service name of the first service may be used to modify the first service to be used to instruct the mobile terminal to Sending a prompt for allowing the first service to use the private data, and determining whether to allow the requested first service to use the private data according to the user's input : and, by the user, the jump service name corresponding to the service name of the first service.
  • the service name is modified in the memory, the modification is for the parameter level modification, not for the system function or file level modification, the system changes are smaller, not only the privacy data is safely used. It also makes the modified system very stable. Moreover, the new service is registered with the original service name, and the original service name is modified to a new service name whose length is consistent, which further improves the stability of the system.
  • the present embodiment only uses the short message service as an example, but is not limited thereto. Any other service that needs to use private data, 3 ⁇ 4 ⁇ telephone service, data upload service, etc., can implement the mobile terminal with reference to the embodiment. Data call for privacy data.
  • Embodiment 3 Referring to FIG. 3, a flow chart of steps of a data invoking method according to Embodiment 3 of the present application is shown.
  • the short message service that uses the privacy data of the mobile terminal is used as an example.
  • the mobile terminal in this embodiment uses a mobile phone, and the operating system of the mobile phone adopts an Android operating system.
  • an ISMS service is automatically started in the system server process of the dalvik, and all the Android systems are processed through the Binder mechanism, and the data call processing of the application is performed on the ISMS service, and the sending SMS request is filtered.
  • 3 ⁇ 4 ⁇ is. "f day ⁇ 3 ⁇ 4 mesh &3 ⁇ 4 ⁇
  • Step S302 The Android operating system starts the process.
  • Step S3022 The mobile phone isms (message) service is started.
  • Step S3024 Running the native program of Android, thereby starting the tampering program, automatically suspending the servicemanager process by using trace, and repairing the isms keyword of the female svrlist object is ismOo
  • Step S3026 Android native program starts 360 service main program 5 automatically registers two services, 360service hesso
  • the system uses the 360 service to control the registration of related services through the 360service service.
  • the tampering program is started by applying the root privilege to the system, so you can also use the privilege of the application to start the 360service service native.
  • 3 ⁇ 4 isms EK ⁇ native ) j3 ⁇ 4like 360service
  • This service has root rights.
  • the 360serviee service has the right to approve the registration of 360cailbad dalvik jffi.
  • 360callbac3 ⁇ 4 dalvik is a Java program, and Java is not allowed to register to this service list by default. Thus five example embodiments, it registered by 360service service list to the service system.
  • Step S3028 Start the 360 user interface through the Android dalvik program, obtain the servicemanager service through the reflection mechanism, and obtain the 360service service.
  • Step S30210 Register the 360callback service through the 360service service for display Column interface.
  • the 360cal]baek service is registered through the 360service service because
  • Service manager does not: t i no non system and root identity of the order registration service.
  • Step S304 The data invokes the workflow.
  • Step S3042 The program sends a short message.
  • Step S3044 The registered isms service receives the sendiext call.
  • the newly registered isms service obtains the SMS service request of the program.
  • Step S3046 The isms service invokes the 360callback service, and sends the short message sending number, the content, the pid (process ID) of the sending process, and the uid (user ID).
  • Step S3048 360cal]
  • the baek service receives the data, and the pop-up interface asks the user whether the prompt information of the pop-up interface includes a prompt for using the private data.
  • the whitelist mechanism for sending SMS messages can be implemented through appropriate existing means.
  • Step S30410 360callback waits for the user to process the result, and returns the step S30412 to the isms service: the registered iss service returns a result according to the 360callback, determines whether it is necessary to call the ism service, and sends a short message; if necessary, invokes the ism service to send a short message; If not, the flow of this call is ended.
  • the servicemanager is used to change the android native order
  • 360service Woisms registration android native Wo 360callback service and intercept interface program ( apk )
  • implemented tampering servicemanager implemented tampering servicemanager, registered 360service service, pseudo isms service and 360caUback service, and intercepted SMS, pulled out the interception interface, and according to interception
  • the result is the ability to send or not send text messages.
  • Any mobile terminal that adopts the Android system can use the data calling method of the implementation.
  • other systems similar to the Android operating system can also implement the data calling method of this embodiment.
  • the mobile terminal using the 360 service is not limited to the mobile terminal using the 360 service, and the data call using the other similar service can also implement the data call with reference to the embodiment.
  • FIG. 4 a block diagram of a data calling device according to Embodiment 4 of the present application is shown.
  • the data invoking device of this embodiment includes: a receiving module 402, configured to receive a service request for requesting to use the first service, where the first service needs to use the privacy data of the mobile terminal, where the service request includes the service name of the first service ; prompt module 404, according to the service name is transmitted to the user of the mobile terminal is first prompted many charging service usage data privacy; confirming module 406 for a first service according to a user's input 5 3 ⁇ 4 fixed charge requested Xu using private data; calling module 408, and fixed for 5 3 ⁇ 4 service name corresponding to a given disease after confirmation module 406 allows the first data service using the privacy requested jump according to the jump service name service name 5, the first service call
  • the jump service name is a service name modified by the service name of the first service in the service list maintained by the system each time the mobile terminal starts, and the jump service name is different from the service list except the first service.
  • the service name of other services is a service name modified by the service name of the first service in the service list maintained by the system each
  • the data invoking device of the present embodiment further includes: a registration module 410, configured to: after the mobile terminal starts, change the service name of the first service in the service list maintained by the system to the jump service name, and then use The service name is registered with the second service, and the second service is configured to send a prompt to the user of the mobile terminal whether the first service is allowed to use the private data, and according to the input of the user, whether to allow the requested first service to use the privacy. data.
  • the prompting module 404 is configured to invoke the second service according to the service name, and send a prompt to the user of the mobile terminal via the second service whether the first service uses the private data.
  • the second service is further configured to: after the disease is allowed to use the privacy data by the first service, the jump service name corresponding to the service name is determined, and the first service corresponding to the jump service name is invoked.
  • the registration module 410 is further configured to register the interception service before or after registering the second service by using the service name; the second service is used to invoke the interception service to send a prompt to the user of the mobile terminal whether to allow the first service to use the private data. And determining whether to allow the requested first service to use the private data according to the information input by the user returned by the interception service.
  • the data invoking device of this embodiment further includes: a determining module 412, configured to determine whether the second service and the intercepting service have registration authority before the registration module 410 registers the second service and the intercepting service, and if yes, allow registration ; If not, registration is not allowed.
  • a determining module 412 configured to determine whether the second service and the intercepting service have registration authority before the registration module 410 registers the second service and the intercepting service, and if yes, allow registration ; If not, registration is not allowed.
  • the data invoking device of this embodiment further includes: a modifying module (not shown), configured to use the service name of the first service for calling before the receiving module 402 receives the service request for using the first service.
  • the first service is modified to prompt the mobile terminal to send to the user whether to allow the first service to use the private data, and according to the input of the user, determine whether to allow the requested first service to use the private data, and The name of the jump service corresponding to the service name of a service.
  • the length of the service name is the same as the length of the jump service name.
  • the mobile terminal uses an Android operating system.
  • the first service comprises at least one of the following: a short message service, an IP telephone service, and a data upload service.
  • the data invoking device of the present embodiment is used to implement a plurality of corresponding data invoking methods of the foregoing method embodiments, and has the beneficial effects of the corresponding method embodiments, and details are not described herein again.
  • the various component embodiments of the present invention may be implemented in hardware, or in a software module running on one or more processors, or in a combination thereof.
  • Those skilled in the art will appreciate that some or all of the components of the data invoking device in accordance with embodiments of the present invention may be implemented in practice using a chirp processor or digital signal processor (DSP).
  • DSP digital signal processor
  • the invention can also be implemented as a device or device program (e.g., a computer program and a computer program product) for performing some or all of the methods described herein.
  • a program implementing the present invention may be stored on a computer readable medium 5 or may have the form of one or more signals. Such signals can be downloaded from the Internet website.
  • Figure 5 illustrates a server, such as an application server, that can implement a data invocation method in accordance with the present invention.
  • the server conventionally includes a processor 510 and a computer program product or computer readable medium in the form of a memory 520.
  • the memory 520 may be a type 0 electronic memory such as a flash memory, an EEPROM (Electrically Erasable Programmable Read Only Memory), an EPROM, a hard disk, or a ROM.
  • Memory 520 has a memory space 530 for program code 531 for performing any of the method steps described above.
  • storage space 530 for program code may include various program code 531 for implementing various steps in the above methods, respectively.
  • the program code can be read from or written to one or more computer program products.
  • These computer program products include program code carriers such as a hard disk 5 compact 5 disk (CD), a memory card or a floppy disk. Such computer program products are typically unloaded with the portable or fixed storage unit described with reference to FIG.
  • the storage unit may have a storage section, a storage space, and the like arranged similarly to the storage 520 in the server of FIG.
  • the program code can be compressed, for example, in an appropriate form.
  • the storage unit includes computer readable code 53 ⁇ , ie, code that can be read by a processor, such as 510, which, when executed by a server, causes the server to perform each of the methods described above. step.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Databases & Information Systems (AREA)
  • Telephonic Communication Services (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephone Function (AREA)

Abstract

本发明公开了一种数据调用方法和装置,其中,数据调用方法包括:接收请求使用第一服务的服务请求,第一服务需要使用移动终端的隐私数据,服务请求中包括第一服务的服务名;根据服务名,向移动终端的用户发送是否允许第一服务使用隐私数据的提示;根据用户的输入,确定允许所请求的第一服务使用隐私数据;确定与服务名对应的跳转服务名,根据跳转服务名,调用第一服务,其中,跳转服务名为移动终端每次启动时,对系统所维护的服务列表中第一服务的服务名进行修改后的服务名,跳转服务名不同于服务列表中除第一服务外的其它服务的服务名。通过本申请,提高了移动终端隐私数据的安全性。

Description

数据调用方法和装置
技术领域
本发明涉及通信技术领域,特别是涉及一种隐私数据的数据调用方法 禾装置 o 背景技术
随着通信技术的发展,移动终端如手机等已经成为人们日常生活的 必需品。 为了满足人们越来越高的使用需求,移动终端生产商和移动服 务提供商也为人们提供了越来越多的应用服务。 然而,很多应用服务在 用户不知情的情况下 ,收集用户隐私信息,威胁用户使用安全。 尤其在 现有应用和功能愈加丰富的移动终端如手机端, 因其中存在很多用户的 隐私数据,所以丰富需要对其加以保护。
以手机为例 , 目前,在手机上的应用程序中 ,操作系统对各个 APP (应用程序)有一定的要求。如果某个应用需要读取用户的隐私数据(例 如通讯录、 短信等) ,则会在该应用程序安装时,弹出提示以告知用户 该应用程序需要使用到用户的隐私数据 , ^果用户同意 ,则就可以安装 该应用程序了。 然而,在安装之后,该应用程序任何时候在使用隐私数 据的过程中 ,都不会被打断, 也不会提示用户 ,告知用户的隐私数据正 被使用。
也就是说,对于一个应用程序, 需要向操作系统申请使用隐私数据 的权限 5这个申请以及授权过程是在应用程序安装过程中完成的。 之后, 应用程序如何使用隐私数据,什么时候使用隐私数据,使用什么隐私数 据等等 s就都是应用程序自己的事情了 ,系统不再进行监督和管理, 也 不再向用户进 l告警或提不。
然而 ,这样的用户隐私数据保护显然不镞。 因为实际上只在安装时 请求授权, 而在后续使用中不再进行监管 ,会使用户无法得知应用程序 对隐私数据的应用情况 , 以及会如何应用 ,或者在什么情况下应用隐私 数据,从而造成用户隐私数据的泄密。 所以,非常有必要对每次应用程 序访问隐私数据时,都加以提示和防护 , 以瓒强用户隐私数据的保护 , 保障用户使用应用程序的安全性。 发明内容
鉴于上述问题 ,提出了本发明以便提供一种克服上述问题或者至少 部分地解决或者减缓上述问题的隐私数据的数据调用方法和装置。
根据本发明的一个方面,提供了一种数据调用方法,包括: 接收请 求使用第一服务的服务请求,所述第一服务需要使用移动终端的隐私数 据,所述服务请求中包括所述第一服务的服务名 ;根据所述服务名 , 向 所述移动终端的用户发送是否允许所述第一服务使用所述隐私数据的提 示;根据所述用户的输入 ,确定允许所请求的所述第一服务使用所述隐 私数据;确定与所述服务名对应的跳转服务名 ,根据所述跳转服务名 , 调用所述第一服务,其中 ,所述跳转服务名为所述移动终端每次启动时 5 对系统所维护的服务列表中所述第一服务的所述服务名进行修改后的服 务名 ,所述跳转服务名不同于所述服务列表中除所述第一服务外的其它 服务的服务名。
根据本发明的另一个方面 ,提供了一种数据调用装置, 包括:接收 模块 , 用于接收请求使用第一服务的服务请求 5 所述第一服务需要使用 移动终端的隐私数据,所述服务请求中包括所述第一服务的服务名 ;提 示模块 ,用于根据所述服务名 , 向所述移动终端的用户发送是否^许所 述第一服务使用所述隐私数据的提示 ;确认模块 ,用于根据所述用户的 输入 ,确定允许所请求的所述第一服务使用所述隐私数据;调用模块 , 用于在所述确认模块确定允许所请求的所述第一服务使用所述隐私数据 后,确定与所述服务名对应的跳转服务名 ,根据所述跳转服务名 5调用 所述第一服务, 其中 ,所述跳转服务名为所述移动终端每次启动时 5对 系统所维护的服务列表中所述第一服务的所述服务名进行修改后的服务 名 ,所述跳转服务名不同于所述服务列表中除所述第一服务外的其它服 的 名
根据本发明的又一个方面 ,提供了一种计算机程序 , 其包括计算机 可读代码 5 当所述计算机可读代码在服务器上运行时 ,导致所述服务器 执行根据权利要求 1 -9中的任一项所述的数据调用方法。
根据本发明的再一个方面 , 提供了一种计算机可读介质 ,其中存储 了如权利要求 18所述的计算机程序。 本发明的有益效果为 :
本申请通过修改使用移动终端隐私数据的服务(第一服务)的服务 名 ,在接收到使用该服务(第一服务)的请求时 5 先询问用户是否允许 使用移动终端的隐私数据,在用户充许的情况下 ,再通过修改后的服务 名 (跳转服务名 )调用该服务(第一服务)。 这样,应用程序对移动终 端隐私数据的每一次访问和使用都能被用户知晓 ,进而由用户决定是否 允许应用程序使用隐私数据,从而解决了现有技术中无法对用户的隐私 数据进行有效保护 ,用户使用应用程序安全性不高的问题 ,提高了移动 终端隐私数据的安全性。
上述说明仅是本发明技术方案的概述, 为了能够更清楚了解本发明 的技术手段, 而可依照说明书的内容予以实施, 并且为了让本发明的上 述和其它目的、 特征和优点能够更明显易懂, 以下特举本发明的具体实 施方式。 附图说明
通过阅读下文优选实施方式的详细描述, 各种其他的优点和益处对 于本领域普通技术人员将变得清楚明了。 附图仅用于示出优选实施方式 的目的 , 而并不认为是对本发明的限制。 而且在整个附图中 ,用相同的 参考符号表示相同的部件。 在附图中 :
图 1是根据本申请实施例一的一种数据调用方法的步骤流程图 ; 图 2是根据本申请实施例二的一种数据调用方法的步骤流程图 ; 图 3是根据本申请实施例三的一种数据调用方法的步骤流程图 ; 图 4是根据本申请实施例四的一种数据调用装置的结构框图 ; 图 5 示意性地示出了用于执行根据本发明的方法的服务器的框图 ; 以及
图 6 示意性地示出了用于保持或者携带实现根据本发明的方法的程 序代码的存储单元。 具体实施例
下面结合附图和具体的实施方式对本发明作进一步的描述。
实施例一 参照图 1 ,示出了根据本申请实施例一的一种数据调用方法的步骤流 程图。
本实施例的数据调用方法包括以下步骤:
步骤 S 102:接收请求使用第一服务的服务请求。
其中 ,第一服务需要使用移动终端的隐私数据,服务请求中包括第 一服务的服务名。 第一服务可以是现有的服务,如短信服务,第一服务 的服务名即为现有服务的原服务名 , 如 ISMS等。
本步骤中 , 可以由系统的服务(或称为服务进程)接收请求使用移 动终端的隐私数据的服务请求。
服务是一个抽象的包装, 一个服务(也可以多个)对应着一个进程, 该进程专门做某种事情,所以称为服务进程。 以 android系统为例 ,服务 进程与普通进程的区别是,服务进程具有 android特定的接口(服务接口 )o 类似的 android系统的服务根据启动方式的不同可以分为两类,通过 android dalvik虚拟机启动的和不通过 android daivik虚拟机启动的 ,后者 可以称为 native服务。 非系统的 android虚拟机程序启动的服务(譬如后 文提到的 360cailback服务)是不能够通过系统的接口注册到系统服务列 表里面的。
步骤 S 104:根据服务名 , 向移动终端的用户发送是否允许第一服务 使用隐私数据的提示。
因第一服务需求使用移动终端中与该服务有关的隐私数据, 因此, 系统服务器向移动终端的用户发送是否允许使用与该服务有关的隐私数 据的提示 , 一方面,提示用户有服务要使用隐私数据; 另一方面 , 由用 户决定隐私数据是否愿意被该服务使用。
步骤 S W6 根据用户的输入 , ¾定允许所请求的第一服务使用隐私 数据。
步骤 S 108:确定与服务名对应的跳转服务名 ,根据跳转服务名 ,调 用第一 11务。
其中 ,跳转服务名为移动终端每次启动时,对系统所维护的服务列 表( , ServiceManager所维护的服务列表)中第一服务的服务名进行修 改后的服务名 ,跳转服务名不同于服务列表中除第一服务外的其它服务 的 <ΙΒ ^"名 ο
跳转服务名为对第一服务的原服务名进行修改后的新服务名 ,将原 服务名修改为新服务名 ,使得在调用服务时, 不会直接调用该服务, 而 是先向用户发出使用隐私数据的提示 ,只有在用户充许使用隐私数据的 情况下 ,才会调用该服务,从而避免隐私数据在用户不知哓情况下的泄 露和使用。
通过本实施例 ,对使用移动终端隐私数据的服务(第一服务)的服 务名进行修改,在接收到使用该服务(第一服务)的请求时, 先询问用 户是否允许使用移动终端的隐私数据,在用户: ft许的情况下 ,再通过修 改后的服务名 (跳转服务名 )调用该服务(第一服务)。 这样,应用程 序对移动终端隐私数据的每一次访问和使用都能被用户知哓,进而由用 户决定是否允许应用程序使用隐私数据 , 人而解决了现有技术中无法对 用户的隐私数据进行有效保护 ,用户使用应用程序安全性不高的问题, 提高了移动终端隐私数据的安全性。
实施例二
参照图 2,示出了根据本申请实施例二的一种数据调用方法的步骤流 程图。
本实施例中 ,设定移动终端使用 Android操作系统 5设定第一服务为 短信服务,其需要使用移动终端的隐私数据 5设定第一服务的服务名为 ISMS o
本实施倒的数据调用方法包括以下步骤:
步骤 S202:移动终端启动时 ,对系统所维护的服务列表中的第一服 务的服务名进行修改,将服务名修改为跳转服务名。
本实施例中的' 系统"意指 Android系统中的 ServiceManager服务管 修改后的第一服务的跳转服务名既不同于原服务名 , 也不同于列表 中除第一服务外的其它服务的服务名。
本实施例中 ,通过本步骤 5 可以将短信服务的服务名 ISMS修改为 ISMO , " ISMO" 仅为示倒性说明 ,本领域技术人员在前述原则下 , 可以 将服务名修改为任意适当名称。 优选地,修改后的跳转服务名与服务名 的长度相同。 修¾前后服务名的长度相同 ,能够不破坏程序内部的数据 结构, 并且,不会造成程序存储堆栈的溢出或其它问题,将修改对现有 流程的影响减低到最小。
步骤 S204: 向系统发送注册第二服务和 /或拦截服务的指令。
其中 ,第二服务用于向移动终端的用户发送是否允许第一服务使用 隐私数据的提示, 并根据用户的输入,确定是否允许所请求的第一服务 使用隐私数据;或者,第二服务用于调用拦截服务, 由拦截服务向移动 终端的用户发送是否允许第一服务使用隐私数据的提示 , 并在用户返回 处理结果后, 由拦截服务将处理结果返回给第二服务。
需要说明的是,对调用隐私数据的拦截和提示也可以由本领域技术 人员根据实际需求,采用其它适当方式实现, 而不必须注册新的服务, 如使用命令或程序调转的方式等。
步骤 S206:系统判断第二服务和 /或拦截服务是否有注册权限 5若有, 则执行步骤 S208;若没有,则拒绝注册,结束流程。
本步骤为可选步骤 ,主要针对权限受限用户 ,以避免误修 ¾或非法 修改,保证系统安全。
步骤 S208:使用服务名注册第二服务,和. /或 ,注册拦截服务。
本实施倒中 ,即再注册一个名为 ISMS的新服务,和. /或拦截服务。 使用原服务名注册新服务,能够有效保障系统稳定性,使得系统在 调用原服务时,能够直接找到该原服务名 ,虽然执行的是新服务,但不 会造成因找不到原服务名而服务无法被执行,或者系统死机或崩溃等其 它问题。
在第二服务或拦截服务可以单独实现向移动终端的用户发送是否允 许使用隐私数据的提示, 并根据用户的输入 ¾定到底允许还是不允许第 一服务使用隐私数据的功能时 5 可以单独注册第二服务或拦截服务; 也 可以从上述功能中分禽出部分功能,如将向移动终端的用户发送是否 A 许使用隐私数据的提示, 并接收用户的输入的功能分离出来, 由拦截服 务完成, 而第二服务调用该拦截服务, 并接收拦截服务返回的用户的输 入信息,进而根据用户的输入信息确定是否: ft许第一服务使用隐私数据, 而实现隐私数据调用的拦截和提示。
通过注册第二服务和 ,/或拦截服务,有效实现了隐私数据调用的拦截 和提示, 并且,使用原服务名注册新服务,也有效保证了系统的稳定性。 而将拦截服务 第二服务中分离出来时,可以使得各服务功能更为清晰, 且能有效利用现有服务功能,如现有显示拦截界面的功能等。
优选地,第二服务还用于在病定允许第一服务使用隐私数据后,病 定与服务名对应的跳转服务名 ,调用跳转服务名对应的第一服务。 由第 二服务确定跳转服务名 ,进而调用第一服务,保障了服务调用的连贯性 和一致性。 当然,实际实现中 ,也可以采用其它方式确定跳转服务名 , 进而调用第一服务。
本实施例中 ,设定仅注册第二服务,第二服务单独实现向移动终端 的用户发送是否允许使用隐私数据的提示,并根据用户的输入确定到底 允许还是不允许第一服务使用隐私数据的功能。
至此,本实施倒中 ,短信服务的现服务名为 ISM0 ,而原服务名 ISMS 则指向一个用于拦截和提示使用隐私数据的新服务(第二服务)。
步骤 S210: 系统接收到请求使用第一服务的服务请求。
该第一服务需要使用移动终端的隐私数据, 且通过服务请求可以获 知第一服务的服务名。
本实施例中 ,系统服务器接收到请求使用短信服务的服务请求,获 知短信服务的服务名为 ISMS。
步骤 S212:根据服务名 ,调用第二服务 , 向移动终端的用户发送是 否允许第一服务使用隐私数据的提示。
在使用服务名注册了第二服务后, 当系统接收到服务名 ,则到系统 维护的服务列表中查找, 因服务名对应第二服务, 因此,调用第二服务 5 向移动终端的用户发送是否允许第一服务使用隐私数据的提示。
本步骤中 ,在系统接收到 ISMS后,直接调用第二服务,向移动终端 的用户弹出提示界面,供用户选择是否允许使用其隐私数据。 步骤 S214:接收用户输入 ,第二服务根据用户输入确定是否允许第 —服务使用移动终端的隐私数据 ,若充许,则执行步骤 S216;若不允许 本次服务结束。
步骤 S216:第二服务病定与服务名对应的跳转服务名 ,调用跳转服 务名对应的第一服务。
在服务名修改后,系统中存储有服务名和跳转服务名的对应关系。 当第二服务确定用户: ¾许第一服务使用其隐私数据 ,则直接找到与原服 务名 (即服务名 )对应的新服务名 (即跳转服务名 ) ,进而调用新服务 名对应的原服务(即第一服务)。
本实施例中 ,第二服务确定与原服务名 ISMS对应的新服务名为
ISM0 ,则在服务列表中查找服务名 ISM0 ,进而通过该服务名 ISM0 ,按 照原有流程调用短信服务,使用移动终端的隐私数据。
优选地,本实施例的数据调用方法中 , 在系统接收请求使用第一服 务的服务请求之前,还可以将第一服务的服务名用于调用第一服务修改 为用于指示移动终端向其用户发送是否允许第一服务使用隐私数据的提 示 ,并根据用户的输入,确定是否允许所请求的第一服务使用隐私数据 : 以及 , ¾定与第一服务的服务名对应的跳转服务名。
通过本实施倒 ,在内存中对服务名进行修改,该修改是针对参数级 别的修改, 而不是针对系统函数或者文件级別修改的 ,对系统的改动更 小 ,不但保证了隐私数据的使用安全 , 也使得改动后的系统非常稳定。 并且,使用原服务名注册新服务, 并且将原服务名修改为与其长度一致 的新服务名 ,进一步提高了系统的稳定性。
需要 i兑明的是 ,本实施例仅以短信服务为例 ,但不限于此 ,任意需 要使用隐私数据的其它服务 , ¾ ΪΡ电话服务、 数据上传服务等 ,均可参 照本实施例实现移动终端隐私数据的数据调用。
将本申请的数据调用方案应用于短信服务、 IP电话服务及数据上传 服务等 5尽可能地实现了现有使用隐私数据的服务的安全保护 ,达到了 用户在最大范围内可以安心地使用现有服务 5提高用户使用体验的效果。
实施例三 参照图 3,示出了根据本申请实施例三的一种数据调用方法的步骤流 程图。
本实施例仍以需要使用移动终端隐私数据的短信服务为例 ,本实施 例中的移动终端采用手机, 手机的操作系统采用 Android操作系统。
本实施例中 , Android操作系统启动时,会在 dalvik的 system server 进程自动启动一个 ISMS服务,通过 Binder机制处理 Android所有的系统, 对 ISMS服务进行本申请的数据调用处理,对发送短信请求做过滤就能够 !] : ¾ί is. "f日 β¾目 &¾ ο
本实施例的数据调用方法包括以下步骤:
步骤 S302: Android操作系统启动流程。
具体包括:
步骤 S3022:手机 isms (短信)服务启动完成。
步骤 S3024:运行 Android的 native程序 ,从而启动篡改程序 , 自动 通过 trace暂停 servicemanager进程 , 并修 3女 svrlist对象的 isms关键字 为 ismOo
步骤 S3026: Android的 native程序启动 360服务主程序 5 自动注册 两个服务 , 360service禾 ismso
本实施倒中 ,系统使用 360服务,通过 360service服务控制相关服务 的注册。
实际上 ,篡改程序是通过向系统申请 root权限之后启动的 ,所以同 样利用这个申请到的权限也可以启动 360service这个服 native )¾ isms EK { native ) j¾样 360service这个服务 具有了 root权禾 ϋ,所 360serviee 这个服务就有权利批准注册 360cailbad dalvik jffi务。 360callbac¾ dalvik ) 务是属于 Java屠的 it务 ,而 Java屠的 K务默认是不可 通过正吊途径 注册到这个服务列表的。 因此 5本实施例中 ,通过 360service服务使其注 册到系统的服务列表。
步骤 S3028:通过 Android的 dalvik程序启动 360用户界面,通过反 射机制获取 servicemanager服务 ,再获取 360service服务。
步骤 S30210:通过 360service服务注册 360callback服务,用于显示 栏截界面。
如上所述,通过 360service服务注册 360cal】baek服务,是因为
service manager不:t i午非 system禾 root身份的禾呈序注册服务。
步骤 S304:数据调用工作流程。
具体地,包括:
步骤 S3042:程序发送短信。
即 ,请求调用短信服务,使用手机的隐私数据。
步骤 S3044 注册的 isms服务接获 sendiext调用。
即 ,新注册的 isms服务获取到了程序的短信服务请求。
步骤 S3046: isms服务调用 360callback服务,发送短信发送号、 内 容、 发送进程的 pid (进程标识)和 uid (用户标识)。
步骤 S3048 : 360cal】baek服务接到数据,弹出界面询问用户是否允许 弹出的界面的提示信息中还包括有使用隐私数据的提示。
在具体实现时 , 可以通过适当的现有手段,实现短信发送的白名单 机制。
步骤 S30410: 360callback等待用户处理结果,并向 isms服务返回该 步骤 S30412:注册的 isms服务根据 360callback返回结果 ,病定是 否需要调用 ismO服务,发送短信;若需要,则调用 ismO服务,发送短信; 若不需要,则结束本次调用流程。
本实施例通过 servicemanager进禾呈篡改禾呈序 ( android native )、
360service禾 isms注册禾呈序 ( android native )禾 360callback服务禾拦截 界面程序 ( apk ) ,实现了篡改 servicemanager, 注册 360service服务、 伪 isms服务和 360caUback服务、 以及拦截短信 ,弾出拦截界面, 并根据拦 截结果发送或者不发送短信的功能。
通过本实施例 ,仅仅修 ¾系统所维护的服务列表中相应的服务的名 字 ,然后注册一个假名字 ,使得以后应用程序在调用时 ,都调的是 360 的服务,而不是原始系统的服务。 360的服务会弹出提示界面 5当用户同 意后,360再自动调用改名后的原始系统的服务,不会对隐私数据的访问 带来影响。 由此解决了现有技术中无法对用户的隐私数据进行有效保护 , 用户使用应用程序安全性不高的问题,提高了移动终端隐私数据的安全 需要说明的是 ,本实施例中虽然采用了使用 Android系统的手机为 例,但不限于此,任意采用 Android系统的移动终端,如 ipad ,均可使用 本实施倒的数据调用方法。 并且 ,其它与 Android操作系统类似的系统, 也可实现本实施例的数据调用方法。 同样,也不限于使用 360服务的移 动终端,采用其它类似服务的移动终端也可参照本实施例实现数据调用。
实施例四
参照图 4,示出了根据本申请实施例四的一种数据调用装置的结构框 图
本实施例的数据调用装置包括:接收模块 402 ,用于接收请求使用第 一服务的服务请求,其中 ,第一服务需要使用移动终端的隐私数据,所 述服务请求中包括第一服务的服务名 ;提示模块 404,用于根据服务名 , 向移动终端的用户发送是否充许第一服务使用隐私数据的提示;确认模 块 406,用于根据用户的输入 5¾定充许所请求的第一服务使用隐私数据; 调用模块 408 ,用于在确认模块 406病定允许所请求的第一服务使用隐私 数据后 5 ¾定与服务名对应的跳转服务名 5根据跳转服务名 ,调用第一 服务, 其中 ,跳转服务名为移动终端每次启动时,对系统所维护的服务 列表中第一服务的服务名进行修改后的服务名 ,跳转服务名不同于服务 列表中除第一服务外的其它服务的服务名。
优选地 ,本实施倒的数据调用装置还包括:注册模块 410 ,用于在移 动终端每次启动 ,将系统所维护的服务列表中的第一服务的服务名修改 为跳转服务名后,使用服务名注册第二服务,第二服务用于向移动终端 的用户发送是否充许第一服务使用所述隐私数据的提示 , 并根据用户的 输入 , ¾定是否允许所请求的第一服务使用隐私数据。 提示模块 404用 于根据服务名 ,调用第二服务,通过第二服务向移动终端的用户发送是 否^许第一服务使用隐私数据的提示。
~ ί 1 ~ 优选地,第二服务还用于在病定允许第一服务使用隐私数据后,病 定与服务名对应的跳转服务名 ,调用跳转服务名对应的第一服务。
优选地,注册模块 410还用于在使用服务名注册第二服务之前或之 后,注册拦截服务;第二服务用于调用拦截服务向移动终端的用户发送 是否充许第一服务使用隐私数据的提示; 并且,根据拦截服务返回的用 户输入的信息,确定是否允许所请求的第一服务使用隐私数据。
优选地,本实施例的数据调用装置还包括:判断模块 412 ,用于在注 册模块 410注册第二服务和拦截服务之前,判断第二服务和拦截服务是 否具有注册权限, 若具有,则允许注册; 若不具有,则不允许注册。
优选地,本实施例的数据调用装置还包括:修改模块(图中未示出) , 用于在接收模块 402接收请求使用第一服务的服务请求之前 ,将第一服 务的服务名用于调用第一服务修改为用于指示移动终端向其用户发送是 否允许第一服务使用隐私数据的提示, 并根据用户的输入 ,确定是否允 许所请求的第一服务使用隐私数据,以及, ¾定与第一服务的服务名对 应的跳转服务名。
优选地,服务名的长度与跳转服务名的长度相同。
优选地 ,移动终端使用 Android操作系统。
优选地,第一服务包括以下至少之一 :短信服务、 IP电话服务、 和 数据上传服务。
本实施倒的数据调用装置用于实现前述方法实施例的多个相应的数 据调用方法,并具有相应方法实施例的有益效果,在此不再赘述。
本说明书中的各个实施倒均采用递进的方式描述 ,每个实施例重点 说明的都是与其他实施例的不同之处 ,各个实施倒之间相同相似的部分 互相参见即可。 对于装置实施例而言 , 由于其与方法实施例基本相似, 所以描述的比较简单,相关之处参见方法实施例的部分说明即可。
本发明的各个部件实施例可以以硬件实现 ,或者以在一个或者多个 处理器上运行的软件模块实现 , 或者以它们的组合实现。 本领域的技术 人员应当理解, 可以在实践中使用徼处理器或者数字信号处理器 ( DSP ) 来实现根据本发明实施例的数据调用装置中的一些或者全部部件的一些
1 Ί 或者全部功能。 本发明还可以实现为用于执行这里所描述的方法的一部 分或者全部的设备或者装置程序(例如 ,计算机程序和计算机程序产品)。 这样的实现本发明的程序可以存储在计算机可读介质上 5 或者可以具有 一个或者多个信号的形式。 这样的信号可以 因特网网站上下载得到 ,
H K +
-') 或¾"任莪 上 ¾£识 , 或有 M1士 1 J具他 j†- ¾E识。
例如 , 图 5 示出了可以实现根据本发明的数据调用方法的服务器, 例如应用服务器。 该服务器传统上包括处理器 510和以存储器 520形式 的计算机程序产品或者计算机可读介质。 存储器 520 可以是诸^闪存、 EEPROM ( 电可擦除可编程只读存储器)、 EPROM、 硬盘或者 ROM之0 类的电子存储器。 存储器 520 具有用于执行上述方法中的任何方法步骤 的程序代码 531的存储空间 530。例如 ,用于程序代码的存储空间 530可 以包括分别用于实现上面的方法中的各种步骤的各个程序代码 531。这些 程序代码可以从一个或者多个计算机程序产品中读出或者写入到这一个 或者多个计算机程序产品中。 这些计算机程序产品包括诸如硬盘 5 紧致5 盘( CD )、 存储卡或者软盘之类的程序代码载体。 这样的计算机程序产 品通常为卸参考图 6 所述的便携式或者固定存储单元。 该存储单元可以 具有与图 5 的服务器中的存储器 520类似布置的存储段、 存储空间等。 程序代码可以例如以适当形式进行压縮。 通常 ,存储单元包括计算机可 读代码 53 Γ ,即可以由例如诸如 510之类的处理器读取的代码 ,这些代0 码当由服务器运行时 ,导致该服务器执行上面所描述的方法中的各个步 骤。
本文中所称的 "一个实施例"、 "实施例"或者"一个或者多个实施例" 意味着 5结合实施例描述的特定特征、 结构或者特性包括在本发明的至 少一个实施例中。此外,请注意,这里 "在一个实施例中"的词语例子不一5 定全指同一个实施倒。
在此处所提供的说明书中 ,说明了大量具体细节。 然而,能够理解, 本发明的实施例可以在没有这些具体细节的情况下被实践。 在一些实例 中 , 并未详细示出公知的方法、 结构和技术 , 以便不模糊对本说明书的 ί里
0 应该注意的是上述实施例对本发明进行说明而不是对本发明进行限 制 , 并且本领域技术人员在不脱寓所附权利要求的范围的情况下可设计 出替换实施例。 在权利要求中 , 不应将位于括号之间的任何参考符号构 造成对权利要求的限制。单词"包含"不排除存在未列在权利要求中的元件 或步骤。 位于元件之前的单词"一 "或"一个"不排除存在多个这样的元件。 本发明可以借助于包括有若干不同元件的硬件以及借助于适当编程的计 算机来实现。 在列举了若干装置的单元权利要求中 ,这些装置中的若干 个可以是通过同一个硬件项来具体体现。 单词第一、 第二、 以及第三等 的使用不表示任何顺序。 可将这些单词解释为名称。
此外,还应当注意 5本说明书中使用的语言主要是为了可读性和教 导的目的而选择的 , 而不是为了解释或者限定本发明的主题而选择的。 因此,在不偏离所酎权利要求书的范围和精神的情况下 ,对于本技术领 域的普通技术人员来说许多修改和变更都是显而易见的。 对于本发明的 范围 ,对本发明所做的公开是说明性的 5 而非限制性的 5本发明的范围 由所酎权利要求书限定。

Claims

K 一种数据调用方法,包括:
接收请求使用第一服务的服务请求,所述第一服务需要使用移动终端的 隐私数据,所述服务请求中包括所述第一服务的服务名 ;
根据所述服务名 ,向所述移动终端的用户发送是否允许所述第一服务使 用所述隐私数据的提示;
根据所述用户的输入,确定允许所请求的所述第一服务使用所述隐私数 据;
确定与所述服务名对应的跳转服务名 ,根据所述跳转服务名 ,调用所述 第一服务,其中 ,所述跳转服务名为所述移动终端每次启动时,对系统所维 护的服务列表中所述第一服务的所述服务名进行修改后的服务名 ,所述跳转 服务名不同于所述服务列表中除所述第一服务^的其它服务的服务名。
2、 根据权利要求 1所述的方法,其中 ,还包括:在所述移动终端每次 启动,将所述系统所维护的服务列表中的所述第一服务的所述服务名修改为 所述跳转服务名后,使用所述服务名注册第二服务,所述第二服务用于向所 述移动终端的用户发送是否允许所述第一服务使用所述隐私数据的提示,并 根据所述用户的输入,¾定是否: ¾许所请求的所述第一服务使用所述隐私数 所述根据所述服务名 ,向所述移动终端的用户发送是否允许所述第一服 务使用所述隐私数据的提示的步骤包括:根据所述服务名 ,调用所述第二服 务,通过所述第二服务向所述移动终端的用户发送是否允许所述第一服务使 用所述隐私数据的提示。
3、 根据权利要求 2所述的方法,其中 ,所述第二服务还用于在确定亢 许所述第一服务使用所述隐私数据后 , ¾定与所述服务名对应的跳转服务 名 ,调用所述跳转服务名对应的所述第一服务。
4、 根据权利要求 2所述的方法,其中 ,还包括:
在所述使用所述服务名注册所述第二服务之前或之后,注册拦截服务; 所述第二服务,用于调用所述拦截服务向所述移动终端的用户发送是否 许所述第一服务使用所述隐私数据的提示;并且 ,根据所述拦截服务返回 的所述用户输入的信息,确定是否允许所请求的所述第一服务使用所述隐私 数据。
- 1 D ~
5、 根据权利要求 4所述的方法,其中 ,在注册所述第二服务和所述拦 截服务之前,还包括:
判断所述第二服务和所述拦截服务是否具有注册权限 ,若具有,则允许 注册;若不具有,则不允许注册。
6、 根据权利要求 1至 5任一项所述的方法,其中 ,所述服务名的长度 与所述跳转服务名的长度相同。
7、 根据权利要求 ί至 5任一项所述的方法,其中 ,所述移动终端使用 Android操作系统。
8、 根据权利要求 ί至 5任一项所述的方法,其中 ,在所述接收请求使 用第一服务的服务请求的步骤之前,还包括:
将所述第一服务的服务名用于调用所述第一服务修改为用于指示所述 移动终端向其用户发送是否允许所述第一服务使用所述隐私数据的提示,并 根据所述用户的输入,确定是否亢许所请求的所述第一服务使用所述隐私数 据,以及 5确定与所述第一服务的服务名对应的所述跳转服务名。
9、 根据权利要求 1至 5任一项所述的方法 ,其中 ,所述第一服务包括 以下至少之一:短信服务、 IP电话服务、 和数据上传服务。
10、 一种数据调用装置,其中 5包括:
接收模块,用于接收请求使用第一服务的服务请求,所述第一服务需要 使用移动终端的隐私数据,所述服务请求中包括所述第一服务的服务名 ; 提示模块,用于根据所述服务名 ,向所述移动终端的用户发送是否允许 所述第一服务使用所述隐私数据的提示;
确认模块,用于根据所述用户的输入,确定允许所请求的所述第一服务 使用所述隐私数据;
调用模块,用于在所述确认模块¾定允许所请求的所述第一服务使用所 述隐私数据后,病定与所述服务名对应的跳转服务名 ,根据所述跳转服务名 , 调用所述第一服务,其中 ,所述跳转服务名为所述移动终端每次启动时,对 系统所维护的服务列表中所述第一服务的所述服务名进行修改后的服务名 , 所述跳转服务名不同于所述服务列表中除所述第一服务外的其它服务的服 务名
11、 根据权利要求 10所述的装置 ,其中 ,还包括:注册模块 ,用于在 所述移动终端每次启动,将所述系统所维护的服务列表中的所述第一服务的 所述服务名修改为所述跳转服务名后,使用所述服务名注册第二服务,所述 + 第二服务用于向所述移动终端的用户发送是否允许所述第一服务使用所述 隐私数据的提示 '并根据所述用户的输入,确定是否允许所请求的所述第一 服务使用所述隐私数据;
所述提示模块,用于根据所述服务名 ,调用所述第二服务,通过所述第 二服务向所述移动终端的用户发送是否允许所述第一服务使用所述隐私数 据的提示。
12, 根据权利要求 U所述的装置,其中 ,所述第二服务还用于在确定 ^许所述第一服务使用所述隐私数据后,确定与所述服务名对应的跳转服务 名 ,调用所述跳转服务名对应的所述第一服务。
13、 根据权利要求 11所述的装置 ,其中 ,
所述注册模块,还用于在所述使用所述服务名注册所述第二服务之前或
-½ p i: flf^i ^ 、
所述第二服务,用于调用所述拦截服务向所述移动终端的用户发送是否 亢许所述第一服务使用所述隐私数据的提示;并且,根据所述拦截服务返回 的所述用户输入的信息,确定是否允许所请求的所述第一服务使用所述隐私
14、 根据权利要求 13所述的装置 ,其中 ,还包括:
判断模块,用于在注册模块注册所述第二服务和所述拦截服务之前,判 断所述第二服务和所述拦截服务是否具有注册权限 ,若具有,则 A许注册; 若不具有,则不允许注册。
15、 根据权利要求 10至 14任一项所述的装置,其中 ,所述服务名的长 度与所述跳转服务名的长度相同,所述移动终端使用 Android操作系统。
16、 根据权利要求 10至 14任一项所述的装置,其中 ,还包括: 修改模块 5用于在所述接收模块接收请求使用第一服务的服务请求之 前,将所述第一服务的服务名用于调用所述第一服务修改为指示所述移动终 端向其用户发送是否允许所述第一服务使用所述隐私数据的提示,并根据所 述用户的输入,确定是否: ¾许所请求的所述第一服务使用所述隐私数据 ,以 及 5确定与所述第一服务的服务名对应的所述跳转服务名。
17、 根据权利要求 10至 14任一项所述的装置 ,其中 ,所述第一服务包 括以下至少之一:短信服务、 IP电话服务、 和数据上传服务。
18、 一种计算机程序 ,包括计算机可读代码 , 当所述计算机可读代 码在服务器上运行时,导致所述服务器执行根据权利要求 1 9中的任一项 所述的数据调用方法。
19、 一种计算机可读介质 ,其中存储了如权利要求 18所述的计算机 fe序。
PCT/CN2012/087296 2011-12-27 2012-12-24 数据调用方法和装置 Ceased WO2013097673A1 (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
US14/368,550 US9628939B2 (en) 2011-12-27 2012-12-24 Data calling method and device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201110444060.9A CN102572804B (zh) 2011-12-27 2011-12-27 数据调用方法和装置
CN201110444060.9 2011-12-27

Publications (1)

Publication Number Publication Date
WO2013097673A1 true WO2013097673A1 (zh) 2013-07-04

Family

ID=46417016

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2012/087296 Ceased WO2013097673A1 (zh) 2011-12-27 2012-12-24 数据调用方法和装置

Country Status (3)

Country Link
US (1) US9628939B2 (zh)
CN (1) CN102572804B (zh)
WO (1) WO2013097673A1 (zh)

Families Citing this family (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102572804B (zh) * 2011-12-27 2014-11-26 奇智软件(北京)有限公司 数据调用方法和装置
US9565181B2 (en) 2013-03-28 2017-02-07 Wendell D. Brown Method and apparatus for automated password entry
CN103544447B (zh) * 2013-05-30 2016-10-12 Tcl集团股份有限公司 一种基于安卓系统的防止机密信息泄露的方法和终端
CN104580155A (zh) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 一种安全防护方法
CN104581705A (zh) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 一种终端
CN104778415B (zh) * 2015-02-06 2018-02-27 北京北信源软件股份有限公司 一种基于计算机行为的数据防泄露系统及方法
CN106127063A (zh) * 2016-06-12 2016-11-16 乐视控股(北京)有限公司 一种移动设备导航管理方法及装置

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1484926A (zh) * 2001-01-04 2004-03-24 ��˹��ŵ�� 一种调用隐私的方法
US20090320090A1 (en) * 2008-06-21 2009-12-24 Microsoft Corporation Deploying privacy policy in a network environment
CN102186167A (zh) * 2011-04-11 2011-09-14 中兴通讯股份有限公司 一种对应用进行监控的方法及系统
CN102572804A (zh) * 2011-12-27 2012-07-11 奇智软件(北京)有限公司 数据调用方法和装置

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP4127497B2 (ja) * 2002-09-27 2008-07-30 富士フイルム株式会社 ディジタル・サービス・システム
EP2235713A4 (en) * 2007-11-29 2012-04-25 Oculis Labs Inc METHOD AND APPARATUS FOR SECURE VISUAL CONTENT DISPLAY
US20100223579A1 (en) * 2009-03-02 2010-09-02 Schwartz Gerry M Iphone application disguiser
US8812868B2 (en) * 2011-03-21 2014-08-19 Mocana Corporation Secure execution of unsecured apps on a device
CN102238037B (zh) * 2011-07-20 2014-01-08 复旦大学 协作式目标策略细化方法

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1484926A (zh) * 2001-01-04 2004-03-24 ��˹��ŵ�� 一种调用隐私的方法
US20090320090A1 (en) * 2008-06-21 2009-12-24 Microsoft Corporation Deploying privacy policy in a network environment
CN102186167A (zh) * 2011-04-11 2011-09-14 中兴通讯股份有限公司 一种对应用进行监控的方法及系统
CN102572804A (zh) * 2011-12-27 2012-07-11 奇智软件(北京)有限公司 数据调用方法和装置

Also Published As

Publication number Publication date
US20140378100A1 (en) 2014-12-25
US9628939B2 (en) 2017-04-18
CN102572804A (zh) 2012-07-11
CN102572804B (zh) 2014-11-26

Similar Documents

Publication Publication Date Title
CN103514000B (zh) 浏览器插件安装方法和装置
CN103744686B (zh) 智能终端中应用安装的控制方法和系统
CN102801688B (zh) 一种数据访问的方法、装置及支持数据访问的终端
CN104036019B (zh) 网页链接的开启方法及装置
WO2015096695A1 (zh) 一种应用程序的安装控制方法、系统及装置
WO2013182005A1 (zh) 一种用于拦截应用程序对服务的调用的方法和装置
WO2015109668A1 (zh) 应用程序管理方法、装置、终端及计算机存储介质
WO2017071207A1 (zh) 一种应用安装方法、相关装置及应用安装系统
CN104572263A (zh) 一种页面数据交互方法、相关装置及系统
CN103713904A (zh) 在移动终端工作区内安装应用的方法、相关装置和系统
CN106663174A (zh) 使用受保护存储限制系统调用
CN109474600B (zh) 一种账号绑定方法、系统、装置及其设备
CN105550595A (zh) 用于智能通信设备的隐私数据访问方法及系统
CN105207775A (zh) 验证信息的读取方法及装置
CN102904869A (zh) 用于远程认证的方法和设备
CN105095788B (zh) 隐私数据保护的方法、装置及系统
WO2015058574A1 (zh) 实现扩展应用程序的推送通知的方法及装置
CN103023976B (zh) 一种浏览器应用插件扩展的装置和方法
CN102404706A (zh) 一种管理资费安全的方法及移动终端
US9628939B2 (en) Data calling method and device
WO2012051894A1 (zh) 一种widget应用保护方法及装置
CN108664805A (zh) 一种应用程序安全校验方法及系统
CN104168536B (zh) 一种移动终端之间的数据复制方法及系统
CN104573506A (zh) 基于虚拟机对进程行为实时监控的方法及装置
WO2014106391A1 (zh) 一种应用安装的方法、设备及系统

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 12862657

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 14368550

Country of ref document: US

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 12862657

Country of ref document: EP

Kind code of ref document: A1

122 Ep: pct application non-entry in european phase

Ref document number: 12862657

Country of ref document: EP

Kind code of ref document: A1