WO2017020437A1 - 一种信息加密方法及终端设备 - Google Patents

一种信息加密方法及终端设备 Download PDF

Info

Publication number
WO2017020437A1
WO2017020437A1 PCT/CN2015/093526 CN2015093526W WO2017020437A1 WO 2017020437 A1 WO2017020437 A1 WO 2017020437A1 CN 2015093526 W CN2015093526 W CN 2015093526W WO 2017020437 A1 WO2017020437 A1 WO 2017020437A1
Authority
WO
WIPO (PCT)
Prior art keywords
target user
biometric information
user data
information
terminal device
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2015/093526
Other languages
English (en)
French (fr)
Inventor
白波
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Publication of WO2017020437A1 publication Critical patent/WO2017020437A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/45Structures or tools for the administration of authentication
    • G06F21/46Structures or tools for the administration of authentication by designing passwords or checking the strength of passwords
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2107File encryption

Definitions

  • the present invention relates to the field of communications technologies, and in particular, to an information encryption method and a terminal device.
  • the security of user data in terminal devices has attracted widespread attention.
  • the commonly used method is to encrypt user data by setting a character password. Due to the large number of user data in the terminal device, when the user data is encrypted by using a character password, the user generally sets the same password for all user data in order to facilitate the use, which may result in lower security of the user data.
  • the embodiment of the invention provides an information encryption method and a terminal device, which can improve the security of user data.
  • a first aspect of the embodiments of the present invention provides an information encryption method, including:
  • target user biometric information as a target user biometric information key corresponding to the target user data, and encrypting the target user data by using the target user biometric information key to obtain encrypted target user data;
  • the encrypted target user data is stored in the terminal device memory or the cloud.
  • the method further includes:
  • the prompt information is used to prompt for inputting a decryption key
  • the collecting target user bio information includes:
  • the confirming that the target user biometric information is successfully collected includes:
  • the at least two user biometric information is synthesized to obtain target user biometric information.
  • the collecting target user biometric information is successfully collected, including:
  • a second aspect of the embodiments of the present invention provides a terminal device, including:
  • a first receiving unit configured to receive an encryption instruction for target user data
  • a first determining unit configured to determine whether the terminal device memory or the cloud stores a biometric information key corresponding to the target user data
  • a collecting unit configured to collect target user biometric information when the first determining unit determines that the result is negative
  • An encryption unit configured to use the target user biometric information as a target user biometric information key corresponding to the target user data, and encrypt the target user data by using the target user biometric information key to obtain an encrypted target user. data;
  • a storage unit configured to store the encrypted target user data in the terminal device memory or the cloud.
  • the terminal device further includes:
  • a second receiving unit configured to receive an access instruction for the encrypted target user data
  • An output unit configured to output prompt information, where the prompt information is used to prompt to input a decryption key
  • a second determining unit configured to determine the decryption key and the target after the decryption key is input Whether the target user biometric information key corresponding to the target user data matches
  • a decryption unit configured to decrypt the encrypted target user data to obtain the target user data when the second determination unit determines that the result is yes.
  • the acquiring unit includes:
  • a collection subunit for collecting at least two user biometric information
  • the confirmation subunit is configured to confirm that the target user biometric information is successfully collected when the at least two user biometric information matches each other.
  • the confirming subunit confirms that the target user biometric information is successfully collected. for:
  • the confirming unit synthesizes the at least two user biometric information to obtain target user biometric information.
  • the confirming subunit confirms that the target user biometric information is successfully collected. for:
  • the confirmation unit selects any one of the at least two user biometric information as the target user biometric information.
  • the terminal device receives an encryption instruction for the target user data; determines whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; if not, collects the target user biometric information; and the target user biometric information As the target user biometric information key corresponding to the target user data, the target user data is encrypted by using the target user biometric information key to obtain encrypted target user data; and the encrypted target user data is stored in the terminal device memory or the cloud.
  • the biometric information key is used to encrypt the user data in the embodiment of the present invention. Due to the uniqueness and non-replicability of the biometric information, the security of the user data is high, and the prior art In comparison, the security of user data is improved.
  • FIG. 1 is a flowchart of an information encryption method according to an embodiment of the present invention.
  • FIG. 3 is a flowchart of another information encryption method according to an embodiment of the present invention.
  • FIG. 4 is a schematic structural diagram of a terminal device according to an embodiment of the present invention.
  • FIG. 5 is a schematic structural diagram of another terminal device according to an embodiment of the present disclosure.
  • FIG. 6 is a schematic structural diagram of another terminal device according to an embodiment of the present invention.
  • the embodiment of the invention provides an information encryption method and a terminal device, which can improve the security of user data. The details are described below separately.
  • the terminal device described in the embodiment of the present invention may include: a mobile phone, a tablet computer, or a walkman.
  • the terminal device is merely an example, and is not exhaustive, including but not limited to the above terminal device.
  • FIG. 1 is a flowchart of an information encryption method according to an embodiment of the present invention. As shown in FIG. 1, the information encryption method described in this embodiment includes the following steps:
  • the user when the target user data needs to be encrypted, the user inputs an encryption instruction for the target user data, and the terminal device receives an encryption instruction input by the user for the target user data.
  • the target user data can be private data of users such as pictures, recordings, documents, videos, music, and the like.
  • step S101 the following steps may also be included:
  • the first prompt information is output, and the first prompt information is used to prompt whether to enable the information encryption function;
  • the information encryption function After receiving the command to enable the information encryption function, the information encryption function is enabled.
  • the user data may be generated by an application in the terminal device.
  • the user data is a picture
  • the user data is generated by the shooting application
  • the user data is a recording
  • the user data is generated by the recording application.
  • the information encryption function is a function of encrypting user data by using biological information.
  • the user data can be encrypted by using biological information, including but not limited to: fingerprint, iris, voiceprint, face, retina And other information.
  • the target user data has a biometric information key corresponding thereto, and it is determined whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data. Determine whether the target user data is encrypted. If the terminal device memory or the cloud stores the biometric information key corresponding to the target user data, it indicates that the target user data is encrypted, and the terminal device outputs a notification message, where the notification message is used to notify the user that the target user data is encrypted and re-encrypted.
  • step S103 If the user chooses to re-encrypt, first input the original bio-information key corresponding to the target user data, and then input the new bio-information key of the target user data, and if the user chooses not to re-encrypt, the end; if the terminal device memory or the cloud does not The biometric information key corresponding to the target user data is stored, and step S103 is performed.
  • S103 Collect target user biometric information.
  • the target user biometric information is collected, and the terminal device may collect the biometric information of the target user input by the user on the terminal device, for example, If the target user biometric information is the target user fingerprint information, the fingerprint recognition function is enabled, and the fingerprint information of the target user is collected in the fingerprint identification area on the terminal device; if the target user biometric information is the target user iris information, the terminal device is turned on.
  • the camera acquires the eye image information of the target user; if the target user biometric information is the target user voiceprint information, the microphone of the terminal device is turned on, and the sound information of the target user is collected.
  • the target user biometric information is used as a target user biometric information key corresponding to the target user data, and the target user biometric information key is used to encrypt the target user data to obtain encrypted target user data.
  • the user biometric information key is different from the traditional string key, and the user biometric information key is the target user biometric information, such as fingerprint information, iris information, face image information, and the like.
  • the target user biometric information is used as the target corresponding to the target user data.
  • the user biometric information key encrypts the target user data by using the target user biometric information key to obtain the encrypted target user data.
  • the encrypted target user data may be stored in the terminal device memory or the cloud. Since the target user biometric information is used to encrypt the target user data, only the target user himself inputs the target user biometric information. In order to decrypt the encrypted target user data, the security of the target user data is greatly provided.
  • the terminal device receives an encryption instruction for the target user data; determines whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; if not, collects the target user biometric information; and the target user biometric information As the target user biometric information key corresponding to the target user data, the target user data is encrypted by using the target user biometric information key to obtain encrypted target user data; and the encrypted target user data is stored in the terminal device memory or the cloud.
  • the biometric information key is used to encrypt the user data in the embodiment of the present invention. Due to the uniqueness and non-replicability of the biometric information, the security of the user data is high, and the prior art In comparison, the security of user data is improved.
  • FIG. 2 is a flowchart of another method for encrypting information disclosed in an embodiment of the present invention. As shown in FIG. 2, the information encryption method described in this embodiment includes the following steps:
  • S203 Collect target user biometric information.
  • the target user biometric information is used as a target user biometric information key corresponding to the target user data, and the target user biometric information key is used to encrypt the target user data to obtain encrypted target user data.
  • the user inputs an access instruction for the encrypted target user data, and the terminal device receives the user-entered access to the encrypted target user data.
  • the encrypted target user data can be targeted user data such as encrypted pictures, recordings, documents, videos, music, and the like.
  • the prompt information is output, and the prompt information is used to prompt to input a decryption key.
  • the prompt information for prompting to input the decryption key is output, and the prompt information for prompting input of the decryption key may be output for prompting the user to input.
  • the decryption key is the target user biometric information corresponding to the target user data, and the manner of inputting the decryption key is different according to the category of the target user biometric information. For example, when the target user biometric information is fingerprint information, the target user may be at the terminal device.
  • the terminal device Entering the fingerprint information of the target user in the fingerprint identification area; when the target user bio information is the target user iris information, the terminal device turns on the camera of the terminal device, and the target user aligns the eye area of the target user with the camera of the terminal device, The camera of the terminal device acquires the eye image information of the target user; when the target user biometric information is the target user voiceprint information, the terminal device turns on the microphone of the terminal device, and the target user inputs the voice information of the target user through the microphone of the terminal device.
  • the target user biometric information key corresponding to the decryption key and the target user data matches.
  • the decryption key is fingerprint information
  • the input fingerprint information matches the target user fingerprint information corresponding to the target user data
  • the target user fingerprint feature may include the texture feature of the fingerprint and the core point of the fingerprint.
  • the decryption key is iris information, when the iris information is input, it is judged whether the input iris information matches the target user iris information corresponding to the target user data, specifically, the input can be determined by Whether the target user iris image corresponding to the target user data matches or not; if the decryption key is voiceprint information, when the voiceprint information is input, it is determined whether the input voiceprint information matches the target user voiceprint information corresponding to the target user data. Specifically, it can pass Voiceprint features of the target user determines whether the input data corresponding to the target user voiceprint matches the target user voiceprint feature values may include a frequency formants, formants toward voiceprint waveforms.
  • the decryption key matches the target user biometric information key corresponding to the target user data
  • the encrypted target user data is decrypted, and the target user data is acquired.
  • the decryption key For the fingerprint information when the input fingerprint information matches the target user fingerprint information corresponding to the target user data, the encrypted target user data is decrypted, and the target user data is acquired, specifically, when the input fingerprint image corresponds to the target user data.
  • the encrypted target user data is decrypted to obtain the target user data; if the decryption key is iris information, When the input iris information matches the target user iris information corresponding to the target user data, the encrypted target user data is decrypted, and the target user data is acquired, specifically, when the input iris image matches the target user iris image corresponding to the target user data. Decrypting the encrypted target user data to obtain the target user data; if the decryption key is the voiceprint information, when the input voiceprint information matches the target user voiceprint information corresponding to the target user data, the encrypted target user data is decrypted. To get the target user data, Specifically, when the voiceprint features target user input data corresponding to the target user voiceprint matching, the target decrypts the encrypted user data, the user data acquired target.
  • the terminal device receives an encryption instruction for the target user data; determines whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; if not, collects the target user biometric information; and the target user biometric information As the target user biometric information key corresponding to the target user data, the target user data is encrypted by the target user biometric information key to obtain the encrypted target user data; the encrypted target user data is stored in the terminal device memory or the cloud; The access instruction of the encrypted target user data; outputting the prompt information, the prompt information is used to prompt to input the decryption key; and when the decryption key is input, determining whether the target user biometric information key corresponding to the decryption key and the target user data match; Match, decrypt the encrypted target user data, and obtain the target user data.
  • the security of user data can be improved.
  • FIG. 3 is a flowchart of another method for encrypting information disclosed in an embodiment of the present invention. As shown in FIG. 3, the information encryption method described in this embodiment includes the following steps:
  • S303 Collect at least two user biometric information.
  • the user in order to improve the accuracy of the collected biometric information of the user, the user is prevented from being
  • the user biometric information collected by the user is mis-operated, and at least two user biometric information are first collected when the biometric information of the target user is collected.
  • the collected biometric information of at least two users matches each other, it indicates that the collected biometric information of the user is valid information, and the biometric information collection of the target user is confirmed to be successful.
  • step S304 may include:
  • At least two user biometric information are synthesized to obtain target user biometric information.
  • At least two user biometric information are synthesized to obtain target user biometric information.
  • the user biometric information is user fingerprint information
  • at least two The user fingerprint information is synthesized to obtain the target user fingerprint information.
  • step S304 may include:
  • any one of the at least two user biometric information is selected as the target user biometric information. For example, if the user biometric information is the user fingerprint information, at least Select one of the two user fingerprint information as the target user fingerprint information.
  • the target user biometric information is used as a target user biometric information key corresponding to the target user data, and the target user biometric information key is used to encrypt the target user data to obtain encrypted target user data.
  • steps S301 to S302 in the embodiment of the present invention reference may be made to the steps S101 to S102 shown in FIG. 1 , and the steps S 305 to S 306 may be referred to the steps S104 to S105 shown in FIG. 1 .
  • receiving an encryption instruction for the target user data determining whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; collecting at least two user biometric information; and when at least two user biometric information are mutually When matching, confirm that the target user biometric information is collected into
  • the target user biometric information is used as the target user biometric information key corresponding to the target user data, and the target user biometric information key is used to encrypt the target user data to obtain the encrypted target user data; and the encrypted target user data is stored in the terminal.
  • Device memory or cloud By implementing the embodiments of the present invention, the accuracy of the collected user biometric information can be improved, and the security of the user data can be improved.
  • FIG. 4 is a schematic structural diagram of a terminal device according to an embodiment of the present invention.
  • the terminal device according to the embodiment of the present invention includes: a first receiving unit 401, and a first determining unit. 402, an acquisition unit 403, an encryption unit 404, and a storage unit 405, wherein:
  • the first receiving unit 401 is configured to receive an encryption instruction for the target user data.
  • the user when the target user data needs to be encrypted, the user inputs an encryption instruction for the target user data, and the first receiving unit 401 receives the encryption instruction input by the user for the target user data.
  • the target user data can be private data of users such as pictures, recordings, documents, videos, music, and the like.
  • the first determining unit 402 is configured to determine whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data.
  • the target user data has been encrypted
  • the target user data has a biometric information key corresponding thereto
  • the first determining unit 402 determines whether the terminal device memory or the cloud stores the biometric corresponding to the target user data.
  • the information key is to determine whether the target user data is encrypted. If the terminal device memory or the cloud stores the biometric information key corresponding to the target user data, it indicates that the target user data is encrypted, and the terminal device outputs a notification message, where the notification message is used to notify the user that the target user data is encrypted and re-encrypted.
  • the user chooses to re-encrypt, first input the original bio-information key corresponding to the target user data, and then input the new bio-information key of the target user data, and if the user chooses not to re-encrypt, the end; if the terminal device memory or the cloud does not The biometric information key corresponding to the target user data is stored, and the collection unit 403 is triggered to collect the target user biometric information.
  • the collecting unit 403 is configured to collect the target user biometric information when the first judging unit 402 determines that the result is no.
  • the collecting unit 403 collects the target user biometric information, and the collecting unit 403 can collect the target user biometric input by the user on the terminal device.
  • the information for example, if the target user biometric information is the target user fingerprint information, the fingerprint recognition function is enabled, and the collecting unit 403 collects the fingerprint information of the target user in the fingerprint identification area on the terminal device; if the target user biometric information is the target user iris Information, the camera of the terminal device is turned on, and the collecting unit 403 collects the image information of the eye of the target user; The user biometric information is the target user voiceprint information, then the microphone of the terminal device is turned on, and the collecting unit 403 collects the voice information of the target user.
  • FIG. 5 is a schematic structural diagram of another terminal device according to an embodiment of the present invention.
  • the collecting unit 403 in FIG. 5 includes a collecting subunit 4031 and an confirming subunit 4032, where:
  • the collecting subunit 4031 is configured to collect at least two user biometric information.
  • the collecting subunit 4031 in order to improve the accuracy of the collected user biometric information and prevent the user biometric information collected by the user from being mishandled, the collecting subunit 4031 first collects at least two user biometric information when collecting the biometric information of the target user.
  • the confirmation subunit 4032 is configured to confirm that the target user biometric information is successfully collected when the at least two user biometric information matches each other.
  • the confirming subunit 4032 confirms that the biometric information of the target user is successfully collected.
  • the confirmation subunit 4032 confirms that the target user biometric information is successfully collected by:
  • the confirmation subunit 4032 synthesizes at least two user biometric information to obtain target user biometric information.
  • the confirmation subunit 4032 when the collected at least two user biometric informations match each other, the confirmation subunit 4032 synthesizes at least two user biometric information to obtain target user biometric information, for example, if the user biometric information is user fingerprint information, At least two user fingerprint information may be synthesized to obtain target user fingerprint information.
  • the confirmation subunit 4032 confirms that the target user biometric information is successfully collected by:
  • the confirmation subunit 4032 selects any one of the at least two pieces of user biometric information as the target user biometric information.
  • the confirmation subunit 4032 selects any one of the at least two user biometric information as the target user biometric information, for example, if the user biometric information is the user fingerprint information. Any one of the at least two user fingerprint information may be selected as the target user fingerprint information.
  • the encryption unit 404 is configured to use the target user biometric information as the target user biometric information key corresponding to the target user data, and encrypt the target user data by using the target user biometric information key to obtain the encrypted target user data.
  • the user biometric information key is different from the traditional string key, and the user biometric information key is the target user biometric information, such as fingerprint information, iris information, face image information, and the like.
  • the encrypting unit 404 uses the target user biometric information as the target user biometric information key corresponding to the target user data, and encrypts the target user data by using the target user biometric information key to obtain the encrypted target user. data.
  • the storage unit 405 is configured to store the encrypted target user data in the terminal device memory or the cloud.
  • the storage unit 405 may store the encrypted target user data in the terminal device memory or the cloud, and the target user data is encrypted by using the target user biometric information, and only the target user inputs the data.
  • the target user biometric information can decrypt the encrypted target user data, which greatly provides the security of the target user data.
  • the first receiving unit 401 receives an encryption instruction for the target user data; the first determining unit 402 determines whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; if not, the collecting unit 403 The target user biometric information is collected; the encryption unit 404 uses the target user biometric information as the target user biometric information key corresponding to the target user data, and the encryption unit 404 encrypts the target user data by using the target user biometric information key to obtain the encrypted target user data.
  • the storage unit 405 stores the encrypted target user data in the terminal device memory or the cloud.
  • the biometric information key is used to encrypt the user data in the embodiment of the present invention. Due to the uniqueness and non-replicability of the biometric information, the security of the user data is high, and the prior art In comparison, the security of user data is improved.
  • FIG. 6 is a schematic structural diagram of another terminal device according to an embodiment of the present invention.
  • the terminal device described in FIG. 6 includes the first receiving unit 401 shown in FIG.
  • the first determining unit 402, the collecting unit 403, the encrypting unit 404, and the storage unit 405 further include:
  • the second receiving unit 406 is configured to receive an access instruction for the encrypted target user data.
  • the target user data is encrypted
  • the encrypted target user data needs to be decrypted
  • the user inputs an access instruction for the encrypted target user data
  • the second receiving unit 406 receives the target user for the encryption input by the user.
  • Access command for data can be targeted user data such as encrypted pictures, recordings, documents, videos, music, and the like.
  • the output unit 407 is configured to output prompt information, and the prompt information is used to prompt to input a decryption key.
  • the output unit 407 outputs prompt information for prompting to input the decryption key, and the output is used for prompting.
  • the prompt information for inputting the decryption key may be outputting prompt information for prompting the user to input the decryption key.
  • the decryption key is the target user biometric information corresponding to the target user data, and the manner of inputting the decryption key is different according to the category of the target user biometric information. For example, when the target user biometric information is fingerprint information, the target user may be at the terminal device.
  • the terminal device Entering the fingerprint information of the target user in the fingerprint identification area; when the target user bio information is the target user iris information, the terminal device turns on the camera of the terminal device, and the target user aligns the eye area of the target user with the camera of the terminal device, The camera of the terminal device acquires the eye image information of the target user; when the target user biometric information is the target user voiceprint information, the terminal device turns on the microphone of the terminal device, and the target user inputs the voice information of the target user through the microphone of the terminal device.
  • the second determining unit 408 is configured to determine, after the decryption key is input, whether the target user biometric information key corresponding to the target user data is matched.
  • the second determining unit 408 determines whether the input fingerprint information matches the target user fingerprint information corresponding to the target user data, specifically, the input may be determined by Whether the fingerprint image of the target user corresponding to the target user data matches, or whether the fingerprint feature of the input fingerprint information matches the target user fingerprint feature corresponding to the target user data, and the target user fingerprint feature may include the texture feature of the fingerprint.
  • the second determining unit 408 determines whether the input iris information matches the target user iris information corresponding to the target user data. Specifically, it can be determined whether the input iris image matches the target user iris image corresponding to the target user data; if the decryption key is voiceprint information, after the voiceprint information is input, the second determining unit 408 determines the input sound.
  • Correspondence information corresponding to the target user data Whether the user voiceprint information matches, specifically, whether the target voiceprint feature corresponding to the target user data matches the input voiceprint feature, and the target user voiceprint feature may include the frequency value of the formant and the formant. Direction, voice waveform, etc.
  • the decrypting unit 409 is configured to decrypt the encrypted target user data and obtain the target user data when the second determining unit 408 determines that the result is YES.
  • the decryption unit 409 decrypts the encrypted target user data to acquire the target user data.
  • the decryption key is fingerprint information
  • the decryption unit 409 decrypts the encrypted target user data to obtain the target user data, specifically, when the input fingerprint image matches the target user fingerprint image corresponding to the target user data, or the input fingerprint information
  • the decryption unit 409 decrypts the encrypted target user data to obtain the target user data;
  • the decryption key is the iris information, when the input iris information corresponds to the target user data When the user iris information is matched, the decryption unit 409 decrypts the encrypted target user data to acquire the target user data.
  • the decryption unit 409 decrypts the encrypted Target user data, obtaining target user data; if the decryption key is voiceprint information, when the input voiceprint information matches the target user voiceprint information corresponding to the target user data, the decryption unit 409 decrypts the encrypted target user data, and obtains Target user data, specifically When the voiceprint features entered with the target user data corresponding to the target user voiceprint matching, the decryption unit 409 decrypts the encrypted user data of the target, the target user data acquisition.
  • the first receiving unit 401 receives an encryption instruction for the target user data; the first determining unit 402 determines whether the terminal device memory or the cloud stores the biometric information key corresponding to the target user data; if not, the collecting unit 403 The target user biometric information is collected; the encryption unit 404 uses the target user biometric information as the target user biometric information key corresponding to the target user data, and encrypts the target user data by using the target user biometric information key to obtain the encrypted target user data; the storage unit 405 storing the encrypted target user data in the terminal device memory or the cloud; the second receiving unit 406 receives the access instruction for the encrypted target user data; the output unit 407 outputs the prompt information, the prompt information is used to prompt the input of the decryption key; After the key is input, the second determining unit 408 determines whether the target user biometric information key corresponding to the target user data matches the decryption key; if matched, the decryption unit 409 decrypts the encrypted target user data to
  • the program may be stored in a computer readable storage medium, and the storage medium may include: Flash disk, Read-Only Memory (ROM), Random Access Memory (RAM), disk or optical disk.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Collating Specific Patterns (AREA)
  • Storage Device Security (AREA)

Abstract

本发明实施例公开了一种信息加密方法及终端设备,该方法包括:接收针对目标用户数据的加密指令(S101);判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥(S102);若否,采集目标用户生物信息(S103);将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据(S104);将加密的目标用户数据存储在终端设备存储器或云端(S105)。实施本发明实施例,可以提高用户数据的安全性。

Description

一种信息加密方法及终端设备 技术领域
本发明涉及通信技术领域,具体涉及一种信息加密方法及终端设备。
背景技术
随着通信技术的快速发展,终端设备中用户数据的安全性引起了广泛关注,当前普遍采用的方法是通过设置字符密码对用户数据进行加密。由于终端设备中的用户数据繁多,使用字符密码对用户数据进行加密时,用户为了使用方便,一般会对所有的用户数据均设置同一个密码,会导致用户数据的安全性较低。
发明内容
本发明实施例提供一种信息加密方法及终端设备,可以提高用户数据的安全性。
本发明实施例第一方面,提供了一种信息加密方法,包括:
接收针对目标用户数据的加密指令;
判断终端设备存储器或云端是否存储与所述目标用户数据对应的生物信息密钥;
若否,采集目标用户生物信息;
将所述目标用户生物信息作为所述目标用户数据对应的目标用户生物信息密钥,利用所述目标用户生物信息密钥对所述目标用户数据进行加密,得到加密的目标用户数据;
将所述加密的目标用户数据存储在所述终端设备存储器或所述云端。
在本发明实施例第一方面的第一种可能的实现方式中,所述将所述加密的目标用户数据存储在所述终端设备存储器或所述云端之后,所述方法还包括:
接收针对所述加密的目标用户数据的访问指令;
输出提示信息,所述提示信息用于提示输入解密密钥;
当所述解密密钥输入后,判断所述解密密钥与所述目标用户数据对应的所述目标用户生物信息密钥是否匹配;
若匹配,解密所述加密的目标用户数据,获取所述目标用户数据。
结合本发明实施例第一方面,在本发明实施例第一方面的第二种可能的实现方式中,所述采集目标用户生物信息包括:
采集至少两个用户生物信息;
当所述至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
结合本发明实施例第一方面的第二种可能的实现方式,在本发明实施例第一方面的第三种可能的实现方式中,所述确认目标用户生物信息采集成功,包括:
将所述至少两个用户生物信息进行合成,得到目标用户生物信息。
结合本发明实施例第一方面的第二种可能的实现方式,在本发明实施例第一方面的第四种可能的实现方式中,所述确认目标用户生物信息采集成功,包括:
从所述至少两个用户生物信息中选择任一个作为目标用户生物信息。
本发明实施例第二方面,提供了一种终端设备,包括:
第一接收单元,用于接收针对目标用户数据的加密指令;
第一判断单元,用于判断终端设备存储器或云端是否存储与所述目标用户数据对应的生物信息密钥;
采集单元,用于当所述第一判断单元判断结果为否时,采集目标用户生物信息;
加密单元,用于将所述目标用户生物信息作为所述目标用户数据对应的目标用户生物信息密钥,利用所述目标用户生物信息密钥对所述目标用户数据进行加密,得到加密的目标用户数据;
存储单元,用于将所述加密的目标用户数据存储在所述终端设备存储器或所述云端。
在本发明实施例第二方面的第一种可能的实现方式中,所述终端设备还包括:
第二接收单元,用于接收针对所述加密的目标用户数据的访问指令;
输出单元,用于输出提示信息,所述提示信息用于提示输入解密密钥;
第二判断单元,用于当所述解密密钥输入后,判断所述解密密钥与所述目 标用户数据对应的所述目标用户生物信息密钥是否匹配;
解密单元,用于当所述第二判断单元判断结果为是时,解密所述加密的目标用户数据,获取所述目标用户数据。
结合本发明实施例第二方面,在本发明实施例第二方面的第二种可能的实现方式中,所述采集单元包括:
采集子单元,用于采集至少两个用户生物信息;
确认子单元,用于当所述至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
结合本发明实施例第二方面的第二种可能的实现方式,在本发明实施例第二方面的第三种可能的实现方式中,所述确认子单元确认目标用户生物信息采集成功的方式具体为:
所述确认单元将所述至少两个用户生物信息进行合成,得到目标用户生物信息。
结合本发明实施例第二方面的第二种可能的实现方式,在本发明实施例第二方面的第四种可能的实现方式中,所述确认子单元确认目标用户生物信息采集成功的方式具体为:
所述确认单元从所述至少两个用户生物信息中选择任一个作为目标用户生物信息。
本发明实施例中,终端设备接收针对目标用户数据的加密指令;判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;若否,采集目标用户生物信息;将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;将加密的目标用户数据存储在终端设备存储器或云端。与现有技术中使用字符密码相比,本发明实施例中采用生物信息密钥对用户数据进行加密,由于生物信息的唯一性与不可复制性,用户数据的安全性较高,与现有技术相比,提高了用户数据的安全性。
附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述 中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动的前提下,还可以根据这些附图获得其他的附图。
图1是本发明实施例公开的一种信息加密方法的流程图;
图2是本发明实施例公开的另一种信息加密方法的流程图;
图3是本发明实施例公开的另一种信息加密方法的流程图;
图4是本发明实施例公开的一种终端设备的结构示意图;
图5是本发明实施例公开的另一种终端设备的结构示意图;
图6是本发明实施例公开的另一种终端设备的结构示意图。
具体实施方式
下面将结合本发明实施方式中的附图,对本发明实施方式中的技术方案进行清楚、完整地描述。显然,所描述的实施方式是本发明的一部分实施方式,而不是全部实施方式。基于本发明中的实施方式,本领域普通技术人员在没有做出创造性劳动的前提下所获得的所有其他实施方式,都应属于本发明保护的范围。
本发明实施例提供一种信息加密方法及终端设备,可以提高用户数据的安全性。以下分别进行详细说明。
本发明实施例中描述的终端设备可包括:手机、平板电脑或者随身听等,上述终端设备仅是举例,而非穷举,包含但不限于上述终端设备。
请参阅图1,图1是本发明实施例公开的一种信息加密方法的流程图。如图1所示,本实施例中所描述的信息加密方法,包括步骤:
S101,接收针对目标用户数据的加密指令。
本发明实施例中,当需要对目标用户数据进行加密时,用户针对目标用户数据输入加密指令,终端设备接收用户输入的针对目标用户数据的加密指令。目标用户数据可以为图片、录音、文档、视频、音乐等用户私密数据。
在步骤S101之前,还可以包括如下步骤:
当用户数据生成时,判断信息加密功能是否开启;
若信息加密功能未开启,输出第一提示信息,第一提示信息用于提示是否开启信息加密功能;
当接收到开启信息加密功能指令后,开启信息加密功能。
本发明实施例中,用户数据可以由终端设备中的应用生成,例如,用户数据为图片时,用户数据由拍摄应用生成;用户数据为录音时,用户数据由录音应用生成。信息加密功能是使用生物信息对用户数据进行加密的功能,当信息加密功能开启时,可以利用生物信息对用户数据进行加密,生物信息包括但不限于:指纹、虹膜、声纹、人脸、视网膜等信息。
S102,判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥。
本发明实施例中,若目标用户数据已进行信息加密,则目标用户数据有一个与之对应的生物信息密钥,判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥是为了判断目标用户数据是否加密。若终端设备存储器或云端存储与目标用户数据对应的生物信息密钥,则表明目标用户数据已加密,终端设备会输出通知消息,该通知消息用于通知用户该目标用户数据已加密,是否重新加密,若用户选择重新加密,则先输入目标用户数据对应的原始生物信息密钥,再输入目标用户数据的新生物信息密钥,若用户选择不重新加密,则结束;若终端设备存储器或云端未存储与目标用户数据对应的生物信息密钥,则执行步骤S103。
S103,采集目标用户生物信息。
本发明实施例中,若终端设备存储器或云端未存储与目标用户数据对应的生物信息密钥,则采集目标用户生物信息,终端设备可以采集用户在终端设备上输入的目标用户生物信息,举例来说,若目标用户生物信息为目标用户指纹信息,则开启指纹识别功能,在终端设备上的指纹识别区域采集目标用户的指纹信息;若目标用户生物信息为目标用户虹膜信息,则开启终端设备的摄像头,获取目标用户的眼部图像信息;若目标用户生物信息为目标用户声纹信息,则开启终端设备的麦克风,采集目标用户的声音信息。
S104,将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
本发明实施例中,用户生物信息密钥与传统的字符串密钥不同,用户生物信息密钥为目标用户生物信息,例如指纹信息、虹膜信息、人脸图像信息等。采集目标用户生物信息后,将目标用户生物信息作为目标用户数据对应的目标 用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
S105,将加密的目标用户数据存储在终端设备存储器或云端。
本发明实施例中,当目标用户数据加密成功后,加密的目标用户数据可以存储在终端设备存储器或云端,由于采用目标用户生物信息对目标用户数据进行加密,只有目标用户本人输入目标用户生物信息才能对加密的目标用户数据进行解密,大大的提供了目标用户数据的安全性。
本发明实施例中,终端设备接收针对目标用户数据的加密指令;判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;若否,采集目标用户生物信息;将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;将加密的目标用户数据存储在终端设备存储器或云端。与现有技术中使用字符密码相比,本发明实施例中采用生物信息密钥对用户数据进行加密,由于生物信息的唯一性与不可复制性,用户数据的安全性较高,与现有技术相比,提高了用户数据的安全性。
请参阅图2,图2是本发明实施例公开的另一种信息加密方法的流程图。如图2所示,本实施例中所描述的信息加密方法,包括步骤:
S201,接收针对目标用户数据的加密指令。
S202,判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥。
S203,采集目标用户生物信息。
S204,将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
S205,将加密的目标用户数据存储在终端设备存储器或云端。
S206,接收针对加密的目标用户数据的访问指令。
本发明实施例中,当目标用户数据加密后,若需要对加密的目标用户数据进行解密,则用户针对加密的目标用户数据输入访问指令,终端设备接收用户输入的针对加密的目标用户数据的访问指令。加密的目标用户数据可以为加密的图片、录音、文档、视频、音乐等目标用户数据。
S207,输出提示信息,提示信息用于提示输入解密密钥。
本发明实施例中,当接收针对加密的目标用户数据的访问指令之后,输出用于提示输入解密密钥的提示信息,输出用于提示输入解密密钥的提示信息可以是输出用于提示用户输入解密密钥的提示信息。解密密钥为与目标用户数据对应的目标用户生物信息,根据目标用户生物信息的类别,输入解密密钥的方式有区别,例如,当目标用户生物信息为指纹信息时,目标用户可以在终端设备上的指纹识别区域输入目标用户的指纹信息;当目标用户生物信息为目标用户虹膜信息时,则终端设备开启终端设备的摄像头,目标用户将目标用户的眼部区域对准终端设备的摄像头,以使终端设备的摄像头获取目标用户的眼部图像信息;当目标用户生物信息为目标用户声纹信息时,则终端设备开启终端设备的麦克风,目标用户通过终端设备的麦克风输入目标用户的声音信息。
S208,当解密密钥输入后,判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配。
本发明实施例中,当用户输入解密密钥后,判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配。举例来说,若解密密钥为指纹信息,当指纹信息输入后,判断输入的指纹信息与目标用户数据对应的目标用户指纹信息是否匹配,具体而言,可以通过判断输入的指纹图像与目标用户数据对应的目标用户指纹图像是否匹配,也可以通过判断输入的指纹信息中的指纹特征与目标用户数据对应的目标用户指纹特征是否匹配,目标用户指纹特征可以包括指纹的纹路特征、指纹的核心点位置、指纹的三角点位置等;若解密密钥为虹膜信息,当虹膜信息输入后,判断输入的虹膜信息与目标用户数据对应的目标用户虹膜信息是否匹配,具体而言,可以通过判断输入的虹膜图像与目标用户数据对应的目标用户虹膜图像是否匹配;若解密密钥为声纹信息,当声纹信息输入后,判断输入的声纹信息与目标用户数据对应的目标用户声纹信息是否匹配,具体而言,可以通过判断输入的声纹特征与目标用户数据对应的目标用户声纹特征是否匹配,目标用户声纹特征可以包括共振峰的频率值、共振峰的走向、声纹波形等。
S209,若匹配,解密加密的目标用户数据,获取目标用户数据。
本发明实施例中,若解密密钥与目标用户数据对应的目标用户生物信息密钥匹配,则解密加密的目标用户数据,获取目标用户数据。例如,若解密密钥 为指纹信息,当输入的指纹信息与目标用户数据对应的目标用户指纹信息匹配时,则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的指纹图像与目标用户数据对应的目标用户指纹图像匹配时,或者输入的指纹信息中的指纹特征与目标用户数据对应的目标用户指纹特征匹配时,解密加密的目标用户数据,获取目标用户数据;若解密密钥为虹膜信息,当输入的虹膜信息与目标用户数据对应的目标用户虹膜信息匹配时,则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的虹膜图像与目标用户数据对应的目标用户虹膜图像匹配时,解密加密的目标用户数据,获取目标用户数据;若解密密钥为声纹信息,当输入的声纹信息与目标用户数据对应的目标用户声纹信息匹配时,则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的声纹特征与目标用户数据对应的目标用户声纹特征匹配时,则解密加密的目标用户数据,获取目标用户数据。
本发明实施例中的步骤S201~步骤S205可以参阅图1所示的步骤S101~步骤S105,本发明实施例不再赘述。
本发明实施例中,终端设备接收针对目标用户数据的加密指令;判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;若否,采集目标用户生物信息;将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;将加密的目标用户数据存储在终端设备存储器或云端;接收针对加密的目标用户数据的访问指令;输出提示信息,提示信息用于提示输入解密密钥;当解密密钥输入后,判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配;若匹配,解密加密的目标用户数据,获取目标用户数据。实施本发明实施例,可以提高用户数据的安全性。
请参阅图3,图3是本发明实施例公开的另一种信息加密方法的流程图。如图3所示,本实施例中所描述的信息加密方法,包括步骤:
S301,接收针对目标用户数据的加密指令。
S302,判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥。
S303,采集至少两个用户生物信息。
本发明实施例中,为了提高采集的用户生物信息的准确性,防止由于用户 误操作采集的用户生物信息,在采集目标用户生物信息时,首先采集至少两个用户生物信息。
S304,当至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,则表明采集的用户生物信息为有效信息,则确认目标用户生物信息采集成功。
在一些可行的实施方式中,步骤S304中确认目标用户生物信息采集成功可以包括:
将至少两个用户生物信息进行合成,得到目标用户生物信息。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,将至少两个用户生物信息进行合成,得到目标用户生物信息,例如,若用户生物信息为用户指纹信息,可以将至少两个用户指纹信息进行合成,得到目标用户指纹信息。
在一些可行的实施方式中,步骤S304中确认目标用户生物信息采集成功可以包括:
从至少两个用户生物信息中选择任一个作为目标用户生物信息。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,从至少两个用户生物信息中选择任一个作为目标用户生物信息,例如,若用户生物信息为用户指纹信息,可以从至少两个用户指纹信息中选择任一个作为目标用户指纹信息。
S305,将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
S306,将加密的目标用户数据存储在终端设备存储器或云端。
本发明实施例中的步骤S301~步骤S302可以参阅图1所示的步骤S101~步骤S102,步骤S305~步骤S306可以参阅图1所示的步骤S104~步骤S105,本发明实施例不再赘述。
本发明实施例中,接收针对目标用户数据的加密指令;判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;采集至少两个用户生物信息;当至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成 功;将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;将加密的目标用户数据存储在终端设备存储器或云端。实施本发明实施例,可以提高采集的用户生物信息的准确性,提高用户数据的安全性。
请参阅图4,图4是本发明实施例公开的一种终端设备的结构示意图,如图4所示,本发明实施例所描述的终端设备,包括:第一接收单元401、第一判断单元402、采集单元403、加密单元404和存储单元405,其中:
第一接收单元401,用于接收针对目标用户数据的加密指令。
本发明实施例中,当需要对目标用户数据进行加密时,用户针对目标用户数据输入加密指令,第一接收单元401接收用户输入的针对目标用户数据的加密指令。目标用户数据可以为图片、录音、文档、视频、音乐等用户私密数据。
第一判断单元402,用于判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥。
本发明实施例中,若目标用户数据已进行信息加密,则目标用户数据有一个与之对应的生物信息密钥,第一判断单元402判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥是为了判断目标用户数据是否加密。若终端设备存储器或云端存储与目标用户数据对应的生物信息密钥,则表明目标用户数据已加密,终端设备会输出通知消息,该通知消息用于通知用户该目标用户数据已加密,是否重新加密,若用户选择重新加密,则先输入目标用户数据对应的原始生物信息密钥,再输入目标用户数据的新生物信息密钥,若用户选择不重新加密,则结束;若终端设备存储器或云端未存储与目标用户数据对应的生物信息密钥,则触发采集单元403采集目标用户生物信息。
采集单元403,用于当第一判断单元402判断结果为否时,采集目标用户生物信息。
本发明实施例中,若终端设备存储器或云端未存储与目标用户数据对应的生物信息密钥,采集单元403则采集目标用户生物信息,采集单元403可以采集用户在终端设备上输入的目标用户生物信息,举例来说,若目标用户生物信息为目标用户指纹信息,则开启指纹识别功能,采集单元403在终端设备上的指纹识别区域采集目标用户的指纹信息;若目标用户生物信息为目标用户虹膜信息,则开启终端设备的摄像头,采集单元403采集目标用户的眼部图像信息;若目标 用户生物信息为目标用户声纹信息,则开启终端设备的麦克风,采集单元403采集目标用户的声音信息。
可选的,如图5所示,图5是本发明实施例公开的另一种终端设备的结构示意图,图5中的采集单元403包括采集子单元4031和确认子单元4032,其中:
采集子单元4031,用于采集至少两个用户生物信息。
本发明实施例中,为了提高采集的用户生物信息的准确性,防止由于用户误操作采集的用户生物信息,采集子单元4031在采集目标用户生物信息时,首先采集至少两个用户生物信息。
确认子单元4032,用于当至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,则表明采集的用户生物信息为有效信息,确认子单元4032则确认目标用户生物信息采集成功。
可选的,确认子单元4032确认目标用户生物信息采集成功的方式具体为:
确认子单元4032将至少两个用户生物信息进行合成,得到目标用户生物信息。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,确认子单元4032将至少两个用户生物信息进行合成,得到目标用户生物信息,例如,若用户生物信息为用户指纹信息,可以将至少两个用户指纹信息进行合成,得到目标用户指纹信息。
可选的,确认子单元4032确认目标用户生物信息采集成功的方式具体为:
确认子单元4032从至少两个用户生物信息中选择任一个作为目标用户生物信息。
本发明实施例中,当采集的至少两个用户生物信息相互匹配时,确认子单元4032从至少两个用户生物信息中选择任一个作为目标用户生物信息,例如,若用户生物信息为用户指纹信息,可以从至少两个用户指纹信息中选择任一个作为目标用户指纹信息。
加密单元404,用于将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
本发明实施例中,用户生物信息密钥与传统的字符串密钥不同,用户生物信息密钥为目标用户生物信息,例如指纹信息、虹膜信息、人脸图像信息等。采集单元403采集目标用户生物信息后,加密单元404将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据。
存储单元405,用于将加密的目标用户数据存储在终端设备存储器或云端。
本发明实施例中,当目标用户数据加密成功后,存储单元405可以将加密的目标用户数据存储在终端设备存储器或云端,由于采用目标用户生物信息对目标用户数据进行加密,只有目标用户本人输入目标用户生物信息才能对加密的目标用户数据进行解密,大大的提供了目标用户数据的安全性。
本发明实施例中,第一接收单元401接收针对目标用户数据的加密指令;第一判断单元402判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;若否,采集单元403采集目标用户生物信息;加密单元404将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,加密单元404利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;存储单元405将加密的目标用户数据存储在终端设备存储器或云端。与现有技术中使用字符密码相比,本发明实施例中采用生物信息密钥对用户数据进行加密,由于生物信息的唯一性与不可复制性,用户数据的安全性较高,与现有技术相比,提高了用户数据的安全性。
请参阅图6,图6是本发明实施例公开的另一种终端设备的结构示意图,如图6所示,图6所描述的终端设备,除了包括图4所示的第一接收单元401、第一判断单元402、采集单元403、加密单元404和存储单元405之外,还包括:
第二接收单元406,用于接收针对加密的目标用户数据的访问指令。
本发明实施例中,当目标用户数据加密后,若需要对加密的目标用户数据进行解密,则用户针对加密的目标用户数据输入访问指令,第二接收单元406接收用户输入的针对加密的目标用户数据的访问指令。加密的目标用户数据可以为加密的图片、录音、文档、视频、音乐等目标用户数据。
输出单元407,用于输出提示信息,提示信息用于提示输入解密密钥。
本发明实施例中,当第二接收单元406接收针对加密的目标用户数据的访问指令之后,输出单元407输出用于提示输入解密密钥的提示信息,输出用于提示 输入解密密钥的提示信息可以是输出用于提示用户输入解密密钥的提示信息。解密密钥为与目标用户数据对应的目标用户生物信息,根据目标用户生物信息的类别,输入解密密钥的方式有区别,例如,当目标用户生物信息为指纹信息时,目标用户可以在终端设备上的指纹识别区域输入目标用户的指纹信息;当目标用户生物信息为目标用户虹膜信息时,则终端设备开启终端设备的摄像头,目标用户将目标用户的眼部区域对准终端设备的摄像头,以使终端设备的摄像头获取目标用户的眼部图像信息;当目标用户生物信息为目标用户声纹信息时,则终端设备开启终端设备的麦克风,目标用户通过终端设备的麦克风输入目标用户的声音信息。
第二判断单元408,用于当解密密钥输入后,判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配。
本发明实施例中,当用户输入解密密钥后,判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配。举例来说,若解密密钥为指纹信息,当指纹信息输入后,第二判断单元408判断输入的指纹信息与目标用户数据对应的目标用户指纹信息是否匹配,具体而言,可以通过判断输入的指纹图像与目标用户数据对应的目标用户指纹图像是否匹配,也可以通过判断输入的指纹信息中的指纹特征与目标用户数据对应的目标用户指纹特征是否匹配,目标用户指纹特征可以包括指纹的纹路特征、指纹的核心点位置、指纹的三角点位置等;若解密密钥为虹膜信息,当虹膜信息输入后,第二判断单元408判断输入的虹膜信息与目标用户数据对应的目标用户虹膜信息是否匹配,具体而言,可以通过判断输入的虹膜图像与目标用户数据对应的目标用户虹膜图像是否匹配;若解密密钥为声纹信息,当声纹信息输入后,第二判断单元408判断输入的声纹信息与目标用户数据对应的目标用户声纹信息是否匹配,具体而言,可以通过判断输入的声纹特征与目标用户数据对应的目标用户声纹特征是否匹配,目标用户声纹特征可以包括共振峰的频率值、共振峰的走向、声纹波形等。
解密单元409,用于当第二判断单元408判断结果为是时,解密加密的目标用户数据,获取目标用户数据。
本发明实施例中,若解密密钥与目标用户数据对应的目标用户生物信息密钥匹配,解密单元409则解密加密的目标用户数据,获取目标用户数据。例如,若解密密钥为指纹信息,当输入的指纹信息与目标用户数据对应的目标用户指 纹信息匹配时,解密单元409则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的指纹图像与目标用户数据对应的目标用户指纹图像匹配时,或者输入的指纹信息中的指纹特征与目标用户数据对应的目标用户指纹特征匹配时,解密单元409解密加密的目标用户数据,获取目标用户数据;若解密密钥为虹膜信息,当输入的虹膜信息与目标用户数据对应的目标用户虹膜信息匹配时,解密单元409则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的虹膜图像与目标用户数据对应的目标用户虹膜图像匹配时,解密单元409解密加密的目标用户数据,获取目标用户数据;若解密密钥为声纹信息,当输入的声纹信息与目标用户数据对应的目标用户声纹信息匹配时,解密单元409则解密加密的目标用户数据,获取目标用户数据,具体而言,当输入的声纹特征与目标用户数据对应的目标用户声纹特征匹配时,解密单元409则解密加密的目标用户数据,获取目标用户数据。
本发明实施例中,第一接收单元401接收针对目标用户数据的加密指令;第一判断单元402判断终端设备存储器或云端是否存储与目标用户数据对应的生物信息密钥;若否,采集单元403采集目标用户生物信息;加密单元404将目标用户生物信息作为目标用户数据对应的目标用户生物信息密钥,利用目标用户生物信息密钥对目标用户数据进行加密,得到加密的目标用户数据;存储单元405将加密的目标用户数据存储在终端设备存储器或云端;第二接收单元406接收针对加密的目标用户数据的访问指令;输出单元407输出提示信息,提示信息用于提示输入解密密钥;当解密密钥输入后,第二判断单元408判断解密密钥与目标用户数据对应的目标用户生物信息密钥是否匹配;若匹配,解密单元409解密加密的目标用户数据,获取目标用户数据。实施本发明实施例,可以提高用户数据的安全性。
本领域普通技术人员可以理解上述实施例的各种方法中的全部或部分步骤是可以通过程序来指令相关的硬件来完成,该程序可以存储于一计算机可读存储介质中,存储介质可以包括:闪存盘、只读存储器(Read-Only Memory,ROM)、随机存取器(Random Access Memory,RAM)、磁盘或光盘等。
以上对本发明实施例所提供的一种信息加密方法及终端设备进行了详细介绍,本文中应用了具体个例对本发明的原理及实施方式进行了阐述,以上实施例的说明只是用于帮助理解本发明的方法及其核心思想;同时,对于本领域的 一般技术人员,依据本发明的思想,在具体实施方式及应用范围上均会有改变之处,综上所述,本说明书内容不应理解为对本发明的限制。

Claims (10)

  1. 一种信息加密方法,其特征在于,包括:
    接收针对目标用户数据的加密指令;
    判断终端设备存储器或云端是否存储与所述目标用户数据对应的生物信息密钥;
    若否,采集目标用户生物信息;
    将所述目标用户生物信息作为所述目标用户数据对应的目标用户生物信息密钥,利用所述目标用户生物信息密钥对所述目标用户数据进行加密,得到加密的目标用户数据;
    将所述加密的目标用户数据存储在所述终端设备存储器或所述云端。
  2. 根据权利要求1所述的方法,其特征在于,所述将所述加密的目标用户数据存储在所述终端设备存储器或所述云端之后,所述方法还包括:
    接收针对所述加密的目标用户数据的访问指令;
    输出提示信息,所述提示信息用于提示输入解密密钥;
    当所述解密密钥输入后,判断所述解密密钥与所述目标用户数据对应的所述目标用户生物信息密钥是否匹配;
    若匹配,解密所述加密的目标用户数据,获取所述目标用户数据。
  3. 根据权利要求1所述的方法,其特征在于,所述采集目标用户生物信息包括:
    采集至少两个用户生物信息;
    当所述至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
  4. 根据权利要求3所述的方法,其特征在于,所述确认目标用户生物信息采集成功,包括:
    将所述至少两个用户生物信息进行合成,得到目标用户生物信息。
  5. 根据权利要求3所述的方法,其特征在于,所述确认目标用户生物信息 采集成功,包括:
    从所述至少两个用户生物信息中选择任一个作为目标用户生物信息。
  6. 一种终端设备,其特征在于,包括:
    第一接收单元,用于接收针对目标用户数据的加密指令;
    第一判断单元,用于判断终端设备存储器或云端是否存储与所述目标用户数据对应的生物信息密钥;
    采集单元,用于当所述第一判断单元判断结果为否时,采集目标用户生物信息;
    加密单元,用于将所述目标用户生物信息作为所述目标用户数据对应的目标用户生物信息密钥,利用所述目标用户生物信息密钥对所述目标用户数据进行加密,得到加密的目标用户数据;
    存储单元,用于将所述加密的目标用户数据存储在所述终端设备存储器或所述云端。
  7. 根据权利要求6所述的终端设备,其特征在于,所述终端设备还包括:
    第二接收单元,用于接收针对所述加密的目标用户数据的访问指令;
    输出单元,用于输出提示信息,所述提示信息用于提示输入解密密钥;
    第二判断单元,用于当所述解密密钥输入后,判断所述解密密钥与所述目标用户数据对应的所述目标用户生物信息密钥是否匹配;
    解密单元,用于当所述第二判断单元判断结果为是时,解密所述加密的目标用户数据,获取所述目标用户数据。
  8. 根据权利要求6所述的终端设备,其特征在于,所述采集单元包括:
    采集子单元,用于采集至少两个用户生物信息;
    确认子单元,用于当所述至少两个用户生物信息相互匹配时,确认目标用户生物信息采集成功。
  9. 根据权利要求8所述的终端设备,其特征在于,所述确认子单元确认目标用户生物信息采集成功的方式具体为:
    所述确认单元将所述至少两个用户生物信息进行合成,得到目标用户生物信息。
  10. 根据权利要求8所述的终端设备,其特征在于,所述确认子单元确认目标用户生物信息采集成功的方式具体为:
    所述确认单元从所述至少两个用户生物信息中选择任一个作为目标用户生物信息。
PCT/CN2015/093526 2015-07-31 2015-10-31 一种信息加密方法及终端设备 Ceased WO2017020437A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510466838.4 2015-07-31
CN201510466838.4A CN105550556A (zh) 2015-07-31 2015-07-31 一种信息加密方法及终端设备

Publications (1)

Publication Number Publication Date
WO2017020437A1 true WO2017020437A1 (zh) 2017-02-09

Family

ID=55829743

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2015/093526 Ceased WO2017020437A1 (zh) 2015-07-31 2015-10-31 一种信息加密方法及终端设备

Country Status (2)

Country Link
CN (1) CN105550556A (zh)
WO (1) WO2017020437A1 (zh)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107038389A (zh) * 2017-03-13 2017-08-11 上海青橙实业有限公司 数据加密处理方法、数据解密处理方法及移动终端
CN109190453A (zh) * 2018-07-09 2019-01-11 奇酷互联网络科技(深圳)有限公司 防止虹膜信息泄露的方法和装置
CN111062053B (zh) * 2019-12-10 2023-02-03 中国建设银行股份有限公司 生物特征数据的处理方法、装置、设备及介质
CN111756741B (zh) * 2020-06-24 2023-06-13 安徽听见科技有限公司 一种数据传输方法、装置、设备及存储介质
CN111953841A (zh) * 2020-08-11 2020-11-17 广东电网有限责任公司 一种电力调度电话系统

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102316452A (zh) * 2011-07-18 2012-01-11 辽宁国兴科技有限公司 一种基于云端利用nfc通信技术的双重鉴权登录系统
CN104239768A (zh) * 2014-09-04 2014-12-24 深圳市浩方电子商务有限公司 基于生物特征信息验证的个人账户信息安全管理系统及方法
WO2015028824A1 (en) * 2013-08-29 2015-03-05 Sim & Pin Limited System for accessing data from multiple devices

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080282092A1 (en) * 2007-05-11 2008-11-13 Chih Kang Pan Card reading apparatus with integrated identification function
CN103152157A (zh) * 2013-02-04 2013-06-12 快车科技有限公司 一种安全密保方法及相关装置
CN104573550A (zh) * 2014-12-27 2015-04-29 小米科技有限责任公司 数据保护方法和装置

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102316452A (zh) * 2011-07-18 2012-01-11 辽宁国兴科技有限公司 一种基于云端利用nfc通信技术的双重鉴权登录系统
WO2015028824A1 (en) * 2013-08-29 2015-03-05 Sim & Pin Limited System for accessing data from multiple devices
CN104239768A (zh) * 2014-09-04 2014-12-24 深圳市浩方电子商务有限公司 基于生物特征信息验证的个人账户信息安全管理系统及方法

Also Published As

Publication number Publication date
CN105550556A (zh) 2016-05-04

Similar Documents

Publication Publication Date Title
US11195167B2 (en) Offline payment method and device
JP7123540B2 (ja) 音声情報による入力を受け付ける情報処理端末、方法、その情報処理端末を含むシステム
US8862888B2 (en) Systems and methods for three-factor authentication
TWI633456B (zh) 用於認證之方法、運算系統及電腦可讀儲存媒體(二)
TWI578749B (zh) 用於遷移金鑰之方法及設備
CN108702354B (zh) 基于传感器信号的活跃度确定
CN103916233B (zh) 一种信息加密方法及装置
US20080209222A1 (en) Method of creating password schemes for devices
CN106487514A (zh) 语音通信加密方法、解密方法及其装置
JP2017532630A (ja) バイオメトリックデータおよび非バイオメトリックデータに基づいて認証データを生成するシステムおよび方法
JP2017531237A (ja) 多因子のキャンセル可能なバイオメトリックデータに基づく認証
WO2017020437A1 (zh) 一种信息加密方法及终端设备
JP2014512154A (ja) 実世界オブジェクトを使用する暗号化
CN110321757B (zh) 跨端生物特征识别系统、生物特征管理系统、方法及装置
CN106487758B (zh) 一种数据安全签名方法、业务终端以及私钥备份服务器
CN103559433A (zh) 一种移动终端防盗方法及装置
CN106096377A (zh) 一种移动终端的应用解锁方法、装置和移动终端
KR101052294B1 (ko) 콘텐츠 보안 장치 및 콘텐츠 보안 방법
CN106096335A (zh) 版权信息检测方法、版权信息检测装置和电子设备
SE1650416A1 (en) Secure storage of fingerprint related elements
WO2022022346A1 (zh) 一种安全交互方法及装置
CN105898002A (zh) 一种移动终端的应用解锁方法、装置和移动终端
WO2015196642A1 (zh) 数据加密方法、解密方法及装置
KR20150100602A (ko) 데이터 저장 및 판독 방법, 장치, 및 기기
CN112738738A (zh) 好友添加方法、装置、设备及存储介质

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15900207

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 15900207

Country of ref document: EP

Kind code of ref document: A1