Unlock instant, AI-driven research and patent intelligence for your innovation.

Method and device for preventing injection

An anti-injection and registry technology, applied in the field of information security, can solve the problems of high error probability and low security, and achieve the effect of high security and error prevention

Active Publication Date: 2020-04-03
TENCENT TECH (SHENZHEN) CO LTD
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Based on this, it is necessary to provide an anti-injection method that can prevent errors and have high security for the traditional method of avoiding calls to prevent injection, which has a high probability of error and low security.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and device for preventing injection
  • Method and device for preventing injection
  • Method and device for preventing injection

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0026] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below in conjunction with the accompanying drawings and embodiments. It should be understood that the specific embodiments described here are only used to explain the present invention, not to limit the present invention.

[0027] Figure 1A It is a schematic diagram of an internal structure of a terminal in an embodiment. Such as Figure 1A As shown, the terminal includes a processor connected through a system bus, a storage medium, a memory and a network interface, a sound collection device, a display screen, a loudspeaker and an input device. Wherein, the storage medium of the terminal stores an operating system, and also includes an anti-injection device, and the anti-injection device is used to implement an anti-injection method. The storage medium also stores a whitelist and / or blacklist, the registry location ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to an anti-injection method and apparatus. The method comprises the following steps of obtaining a call instruction of an application programming interface; accessing a Hook function when registry information is read in the application programming interface according to the call instruction; reading the registry information through the Hook function, and obtaining dynamic link library information according to a preset policy; and loading the obtained dynamic link library information into a current process. According to the anti-injection method and apparatus, the registry information is read through the Hook function when the application programming interface is called, the dynamic link library information is obtained according to the preset policy, and the dynamic link library information is loaded into the current process; the dynamic link library is screened through the preset policy, instead of reading the registry information directly through the application programming interface, obtaining the dynamic link library and loading the dynamic link library; no manual identification is required, so that errors can be prevented; and the application programming interface can be loaded, and the dynamic link library is screened, so that the security of calling the application programming interface is high.

Description

technical field [0001] The invention relates to the field of information security, in particular to an anti-injection method and device. Background technique [0002] Injection refers to the forced loading of executable modules into a process in some way or through system mechanisms. Common injection occurs inside the API (Applicant Programming Interface, Application Programming Interface). When a system API (such as a specific API of SHELL32.dll) is called in the code, the API will actively read the specific location of the registry. Check whether there is third-party DLL (Dynamic Link Library, dynamic link library) registration information. If there is third-party DLL information, the API will load these third-party DLLs into the current process. This is an injection process. [0003] In order to prevent injection, the traditional way is to avoid calling APIs with injection behavior. However, using the method of avoiding calls requires a clear understanding of which type...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): G06F21/55
CPCG06F21/55
Inventor 陈铭霖胡训国黄磊
Owner TENCENT TECH (SHENZHEN) CO LTD