Secondary packaging signature verification method for apk files on Android platform

A signature verification and secondary packaging technology, applied in the direction of user identity/authority verification, digital data protection, etc., can solve the problems of wasting mobile phone power, traffic, unable to control APK installation, deduction and other problems, and achieve the effect of preventing illegal cracking

Active Publication Date: 2019-09-13
FUJIAN MOREFUN ELECTRONICS TECH CO LTD
View PDF12 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, the existing native signature technology is a self-signed method, which is theoretically legal (that is, it is allowed to be installed), so the existing native signature technology cannot control the installation of APK.
And some APP programs are easy to be pirated. Once they are cracked and repackaged with malicious codes, they will be exactly the same as the original APP in terms of performance, user experience and appearance, but behind it may be running quietly. programs, and these programs may lead to unknowingly wasting mobile phone power, traffic, malicious deduction, voyeuristic privacy and other behaviors

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Secondary packaging signature verification method for apk files on Android platform
  • Secondary packaging signature verification method for apk files on Android platform
  • Secondary packaging signature verification method for apk files on Android platform

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] Please refer to Figure 1 to Figure 3 As shown, the secondary packaging signature verification method of the APK file on the Android platform, the method includes the following steps:

[0023] Step 1. The signature tool uses the private key to sign the packaged original APK file to generate an APK file embedded with a digital signature file;

[0024] Step 2. Preset the public key certificate on the terminal device. The public key certificate is used to perform secondary packaging verification on the signature. For specific implementation, the public key certificate can be preset to the terminal device (such as android device), and download the APK file embedded with the digital signature file to the terminal device;

[0025] Step 3. The terminal device uses the public key certificate to verify the legitimacy of the APK file embedded with the digital signature file.

[0026] As can be seen from the above, in order to better manage and control the APK program files inst...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a secondary packaging signature verification method for APK files on an Android platform. The method comprises the following steps: step 1, a signing tool signs the packaged original APK files by using a private key to generate the APK files embedded with digital signature files; step 2, a public key certificate is preset on a terminal device, and the APK files embedded with the digital signature files are downloaded to the terminal device; and step 3, the terminal device verifies the legality of the APK files embedded with the digital signature files by using the public key certificate. The secondary packaging signature verification method provided by the invention has the following advantages: the phenomenon that the applications are illegally cracked and malicious codes are embedded to the applications to cause repackaging can be effectively prevented; and the method is beneficial to ensure the security of various data such as the accounts, passwords and traffic of users.

Description

technical field [0001] The invention relates to a secondary packaging signature verification method of an APK file on an Android platform. Background technique [0002] Android is a free and open-source operating system based on Linux, which is mainly used on mobile devices, such as smart phones and tablet computers. On the Android platform, the installation files of the application (APP) are all saved in the APK (Android Package) format. The APK file is essentially a zip compressed file, mainly including res / class / jar and permission configuration files. At the same time, there is a META-INFO directory in the APK file, which is mainly used to save the data information generated when the APK file is signed natively. [0003] In general, developers will sign the APK through Eclipse / Android Studio or Ant tools, etc., generate a native signature file, and save it in the META-INFO directory. When installing the APK file, the bottom layer of the android platform will first perfo...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/32G06F21/64
Inventor 陈嘉祺谢纯珀
Owner FUJIAN MOREFUN ELECTRONICS TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products