Dynamic measurement method and system for sensitive application in multiple secure environments

A security environment, dynamic measurement technology, applied in computer security devices, instruments, electronic digital data processing, etc., can solve the problem that the accuracy of dynamic measurement needs to be improved, the efficiency of dynamic measurement based on trusted computing needs to be improved, and there is no in-depth system framework layer. problems, to achieve the effect of improving efficiency, improving safety, and ensuring safety

Inactive Publication Date: 2018-10-23
INST OF INFORMATION ENG CAS
View PDF2 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0010] In the prior art, the dynamic measurement of sensitive applications mainly focuses on the sensitive application itself, and does not go deep into the system framework layer that provides services for sensitive applications; the security o

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Dynamic measurement method and system for sensitive application in multiple secure environments
  • Dynamic measurement method and system for sensitive application in multiple secure environments
  • Dynamic measurement method and system for sensitive application in multiple secure environments

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0047] A method and system for dynamic measurement of sensitive applications in multiple security environments of the present invention dynamically measure the execution paths of sensitive applications and their system framework layers during the execution process, to ensure that programs are executed on trusted paths in sequence, and during the execution process Make sure that the program is not tampered with the execution sequence or calling other codes due to vulnerabilities. Other codes should not use the codes in this sensitive application. The invention utilizes the TrustICE isolation computing environment based on the TrustZone hardware isolation technology to dynamically measure the execution of the application, and the measurement feature set includes two levels of a function call graph and a control flow graph. Based on this, the present invention has the advantages of high safety, high accuracy and high efficiency.

[0048] In order to make the purpose, advantages a...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a dynamic measurement method and system for sensitive application in multiple secure environments. According to the method, program source code is subjected to static analysisto generate a function calling graph and each function control flow graph so as to build a trusted path feature set; the program source code is subjected to pile pitching preprocessing; the obtaineddynamic path is separated in a security domain; a function calling sub graph and a function control flow sub graph are obtained; the security domain is used for matching the function calling sub graphwith the function calling graph; the function calling sub graph is enabled to be a sub graph of the function calling graph; and then, the security domain is used for matching the function control flow sub graph with the function control flow graph. The dynamic measurement is performed on the execution completeness of the sensitive application in the trusted path execution process, and the programis enabled to be executed on the trusted path in sequence.

Description

technical field [0001] The invention relates to a method and system for dynamic measurement of sensitive applications in multiple security environments, and belongs to the field of dynamic measurement of mobile terminal operating systems and key applications. Background technique [0002] With the rapid development of mobile Internet technology and mobile smart terminals, more and more attention has been paid to the integrity protection of terminal operating systems and key applications, and various integrity protection models and implementation methods have emerged. During the running of the system and applications, the attacker can invade and modify the code part of the program, because once the code part of the program is modified, the function of the entire program will change. For example, for the method of code modification, first, the malicious process pretends to be the target process to deceive the operating system, so that it can obtain the authority to modify the ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F21/56G06F21/51
CPCG06F21/51G06F21/563
Inventor 代蕊蕊霍冬冬王雅哲李宇胡铭铭王瑜
Owner INST OF INFORMATION ENG CAS
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products