Network attack defense method and device based on SM3 algorithm, storage medium, client terminal and service terminal

A client terminal and network attack technology, applied to service terminals, network attack defense based on SM3 algorithm, and client terminal fields, can solve the problems of platform economic losses, false active users, etc., and achieve the effect of improving security

Pending Publication Date: 2021-10-01
GUANGZHOU CHOOSEME INFORMATION TECH CO LTD
View PDF5 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The attackers tried to forge client requests through automated scripts, creating a large number of fake active users and profiting from them, causing economic losses to the platform

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network attack defense method and device based on SM3 algorithm, storage medium, client terminal and service terminal
  • Network attack defense method and device based on SM3 algorithm, storage medium, client terminal and service terminal
  • Network attack defense method and device based on SM3 algorithm, storage medium, client terminal and service terminal

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0069] see figure 1 , figure 1 It is a schematic flowchart of a network attack defense method based on the SM3 algorithm disclosed in the embodiment of the present application, wherein the method is applied to a client terminal. Such as figure 1 As shown, the network attack defense method based on the SM3 algorithm comprises steps:

[0070] S101. Process the packaged request data according to the SM3 algorithm and obtain a first data signature;

[0071] S102. Obtain the ID of the user who initiated the current request, the user's signature key, and a first timestamp, where the first timestamp represents the time when the current request was initiated;

[0072] S103. Combine the first data signature with the user ID, the first time stamp, and the user's signature key to obtain the first data string;

[0073] S104. Process the first data string according to the SM3 algorithm and generate a first request signature;

[0074] S105. Generate request information according to the...

Embodiment 2

[0084] see figure 2 , figure 2 It is a schematic flowchart of a network attack defense method based on the SM3 algorithm disclosed in the embodiment of the present application, wherein the method is applied to a service terminal. Such as figure 2 As shown, the network attack defense method based on the SM3 algorithm comprises steps:

[0085] S201. Obtain request information sent by the client terminal;

[0086] S202. Analyze the request information, and analyze to obtain the first request signature and request data;

[0087] S203. Obtain the user ID, the user's signature key and the first timestamp sent by the client terminal;

[0088] S204. Process the request data according to the SM3 algorithm and obtain a second data signature;

[0089] S205. Splicing the second data signature, the first timestamp, the user ID, and the user's signature key into a second data string;

[0090] S206. Process the second data string according to the SM3 algorithm and generate a second ...

Embodiment 3

[0103] see image 3 , image 3 It is a schematic structural diagram of an SM3 algorithm-based network attack defense device disclosed in an embodiment of the present application, wherein the device is applied to a service terminal. Such as image 3 As shown, the network attack defense device based on the SM3 algorithm includes:

[0104] The first data encryption module 31 is used to process the packaged request data according to the SM3 algorithm and obtain the first data signature;

[0105] The first obtaining module 32 is used to obtain the user ID that initiates the current request, the user's signature key and the first timestamp, and the first timestamp represents the time when the current request is initiated;

[0106] The first data splicing module 33 is used to merge the first data signature with the user ID, the first time stamp, and the user's signature key to obtain the first data string;

[0107] The first data encryption module 31 is further configured to proc...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to the technical field of network security, and provides a network attack defense method and device based on an SM3 algorithm, a storage medium, a client terminal and a service terminal. The method comprises the following steps: processing packaged request data according to an SM3 algorithm, and obtaining a first data signature; obtaining a user ID initiating the current request, a signature key of the user and a timestamp; combining the data signature with the user ID, the timestamp and the signature key of the user to obtain a first data string; and processing the first data string according to the SM3 algorithm, generating a first request signature, and sending the first request signature to the service terminal, so that the service terminal verifies the request information, and executes a preset service process according to the request data after the request information passes the verification. According to the application, when the client terminal initiates the network request to the service terminal, the signature method is used for signature, and the service terminal uses the same method to verify the signature. An attacker cannot acquire a key used by the signature, so that an effective signature cannot be forged, and a normal user and the attacker can be identified.

Description

technical field [0001] The present application relates to the technical field of network security, in particular to a network attack defense method, device, storage medium, client terminal, and service terminal based on the SM3 algorithm. Background technique [0002] Nowadays, the network packet capture technology is very mature, and the content of the network request data sent by the client to the service terminal can easily be captured and analyzed by malicious parties, and try to pretend to be the client to initiate an attack request on the service terminal. In this way, the system is damaged to a certain extent, and economic losses are generated. [0003] In fact, in order to stimulate the enthusiasm of users, the platform usually designs a membership growth system. Users can gain growth points through daily tasks such as daily check-in and interaction, so as to realize membership growth and get rewards. The attackers tried to forge client requests through automated sc...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & AuthorityApplications(China)
IPC IPC(8): H04L9/32H04L9/08H04L9/00H04L29/06
CPCH04L9/3247H04L9/3297H04L9/0825H04L9/0866H04L9/002H04L63/1441
Inventor李标王太顺李鹏
OwnerGUANGZHOU CHOOSEME INFORMATION TECH CO LTD