A mobile device-based information security protection method and system

By identifying risks in displayed images on mobile devices and generating security protection images to overlay the displayed images, the problem of information leakage and property loss caused by users' lack of environmental verification is solved, thus achieving information security protection for mobile devices.

CN115344898BActive Publication Date: 2025-12-12YUNNAN SHANGYA TECH & CULTURE CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202210995992.0
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-08-19
Publication Date
2025-12-12
Estimated Expiration
2042-08-19

AI Technical Summary

Technical Problem

On mobile devices, users' lack of security awareness leads to their accounts being maliciously logged or their payment codes being scanned, resulting in information leaks and financial losses.

Method used

By setting up a security trigger module on the mobile device, the system identifies information risks in the displayed image, triggers input-type or display-type risk protection programs, generates a security protection image to cover the displayed image, and restricts keyboard input or covers the displayed image to protect user information security.

Benefits of technology

It effectively prevents information leakage and property loss by protecting user privacy data through environmental security assessment and feedback, avoiding account leakage and fraud due to failure to verify the surrounding environment.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115344898B_ABST
    Figure CN115344898B_ABST
Patent Text Reader

Abstract

The application relates to the field of information security of intelligent devices, and discloses a mobile device-based information security protection method and system, which comprises a security triggering module, an image acquisition module, an input protection module and a display protection module; the information property security of a user is protected when the user uses a mobile device to perform mobile code scanning payment, account password input and the like, corresponding security protection measures are taken according to the security of the environment where the user is located, and the protection effect of user private data is realized through feedback to the user, so that the problems of login information leakage and property theft caused by the user not confirming the security of the surrounding environment can be effectively avoided.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the field of information security of intelligent devices, and specifically relates to an information security protection method and system based on a mobile device. BACKGROUND

[0002] With the rapid development of electronic technology and Internet technology, mobile intelligent devices have rapidly changed the way of life and production. Through the mobile devices connected to the Internet, many works and transactions in life can be completed. As the role of mobile devices gradually increases, the information security and property security problems involved in a mobile device also gradually increase.

[0003] In the prior art, when a user uses a mobile device to log in to a personal account and make a mobile payment, if the user lacks a certain security concept, the logged-in account may be maliciously recorded by others, the payment code may be maliciously scanned, and the like, resulting in leakage of personal information and loss of property. SUMMARY

[0004] The present application aims to provide an information security protection method and system based on a mobile device to solve the problems in the background art.

[0005] To achieve the above-mentioned purpose, the present application provides the following technical solutions.

[0006] An information security protection system based on a mobile device comprises:

[0007] A security triggering module is configured to monitor a display image of the mobile device through a preset risk monitoring program, to identify the display image with information risk, and to determine a corresponding risk protection type based on the display image, wherein the risk protection type comprises an input type risk and a display type risk.

[0008] An image acquisition module is configured to acquire a regional environment image through an image acquisition unit when the risk protection type is the input type risk, to perform object recognition on the regional environment image, and to trigger an input protection program if the object recognition result comprises a second object other than an operation object and the regional environment image corresponds to one side of a display image output by the mobile device.

[0009] An input protection module is configured to execute the input protection program, wherein the input protection program comprises the following steps: generating and outputting a security protection image, and outputting an information security warning based on the security protection image, wherein the security protection image is used to cover the display image, and the keyboard input function is limited when the mobile device outputs the security protection image.

[0010] The display protection module is configured to, when the risk protection type is a display risk, cover and protect the display image by outputting a display protection image by a display protection program, and stop outputting the display protection image when the display protection program acquires a release request through the display image, wherein the display image is preset with a release request trigger area.

[0011] As a further scheme of the present application, the security trigger module comprises:

[0012] The marking trigger unit is configured to guide execution of a risk monitoring program when a program security mark is triggered.

[0013] The risk detection unit is configured to execute the risk monitoring program, wherein the risk monitoring program comprises the steps of: acquiring a display image of the mobile device, identifying the display image with information risk according to a preset risk model, and acquiring an identification result, wherein the risk model is used to match information input and information output interfaces of the display image, and the risk model corresponds to the risk protection type.

[0014] The type determination unit is configured to analyze the identification result and acquire the risk protection type corresponding to the display image with information risk.

[0015] As a further scheme of the present application, the risk setting module comprises:

[0016] The program marking unit is configured to set a program security mark for a program in a mobile device, wherein the program security mark can be set as a starting page in a specific display image page in the program.

[0017] The model establishment unit is configured to establish and store a risk model according to the display image with information risk in the program, wherein each risk model corresponds to a unique risk protection type.

[0018] As a further scheme of the present application, the image acquisition module comprises an identity recognition unit.

[0019] The identity recognition unit is configured to acquire personnel face information through regional environment image analysis, perform identity judgment on the personnel face information according to a preset white list, and directly trigger a security protection program if the personnel face information does not conform.

[0020] As a further scheme of the present application, the security trigger module further comprises a pre-protection unit.

[0021] The pre-protection unit is configured to generate and output a pre-protection image for covering the display image when the display image with information risk is identified, and stop outputting the pre-protection image when the output protection module generates the security protection image or the display protection module generates the display protection image.

[0022] The embodiment of the present application aims to provide a mobile device-based information security protection method, comprising the steps of:

[0023] The display image of the mobile device is monitored by a preset risk monitoring program, so as to identify the display image with information risk, and a corresponding risk protection type is obtained based on the display image, wherein the risk protection type includes input risk and reality risk;

[0024] When the risk protection type is input risk, an area environment image is obtained by an image acquisition unit, object recognition is performed on the area environment image, if the object recognition result includes a second object other than an operation object, a security protection program is triggered, and the area environment image corresponds to one side of the display image output by the mobile device;

[0025] The input protection program comprises the steps of: generating and outputting a security protection image, outputting an information security warning based on the security protection image, and limiting the keyboard input function when the mobile device outputs the security protection image;

[0026] When the risk protection type is display risk, a display protection program is used to output a display protection image to cover the display image, and the display protection program stops outputting the display protection image when a release request is obtained from the display image, wherein the display image is provided with a release request triggering area.

[0027] As a further scheme of the present application, the step of monitoring the display image of the mobile device by a preset risk monitoring program to identify the display image with information risk and obtaining a corresponding risk protection type based on the display image comprises:

[0028] When the program security mark is triggered, the risk monitoring program is executed;

[0029] The risk monitoring program is executed, and the risk monitoring program comprises the steps of: obtaining the display image of the mobile device, identifying the display image with information risk according to a preset risk model, and obtaining an identification result, wherein the risk model is used to match the information input and information output interface of the display image, and the risk model corresponds to the risk protection type;

[0030] Analyze the identification result to obtain a risk protection type corresponding to the display image with information risk.

[0031] As a further scheme of the present application, the method further comprises the steps of:

[0032] A program security mark is set for a program in a mobile device, and the program security mark can set a specific display image page in the program as a setting starting page.

[0033] According to the risk model established and stored in association with the display image with information risk in the program, each risk model corresponds to a unique risk protection type.

[0034] Compared with the prior art, the present application has the beneficial effect of protecting the information property safety of a user in the case where the user uses a mobile device to make a mobile code scanning payment, input an account password, etc., and protecting the privacy data of the user by taking corresponding safety protection measures according to the safety of the environment in which the user is located and feeding back to the user, which can effectively avoid the problems of login information leakage and property theft due to the user not confirming the safety of the surrounding environment. BRIEF DESCRIPTION OF DRAWINGS

[0035] Figure 1 It is a component block diagram of an information safety protection system based on a mobile device.

[0036] Figure 2 It is a component block diagram of a safety trigger module in an information safety protection system based on a mobile device.

[0037] Figure 3 It is a component block diagram of a risk setting module in an information safety protection system based on a mobile device.

[0038] Figure 4 It is a flow block diagram of an information safety protection method based on a mobile device. DETAILED DESCRIPTION

[0039] In order to make the objectives, technical solutions and advantages of the present application clearer, the present application is further described in detail below with reference to the drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present application and do not limit the present application.

[0040] The specific implementation of the present application is described in detail below in combination with specific embodiments.

[0041] As Figure 1 The information safety protection system based on a mobile device provided by the present application comprises the following steps:

[0042] The security triggering module 100 is configured to monitor the display image of the mobile device by a preset risk monitoring procedure, to identify the display image with information risk, and to determine a corresponding risk protection type based on the display image, wherein the risk protection type includes input risk and display risk.

[0043] The image acquisition module 300 is configured to acquire a region environment image by an image acquisition unit when the risk protection type is the input risk, to perform object recognition on the region environment image, and to trigger an input protection procedure if the object recognition result includes a second object other than an operation object and the region environment image corresponds to one side of the display image output by the mobile device.

[0044] The input protection module 500 is configured to execute the input protection procedure, wherein the input protection procedure includes the steps of generating and outputting a security protection image and outputting an information security warning based on the security protection image, the security protection image is used to cover the display image, and the keyboard input function is limited when the mobile device outputs the security protection image.

[0045] The display protection module 700 is configured to output a display protection image to cover the display image by a display protection procedure when the risk protection type is the display risk, and to stop outputting the display protection image when the display protection procedure acquires a release request from the display image, wherein the display image is preset with a release request triggering area.

[0046] In this embodiment, a mobile device-based information security protection system is provided, which protects the information property security of a user when the user uses a mobile device to perform mobile code scanning payment, account password input, etc. According to the security of the environment in which the user is located, corresponding security protection measures are taken and the protection effect of the user's private data is achieved through feedback to the user. Specifically, in the process of use, it is assumed that the user is in a public place and there are other people on one side or behind the user. When the user performs the behavior of logging into an account or calling out a payment code, the security triggering module 100 is triggered, monitors the display image of the interface executed by the user, and identifies the format frame, such as the distribution format of the payment QR code, the format of the account login, etc., so as to determine the existence of information risk of the user (for example, when the user waits for code scanning payment, the code is scanned maliciously by others, resulting in the risk of fund leakage, or the user logs into an account and the account is maliciously recorded by a person next to the user and finally stolen, etc.). After determining the existence and type of the risk, corresponding security processing is performed. If it is an input type risk (that is, the type that the account password may be memorized by others), the surrounding environment is collected and judged by the image collection module 300. If it is identified that there are many people, the page protection (user input behavior is suspended) is performed by the input protection module 500, and the user is prompted to pay attention to the surrounding environment during input to ensure information security. If it is a display type risk (for example, it may be stolen), the display image is directly covered. In this way, the user will not be stolen during the process of calling out the payment code and waiting, and the user can cancel the display of the display protection image during the touch time when the user touches the corresponding trigger area, so as to protect the information property security of the user.

[0047] As shown in Figure 2 As another preferred embodiment of the present application, the security triggering module 100 includes:

[0048] The marker triggering unit 110 is used to guide the execution of the risk monitoring program when the program security marker is triggered.

[0049] The risk detection unit 120 is used to execute the risk monitoring program, and the risk monitoring program includes the steps of: acquiring the display image of the mobile device, identifying the display image with information risk according to a preset risk model, and acquiring the identification result. The risk model is used to match the information input or information output interface of the display image, and the risk model corresponds to the risk protection type.

[0050] The type determination unit 130 is used to analyze the identification result and acquire the risk protection type corresponding to the display image with information risk.

[0051] In the embodiment, the security triggering module 100 can be further divided into multiple units in function. The risk monitoring program is not running all the time because it needs to monitor and distinguish images, and the consumption of computing resources is large. Long-time continuous work will cause waste of computing resources of the mobile device and increase energy consumption of the mobile device, reduce the endurance of the mobile device, and consume the health of the hardware of the mobile device. Therefore, a program security mark is set here, which can be understood as a trigger switch. The program security mark is set on the corresponding page or operation of the program that needs to be monitored. When the user reaches the corresponding page or performs the corresponding operation, the risk monitoring program is activated to work.

[0052] As shown in Figure 3 another preferred embodiment of the present application, a risk setting module 900 is further included, which comprises:

[0053] A program mark unit 910 is configured to set a program security mark for a program in the mobile device. The program security mark can be set as a starting page for a specific display image in the program.

[0054] A model establishing unit 920 is configured to establish and store a risk model according to the display image with information risk in the program. Each risk model corresponds to a unique risk protection type.

[0055] In the embodiment, the risk setting module 900 is supplemented, which is used for setting the program security mark. The user can set the program security mark for different programs according to the user's own needs, and obtain a risk model according to the interface layout distribution of the corresponding display image of the program protection, so as to identify and judge.

[0056] As another preferred embodiment of the present application, the image collection module 300 comprises an identity recognition unit.

[0057] The identity recognition unit is configured to obtain personnel face information through regional environment image analysis, perform identity judgment on the personnel face information according to a preset white list, and directly trigger a security protection program if the personnel face information does not conform.

[0058] Further, the security triggering module 100 further comprises a pre-protection unit.

[0059] The pre-protection unit is configured to generate and output a pre-protection image when the display image with information risk is recognized. The pre-protection image is used to cover the display image. When the output protection module 500 generates the security protection image or the display protection module 700 generates the display protection image, the output of the pre-protection image is stopped.

[0060] In the embodiment, the identity recognition unit is a security protection unit for judging the identity of a user, and the protection unit is configured to, after the program security mark is triggered, protect the user information property in the period between the corresponding security protection image and the generation of the display protection image.

[0061] As shown in Figure 4 The application further provides a mobile device-based information security protection method, which comprises the following steps:

[0062] S200, monitoring the display image of the mobile device through a preset risk monitoring program, identifying the display image with information risk, and judging the corresponding risk protection type based on the display image, wherein the risk protection type comprises an input type risk and a reality type risk.

[0063] S400, when the risk protection type is the input type risk, acquiring the regional environment image through an image acquisition unit, performing object recognition on the regional environment image, and triggering a security protection program if the object recognition result comprises a second object other than an operation object, wherein the regional environment image corresponds to one side of the display image output by the mobile device.

[0064] S600, the input protection program comprises the following steps: generating and outputting a security protection image, and outputting an information security warning based on the security protection image, wherein the security protection image is used to cover the display image, and the keyboard input function is limited when the mobile device outputs the security protection image.

[0065] S800, when the risk protection type is the display type risk, a display protection program is used to output a display protection image to cover the display image, and the display protection program stops outputting the display protection image when a release request is obtained through the display image, wherein the display image is preset with a release request triggering area.

[0066] As another preferred embodiment of the application, the step of monitoring the display image of the mobile device through a preset risk monitoring program, identifying the display image with information risk, and judging the corresponding risk protection type based on the display image comprises the following steps:

[0067] When the program security mark is triggered, the risk monitoring program is guided to be executed.

[0068] The risk monitoring procedure is executed, and the risk monitoring procedure includes the steps of: acquiring a display image of the mobile device, identifying the display image with information risk according to a preset risk model, and acquiring an identification result, wherein the risk model is used to match information input and information output interfaces of the display image, and the risk model corresponds to the risk protection type.

[0069] The identification result is analyzed to acquire the risk protection type corresponding to the display image with information risk.

[0070] As another preferred embodiment of the present application, the method further includes the steps of:

[0071] A program security mark is set in the mobile device, and the program security mark can be used as a setting starting page in a specific display image page in the program.

[0072] A risk model is established and stored according to the display image with information risk in the program, and each risk model corresponds to a unique risk protection type.

[0073] A person of ordinary skill in the art can understand that all or part of the processes in the above-mentioned embodiments can be completed by a computer program instructing related hardware, and the program can be stored in a non-volatile computer readable storage medium. When the program is executed, it can include the processes of the above-mentioned embodiments. Any reference to memory, storage, database or other medium used in the embodiments provided by the present application can include non-volatile and / or volatile memory. Non-volatile memory can include read-only memory (ROM), programmable ROM (PROM), electrically programmable ROM (EPROM), electrically erasable programmable ROM (EEPROM) or flash memory. Volatile memory can include random access memory (RAM) or external cache memory. As an illustration but not limitation, RAM is available in various forms, such as static RAM (SRAM), dynamic RAM (DRAM), synchronous DRAM (SDRAM), double data rate SDRAM (DDR SDRAM), enhanced SDRAM (ESDRAM), synchronous link (Synchlink) DRAM (SLDRAM), memory bus (Rambus) direct RAM (RDRAM), direct memory bus dynamic RAM (DRDRAM) and memory bus dynamic RAM (RDRAM).

[0074] Other embodiments of the disclosure will be apparent to those skilled in the art from consideration of the specification and practice of the embodiments as described herein. It is intended that the specification and examples be considered as exemplary only, with a true scope and spirit of the disclosure being indicated by the following claims.

[0075] It should be understood that the present disclosure is not limited to the precise structures herein described and illustrated in the drawings, and that various modifications and changes can be made without departing from its scope. The scope of the present disclosure is limited only by the claims that follow.

Claims

1. A mobile device based information security protection system, characterized by, The security triggering module is configured to monitor a display image of the mobile device through a preset risk monitoring procedure, identify the display image with information risk, and determine a corresponding risk protection type based on the display image, wherein the risk protection type includes an input type risk and a display type risk. The image acquisition module is configured to acquire a regional environment image through an image acquisition unit when the risk protection type is the input type risk, perform object recognition on the regional environment image, trigger an input protection procedure if the object recognition result includes a second object other than an operation object, and the regional environment image corresponds to one side of a display image output by the mobile device. The input protection module is configured to execute the input protection procedure, which includes the steps of generating and outputting a security protection image, outputting an information security warning based on the security protection image, and limiting a keyboard input function when the mobile device outputs the security protection image. The display protection module is configured to output a display protection image to cover and protect the display image through a display protection procedure when the risk protection type is the display type risk, and stop outputting the display protection image when the display protection procedure acquires a release request through the display image, wherein the display image is preset with a release request triggering area. The security triggering module includes:

2. The mobile device based information security protection system of claim 1, wherein, The marking triggering unit is configured to guide execution of a risk monitoring procedure when a program security mark is triggered. The risk detection unit is configured to execute the risk monitoring procedure, which includes the steps of acquiring a display image of the mobile device, identifying the display image with information risk according to a preset risk model, and acquiring an identification result, wherein the risk model is used to match an information input or information output interface of the display image, and the risk model corresponds to the risk protection type. The type determination unit is configured to analyze the identification result and acquire the risk protection type corresponding to the display image with information risk. The risk setting module includes:

3. The mobile device based information security protection system of claim 2, wherein, The program marking unit is configured to set a program security mark for a program in the mobile device, and the program security mark can set a specific display image page in the program in the mobile device as a set starting page. The model establishment unit is configured to establish and store a risk model according to the display image with information risk in the program in the mobile device, and each risk model corresponds to a unique risk protection type. The image acquisition module includes an identity recognition unit.

4. The mobile device based information security protection system of claim 1, wherein, The identity recognition unit is configured to acquire personnel face information through regional environment image analysis, perform identity determination on the personnel face information according to a preset white list, and directly trigger a security protection procedure if the personnel face information does not conform. The security triggering module further includes a pre-protection unit.

5. The mobile device based information security protection system of claim 4, wherein, ​ The pre-protection unit is configured to generate and output a pre-protection image for covering the display image when the display image with information risk is identified, and stop outputting the pre-protection image when the input protection module generates the security protection image or the display protection module generates the display protection image.

6. A mobile device based information security protection method, characterized by, The method comprises the steps of: monitoring the display image of the mobile device through a preset risk monitoring program to identify the display image with information risk, and judging a corresponding risk protection type based on the display image, wherein the risk protection type comprises an input type risk and a reality type risk; when the risk protection type is the input type risk, acquiring a regional environment image through an image acquisition unit, performing object recognition on the regional environment image, and triggering a security protection program if the object recognition result comprises a second object other than an operation object, wherein the regional environment image corresponds to one side of the display image output by the mobile device; the input protection program comprises the steps of: generating and outputting a security protection image, outputting an information security warning based on the security protection image, and limiting the keyboard input function when the mobile device outputs the security protection image; when the risk protection type is the display type risk, a display protection program is used to output a display protection image to cover and protect the display image, and the display protection program stops outputting the display protection image when a release request is acquired through the display image, wherein the display image is preset with a release request triggering area. 7.The mobile device based information security protection method of claim 6, wherein, The step of monitoring the display image of the mobile device through a preset risk monitoring program to identify the display image with information risk, and judging a corresponding risk protection type based on the display image comprises the steps of: when a program security mark is triggered, guiding execution of the risk monitoring program; executing the risk monitoring program, wherein the risk monitoring program comprises the steps of: acquiring the display image of the mobile device, identifying the display image with information risk according to a preset risk model, and acquiring an identification result, wherein the risk model is used to match an information input or information output interface of the display image, and the risk model corresponds to the risk protection type; analyzing the identification result to acquire the risk protection type corresponding to the display image with information risk. 8.The mobile device based information security protection method of claim 7, wherein, The method further comprises the steps of: setting a program security mark for a program in the mobile device, wherein the program security mark can set a specific display image page in the program in the mobile device as a set starting page; establishing a risk model based on the display image with information risk in the program in the mobile device and storing the risk model, wherein each risk model corresponds to a unique risk protection type.

Citation Information

Patent Citations

  • Information processing method and mobile terminal

    CN106991311A

  • Human-computer interaction method and system for online live broadcast

    CN114845133A