A mobile terminal identity authentication system and method based on white-box cryptography

By developing a mobile terminal identity authentication system and method based on white-box cryptography, the problem of insufficient accuracy in identity authentication is solved, thereby improving the accuracy and quality of identity authentication and enhancing its comprehensiveness and security.

CN115696326BActive Publication Date: 2025-10-21NANJING ZHANGYU INFORMATION TECH CO LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202211187052.5
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-09-28
Publication Date
2025-10-21
Estimated Expiration
2042-09-28

AI Technical Summary

Technical Problem

The accuracy of identity authentication in existing technologies is insufficient, resulting in low quality of identity authentication.

Method used

A mobile terminal identity authentication system and method based on white-box cryptography is adopted. Authentication request information is received through a mobile terminal, information quality assessment and authentication are performed, encryption processing is performed using white-box cryptography, and authentication request results are obtained by decryption through a decryption server.

Benefits of technology

It improves the accuracy and quality of identity authentication, realizes intelligent and scientific identity authentication, and enhances the comprehensiveness and security of identity authentication.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115696326B_ABST
    Figure CN115696326B_ABST
Patent Text Reader

Abstract

The application discloses a kind of mobile terminal identity authentication system and method based on white-box cryptography, it is related to the field of identity authentication, wherein the system is used to execute a kind of mobile terminal identity authentication method based on white-box cryptography, the method includes: obtaining authentication request information;Carry out information quality assessment to it, obtain information quality assessment result;Obtain information quality authentication result;If information quality authentication result is information quality authentication success result, based on authentication request code rule set, authentication request information is carried out data conversion, obtains authentication request code;Based on white-box cryptography, it is encrypted, obtains encrypted authentication request code;Based on target user information set, generate encrypted authentication key, obtain encrypted authentication ciphertext;Obtain authentication request password by decryption server, and obtain authentication request result according to it.The accuracy of identity authentication is improved, and the quality of identity authentication is improved, and the like technical effect is achieved.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of identity authentication, and in particular to a mobile terminal identity authentication system and method based on white-box cryptography. Background Art

[0002] With the rapid development of network technology, online information services such as e-commerce and e-government have become widely used, and all human activities are now closely connected through various information systems. However, this widespread use of information systems has also increased their security vulnerabilities. Ensuring the security of information systems has attracted significant attention. Identity authentication plays a crucial role in ensuring information security. Therefore, establishing an effective identity authentication mechanism is of great practical significance.

[0003] In the prior art, there is a technical problem that the accuracy of identity authentication is insufficient, which in turn causes the quality of identity authentication to be low. Summary of the Invention

[0004] This application provides a mobile terminal identity authentication system and method based on white-box cryptography, which solves the technical problem in the prior art of insufficient accuracy of identity authentication, which in turn causes low quality of identity authentication.

[0005] In view of the above problems, the present application provides a mobile terminal identity authentication system and method based on white-box cryptography.

[0006] In the first aspect, the present application provides a mobile terminal identity authentication method based on white-box cryptography, wherein the method is applied to a mobile terminal identity authentication system based on white-box cryptography, and the method includes: receiving an authentication request of a target user through a mobile terminal to obtain authentication request information; performing information quality assessment on the authentication request information to obtain an information quality assessment result; performing information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication failure result; if the information quality authentication result is the information quality authentication success result, performing data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; encrypting the authentication request code based on white-box cryptography to obtain an encrypted authentication request code; generating an encrypted authentication key based on a target user information set, and obtaining an encrypted authentication ciphertext according to the encrypted authentication request code and the encrypted authentication key; decrypting the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtaining an authentication request result based on the authentication request password.

[0007] In a second aspect, the present application provides a mobile terminal identity authentication system based on white-box cryptography, wherein the system is used to execute a mobile terminal identity authentication method based on white-box cryptography, and the system includes: an authentication request receiving module, the authentication request receiving module is used to receive the authentication request of the target user through the mobile terminal, and obtain authentication request information; an information quality assessment module, the information quality assessment module is used to perform information quality assessment on the authentication request information, and obtain an information quality assessment result; an information quality authentication module, the information quality authentication module is used to perform information quality authentication on the authentication request information based on the information quality assessment result, and obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication result. a data conversion module, wherein the data conversion module is used to, if the information quality authentication result is the information quality authentication success result, perform data conversion on the authentication request information based on the authentication request code rule set to obtain the authentication request code; an encryption module, wherein the encryption module is used to encrypt the authentication request code based on white-box cryptography to obtain the encrypted authentication request code; a ciphertext determination module, wherein the ciphertext determination module is used to generate an encrypted authentication key based on the target user information set, and obtain an encrypted authentication ciphertext according to the encrypted authentication request code and the encrypted authentication key; a decryption module, wherein the decryption module is used to decrypt the encrypted authentication ciphertext through a decryption server to obtain the authentication request password, and obtain the authentication request result based on the authentication request password.

[0008] One or more technical solutions provided in this application have at least the following technical effects or advantages:

[0009] The method receives an authentication request from a target user through a mobile terminal to obtain authentication request information; performs an information quality assessment on the authentication request information to obtain an information quality assessment result; performs information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result; if the information quality authentication result is a successful authentication result, performs data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; encrypts the authentication request information based on white-box cryptography to obtain an encrypted authentication request code; generates an encrypted authentication key based on the target user information set, and obtains an encrypted authentication ciphertext based on the encrypted authentication request code and the encrypted authentication key; decrypts the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtains an authentication request result based on the authentication request password. This method achieves the technical effect of improving the accuracy and quality of identity authentication; at the same time, improving the comprehensiveness and security of identity authentication, realizing intelligent and scientific identity authentication, and laying the foundation for the further development of identity authentication technology. BRIEF DESCRIPTION OF THE DRAWINGS

[0010] Figure 1 This is a flowchart of a mobile terminal identity authentication method based on white-box cryptography for this application;

[0011] Figure 2 This is a flowchart of obtaining information quality authentication results in a mobile terminal identity authentication method based on white-box cryptography in this application;

[0012] Figure 3 This application discloses a method for mobile terminal identity authentication based on white-box cryptography to obtain an authentication request code rule set.

[0013] Figure 4 This application presents a structural diagram of a mobile terminal identity authentication system based on white-box cryptography.

[0014] Explanation of reference numerals: authentication request receiving module 11 , information quality assessment module 12 , information quality authentication module 13 , data conversion module 14 , encryption module 15 , ciphertext determination module 16 , decryption module 17 . DETAILED DESCRIPTION

[0015] This application provides a mobile terminal identity authentication system and method based on white-box cryptography. This solves the technical problem of insufficient accuracy and, consequently, low quality of identity authentication in existing technologies. This system improves the accuracy and quality of identity authentication, while also enhancing its comprehensiveness and security, achieving intelligent and scientific identity authentication and laying the foundation for the further development of identity authentication technology.

[0016] Example 1

[0017] Please see the attached Figure 1 The present application provides a mobile terminal identity authentication method based on white-box cryptography, wherein the method is applied to a mobile terminal identity authentication system based on white-box cryptography, and the method specifically comprises the following steps:

[0018] Step S100: receiving an authentication request from a target user via a mobile terminal and obtaining authentication request information;

[0019] Specifically, the target user sends an authentication request to the mobile terminal, and the mobile terminal receives the authentication request sent by the target user and obtains the authentication request information. The mobile terminal can be connected to the mobile terminal identity authentication system based on white-box cryptography. The mobile terminal includes computer devices that can be used on the move, such as mobile phones, notebooks, and tablets. The target user includes any user who uses the mobile terminal identity authentication system based on white-box cryptography to perform intelligent identity authentication. The authentication request information can be a combination of digital characters, fingerprints, sounds, facial images, etc. sent by the target user. The technical effect of determining the authentication request information and laying the foundation for the subsequent intelligent identity authentication of the target user is achieved.

[0020] Step S200: performing information quality assessment on the authentication request information to obtain an information quality assessment result;

[0021] Furthermore, step S200 of the present application further includes:

[0022] Step S210: performing integrity evaluation on the authentication request information to obtain an information integrity coefficient;

[0023] Step S220: Performing a security assessment on the authentication request information to obtain an information security coefficient;

[0024] Step S230: performing integrity impact evaluation and security impact evaluation on the authentication request information respectively, and obtaining integrity impact evaluation coefficients and security impact evaluation coefficients;

[0025] Step S240: Calculating the information integrity quality based on the information integrity coefficient and the integrity impact evaluation coefficient to obtain an information integrity quality evaluation result;

[0026] Step S250: Calculating information security quality based on the information security coefficient and the security impact assessment coefficient to obtain an information security quality assessment result;

[0027] Step S260: Obtain the information quality assessment result based on the information integrity quality assessment result and the information security quality assessment result.

[0028] Specifically, the obtained authentication request information is subjected to integrity and security assessments to obtain an information integrity coefficient and an information security coefficient. Furthermore, the obtained authentication request information is subjected to integrity impact assessments and security impact assessments to obtain an integrity impact assessment coefficient and a security impact assessment coefficient. Furthermore, the information integrity coefficient and the integrity impact assessment coefficient are multiplied to obtain an information integrity quality assessment result. The information security coefficient and the security impact assessment coefficient are multiplied to obtain an information security quality assessment result. Based on this, an information quality assessment result is determined. The information integrity coefficient can be used to indicate whether the authentication request information is incomplete and the integrity of the authentication request information. The information security coefficient can be used to indicate the confidentiality of the authentication request information and the risk of information theft and information leakage associated with the authentication request information. For example, when a target user sends authentication request information through an illegal website, the authentication request information presents a greater risk of information theft and a higher risk of information leakage. The confidentiality of the authentication request information is low, and the authentication request information has a lower information security coefficient. The integrity impact assessment coefficient can be used to indicate the impact and importance of integrity on the authentication request information. The security impact assessment coefficient can be used to characterize the impact and importance of security on authentication request information. The information integrity quality assessment result comprises the product of the information integrity coefficient and the integrity impact assessment coefficient. The information security quality assessment result comprises the product of the information integrity coefficient and the integrity impact assessment coefficient. The information quality assessment result comprises the information integrity quality assessment result and the information security quality assessment result. This achieves the technical effect of obtaining an accurate and reliable information quality assessment result by performing an information quality assessment on the authentication request information, thereby improving the accuracy of subsequent information quality authentication of the authentication request information.

[0029] Step S300: performing information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication failure result;

[0030] Further, as attached Figure 2 As shown, step S300 of this application also includes:

[0031] Step S310: Obtaining the information quality assessment result threshold;

[0032] Step S320: determining whether the information quality assessment result meets the information quality assessment result threshold;

[0033] Step S330: If the information quality assessment result meets the information quality assessment result threshold, obtain the information quality authentication success result;

[0034] Step S340: If the information quality assessment result does not meet the information quality assessment result threshold, the information quality authentication failure result is obtained, and an authentication end instruction is obtained based on the information quality authentication failure result.

[0035] Specifically, a determination is made as to whether the obtained information quality assessment result meets an information quality assessment result threshold. If the information quality assessment result meets the information quality assessment result threshold, an information quality authentication success result is obtained. If the information quality assessment result does not meet the information quality assessment result threshold, an information quality authentication failure result is obtained. At this point, the mobile terminal identity authentication system based on white-box cryptography automatically obtains an authentication termination instruction. The information quality assessment result threshold can be adaptively determined by the mobile terminal identity authentication system based on white-box cryptography. The information quality authentication success result can be used to indicate that the information quality assessment result meets the information quality assessment result threshold, and the information quality authentication of the authentication request information is successful. The information quality authentication failure result can be used to indicate that the information quality assessment result does not meet the information quality assessment result threshold, and the information quality authentication of the authentication request information fails. The authentication termination instruction is used to indicate that the information quality authentication of the authentication request information has failed. The information quality of the authentication request information is poor, making it unusable for identity authentication of the target user. Therefore, the current identity authentication is terminated, and the target user is required to resend the authentication request. Information quality authentication results include information quality authentication success results and information quality authentication failure results. The technical effect of performing information quality authentication on authentication request information based on information quality assessment results and information quality assessment result thresholds, determining credible information quality authentication results, and thereby improving the reliability and accuracy of identity authentication for target users is achieved.

[0036] Step S400: If the information quality authentication result is a successful authentication result, performing data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code;

[0037] Further, as attached Figure 3 As shown, step S400 of this application also includes:

[0038] Step S410: performing type analysis based on the authentication request information to obtain the authentication request type;

[0039] Step S420: obtaining a plurality of preset authentication request code rule sets;

[0040] Step S430: performing a compatibility evaluation on the authentication request type and the plurality of preset authentication request code rule sets to obtain a plurality of compatibility evaluation coefficients;

[0041] Step S440: screening the plurality of fitness evaluation coefficients to obtain the optimal fitness evaluation coefficient;

[0042] Step S450: Match the multiple preset authentication request code rule sets based on the optimal fitness evaluation coefficient to obtain the authentication request code rule set.

[0043] Specifically, if the information quality authentication result is a successful one, the mobile terminal identity authentication system based on white-box cryptography performs a type analysis on the authentication request information to obtain the authentication request type. Furthermore, the mobile terminal identity authentication system based on white-box cryptography performs a compatibility assessment on the authentication request type against multiple preset authentication request code rule sets, determines multiple compatibility assessment coefficients, and screens these compatibility coefficients to obtain the optimal compatibility assessment coefficient. Furthermore, the multiple preset authentication request code rule sets are matched according to the optimal compatibility assessment coefficients to obtain an authentication request code rule set; and data conversion is performed on the authentication request information according to the authentication request code rule set to obtain an authentication request code. The authentication request type can be used to represent the type of information corresponding to the authentication request information. For example, if the authentication request information is sound information, the authentication request type is a sound type. The multiple preset authentication request code rule sets can be obtained by the mobile terminal identity authentication system based on white-box cryptography through methods such as big data queries. The multiple preset authentication request code rule sets include data information such as multiple specific methods and steps for converting authentication request information into code information. The multiple fitness evaluation coefficients are parameter information used to characterize the degree of fitness between multiple preset authentication request code rule sets and the authentication request type. The optimal fitness evaluation coefficient is the largest fitness evaluation coefficient among the multiple fitness evaluation coefficients. The authentication request code rule set includes a preset authentication request code rule set corresponding to the optimal fitness evaluation coefficient. The authentication request code includes code information corresponding to the authentication request information. The technical effect of obtaining a higher fitness authentication request code rule set through the optimal fitness evaluation coefficient, performing data conversion on the authentication request information according to the authentication request code rule set, and obtaining the authentication request code, thereby improving the security and intelligence of the subsequent identity authentication of the target user is achieved.

[0044] Step S500: Encrypting the authentication request code based on white box cryptography to obtain an encrypted authentication request code;

[0045] Furthermore, step S500 of this application also includes:

[0046] Step S510: obtaining a white-box encryption algorithm based on the white-box cryptography;

[0047] Step S520: Encrypting the authentication request code based on the white box encryption algorithm to obtain a preset encrypted authentication request code;

[0048] Step S530: performing a complexity evaluation on the preset encryption authentication request code to obtain encryption complexity;

[0049] Step S540: Obtaining an encryption complexity threshold;

[0050] Step S550: Determine whether the encryption complexity meets the encryption complexity threshold;

[0051] Step S560: If the encryption complexity meets the encryption complexity threshold, obtain the encryption authentication request code based on the preset encryption authentication request code.

[0052] Specifically, a white-box encryption algorithm is determined according to white-box cryptography. An authentication request code is encrypted using the white-box encryption algorithm to obtain a preset encrypted authentication request code. Furthermore, the mobile terminal identity authentication system based on white-box cryptography evaluates the complexity of the preset encrypted authentication request code to obtain an encryption complexity. A determination is then made as to whether the encryption complexity meets an encryption complexity threshold. If so, the preset encrypted authentication request code is set as the encrypted authentication request code. White-box cryptography is a cryptographic technology that is resistant to white-box attacks. Using encryption algorithms, white-box cryptography enables cryptographic algorithms to run securely on untrusted terminals, resisting white-box attacks and maximizing the confidentiality and security of information. White-box cryptography offers advantages such as ease of scalability, convenience, and efficiency. With the diversification of identity authentication, white-box cryptography is finding an increasingly important role. A white-box attack occurs when an attacker gains complete control over a device terminal, enabling them to observe and modify internal data during program execution. White-box cryptography is a computing technology based on cryptographic functions. Examples of such algorithms include the white-box DES algorithm and the white-box AES algorithm, among others. The white-box encryption algorithm has the functions of encrypting and protecting data and improving data security. The preset encrypted authentication request code is the data information after the authentication request code is encrypted according to the white-box encryption algorithm. The encryption complexity is the parameter information used to characterize the complexity of the preset encrypted authentication request code. The encryption complexity threshold is determined by the mobile terminal identity authentication system based on white-box cryptography according to the custom setting of the complexity requirement of the encrypted authentication request code. The encrypted authentication request code is the preset encrypted authentication request code corresponding to the encryption complexity that meets the encryption complexity threshold. The technical effect of encrypting the authentication request code through white-box cryptography, obtaining the encrypted authentication request code, and laying a solid foundation for the subsequent determination of the encrypted authentication ciphertext is achieved.

[0053] Step S600: Generate an encryption authentication key based on the target user information set, and obtain an encryption authentication ciphertext according to the encryption authentication request code and the encryption authentication key;

[0054] Furthermore, step S600 of this application also includes:

[0055] Step S610: Collect the target user's historical authentication request information and registration information to obtain the target user information set;

[0056] Step S620: obtaining a plurality of preset encryption authentication keys;

[0057] Step S630: performing a suitability evaluation on the plurality of preset encryption authentication keys and the target user information set to obtain a plurality of suitability evaluation parameters;

[0058] Step S640: obtaining an optimal suitability evaluation parameter based on the multiple suitability evaluation parameters;

[0059] Step S650: Match the multiple preset encryption authentication keys based on the optimal applicability evaluation parameter to obtain the encryption authentication key.

[0060] Specifically, the mobile terminal identity authentication system based on white-box cryptography collects data on the target user's historical authentication request information and registration information to obtain a target user information set. Furthermore, the mobile terminal identity authentication system based on white-box cryptography performs a suitability assessment on multiple preset encryption authentication keys and the target user information set to obtain multiple suitability assessment parameters. The system then determines the optimal suitability assessment parameters, matches the multiple preset encryption authentication keys according to the optimal suitability assessment parameters, obtains an encryption authentication key, and determines an encrypted authentication ciphertext based on the encryption authentication request code. The target user information set includes the target user's historical authentication request information and registration information. The registration information includes basic personal information such as the target user's registration time, registered name, registered password, registered mobile phone number, and email address. The multiple preset encryption authentication keys are pre-set and determined by the mobile terminal identity authentication system based on white-box cryptography through big data collection. The multiple suitability assessment parameters are data used to characterize the suitability of the multiple preset encryption authentication keys for the target user information set. The optimal suitability assessment parameter is the maximum suitability assessment parameter. The encryption authentication key is the preset encryption authentication key corresponding to the optimal suitability assessment parameter. The encrypted authentication ciphertext includes an encrypted authentication request code and an encrypted authentication key, thereby achieving the technical effect of obtaining accurate encrypted authentication ciphertext and thereby improving the credibility of the subsequently obtained authentication request password.

[0061] Step S700: decrypting the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtaining an authentication request result based on the authentication request password.

[0062] Furthermore, step S700 of this application also includes:

[0063] Step S710: Obtaining a preset authentication password;

[0064] Step S720: performing a consistency evaluation on the authentication request password and the preset authentication password to obtain a consistency evaluation result;

[0065] Step S730: If the consistency evaluation result is that the authentication request password is consistent with the preset authentication password, a success result of the authentication request is obtained;

[0066] Step S740: If the consistency evaluation result is that the authentication request password is inconsistent with the preset authentication password, an authentication request failure result is obtained.

[0067] Specifically, the obtained encrypted authentication ciphertext is transmitted to a decryption server, which decrypts the encrypted authentication ciphertext to obtain an authentication request password. Furthermore, the mobile terminal identity authentication system based on white-box cryptography evaluates the consistency between the authentication request password and a preset authentication password to obtain a consistency evaluation result. If the consistency evaluation result indicates that the authentication request password and the preset authentication password are consistent, an authentication request success result is obtained. If the consistency evaluation result indicates that the authentication request password and the preset authentication password are inconsistent, an authentication request failure result is obtained. The decryption server can be in communication with the mobile terminal identity authentication system based on white-box cryptography. The decryption server can be a decryption device such as an AES decryption server or a centralized decryption server in the prior art. The authentication request password is the decrypted data information corresponding to the encrypted authentication ciphertext. The preset authentication password is the authentication password information pre-set by the target user. The consistency evaluation result includes whether the authentication request password is consistent with the preset authentication password or whether the authentication request password is inconsistent with the preset authentication password. The authentication request result includes whether the authentication request is successful or failed. This achieves the technical effect of obtaining a highly accurate authentication request result by decrypting the encrypted authentication ciphertext, thereby improving the accuracy of identity authentication.

[0068] In summary, the mobile terminal identity authentication method based on white-box cryptography provided by this application has the following technical effects:

[0069] 1. Receive an authentication request from a target user via a mobile terminal to obtain authentication request information; perform an information quality assessment on the authentication request information to obtain an information quality assessment result; perform information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result; if the information quality authentication result is a successful authentication result, perform data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; encrypt the authentication request information based on white-box cryptography to obtain an encrypted authentication request code; generate an encrypted authentication key based on the target user information set, and obtain an encrypted authentication ciphertext based on the encrypted authentication request code and the encrypted authentication key; decrypt the encrypted authentication ciphertext via a decryption server to obtain an authentication request password, and obtain an authentication request result based on the authentication request password. This method achieves the technical effect of improving the accuracy and quality of identity authentication, while also improving the comprehensiveness and security of identity authentication, achieving intelligent and scientific identity authentication, and laying the foundation for the further development of identity authentication technology.

[0070] 2. By performing information quality assessment on the authentication request information, accurate and reliable information quality assessment results are obtained, thereby improving the accuracy of subsequent information quality authentication of the authentication request information.

[0071] 3. Perform information quality authentication on the authentication request information based on the information quality assessment results and the information quality assessment result threshold, determine a credible information quality authentication result, and thereby improve the reliability and accuracy of identity authentication for the target user.

[0072] Example 2

[0073] The present invention also provides a mobile terminal identity authentication system based on white box cryptography, the system is used to perform a mobile terminal identity authentication method based on white box cryptography, see the attached Figure 4 , the system comprising:

[0074] An authentication request receiving module 11 is configured to receive an authentication request from a target user via a mobile terminal and obtain authentication request information;

[0075] An information quality assessment module 12 is configured to perform an information quality assessment on the authentication request information to obtain an information quality assessment result;

[0076] An information quality authentication module 13 is configured to perform information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication failure result;

[0077] A data conversion module 14 is configured to, if the information quality authentication result is a successful authentication result, perform data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code;

[0078] An encryption module 15 is configured to encrypt the authentication request code based on white-box cryptography to obtain an encrypted authentication request code;

[0079] a ciphertext determination module 16 configured to generate an encryption authentication key based on the target user information set, and obtain an encryption authentication ciphertext according to the encryption authentication request code and the encryption authentication key;

[0080] The decryption module 17 is configured to decrypt the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtain an authentication request result based on the authentication request password.

[0081] Furthermore, the system further comprises:

[0082] An integrity evaluation module, configured to perform integrity evaluation on the authentication request information to obtain an information integrity coefficient;

[0083] A security assessment module, configured to perform a security assessment on the authentication request information to obtain an information security coefficient;

[0084] An impact assessment module, the impact assessment module being used to perform integrity impact assessment and security impact assessment on the authentication request information, respectively, to obtain an integrity impact assessment coefficient and a security impact assessment coefficient;

[0085] An information integrity quality calculation module, configured to calculate the information integrity quality based on the information integrity coefficient and the integrity impact evaluation coefficient to obtain an information integrity quality evaluation result;

[0086] an information security quality calculation module, configured to calculate information security quality based on the information security coefficient and the security impact evaluation coefficient to obtain an information security quality evaluation result;

[0087] An information quality assessment result determination module is used to obtain the information quality assessment result based on the information integrity quality assessment result and the information security quality assessment result.

[0088] Furthermore, the system further comprises:

[0089] A threshold acquisition module, wherein the threshold acquisition module is used to obtain a threshold value of an information quality assessment result;

[0090] a first judgment module, configured to judge whether the information quality assessment result meets the information quality assessment result threshold;

[0091] An information quality authentication success result determination module, configured to obtain the information quality authentication success result if the information quality assessment result meets the information quality assessment result threshold;

[0092] The authentication end instruction acquisition module is used to obtain the information quality authentication failure result if the information quality assessment result does not meet the information quality assessment result threshold, and obtain the authentication end instruction based on the information quality authentication failure result.

[0093] Furthermore, the system further comprises:

[0094] A type analysis module, configured to perform type analysis based on the authentication request information to obtain an authentication request type;

[0095] A preset rule set determination module, the preset rule set determination module being used to obtain a plurality of preset authentication request code rule sets;

[0096] a fitness evaluation coefficient determination module, configured to perform fitness evaluation on the authentication request type and the plurality of preset authentication request code rule sets to obtain a plurality of fitness evaluation coefficients;

[0097] An optimal fitness evaluation coefficient determination module, wherein the optimal fitness evaluation coefficient determination module is used to screen the multiple fitness evaluation coefficients to obtain the optimal fitness evaluation coefficient;

[0098] An authentication request code rule set determination module is configured to match the plurality of preset authentication request code rule sets based on the optimal fitness evaluation coefficient to obtain the authentication request code rule set.

[0099] Furthermore, the system further comprises:

[0100] A white-box encryption algorithm determination module, the white-box encryption algorithm determination module is used to obtain a white-box encryption algorithm based on the white-box cryptography;

[0101] a preset encrypted authentication request code determination module, the preset encrypted authentication request code determination module being used to encrypt the authentication request code based on the white box encryption algorithm to obtain a preset encrypted authentication request code;

[0102] an encryption complexity determination module, configured to perform a complexity evaluation on the preset encryption authentication request code to obtain an encryption complexity;

[0103] A complexity threshold determination module, wherein the complexity threshold determination module is used to obtain an encryption complexity threshold;

[0104] a second judgment module, configured to judge whether the encryption complexity satisfies the encryption complexity threshold;

[0105] An encryption authentication request code determination module is configured to obtain the encryption authentication request code based on the preset encryption authentication request code if the encryption complexity meets the encryption complexity threshold.

[0106] Furthermore, the system further comprises:

[0107] An information collection module is used to collect historical authentication request information and registration information of a target user to obtain the target user information set;

[0108] A preset key determination module, the preset key determination module is used to obtain a plurality of preset encryption authentication keys;

[0109] a suitability evaluation parameter determination module, configured to perform suitability evaluation on the plurality of preset encryption authentication keys and the target user information set to obtain a plurality of suitability evaluation parameters;

[0110] an optimal suitability evaluation parameter determination module, the optimal suitability evaluation parameter determination module being configured to obtain an optimal suitability evaluation parameter based on the plurality of suitability evaluation parameters;

[0111] An encryption authentication key determination module is configured to match the plurality of preset encryption authentication keys based on the optimal applicability evaluation parameter to obtain the encryption authentication key.

[0112] Furthermore, the system further comprises:

[0113] A preset password determination module, the preset password determination module is used to obtain a preset authentication password;

[0114] A consistency evaluation module, configured to perform a consistency evaluation on the authentication request password and the preset authentication password to obtain a consistency evaluation result;

[0115] an authentication request success result determination module, the authentication request success result determination module being configured to obtain an authentication request success result if the consistency evaluation result indicates that the authentication request password is consistent with the preset authentication password;

[0116] The authentication request failure result determination module is used to obtain an authentication request failure result if the consistency evaluation result is that the authentication request password is inconsistent with the preset authentication password.

[0117] The present application provides a mobile terminal identity authentication system based on white-box cryptography, wherein the system is used to execute a mobile terminal identity authentication method based on white-box cryptography, the method comprising: receiving an authentication request from a target user through a mobile terminal to obtain authentication request information; performing information quality assessment on the authentication request information to obtain an information quality assessment result; performing information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result; if the information quality authentication result is a successful information quality authentication result, performing data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; encrypting the authentication request information based on white-box cryptography to obtain an encrypted authentication request code; generating an encrypted authentication key based on a target user information set, and obtaining an encrypted authentication ciphertext based on the encrypted authentication request code and the encrypted authentication key; decrypting the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtaining an authentication request result based on the authentication request password. The method solves the technical problem in the prior art of insufficient accuracy in identity authentication, which in turn causes low quality of identity authentication. The goal is to improve the accuracy of identity authentication and the quality of identity authentication; at the same time, to improve the comprehensiveness and security of identity authentication, to achieve intelligent and scientific identity authentication, and to lay the foundation for the further development of identity authentication technology.

[0118] The technical features of the above embodiments can be combined arbitrarily. To make the description concise, not all possible combinations of the technical features in the above embodiments are described. However, as long as there is no contradiction in the combination of these technical features, they should be considered to be within the scope of this specification.

[0119] This specification and drawings are merely exemplary illustrations of the present application. If modifications and variations of the present invention fall within the scope of the present invention and its equivalents, the present invention is intended to include these modifications and variations.

Claims

1. A mobile terminal identity authentication system based on white-box cryptography, characterized in that: The system comprises: An authentication request receiving module is used to receive an authentication request from a target user through a mobile terminal and obtain authentication request information; An information quality assessment module is used to perform information quality assessment on the authentication request information and obtain an information quality assessment result; An information quality authentication module, configured to perform information quality authentication on the authentication request information based on the information quality assessment result, and obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication failure result; a data conversion module configured to, if the information quality authentication result is a successful authentication result, perform data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; An encryption module, configured to encrypt the authentication request code based on white box cryptography to obtain an encrypted authentication request code; a ciphertext determination module, configured to generate an encryption authentication key based on a target user information set, and obtain an encryption authentication ciphertext according to the encryption authentication request code and the encryption authentication key; a decryption module, configured to decrypt the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtain an authentication request result based on the authentication request password; The system further comprises: A white-box encryption algorithm determination module, configured to obtain a white-box encryption algorithm based on the white-box cryptography; a preset encrypted authentication request code determining module, configured to encrypt the authentication request code based on the white box encryption algorithm to obtain a preset encrypted authentication request code; An encryption complexity determination module, configured to perform a complexity evaluation on the preset encryption authentication request code to obtain an encryption complexity; A complexity threshold determination module, used to obtain an encryption complexity threshold; A second judgment module is used to judge whether the encryption complexity meets the encryption complexity threshold; an encryption authentication request code determining module, configured to obtain the encryption authentication request code based on the preset encryption authentication request code if the encryption complexity meets the encryption complexity threshold; An information collection module is used to collect historical authentication request information and registration information of a target user to obtain the target user information set; A preset key determination module, used to obtain multiple preset encryption authentication keys; a suitability evaluation parameter determination module, configured to perform suitability evaluation on the plurality of preset encryption authentication keys and the target user information set to obtain a plurality of suitability evaluation parameters; An optimal suitability evaluation parameter determination module, configured to obtain an optimal suitability evaluation parameter based on the plurality of suitability evaluation parameters; an encryption authentication key determination module, configured to match the plurality of preset encryption authentication keys based on the optimal applicability evaluation parameter to obtain the encryption authentication key; A preset password determination module is used to obtain a preset authentication password; A consistency evaluation module, configured to perform a consistency evaluation on the authentication request password and the preset authentication password to obtain a consistency evaluation result; an authentication request success result determination module, configured to obtain an authentication request success result if the consistency evaluation result shows that the authentication request password is consistent with the preset authentication password; The authentication request failure result determination module is used to obtain an authentication request failure result if the consistency evaluation result is that the authentication request password is inconsistent with the preset authentication password.

2. The system according to claim 1, wherein The system further comprises: An integrity evaluation module, configured to perform integrity evaluation on the authentication request information to obtain an information integrity coefficient; A security assessment module, configured to perform a security assessment on the authentication request information to obtain an information security coefficient; An impact assessment module, configured to perform integrity impact assessment and security impact assessment on the authentication request information, and obtain integrity impact assessment coefficients and security impact assessment coefficients; An information integrity quality calculation module, configured to calculate the information integrity quality based on the information integrity coefficient and the integrity impact evaluation coefficient to obtain an information integrity quality evaluation result; An information security quality calculation module is used to calculate the information security quality based on the information security coefficient and the security impact evaluation coefficient to obtain an information security quality evaluation result; The information quality assessment result determination module is used to obtain the information quality assessment result based on the information integrity quality assessment result and the information security quality assessment result.

3. The system according to claim 1, wherein: The system further comprises: A threshold acquisition module is used to obtain the threshold of the information quality assessment result; A first judgment module is used to judge whether the information quality assessment result meets the information quality assessment result threshold; An information quality authentication success result determination module, configured to obtain the information quality authentication success result if the information quality assessment result meets the information quality assessment result threshold; The authentication end instruction acquisition module is used to obtain the information quality authentication failure result if the information quality assessment result does not meet the information quality assessment result threshold, and obtain the authentication end instruction based on the information quality authentication failure result.

4. The system according to claim 1, wherein: The system further comprises: A type analysis module, configured to perform type analysis based on the authentication request information to obtain the authentication request type; A preset rule set determination module, used to obtain multiple preset authentication request code rule sets; a compatibility evaluation coefficient determination module, configured to perform a compatibility evaluation on the authentication request type and the plurality of preset authentication request code rule sets to obtain a plurality of compatibility evaluation coefficients; An optimal fitness evaluation coefficient determination module is used to screen the multiple fitness evaluation coefficients to obtain the optimal fitness evaluation coefficient; The authentication request code rule set determination module is used to match the multiple preset authentication request code rule sets based on the optimal fitness evaluation coefficient to obtain the authentication request code rule set.

5. A mobile terminal identity authentication method based on white-box cryptography, characterized in that: The method comprises: Receive the authentication request of the target user through the mobile terminal and obtain the authentication request information; Performing an information quality assessment on the authentication request information to obtain an information quality assessment result; Performing information quality authentication on the authentication request information based on the information quality assessment result to obtain an information quality authentication result, wherein the information quality authentication result includes an information quality authentication success result and an information quality authentication failure result; If the information quality authentication result is a successful authentication result, performing data conversion on the authentication request information based on an authentication request code rule set to obtain an authentication request code; Encrypting the authentication request code based on white-box cryptography to obtain an encrypted authentication request code; Generate an encryption authentication key based on the target user information set, and obtain an encryption authentication ciphertext according to the encryption authentication request code and the encryption authentication key; Decrypting the encrypted authentication ciphertext through a decryption server to obtain an authentication request password, and obtaining an authentication request result based on the authentication request password; Also includes: Based on the white-box cryptography, a white-box encryption algorithm is obtained; Encrypting the authentication request code based on the white box encryption algorithm to obtain a preset encrypted authentication request code; Performing a complexity evaluation on the preset encryption authentication request code to obtain encryption complexity; Get the encryption complexity threshold; Determining whether the encryption complexity meets the encryption complexity threshold; If the encryption complexity satisfies the encryption complexity threshold, obtaining the encryption authentication request code based on the preset encryption authentication request code; Collect historical authentication request information and registration information of the target user to obtain the target user information set; Obtain multiple preset encryption authentication keys; Performing a suitability evaluation on the plurality of preset encryption authentication keys and the target user information set to obtain a plurality of suitability evaluation parameters; obtaining an optimal suitability evaluation parameter based on the plurality of suitability evaluation parameters; Matching the plurality of preset encryption authentication keys based on the optimal applicability evaluation parameter to obtain the encryption authentication key; Get the preset authentication password; Performing a consistency evaluation on the authentication request password and the preset authentication password to obtain a consistency evaluation result; If the consistency evaluation result is that the authentication request password is consistent with the preset authentication password, obtaining a success result of the authentication request; If the consistency evaluation result is that the authentication request password is inconsistent with the preset authentication password, an authentication request failure result is obtained.

Citation Information

Patent Citations

  • Cross-application fingerprint identity authentication method and device

    CN108566389A

  • Bidirectional authentication method and system, server and terminal

    CN110690956A