Mobile terminal-based application installation method, ecological service system, and electronic device

By verifying and signing application packages through a trusted security protection system, and combining this with an ecosystem operation and maintenance system, the problem of single-faceted security protection for mobile terminals is solved, achieving system-level security protection throughout the entire lifecycle and improving the security of mobile terminals.

CN116028077BActive Publication Date: 2026-07-21BEIJING KEXIN HUATAI INFORMATION TECH
View PDF 2 Cites 0 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
BEIJING KEXIN HUATAI INFORMATION TECH
Filing Date
2022-12-08
Publication Date
2026-07-21

AI Technical Summary

Technical Problem

Existing technologies for mobile terminal security protection measures are simplistic, fail to effectively identify intrusion information, lack a systematic security protection system, focus on remote management and simple authentication processes, and do not take into account the security characteristics of mobile terminals for comprehensive design.

Method used

The application package is verified using a trusted security protection system. It passes vulnerability testing and sensitive permission checks by evaluation agencies to generate a signed application installation package. This package is then linked with the ecosystem operation and maintenance system to form a full lifecycle security protection system, including the management of the initial application installation and upgrade packages.

Benefits of technology

It provides full lifecycle security protection for mobile terminals, ensuring the trustworthiness and security of application software installation and upgrades, building a system-level security protection system, and improving the security of mobile terminals.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116028077B_ABST
    Figure CN116028077B_ABST
Patent Text Reader

Abstract

The application discloses a kind of based on mobile terminal's application installation method, ecological service system, electronic equipment.Wherein, the application installation method based on mobile terminal is applied to the mobile terminal of installing trusted security protection system, method includes: receiving the application package that server transmits;Using trusted security protection system to verify application package, obtain verification result;In the type of application package is application first launch installation package and the case where verification result indicates that pass verification, install application first launch installation package in the operating system of mobile terminal;Or, in the type of application package is application upgrade package and the case where verification result indicates that pass verification, replace the historical version application indicated by application identifier in the operating system of mobile terminal with application installation package, and run application installation package to obtain new version application.The application solves the technical problem that related art focuses on configuring the management system of mobile terminal, without fully considering the security protection of mobile terminal.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of information security, and more specifically, to an application installation method, an ecosystem service system, and an electronic device based on a mobile terminal. Background Technology

[0002] Currently, the trusted security protection of information systems, particularly for traditional computer and server equipment, is relatively well-established. However, with the maturity of mobile communication technology, its convenience and ease of use far surpass that of traditional computer equipment, gradually penetrating various specialized industries. Mobile terminals are becoming increasingly widespread, but existing technologies for mobile terminal security are lagging behind. There is a lack of corresponding security software; generally, security is only provided by the built-in protection policies of the operating system pre-installed on the mobile terminal. This approach is too simplistic and cannot effectively identify intrusive information such as when accessing websites or logging into applications. As a crucial component of information systems, mobile terminals carry a large amount of work and personal information, and the security of a single terminal is no longer sufficient to meet the ever-changing security demands.

[0003] Existing mobile terminal security measures have the following drawbacks:

[0004] 1. It focuses on the management of remote node devices by the central device, and mostly manages the configuration of remote client node devices through the network, with insufficient consideration for security.

[0005] 2. The authentication process is simple, focusing on the binding relationship between mobile terminals and server management terminals, and the association between smart devices and user management accounts.

[0006] 3. It focuses on the creation of a configuration management system and simple software deployment and distribution, without taking into account the characteristics of mobile terminal security and carrying out security design and control at each key device node of configuration and distribution, and there is no ready-made security system.

[0007] There is currently no effective solution to the above problems. Summary of the Invention

[0008] This invention provides an application installation method, an ecosystem service system, and an electronic device based on a mobile terminal, to at least solve the technical problem in related technologies where management systems focus on configuring mobile terminals but do not adequately consider the security protection of mobile terminals.

[0009] According to one aspect of the present invention, an application installation method based on a mobile terminal is provided, applied to a mobile terminal equipped with a trusted security protection system. The trusted security protection system detects the operating status of the mobile terminal after receiving a trusted security report. The trusted security protection system interfaces with a trusted service system, and the trusted service system outputs the trusted security report to N mobile terminals, where N is a positive integer greater than or equal to 1. The application installation method includes: receiving an application package transmitted from a server, wherein the type of the application package includes: an initial application installation package and an application upgrade package. The application package includes at least: an application identifier and an application installation package. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency; verifying the application package using the trusted security protection system to obtain a verification result; if the type of the application package is an initial application installation package and the verification result indicates that the verification has passed, installing the initial application installation package in the operating system of the mobile terminal; or, if the type of the application package is an application upgrade package and the verification result indicates that the verification has passed, replacing the historical version application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and running the application installation package to obtain a new version application.

[0010] Optionally, when the application package type is an application upgrade package, the step of receiving the application upgrade package transmitted by the server includes: sending an application version query request to the server, wherein the application version query request is used to request the server to query whether there is a version of the historical version of the application indicated by the application identifier that needs to be updated; receiving version feedback information from the server, wherein the version feedback information includes at least one of the following: whether there is a version to be updated, version identifier, installation package parameters, and update log; and receiving the application package if the version feedback information indicates that there is a version to be updated.

[0011] Optionally, when the version feedback information indicates the existence of the version to be updated, the step of receiving the application package includes: if a network anomaly causes a transmission failure during the process of receiving the application package, recording the position and size of the already transmitted packets of the application package; and resuming the transmission of the application package based on the position and size of the already transmitted packets of the application package after confirming that the network has returned to normal.

[0012] Optionally, when the testing organization performs vulnerability testing and sensitive permission checks on the application installation package, the process includes: the testing organization receiving the application installation package transmitted by the application development vendor; the testing organization performing vulnerability testing on the application installation package and obtaining vulnerability test results; if the vulnerability test results indicate that the application installation package has an application vulnerability, the testing organization feeding back the application installation package and vulnerability information to the application development vendor; if the vulnerability test results indicate that the application installation package does not have an application vulnerability, the testing organization performing sensitive permission checks on the application installation package and obtaining permission check results; if the permission check results indicate that the application installation package passes the sensitive permission check, the testing organization signing the application installation package to generate a signed application installation package.

[0013] Optionally, after the testing organization signs the application installation package and generates the signed application installation package, the method further includes: the testing organization sending the signed application installation package to the ecosystem operation and maintenance system, wherein the ecosystem operation and maintenance system and the testing organization have a pre-established network connection relationship, and the ecosystem operation and maintenance system includes at least: a version manager and an application market manager, the version manager is used to store the application installation package and its version information, and the application market manager is used to perform signature verification and sensitive permission verification on the signed application installation package. After the signature verification and sensitive permission verification are passed, the application market manager uploads the verified application installation package to the server.

[0014] Optionally, after replacing the historical version application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and running the application installation package to obtain the new version application, the method further includes: integrating the update status, update result, historical version number, version number to be updated, device identifier, device model, and upgrade time period of the application installation package into reporting information; and transmitting the reporting information to the server.

[0015] Optionally, it further includes: receiving an Over-the-Air (OTA) upgrade package; performing security verification on the OTA upgrade package using a pre-set security certificate to obtain a verification result; if the verification result indicates that the verification is passed, comparing whether the current version of the OTA upgrade package is the same as the historical version stored in the mobile terminal; if the comparison result indicates that the versions are different, then using the OTA upgrade package to update the historical version stored in the mobile terminal.

[0016] According to another aspect of the present invention, an application installation method for a mobile terminal is also provided, applied to a server, wherein the server interfaces with the mobile terminal, the mobile terminal is equipped with a trusted security protection system, the trusted security protection system detects the operating status of the mobile terminal after receiving a trusted security report, the trusted security protection system interfaces with a trusted service system, and the trusted service system outputs the trusted security report to N mobile terminals, where N is a positive integer greater than or equal to 1. The application installation method includes: receiving an application package transmitted by an application market manager, wherein the type of the application package includes: an initial application installation package and an application upgrade package, the application package includes at least: an application identifier and an application installation package, and the application installation package has passed vulnerability testing and sensitive permission checks by an evaluation agency, and has also... An installation package that undergoes signature verification and sensitive permission verification through an ecosystem operation and maintenance system; based on the application identifier, the application installation package, its version information, installation package parameters, and update log are stored in a preset application space; upon receiving an application version query request from the mobile terminal, version feedback information is output to the mobile terminal, wherein, if the version feedback information indicates that an update version exists, the mobile terminal receives the application package and verifies the application package using the trusted security protection system, obtains a verification result, and runs the application installation package on the mobile terminal's operating system if the verification result indicates that the verification is successful, the application installation package is run on the mobile terminal's operating system, the application package type includes: application initial installation package, application upgrade package, and the application package includes at least: application identifier and application installation package of the version to be updated.

[0017] Optionally, the application installation method for mobile terminals further includes: receiving device information, wherein the device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal; and entering the device information into the device management list.

[0018] Optionally, it further includes: receiving device operation logs and application upgrade logs reported by the mobile terminal, wherein the device operation logs include: terminal identifier, terminal model, registration time, and the operation status, and the application upgrade logs include: the current application version number, upgrade time, update log, and upgrade status; and storing the device operation logs and the application upgrade logs in a preset terminal device status table.

[0019] According to another aspect of the present invention, an ecosystem service system for mobile terminals is also provided, comprising: a testing organization, which receives an application installation package transmitted by an application development vendor, performs vulnerability testing and sensitive permission checks on the application installation package, and signs the application installation package that passes the vulnerability testing and sensitive permission checks to generate a signed application installation package; an ecosystem operation and maintenance system, connected to the testing organization, for performing signature verification and sensitive permission verification on the signed application installation package, and uploading the verified application installation package to a server after the signature verification and sensitive permission verification are passed; the server, which interfaces with at least one mobile terminal and executes the application installation method for mobile terminals described in any one of the above embodiments; and the mobile terminal, which executes the application installation method based on mobile terminals described in any one of the above embodiments, wherein the mobile terminal is equipped with a trusted security protection system, and the trusted security protection system detects the operating status of the mobile terminal after receiving a trusted security report.

[0020] Optionally, the ecosystem service system for the mobile terminal also includes a signing system for signing the application installation package and the system image, wherein the system image refers to a backup operation performed on the operating system of the mobile terminal.

[0021] Optionally, the ecosystem service system for mobile terminals also includes: a version management system, used to receive device information and enter the device information into a device management list, wherein the device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal; the version management system is also used to maintain the historical version information, version change records and applicable terminal model information of the application installation package.

[0022] Optionally, the ecosystem service system for mobile terminals also includes: an application manager, which displays application information and application type for all applications, and is responsible for the transmission and signature verification of application installation packages; the application manager is also used to configure sensitive permissions for each application.

[0023] According to another aspect of the present invention, an electronic device is also provided, comprising: a processor; and a memory for storing executable instructions of the processor; wherein the processor is configured to execute the application installation method based on a mobile terminal as described above by executing the executable instructions.

[0024] According to another aspect of the present invention, a computer-readable storage medium is also provided, the computer-readable storage medium including a stored computer program, wherein, when the computer program is executed, it controls the device where the computer-readable storage medium is located to execute the application installation method based on the mobile terminal described in any one of the above embodiments.

[0025] In this disclosure, an application package transmitted by a receiving server is used, and a trusted security protection system is used to verify the application package to obtain a verification result. If the application package type is an application initial installation package and the verification result indicates that the verification has passed, the application initial installation package is installed in the operating system of the mobile terminal. Alternatively, if the application package type is an application upgrade package and the verification result indicates that the verification has passed, the historical version of the application indicated by the application identifier is replaced with the application installation package in the operating system of the mobile terminal, and the application installation package is run to obtain a new version of the application. The application package type includes: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency.

[0026] This disclosure allows for vulnerability testing and sensitive permission checks on the installation package by an evaluation agency, and employs a trusted security protection system to verify the application package. This provides trusted security protection for mobile terminals during application software installation and upgrade services, forming a full lifecycle security protection system at the terminal software level. This addresses the technical problem in related technologies that focus on configuring the mobile terminal management system but do not adequately consider the security protection of the mobile terminal. Attached Figure Description

[0027] The accompanying drawings, which are included to provide a further understanding of the invention and form part of this application, illustrate exemplary embodiments of the invention and, together with their description, serve to explain the invention and do not constitute an undue limitation thereof. In the drawings:

[0028] Figure 1 This is a flowchart of an optional application installation method based on a mobile terminal according to an embodiment of the present invention;

[0029] Figure 2 This is an optional application software initialization flowchart according to an embodiment of the present invention;

[0030] Figure 3 This is an optional application upgrade package release flowchart according to an embodiment of the present invention;

[0031] Figure 4 This is a flowchart of an optional standalone application distribution package release process according to an embodiment of the present invention;

[0032] Figure 5 This is a flowchart of an optional application installation method for a mobile terminal according to an embodiment of the present invention;

[0033] Figure 6 This is a schematic diagram of an optional ecosystem service system for mobile terminals according to an embodiment of the present invention;

[0034] Figure 7This is a schematic diagram of another optional ecosystem service system according to an embodiment of the present invention;

[0035] Figure 8 This is a schematic diagram illustrating the OTA terminal and OTA server implementing upgrade package updates according to an embodiment of the present invention;

[0036] Figure 9 This is a hardware structure block diagram of an electronic device (or mobile device) based on an application installation method for a mobile terminal according to an embodiment of the present invention. Detailed Implementation

[0037] To enable those skilled in the art to better understand the present invention, the technical solutions of the present invention will be clearly and completely described below with reference to the accompanying drawings of the embodiments of the present invention. Obviously, the described embodiments are only some embodiments of the present invention, and not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without creative effort should fall within the scope of protection of the present invention.

[0038] It should be noted that the terms "first," "second," etc., in the specification, claims, and accompanying drawings of this invention are used to distinguish similar objects and are not necessarily used to describe a specific order or sequence. It should be understood that such data can be interchanged where appropriate so that the embodiments of the invention described herein can be implemented in orders other than those illustrated or described herein. Furthermore, the terms "comprising" and "having," and any variations thereof, are intended to cover a non-exclusive inclusion; for example, a process, method, system, product, or apparatus that comprises a series of steps or units is not necessarily limited to those steps or units explicitly listed, but may include other steps or units not explicitly listed or inherent to such processes, methods, products, or apparatus.

[0039] To facilitate understanding of the present invention by those skilled in the art, some terms or nouns involved in the various embodiments of the present invention are explained below:

[0040] TPCM: Trusted Platform Control Module for Active Control.

[0041] Trusted software: Software that has undergone testing and certification and has a legitimate source.

[0042] Trusted terminal: A terminal with trusted security protection software installed.

[0043] Static metrics: Integrity metrics triggered when an entity undergoes a runtime transition, resulting in a state inversion. These include metrics during operating system boot and process startup.

[0044] Dynamic measurement: A method for periodically measuring the integrity of the operating system during runtime through mechanisms such as timed triggering and conditional triggering.

[0045] Trusted whitelist: The trusted service system performs a security scan at system initialization, and records the executable files scanned into the whitelist database. The executable programs that have been scanned are the whitelist.

[0046] APK signing: APK is short for Android Application Package, which is a program installation package. APK signing refers to the process of signing a mobile terminal application with a security certificate. After signing, the APK can be installed and used as a trusted APK on trusted terminals.

[0047] APK Signature Verification: When installing an APK, the trusted system of the mobile terminal system verifies the APK signature and the legality of the signature certificate. APKs that are not signed or are signed with an illegal certificate will be refused installation and use.

[0048] Trusted baseline value: The measurement information initialized by the mobile terminal system serves as the trusted baseline value of the terminal and is stored in the trusted security immune protection system (referred to as the trusted security protection system) of the mobile terminal.

[0049] Trusted Report: The Trusted Service System periodically sends a Trusted Report on the dynamic measurement of the mobile terminal to the Trusted Security Protection System of the mobile terminal. The Trusted Security Protection System of the mobile terminal detects whether the terminal is operating normally based on the Trusted Benchmark Value.

[0050] OTA, or Over The Air, is a data value-added service that uses SMS messaging to dynamically download, delete, and update the service menu on a SIM card via a mobile terminal, enabling users to obtain personalized information services.

[0051] This disclosure can be applied to scenarios in the field of information security for the security protection of mobile terminals. It can also be used in situations other than information security for proactive security protection, such as power systems and industrial control, which have extremely high requirements for information security, industries with a strong need for information system security, and centralized security protection for manufacturers of ordinary mobile terminals.

[0052] It should be noted that all information (including but not limited to user device information, user personal information, etc.) and data (including but not limited to data used for display, data used for analysis, etc.) involved in this disclosure are information and data authorized by the user or fully authorized by all parties. For example, this system has an interface with relevant users or organizations. Before obtaining relevant information, it is necessary to send an acquisition request to the aforementioned user or organization through the interface, and obtain the relevant information after receiving consent information from the aforementioned user or organization.

[0053] The types of mobile terminals involved in this disclosure include, but are not limited to: mobile phones, tablets, panels, iPads, laptops, and mobile virtual machines (such as VR or AR devices).

[0054] The mobile terminal security protection system mentioned in this disclosure is not limited to trusted security protection for mobile terminals. Instead, it integrates multiple stakeholders, including application vendors, testing organizations, management systems, ecosystem operation and maintenance systems, and user terminals, to jointly establish a security system. The mobile terminal ecosystem service and configuration management system, while providing application software installation, system upgrade services, and terminal problem feedback collection capabilities, works in conjunction with the mobile terminal trusted security protection system to form system-level protection, jointly establishing a mobile terminal security system. In this disclosure, to ensure the terminal information security and application software security of mobile terminals, an organic security protection system is provided, combining the mobile terminal's inherent trusted security immune protection capabilities with a systematic, unified, and centralized ecosystem service and configuration management system.

[0055] This disclosure provides security protection for applications by addressing key aspects such as the initial release of the application, the release of upgrade packages, OTA updates, independent control by application user units, and the development, testing, and deployment of the application. It provides mobile terminals with application software installation, system upgrade services, and the ability to collect terminal problem feedback. At the same time, it can be linked with the trusted security protection system of the mobile terminal to form a full lifecycle security protection for the terminal software system, jointly building a high-level security protection system for mobile terminals.

[0056] The mobile terminal ecosystem service and configuration management system can provide mobile terminals with a variety of flexible application push methods and remote management, and form a system-level security protection capability through linkage with the mobile terminal's trusted security protection system.

[0057] The trusted service system disclosed herein connects to N mobile terminals. Each mobile terminal is equipped with a trusted security protection system and a configuration management system. The configuration management system is responsible for the installation of mobile terminal software, operating system upgrades, and other applications. It collects access behavior data of the applications and reports it to the trusted security management platform. The trusted security protection system can perform static and dynamic measurements on the mobile terminals according to trusted policies and obtain trusted reports.

[0058] The present invention will now be described in detail with reference to various embodiments.

[0059] Example 1

[0060] According to an embodiment of the present invention, an embodiment of an application installation method based on a mobile terminal is provided. It should be noted that the steps shown in the flowchart in the accompanying drawings can be executed in a computer system such as a set of computer-executable instructions. Furthermore, although a logical order is shown in the flowchart, in some cases, the steps shown or described may be executed in a different order than that shown here.

[0061] The application installation method based on a mobile terminal in this embodiment of the invention is applied to a mobile terminal with a trusted security protection system installed. After receiving a trusted security report, the trusted security protection system detects the operating status of the mobile terminal. The trusted security protection system interfaces with the trusted service system, and the trusted service system outputs trusted security reports to N mobile terminals, where N is a positive integer greater than or equal to 1.

[0062] Figure 1 This is a flowchart of an optional application installation method based on a mobile terminal according to an embodiment of the present invention, such as... Figure 1 As shown, the method includes the following steps:

[0063] Step S102: Receive the application package transmitted by the server. The application package type includes: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by the testing agency.

[0064] Step S104: Verify the application packet using a trusted security protection system and obtain the verification result;

[0065] Step S106: If the application package type is an application initial installation package and the verification result indicates that the verification has passed, install the application initial installation package in the operating system of the mobile terminal; or, if the application package type is an application upgrade package and the verification result indicates that the verification has passed, replace the historical version application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and run the application installation package to obtain the new version application.

[0066] Through the above steps, an application package transmitted from the server can be received, and a trusted security protection system can be used to verify the application package to obtain a verification result. If the application package type is an initial installation package and the verification result indicates that the verification has passed, the initial installation package is installed in the mobile terminal's operating system. Alternatively, if the application package type is an upgrade package and the verification result indicates that the verification has passed, the historical version of the application indicated by the application identifier is replaced with the application installation package in the mobile terminal's operating system, and the application installation package is run to obtain the new version of the application. The application package types include: initial installation package and upgrade package. Each application package includes at least: an application identifier and an application installation package. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency. In this embodiment, vulnerability testing and sensitive permission checks can be performed on the installation package by an evaluation agency, and a trusted security protection system can be used to verify the application package, providing trusted security protection for the mobile terminal during the application software installation and upgrade process. This forms a full lifecycle security protection for the terminal software system, thereby solving the technical problem in related technologies that focus on configuring the mobile terminal's management system without fully considering the security protection of the mobile terminal.

[0067] The present invention will now be described in detail with reference to the above-described implementation steps.

[0068] In this embodiment of the invention, application packages are categorized into initial installation packages and upgrade packages. Of course, in addition to these two types, independently distributed application packages may also be included. The trusted distribution process for these three types of packages will be explained below using three implementation scenarios.

[0069] Figure 2 This is an optional application software initialization flowchart according to an embodiment of the present invention, such as... Figure 2 As shown, during the initial installation of the application package, the participating entities include: application development vendors, testing organizations, ecosystem operation and maintenance systems, and mobile terminals. The ecosystem service and configuration management system of the mobile terminal has controlled the initial release of general software within the system. The release process will be controlled by communication among development vendors, testing organizations, and ecosystem operation and maintenance systems to ensure that mobile terminal users run controlled and secure software within the trusted and secure system of the mobile terminal.

[0070] The application development vendor is responsible for developing and initially testing the application. After completion, the unverified and unchecked installation package is submitted to the testing organization for testing.

[0071] Optionally, when the testing organization performs vulnerability testing and sensitive permission checks on the application installation package, the process includes: the testing organization receiving the application installation package transmitted by the application development vendor; the testing organization performing vulnerability testing on the application installation package and obtaining vulnerability test results; if the vulnerability test results indicate that the application installation package has an application vulnerability, the testing organization feeding back the application installation package and vulnerability information to the application development vendor; if the vulnerability test results indicate that the application installation package does not have an application vulnerability, the testing organization performing sensitive permission checks on the application installation package and obtaining permission check results; if the permission check results indicate that the application installation package passes the sensitive permission check, the testing organization signing the application installation package to generate a signed application installation package.

[0072] In this embodiment, the testing organization is a specialized evaluation organization for application installation packages. It may include: vulnerability detection tools, sensitive permission checking tools, and signing tools. The vulnerability detection tools are used to test the application installation packages to check for vulnerabilities. If problems are found, the vulnerabilities will be reported to the application development vendor for upgrades and resubmission for testing. The sensitive permission checking tools are used to perform sensitive permission checks on application installation packages that have passed the vulnerability test. The specific checks include: the application development vendor must declare the minimum permissions required for the normal operation of the application, and then the application is reviewed and checked according to the permission application. The signing tools are used to sign the application installation packages that have passed the sensitive permission check, and after signing, a formally signed software installation package is formed, i.e., the officially signed installation package.

[0073] Optionally, after the testing organization signs the application installation package and generates a signed application installation package, the process further includes: the testing organization sending the signed application installation package to the ecosystem operation and maintenance system. The ecosystem operation and maintenance system and the testing organization have a pre-established network connection. The ecosystem operation and maintenance system includes at least a version manager and an application market manager. The version manager is used to store the application installation package and its version information. The application market manager is used to verify the signature and sensitive permissions of the signed application installation package. After the signature verification and sensitive permission verification are passed, the application market manager uploads the verified application installation package to the server.

[0074] In this embodiment, the ecosystem operation and maintenance system includes a version manager and an application market manager. The testing organization sends the officially signed application installation package to the mobile information version manager in the ecosystem operation and maintenance system for application software version storage. Then, the officially signed application installation package is sent to the application market server, which performs signature verification, sensitive permission checks, and other checks on the installation package. After the checks are passed, the application market server will list the application installation package and provide download services to mobile terminal customers.

[0075] Mobile users can browse applications available on the app store server. Mobile users can also download officially signed software installation packages and silently install applications.

[0076] Figure 3 This is an optional application upgrade package release flowchart according to an embodiment of the present invention, such as... Figure 3 As shown, during the application package upgrade and installation, the participating entities include: application development vendors, ecosystem operation and maintenance systems, and mobile terminals. The mobile terminal's ecosystem service and configuration management system has implemented controlled processing for the initial release of general software within the system. The release process will be controlled by communication between the development vendors and the ecosystem operation and maintenance system to ensure that mobile terminal users run controlled and secure software within the trusted and secure system of the mobile terminal.

[0077] The specific implementation process includes:

[0078] 1) The application's developer develops an application upgrade package and conducts internal testing and verification to obtain an unsigned upgrade package;

[0079] In this embodiment, after developing the application upgrade package, the developer can use an upgrade signing tool (or installation package official version upgrade signing tool) to apply for a certificate to sign the upgrade package and obtain the signed upgrade package.

[0080] 2) Submit the signed upgrade package, and the ecosystem operation and maintenance system will use vulnerability detection tools to detect whether the upgrade package has vulnerabilities. If there are problems, the system will provide feedback to the development vendor to upgrade and resubmit for testing.

[0081] During the upgrade package detection process, the tools used by the ecosystem operation and maintenance system include: vulnerability detection tools, version managers, and application market managers.

[0082] After passing the test, the ecosystem operation and maintenance system will send the signed upgrade package to the version manager for software version storage;

[0083] The ecosystem operation and maintenance system sends the signed upgrade package to the application market server, which then performs signature verification, sensitive permission checks, and other checks on the installation package.

[0084] After the inspection is passed, the ecosystem operation and maintenance system will put the signed upgrade package on the market, push update notifications to the public, and start the download service;

[0085] 3) Mobile terminal customers can browse application content listed on the application market server or application server application upgrade push notifications, and download upgrade-signed application packages through mobile terminals. Mobile terminals provide upgrade-signed application package download and application silent upgrade services.

[0086] Figure 4This is a flowchart illustrating an optional standalone application package distribution process according to an embodiment of the present invention, such as... Figure 4 As shown, the implementing entities include: developers and mobile terminals, without the need to connect with testing agencies and ecosystem operation and maintenance systems.

[0087] The specific release and implementation process includes:

[0088] 1) In the initial stage, the application development vendor (i.e., software vendor) conducts application development and testing, and then packages it into a private application installation package;

[0089] 2) The developer sends the private application installation package to the private application market server of the mobile terminal's owner. The private application market server checks the installation package (including: vulnerability detection, sensitive permission verification, signature verification, etc.) and puts the private installation application package that passes the check up on the platform and makes it available for download.

[0090] 3) Users use their mobile devices to browse applications available on the local application marketplace server. The mobile devices provide services such as downloading private application installation packages and silent application installation.

[0091] The above three methods illustrate the implementation of testing, checking, releasing, and installing the initial installation package, application upgrade package, and independently distributed installation package. They also demonstrate the addition of security design to key stages of application initial release, upgrade package release, software system and application development, evaluation, and deployment, reflecting a systematic security protection throughout the software lifecycle.

[0092] Optionally, when the application package type is an application upgrade package, the step of receiving the application upgrade package transmitted by the server includes: sending an application version query request to the server, wherein the application version query request is used to request the server to query whether there is a version of the historical version of the application indicated by the application identifier that needs to be updated; receiving version feedback information from the server, wherein the version feedback information includes at least one of the following: whether there is a version to be updated, version identifier, installation package parameters, and update log; and receiving the application package if the version feedback information indicates that there is a version to be updated.

[0093] In this embodiment, the functions that the mobile terminal can perform include: displaying the current version of the application software, querying the server for version information by querying for a new version and displaying the displayed information, including but not limited to: whether there is a new version, version number, file size, and update log; downloading the upgrade package when it is confirmed that there is a version to be updated, displaying the download progress, and supporting pause, continue, and cancel.

[0094] It should be noted that this embodiment supports resuming interrupted file transfers when receiving application packages. Optionally, when the version feedback information indicates that an update is needed, the steps for receiving the application package include: if a network anomaly causes transmission failure during the process of receiving the application package, recording the position and size of the already transmitted application package; and resuming the application package transfer based on the position and size of the already transmitted application package after confirming that the network has returned to normal.

[0095] In this embodiment, the above-described implementation method enables the function of continuing to download application packages after network reconnection. Simultaneously, the mobile terminal in this embodiment can also verify and install application packages, checking the integrity and signature value of upgrade packages before performing system upgrades.

[0096] Optionally, after replacing the historical version of the application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and running the application installation package to obtain the new version of the application, the process further includes: integrating the update status, update result, historical version number, version number to be updated, device identifier, device model, and upgrade time period of the application installation package into reporting information; and transmitting the reporting information to the server.

[0097] The mobile terminal in this embodiment can also report upgrade status information, including but not limited to: current version, upgrade version, upgrade file MD5, device ID, device model, device manufacturer, and upgrade time.

[0098] As an optional implementation of this embodiment, it further includes: receiving an Over-the-Air (OTA) upgrade package; performing security verification on the OTA upgrade package using a pre-set security certificate to obtain a verification result; if the verification result indicates that the verification is successful, comparing whether the current version of the OTA upgrade package is the same as the historical version stored in the mobile terminal; if the comparison result indicates that the versions are different, then using the OTA upgrade package to update the historical version stored in the mobile terminal.

[0099] The above implementation method enables the download of OTA upgrade packages for mobile terminals. The system performs update checks to detect new versions and updates, prompting the user to update. After user confirmation, the upgrade package is downloaded in the background, and the download progress is displayed. Once the download is complete, the upgrade package is verified, and the user is notified to begin the update process, which is automatic and progress is displayed. Upon successful upgrade, the user is notified (upgrade successful / failed), and the system restarts. If the upgrade fails, the system can revert to its pre-upgrade state.

[0100] The invention will now be described through another alternative embodiment.

[0101] This invention provides an application installation method for mobile terminals, applied to a server. The server interfaces with the mobile terminals, which are equipped with a trusted security protection system. After receiving a trusted security report, the trusted security protection system detects the operating status of the mobile terminals. The trusted security protection system interfaces with a trusted service system, which outputs trusted security reports to N mobile terminals, where N is a positive integer greater than or equal to 1.

[0102] Figure 5 This is a flowchart of an optional application installation method for a mobile terminal according to an embodiment of the present invention, such as... Figure 5 As shown, the application installation methods include:

[0103] Step S502: Receive the application package transmitted by the application market manager. The application package type includes: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package. The application installation package is an installation package that has passed the vulnerability test and sensitive permission check by the evaluation agency, and has also passed the signature verification and sensitive permission verification by the ecosystem operation and maintenance system.

[0104] Step S504: Based on the application identifier, store the application installation package, its version information, installation package parameters, and update log to the preset application space.

[0105] Step S506: After receiving the application version query request from the mobile terminal, the mobile terminal outputs version feedback information to the mobile terminal. If the version feedback information indicates that there is a version to be updated, the mobile terminal receives the application package and verifies the application package using a trusted security protection system to obtain the verification result. If the verification result indicates that the verification is successful, the application installation package is run on the mobile terminal's operating system. The types of application packages include: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package of the version to be updated.

[0106] Through the above steps, the application package transmitted by the application market manager can be received. Based on the application identifier, the application installation package, its version information, parameters, and update log are stored in a preset application space. Upon receiving an application version query request from the mobile terminal, version feedback information is output to the mobile terminal. If the version feedback information indicates that an update is needed, the mobile terminal receives the application package and verifies it using a trusted security protection system. If the verification result indicates that the verification is successful, the application installation package is run on the mobile terminal's operating system. The application package types include: initial application installation package and application upgrade package. The application package includes at least: application identifier and the application installation package of the update version. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency, and has also passed signature verification and sensitive permission verification by the ecosystem operation and maintenance system. In this embodiment, the installation package can be subjected to vulnerability testing and sensitive permission checks by an evaluation agency, and the application package can be verified by a trusted security protection system. This provides trusted security protection for the mobile terminal during the application software installation and upgrade process, forming a full lifecycle security protection for the terminal software system. This solves the technical problem in related technologies that focus on configuring the management system of the mobile terminal and do not fully consider the security protection of the mobile terminal.

[0107] In this embodiment of the invention, the server can manage upgrade packages and initial installation packages, manage the versions of upgrade packages, and import, query, and delete them. Importing an upgrade package may include: upgrade files, version number (unique), update log, applicable device models or device list, and verify the upgrade package signature, generating an encryption key for the file (encryption method can be MD5). Querying upgrade packages can be done by import date, device model, file name, version, etc. The displayed content after the query includes: file name, version number, file size, MD5, upload time, supported device models, update log, etc. Upgrade policy management enables control over the upgrade process, allowing the creation, deletion, enabling, and disabling of upgrade policies. Policy content includes: priority (newest creation is assigned higher priority by default), upgrade mode (full / differential), terminal version range (starting version, ending version), terminal device list, and upgrade version.

[0108] Optionally, the application installation method for mobile terminals may also include: receiving device information, wherein the device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal; and entering the device information into the device management list.

[0109] In this embodiment, the server can manage terminal devices and maintain terminal device models and information. This includes device registration, deregistration, querying, and importing device lists. Device information includes: device number (terminal identifier), device model, manufacturer, registration time, and last modification time.

[0110] Another option includes: receiving device operation logs and application upgrade logs reported by the mobile terminal, wherein the device operation logs include: terminal identifier, terminal model, registration time, and running status, and the application upgrade logs include: current application version number, upgrade time, update log, and upgrade status; and storing the device operation logs and application upgrade logs in a preset terminal device status table.

[0111] In this embodiment, the information reported by the mobile terminal may include, but is not limited to: device number (corresponding to the terminal identifier mentioned above), device model, device manufacturer, and system version. The server queries whether a new version is available and returns the version number, file size, download link, encryption key, and update log. Upgrade log management manages the terminal upgrade logs and allows querying by upgrade status (successful, failed), device type, and time.

[0112] The above implementation methods illustrate how to ensure the full connectivity security of mobile terminals in scenarios where mobile terminals and servers are the main implementers, while providing application software installation, system upgrade services, and terminal problem feedback collection capabilities to the terminals, and linking with the trusted security protection system of the mobile terminals to form system-level protection and jointly establish a security system for mobile terminals.

[0113] The invention will now be described in conjunction with another alternative embodiment.

[0114] Example 2

[0115] In this embodiment, the ecosystem service system of the mobile terminal is described. This ecosystem service system and the configuration management system pre-installed on the mobile terminal work together to provide application software installation, system upgrade services, and terminal problem feedback collection for the terminal, forming system-level protection and jointly establishing the security system of the mobile terminal.

[0116] Figure 6 This is a schematic diagram of an optional ecosystem service system for mobile terminals according to an embodiment of the present invention, such as... Figure 6 As shown, the ecosystem service system includes:

[0117] Testing organization 61 receives the application installation package transmitted by the application development vendor, performs vulnerability testing and sensitive permission checks on the application installation package, and signs the application installation package that passes the vulnerability testing and sensitive permission checks to generate a signed application installation package.

[0118] The Ecosystem Operation and Maintenance System 62 connects to the testing organization and is used to verify the signature and sensitive permissions of the signed application installation package. After the signature verification and sensitive permission verification are passed, the verified application installation package is uploaded to the server.

[0119] Server 63, interfaces with at least one mobile terminal, and executes the application installation method for the mobile terminal according to any one of Embodiment 1.

[0120] Mobile terminal 64 executes the application installation method based on mobile terminal according to any one of Embodiment 1. The mobile terminal is equipped with a trusted security protection system. After receiving a trusted security report, the trusted security protection system detects the operating status of the mobile terminal.

[0121] Through the aforementioned ecosystem service system for mobile terminals, the testing organization 61 receives application installation packages transmitted by application developers, performs vulnerability testing and sensitive permission checks on the application installation packages, and signs the application installation packages that pass the vulnerability testing and sensitive permission checks to generate signed application installation packages. The ecosystem operation and maintenance system 62 verifies the signature and sensitive permissions of the signed application installation packages. After the signature verification and sensitive permission verification are passed, the verified application installation packages are uploaded to the server. Then, the application packages are received by the mobile terminals, and the trusted security protection system verifies the application packages to obtain the verification results. If the verification result indicates that the verification is passed, the application installation package is run on the operating system of the mobile terminal. The types of application packages include: application initial installation packages and application upgrade packages. The application package includes at least: application identifier and application installation package of the version to be updated. The application installation package is an installation package that has passed the vulnerability testing and sensitive permission checks by the testing organization and has also passed the signature verification and sensitive permission verification by the ecosystem operation and maintenance system. In this embodiment, the installation package can be subjected to vulnerability testing and sensitive permission checks by an evaluation agency, and the application package can be verified by a trusted security protection system. This provides trusted security protection for the mobile terminal during the application software installation and upgrade process, forming a full lifecycle security protection for the terminal software system. This solves the technical problem in related technologies that focus on configuring the management system of the mobile terminal and do not fully consider the security protection of the mobile terminal.

[0122] Optionally, the ecosystem service system for mobile terminals may also include a signing system, used to sign application installation packages and system images, where the system image refers to the backup operation performed on the mobile terminal's operating system.

[0123] Figure 7 This is a schematic diagram of another optional ecosystem service system according to an embodiment of the present invention, such as... Figure 7As shown, the ecosystem service system includes mobile terminals and servers corresponding to various network types. The mobile terminals include: an app store (integrating all downloadable applications; after linking, applications can be downloaded and installed), an OAT terminal, and ecosystem support components. The network types include three categories: public networks, private networks, and offline areas. Both public and private networks can connect to mobile terminals. In the public network, connections to the version manager and ecosystem support servers can be established through an encrypted gateway, and the servers also provide file download services. The private network can connect to the version management system through an encrypted gateway. In the offline area, connections to mobile terminals are not possible, but it can perform signing (through a signing system) and application security scanning services independently. The following sections will explain each of these modules in detail.

[0124] The signing system can perform application signing, system image signing, and application permission policy management. Application signing involves formally signing and upgrading APK files. Signature information includes: signing organization, software vendor, software version, permission policy, signing algorithm, and signature value. Application permission policy displays the permissions requested by the application, modifies permissions using policy tools, and generates a policy file. This permission policy information is included during application signing. System image signing is also divided into formal signing and upgrade signing. Formal signing is generally used for baseline upgrades or major version upgrades; upgrade signing can be used for system component or patch updates.

[0125] Optionally, the ecosystem service system also includes: a version management system, which is used to receive device information and enter the device information into the device management list. The device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal; the version management system is also used to maintain the historical version information, version change records and applicable terminal model information of the application installation package.

[0126] In this embodiment, the version management system enables terminal device registration, upgrade package management, app store management, and application self-signing. Terminal device registration involves importing a device data list upon adding a new device, including MEID (Mobile Equipment Identity), model, and manufacturer information. Upgrade package management maintains historical versions, change records, applicable device models, and upgrade strategies for system upgrade packages. App store management (or application software repository) categorizes and manages these packages and distributes them through the app store. It also tracks download counts, displays application security status, and signature types. Application self-signing uses self-signing for private repositories and official and vendor signatures for public repositories, releasing software and upgrade packages.

[0127] For file download services, this embodiment provides application download services and upgrade package download services. The application download service provides downloads of application metadata, images, and files, supporting resumeable downloads. The upgrade package download service provides online downloads of system upgrade packages, which are divided into full upgrade packages and differential upgrade packages. The download process supports resumeable downloads. For situations with a large number of terminals and excessive load, load balancing or a clustered system is required.

[0128] For the aforementioned OTA terminals, Figure 8 This is a schematic diagram illustrating the OTA terminal and OTA server implementing upgrade package updates according to an embodiment of the present invention, as shown below. Figure 8 As shown, the OTA terminal can perform query functions (checking for the existence of upgrade packages to be updated, etc.), download control, signature verification and installation, reporting upgrade status, and reporting logs. The OTA server can manage terminal devices, upgrade packages, upgrade policies, upgrade interfaces, and logs.

[0129] OTA terminals can provide system update detection, upgrade package download and verification, and application package upgrades. System update detection: Detects for new versions and updates, and prompts the user to update. Upgrade package download and verification: After user confirmation, the upgrade package is downloaded in the background, and the download progress is displayed; after download completion, the upgrade package is verified, and the user is notified to start the update. If the download is interrupted, it will automatically resume after recovery. Application package upgrade: Automatic upgrades are performed, and the progress is displayed; upon completion, the user is notified (upgrade successful / failed), and the application is restarted. If the upgrade fails, the application can be restored to its state before the upgrade.

[0130] When an OTA terminal upgrades an application package, upon receiving an upgrade notification, it first checks whether the memory space meets the upgrade requirements. If it does, it receives the sub-packet data (application packages are generally large and are often split into multiple sub-packets for transmission). If a network interruption occurs during the reception process, it can resume transmission from the point of interruption (by finding the exact location using the sub-packet identifier and the size and location identifier of the total application package). After the resumed transmission is completed, the transmitted upgrade application package is verified. If the verification passes, the application can be upgraded based on the upgrade application package.

[0131] Optionally, the ecosystem service system for mobile terminals also includes: an application manager, which displays application information and application type for all applications, and is responsible for the transmission and signature verification of application installation packages; the application manager is also used to configure sensitive permissions for each application.

[0132] The app store (or app manager) mentioned above can provide the following functions: App display and download: Display app information and categories, support searching by app name; online app download, update detection, and download cache management. App signature verification and installation: Support app installation and signature verification, local app uninstallation and updates. App permission configuration: Automatically configure permission policies during app installation. Apps are only allowed to obtain permissions within the scope of the permission policy when running.

[0133] The aforementioned ecosystem support server can provide the following functions: fault log management and issue aggregation and push notifications. Fault log management includes receiving and storing fault logs from terminal systems and applications; querying by date, terminal, application name, and category; and statistically analyzing the object, time, frequency, and type of faults. Issue aggregation and push notifications include receiving and storing user feedback on issues; and categorizing and aggregating issues.

[0134] The aforementioned ecosystem support components can provide the following functions: fault log reporting and user feedback. Fault log reporting involves collecting and analyzing terminal fault logs and reporting them to the management backend. Fault log content includes: fault type, time, process name / application name (optional), version (optional), and fault details. User feedback allows users to submit problems and suggestions to the backend, including: problem category, problem description, application name and version (optional), and screenshots (optional). Frequently Asked Questions (FAQ) help documents are also provided to users.

[0135] During the interaction between the mobile terminal and the server, the mobile terminal can report its hardware and software version information to the server and query whether it meets the upgrade requirements. The server receives the terminal version information, combines it with the policy configuration, and returns whether the update requirements are met. If the requirements are met, the server sends the latest version upgrade package to the terminal. If an upgrade is required, the terminal receives the package information, establishes a connection to download the upgrade package, and performs a local update operation.

[0136] After receiving the upgrade package, the mobile terminal will perform local verification. If the conditions are met, the upgrade will proceed according to the process; otherwise, the upgrade will fail.

[0137] In this embodiment of the invention, the application package type is divided into application initial installation package, application upgrade package, and independently distributed application package, such as... Figures 2 to 4 The release process for these three application packages will be explained separately.

[0138] like Figure 2As shown, during the initial installation of the application package, the participating entities include: application development vendors, testing organizations, ecosystem operation and maintenance systems, and mobile terminals. The ecosystem service and configuration management system of the mobile terminal has controlled the initial release of general software within the system. The release process will be controlled by communication among development vendors, testing organizations, and ecosystem operation and maintenance systems to ensure that mobile terminal users run controlled and secure software within the trusted and secure system of the mobile terminal.

[0139] The application development vendor is responsible for developing and initially testing the application. After completion, the unverified and unchecked installation package is submitted to the testing organization for testing.

[0140] In this embodiment, the testing organization is a specialized evaluation organization for application installation packages. It may include: vulnerability detection tools, sensitive permission checking tools, and signing tools. The vulnerability detection tools are used to test the application installation packages to check for vulnerabilities. If problems are found, the vulnerabilities will be reported to the application development vendor for upgrades and resubmission for testing. The sensitive permission checking tools are used to perform sensitive permission checks on application installation packages that have passed the vulnerability test. The specific checks include: the application development vendor must declare the minimum permissions required for the normal operation of the application, and then the application is reviewed and checked according to the permission application. The signing tools are used to sign the application installation packages that have passed the sensitive permission check, and after signing, a formally signed software installation package is formed, i.e., the officially signed installation package.

[0141] Optionally, after the testing organization signs the application installation package and generates a signed application installation package, the process further includes: the testing organization sending the signed application installation package to the ecosystem operation and maintenance system. The ecosystem operation and maintenance system and the testing organization have a pre-established network connection. The ecosystem operation and maintenance system includes at least a version manager and an application market manager. The version manager is used to store the application installation package and its version information. The application market manager is used to verify the signature and sensitive permissions of the signed application installation package. After the signature verification and sensitive permission verification are passed, the application market manager uploads the verified application installation package to the server.

[0142] In this embodiment, the ecosystem operation and maintenance system includes a version manager and an application market manager. The testing organization sends the officially signed application installation package to the mobile information version manager in the ecosystem operation and maintenance system for application software version storage. Then, the officially signed application installation package is sent to the application market server, which performs signature verification, sensitive permission checks, and other checks on the installation package. After the checks are passed, the application market server will list the application installation package and provide download services to mobile terminal customers.

[0143] Mobile users can browse applications available on the app store server. Mobile users can also download officially signed software installation packages and silently install applications.

[0144] like Figure 3 As shown, during the application package upgrade and installation, the participating entities include: application development vendors, ecosystem operation and maintenance systems, and mobile terminals. The mobile terminal's ecosystem service and configuration management system has implemented controlled processing for the initial release of general software within the system. The release process will be controlled by communication between the development vendors and the ecosystem operation and maintenance system to ensure that mobile terminal users run controlled and secure software within the trusted and secure system of the mobile terminal.

[0145] The specific implementation process includes:

[0146] 1) The application's developer develops an application upgrade package and conducts internal testing and verification to obtain an unsigned upgrade package;

[0147] In this embodiment, after developing the application upgrade package, the developer can use an upgrade signing tool (or installation package official version upgrade signing tool) to apply for a certificate to sign the upgrade package and obtain the signed upgrade package.

[0148] 2) Submit the signed upgrade package, and the ecosystem operation and maintenance system will use vulnerability detection tools to detect whether the upgrade package has vulnerabilities. If there are problems, the system will provide feedback to the development vendor to upgrade and resubmit for testing.

[0149] During the upgrade package detection process, the tools used by the ecosystem operation and maintenance system include: vulnerability detection tools, version managers, and application market managers.

[0150] After passing the test, the ecosystem operation and maintenance system will send the signed upgrade package to the version manager for software version storage;

[0151] The ecosystem operation and maintenance system sends the signed upgrade package to the application market server, which then performs signature verification, sensitive permission checks, and other checks on the installation package.

[0152] After the inspection is passed, the ecosystem operation and maintenance system will put the signed upgrade package on the market, push update notifications to the public, and start the download service;

[0153] 3) Mobile terminal customers can browse application content listed on the application market server or application server application upgrade push notifications, and download upgrade-signed application packages through mobile terminals. Mobile terminals provide upgrade-signed application package download and application silent upgrade services.

[0154] like Figure 4As shown, when distributing application packages independently, the implementing entities include: development manufacturers and mobile terminals, without the need to connect with testing agencies and ecosystem operation and maintenance systems.

[0155] The specific release and implementation process includes:

[0156] 1) In the initial stage, the application development vendor (i.e., software vendor) conducts application development and testing, and then packages it into a private application installation package;

[0157] 2) The developer sends the private application installation package to the private application market server of the mobile terminal's owner. The private application market server checks the installation package (including: vulnerability detection, sensitive permission verification, signature verification, etc.) and puts the private installation application package that passes the check up on the platform and makes it available for download.

[0158] 3) Users can browse application content on the local application market server using their mobile devices. The mobile devices provide private application installation package download and silent application installation services.

[0159] The above three methods illustrate the implementation of testing, checking, releasing, and installing the initial installation package, application upgrade package, and independently distributed installation package. They also demonstrate the addition of security design to key stages of application initial release, upgrade package release, software system and application development, evaluation, and deployment, reflecting a systematic security protection throughout the software lifecycle.

[0160] According to another aspect of the present invention, an electronic device is also provided, including: a processor; and a memory for storing executable instructions of the processor; wherein the processor is configured to execute the application installation method based on a mobile terminal, any one of the above-described methods, by executing the executable instructions.

[0161] According to another aspect of the present invention, a computer-readable storage medium is also provided, the computer-readable storage medium including a stored computer program, wherein, when the computer program is running, it controls the device where the computer-readable storage medium is located to execute any of the above-described application installation methods based on a mobile terminal.

[0162] This application also provides a computer program product, which, when executed on a data processing device, is suitable for executing an initialization program with the following method steps: receiving an application package transmitted by a server, wherein the type of the application package includes: an application initial installation package and an application upgrade package, and the application package includes at least: an application identifier and an application installation package, wherein the application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency; verifying the application package using a trusted security protection system and obtaining a verification result; if the type of the application package is an application initial installation package and the verification result indicates that the verification has passed, installing the application initial installation package in the operating system of the mobile terminal; or, if the type of the application package is an application upgrade package and the verification result indicates that the verification has passed, replacing the historical version of the application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and running the application installation package to obtain a new version of the application.

[0163] Figure 9 This is a hardware structure block diagram of an electronic device (or mobile device) according to an embodiment of the present invention, which describes an application installation method based on a mobile terminal. Figure 9 As shown, the electronic device may include one or more processors 902 (shown as 902a, 902b, ..., 902n in the figure) 902 (processor 902 may include, but is not limited to, a microprocessor MCU or a programmable logic device FPGA, etc.) and a memory 904 for storing data. In addition, it may also include: a display, an input / output interface (I / O interface), a universal serial bus (USB) port (which may be included as one of the ports of the I / O interface), a network interface, a keyboard, a power supply, and / or a camera. Those skilled in the art will understand that... Figure 9 The structure shown is for illustrative purposes only and does not limit the structure of the electronic device described above. For example, the electronic device may also include components that are more... Figure 9 The more or fewer components shown, or having the same Figure 9 The different configurations shown.

[0164] The sequence numbers of the above embodiments of the present invention are for descriptive purposes only and do not represent the superiority or inferiority of the embodiments.

[0165] In the above embodiments of the present invention, the descriptions of each embodiment have different focuses. For parts not described in detail in a certain embodiment, please refer to the relevant descriptions of other embodiments.

[0166] In the several embodiments provided in this application, it should be understood that the disclosed technical content can be implemented in other ways. The device embodiments described above are merely illustrative; for example, the division of units can be a logical functional division, and in actual implementation, there may be other division methods. For instance, multiple units or components may be combined or integrated into another system, or some features may be ignored or not executed. Furthermore, the displayed or discussed mutual coupling, direct coupling, or communication connection may be through some interfaces; the indirect coupling or communication connection between units or modules may be electrical or other forms.

[0167] The units described as separate components may or may not be physically separate. The components shown as units may or may not be physical units; that is, they may be located in one place or distributed across multiple units. Some or all of the units can be selected to achieve the purpose of this embodiment according to actual needs.

[0168] Furthermore, the functional units in the various embodiments of the present invention can be integrated into one processing unit, or each unit can exist physically separately, or two or more units can be integrated into one unit. The integrated unit can be implemented in hardware or as a software functional unit.

[0169] If the integrated unit is implemented as a software functional unit and sold or used as an independent product, it can be stored in a computer-readable storage medium. Based on this understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, or all or part of the technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes several instructions to cause a computer device (which may be a personal computer, server, or network device, etc.) to execute all or part of the steps of the methods described in the various embodiments of the present invention. The aforementioned storage medium includes various media capable of storing program code, such as USB flash drives, read-only memory (ROM), random access memory (RAM), portable hard drives, magnetic disks, or optical disks.

[0170] The above description is only a preferred embodiment of the present invention. It should be noted that for those skilled in the art, several improvements and modifications can be made without departing from the principle of the present invention, and these improvements and modifications should also be considered within the scope of protection of the present invention.

Claims

1. A method for installing applications based on a mobile terminal, characterized in that, This application is used on mobile terminals equipped with a trusted security protection system. Upon receiving a trusted security report, the trusted security protection system detects the operating status of the mobile terminal. The trusted security protection system interfaces with a trusted service central system, which outputs the trusted security report to N mobile terminals, where N is a positive integer greater than or equal to 1. The application installation method includes: The application package is received from the server. The types of the application package include: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package. The application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by an evaluation agency. The application package is verified using the trusted security protection system, and the verification result is obtained. If the application package type is an application initial installation package and the verification result indicates that the verification has passed, the application initial installation package is installed in the operating system of the mobile terminal; or, if the application package type is an application upgrade package and the verification result indicates that the verification has passed, the historical version application indicated by the application identifier is replaced with the application installation package in the operating system of the mobile terminal, and the application installation package is run to obtain the new version application.

2. The application installation method according to claim 1, characterized in that, When the application package type is an application upgrade package, the step of receiving the application upgrade package transmitted by the server includes: Send an application version query request to the server, wherein the application version query request is used to request the server to query whether there is a version of the historical application indicated by the application identifier that needs to be updated; Receive version feedback information from the server, wherein the version feedback information includes at least one of the following: whether there is a version to be updated, version identifier, installation package parameters, and update log; If the version feedback information indicates that the version to be updated exists, the application package is received.

3. The application installation method according to claim 2, characterized in that, When the version feedback information indicates the existence of the version to be updated, the step of receiving the application package includes: If a network anomaly causes transmission failure during the reception of the application packet, the location and size of the transmitted packets of the application packet are recorded. Once the network is confirmed to have returned to normal, the application packet is resumed to be transmitted based on the location and size of the previously transmitted packets.

4. The application installation method according to claim 1, characterized in that, When the testing organization conducts vulnerability testing and sensitive permission checks on the application installation package, it includes: The testing organization receives the application installation package transmitted by the application development vendor; The testing organization conducted vulnerability testing on the application installation package and obtained the vulnerability test results. If the vulnerability test results indicate that the application installation package has an application vulnerability, the testing organization will feed back the application installation package and vulnerability information to the application development vendor. If the vulnerability test results indicate that the application installation package does not have any application vulnerabilities, the testing organization will perform a sensitive permission check on the application installation package and obtain the permission check results. If the permission check result indicates that the application installation package has passed the sensitive permission check, the evaluation agency signs the application installation package to generate a signed application installation package.

5. The application installation method according to claim 4, characterized in that, After the testing organization signs the application installation package and generates the signed application installation package, the process further includes: The testing organization sends the signed application installation package to the ecosystem operation and maintenance system. The ecosystem operation and maintenance system and the testing organization have a pre-established network connection. The ecosystem operation and maintenance system includes at least a version manager and an application market manager. The version manager is used to store the application installation package and its version information. The application market manager is used to verify the signature and sensitive permissions of the signed application installation package. After the signature verification and sensitive permission verification are passed, the application market manager uploads the verified application installation package to the server.

6. The application installation method according to claim 1, characterized in that, After replacing the historical version application indicated by the application identifier with the application installation package in the operating system of the mobile terminal, and running the application installation package to obtain the new version application, the process further includes: The update status, update result, historical version number, version number to be updated, device identifier, device model, and upgrade time period of the application installation package are integrated into the reporting information; The reported information is transmitted to the server.

7. The application installation method according to claim 1, characterized in that, Also includes: Receive Over-the-Air (OTA) upgrade packages; The OTA upgrade package is security verified using a pre-installed security certificate, and the verification result is obtained. If the verification result indicates that the verification has passed, compare whether the current version of the OTA upgrade package is the same as the historical version stored in the mobile terminal; If the comparison results indicate that the versions are different, the historical version stored in the mobile terminal is updated using the OTA upgrade package.

8. A method for installing an application on a mobile terminal, characterized in that, This application is used on a server that interfaces with a mobile terminal. The mobile terminal has a trusted security protection system installed. Upon receiving a trusted security report, the trusted security protection system checks the mobile terminal's operating status. The trusted security protection system interfaces with a trusted service main system, which outputs the trusted security report to N mobile terminals, where N is a positive integer greater than or equal to 1. The application installation method includes: Receive application packages transmitted by the application market manager, wherein the types of application packages include: application initial installation packages and application upgrade packages, and the application packages include at least: application identifier and application installation package, wherein the application installation package is an installation package that has passed vulnerability testing and sensitive permission checks by the testing agency, and has also passed signature verification and sensitive permission verification by the ecosystem operation and maintenance system; Based on the application identifier, the application installation package, its version information, installation package parameters, and update log are stored in a preset application space. After receiving the application version query request from the mobile terminal, version feedback information is output to the mobile terminal. If the version feedback information indicates that an update is needed, the mobile terminal receives the application package and verifies the application package using the trusted security protection system to obtain a verification result. If the verification result indicates that the verification is successful, the application installation package is run on the mobile terminal's operating system. The application package type includes: application initial installation package and application upgrade package. The application package includes at least: application identifier and application installation package of the version to be updated.

9. The application installation method according to claim 8, characterized in that, Also includes: Receive device information, wherein the device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal; Enter the device information into the device management list.

10. The application installation method according to claim 8, characterized in that, Also includes: The device receives device operation logs and application upgrade logs reported by the mobile terminal. The device operation logs include: terminal identifier, terminal model, registration time, and operation status. The application upgrade logs include: current application version number, upgrade time, update log, and upgrade status. The device operation log and the application upgrade log are stored in a preset terminal device status table.

11. An ecosystem service system for mobile terminals, characterized in that, include: The testing organization receives the application installation package transmitted by the application development vendor, performs vulnerability testing and sensitive permission checks on the application installation package, and signs the application installation package that passes the vulnerability testing and sensitive permission checks to generate a signed application installation package. An ecosystem operation and maintenance system is connected to the testing organization and is used to verify the signature and sensitive permissions of the signed application installation package. After the signature verification and sensitive permission verification are passed, the verified application installation package is uploaded to the server. The server interfaces with at least one mobile terminal and executes the application installation method for the mobile terminal as described in any one of claims 8 to 10. A mobile terminal, performing the application installation method based on a mobile terminal as described in any one of claims 1 to 7, wherein the mobile terminal is equipped with a trusted security protection system, and the trusted security protection system detects the operating status of the mobile terminal after receiving a trusted security report.

12. The ecosystem service system according to claim 11, characterized in that, Also includes: A signing system is used to sign the application installation package and the system image, wherein the system image refers to a backup operation performed on the operating system of the mobile terminal.

13. The ecosystem service system according to claim 11, characterized in that, Also includes: The version management system is used to receive device information and enter the device information into the device management list. The device information includes: the terminal identifier, terminal model and terminal parameters of the newly added mobile terminal. The version management system is also used to maintain the historical version information, version change records, and applicable terminal model information of the application installation package.

14. The ecosystem service system according to claim 11, characterized in that, Also includes: The application manager displays application information and application type for all applications, and is responsible for the transfer and signature verification of application installation packages; The application manager is also used to configure sensitive permissions for each application.

15. An electronic device, characterized in that, include: processor; as well as Memory for storing the executable instructions of the processor; The processor is configured to execute the application installation method based on any one of claims 1 to 7 by executing the executable instructions.

16. A computer-readable storage medium, characterized in that, The computer-readable storage medium includes a stored computer program, wherein, when the computer program is executed, it controls the device on which the computer-readable storage medium is located to perform the application installation method based on any one of claims 1 to 7.