Security tool determination method and apparatus, device, and storage medium

By acquiring relevant information from online banking services and using preset security tool templates for matching and filtering, the final security tool is automatically determined. This solves the adaptability problem of security tool selection in online banking services and achieves automated adaptation and enhanced security of security tools.

CN116366352BActive Publication Date: 2025-11-04BANK OF CHINA
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202310393345.7
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2023-04-13
Publication Date
2025-11-04
Estimated Expiration
2043-04-13

AI Technical Summary

Technical Problem

Existing technologies lack a method to automatically determine the security tools required for online banking operations, and cannot adapt to the differences in security level requirements across different regions and businesses.

Method used

By acquiring business-related information, including first business-related identifiers and specific data, matching and filtering are performed using preset security tool templates to determine the final security tool template, and the corresponding security tools are determined based on the template.

Benefits of technology

It enables the automatic determination of appropriate security tools in different regions and business scenarios, meeting the security level requirements of various regions and businesses, and improving the security and adaptability of online banking services.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116366352B_ABST
    Figure CN116366352B_ABST
Patent Text Reader

Abstract

The application provides a security tool determination method, device and equipment and a storage medium, which can be used in the technical field of network security. The method comprises the following steps: obtaining service-related information to be processed; the service-related information comprises a first service-related identifier and specific data corresponding to the first service-related identifier; determining at least one preliminary selected security tool template matched according to the first service-related identifier; determining a final security tool template from the preliminary selected security tool template according to the specific data; and determining a corresponding security tool according to the final security tool template. According to the security tool determination method, the security tool template is pre-set according to the first service-related identifier and the specific data, and the corresponding security tool can be determined according to the final security tool template in different scenes.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the network security technical field, and particularly relates to a security tool determination method and device, equipment and a storage medium. BACKGROUND

[0002] In the financial field, such as banks, the online business is gradually globalized. Since network security is very important in the financial field, when performing online global business, a suitable security tool needs to be selected. Different regions have different security level requirements for the same business. For example, for SWIFT (Society for Worldwide Interbank Financial Telecommunication) remittance, some countries require two security tools, namely, a short message verification code and a dynamic token, and some countries only require a short message verification code. Meanwhile, different online businesses also have different security level requirements.

[0003] Therefore, due to the different security level requirements of different regions and different businesses, there is currently a lack of a method for automatically determining a security tool for bank online business. SUMMARY

[0004] The present application provides a security tool determination method, device, equipment and storage medium to solve the problem of the lack of a method for automatically determining a security tool for bank online business.

[0005] The first aspect of the present application provides a security tool determination method, comprising:

[0006] obtaining business related information to be processed; the business related information comprises a first business related identifier and specific data corresponding to the first business related identifier;

[0007] determining at least one initial security tool template matched according to the first business related identifier;

[0008] determining a final security tool template from the initial security tool template according to the specific data;

[0009] determining a corresponding security tool according to the final security tool template.

[0010] Further, the method described above, the determining at least one initial security tool template matched according to the first business related identifier, comprises:

[0011] find a matched preset security tool template from all preset security tool templates stored in a preset storage database; the preset security tool template comprises a second business-related identifier; the second business-related identifier of the matched preset security tool template is identical to the first business-related identifier;

[0012] determine the matched preset security tool template as a preliminary selected security tool template.

[0013] Further, the method as described above, the preset security tool template further comprises: a data range corresponding to the second business-related identifier; and the preliminary selected security tool template is multiple.

[0014] The determining the final security tool template from the preliminary selected security tool template according to the specific data comprises:

[0015] screening each preliminary selected security tool template according to the specific data to determine the final security tool template; the specific data is in the data range of the final security tool template.

[0016] Further, the method as described above, the obtaining the business-related information to be processed comprises:

[0017] receiving a business processing request to be processed sent by a user terminal;

[0018] determining the business-related information from the business processing request.

[0019] Further, the method as described above, the first business-related identifier comprises: a user attribute identifier.

[0020] The determining the matched preliminary selected security tool template according to the first business-related identifier comprises:

[0021] determining a generated area corresponding to the business processing request according to the user attribute identifier;

[0022] determining a corresponding preliminary selected security tool template from all preset security tool templates stored in a preset storage database according to the generated area; the generated area and the preliminary selected security tool template have a mapping relationship.

[0023] Further, the method as described above, the determining the generated area corresponding to the business processing request according to the user attribute identifier comprises:

[0024] determining a location area where a user terminal is currently located according to the user attribute identifier;

[0025] determining the location area as the generated area corresponding to the business processing request.

[0026] Further, the method as described above, the first business-related identifier further comprises a business processing identifier; the specific data comprises business-specific data corresponding to the business processing identifier; and the preliminary security tool templates are multiple.

[0027] The determining of the final security tool template from the preliminary security tool templates according to the specific data comprises:

[0028] The screening of each preliminary security tool template according to the business-specific data to determine the final security tool template; and the first business-specific data is within the business data range of the final security tool template.

[0029] Further, the method as described above, after the determining of the corresponding security tool according to the final security tool template, further comprises:

[0030] Returning the security tool to the user terminal for security verification processing.

[0031] Further, the method as described above, the method further comprises:

[0032] In response to the user's setting processing of the second business-related identifier of the initial security tool template, the data range corresponding to the second business-related identifier, and the security tool, generating a corresponding preset security tool template.

[0033] The second aspect of the present application provides a security tool determination device, comprising:

[0034] An acquisition module is configured to acquire business-related information to be processed; the business-related information comprises a first business-related identifier and specific data corresponding to the first business-related identifier.

[0035] A first determination module is configured to determine at least one matched preliminary security tool template according to the first business-related identifier.

[0036] A second determination module is configured to determine a final security tool template from the preliminary security tool templates according to the specific data.

[0037] A third determination module is configured to determine a corresponding security tool according to the final security tool template.

[0038] Further, the device as described above, the first determination module is specifically configured to:

[0039] find a matched preset security tool template from all preset security tool templates stored in a preset storage database; the preset security tool template comprises a second service-related identifier; the second service-related identifier of the matched preset security tool template is the same as the first service-related identifier; and the matched preset security tool template is determined as a preliminary selected security tool template.

[0040] Further, the apparatus as described above, the preset security tool template further comprises: a data range corresponding to the second service-related identifier; and the preliminary selected security tool template is multiple.

[0041] The second determining module is specifically configured to:

[0042] The preliminary selected security tool templates are filtered according to the specific data to determine a final security tool template; and the specific data is in the data range of the final security tool template.

[0043] Further, the apparatus as described above, the obtaining module is specifically configured to:

[0044] receive a service processing request to be processed sent by a user terminal; and determine the service-related information from the service processing request.

[0045] Further, the apparatus as described above, the first service-related identifier comprises: a user attribute identifier.

[0046] The first determining module is specifically configured to:

[0047] determine a generated area corresponding to the service processing request according to the user attribute identifier; determine a corresponding preliminary selected security tool template from all preset security tool templates stored in a preset storage database according to the generated area; and the generated area and the preliminary selected security tool template have a mapping relationship.

[0048] Further, the apparatus as described above, when determining the generated area corresponding to the service processing request according to the user attribute identifier, the first determining module is specifically configured to:

[0049] determine a location area where a user terminal is currently located according to the user attribute identifier; and determine the location area as the generated area corresponding to the service processing request.

[0050] Further, the apparatus as described above, the first service-related identifier further comprises: a service processing identifier; the specific data comprises: service specific data corresponding to the service processing identifier; and the preliminary selected security tool template is multiple.

[0051] The second determining module is specifically configured to:

[0052] The first business-specific data is in a business data range of the final security tool template.

[0053] Further, the apparatus as described above, the apparatus further comprises:

[0054] The verification module is configured to return the security tool to the user terminal for security verification processing.

[0055] Further, the apparatus as described above, the apparatus further comprises:

[0056] The generation module is configured to generate a preset security tool template corresponding to the initial security tool template in response to a user setting processing of a second business-related identifier of the initial security tool template, a data range corresponding to the second business-related identifier, and the security tool.

[0057] The third aspect of the present application provides an electronic device, comprising a memory and a processor;

[0058] The memory stores computer execution instructions;

[0059] The processor executes the computer execution instructions stored in the memory to implement the security tool determination method according to any one of the first aspect.

[0060] The fourth aspect of the present application provides a computer readable storage medium, the computer readable storage medium stores computer execution instructions, and the computer execution instructions are executed by the processor to implement the security tool determination method according to any one of the first aspect.

[0061] The fifth aspect of the present application provides a computer program product, comprising a computer program, and the computer program is executed by the processor to implement the security tool determination method according to any one of the first aspect.

[0062] This application provides a method, apparatus, device, and storage medium for determining security tools. The method includes: acquiring business-related information to be processed; the business-related information includes: a first business-related identifier and specific data corresponding to the first business-related identifier; determining at least one matching preliminary security tool template based on the first business-related identifier; determining a final security tool template from the preliminary security tool templates based on the specific data; and determining a corresponding security tool based on the final security tool template. The security tool determination method of this application, because the security tool templates are pre-set based on the first business-related identifier and the specific data, can determine at least one matching preliminary security tool template based on the first business-related identifier in the business-related information, and simultaneously determine the final security tool template from the preliminary security tool templates based on the specific data in the business-related information. Therefore, the corresponding security tool can be determined based on the final security tool template in different scenarios. Attached Figure Description

[0063] The accompanying drawings, which are incorporated in and form part of this specification, illustrate embodiments consistent with this application and, together with the description, serve to explain the principles of this application.

[0064] Figure 1 This is a scenario diagram illustrating how the security tool determination method of the embodiments of this application can be implemented;

[0065] Figure 2 Flowchart of the method for determining security tools provided in this application Figure 1 ;

[0066] Figure 3 Flowchart of the method for determining security tools provided in this application Figure 2 ;

[0067] Figure 4 A schematic diagram of the overall process for determining the security tools provided in this application;

[0068] Figure 5 A schematic diagram of the safety tool determining device provided in this application;

[0069] Figure 6 A schematic diagram of the structure of the electronic device provided in this application.

[0070] The accompanying drawings illustrate specific embodiments of this application, which will be described in more detail below. These drawings and descriptions are not intended to limit the scope of the concept in any way, but rather to illustrate the concept of this application to those skilled in the art through reference to particular embodiments. Detailed Implementation

[0071] The exemplary embodiments will be described in detail herein with reference to the attached drawings. In the following description, like reference numerals refer to like elements throughout the description. The following exemplary embodiments described herein represent illustrations of devices and methods consistent with aspects of the present application as detailed in the appended claims. They are not meant to be an exhaustive list of all implementations consistent with aspects of the present application.

[0072] The collection, storage, use, processing, transmission, provision and disclosure of user personal information in the technical solutions of the embodiments of the present application comply with relevant laws and regulations and do not violate public order and good customs.

[0073] It should be noted that the user information (including but not limited to user equipment information, user personal information, etc.) and data (including but not limited to data for analysis, stored data, displayed data, etc.) involved in the present application are all information and data authorized by the user or authorized by all parties, and the collection, use and processing of related data need to comply with relevant laws and regulations and standards of relevant countries and regions, and provide corresponding operation portal for user to choose authorization or refusal.

[0074] It should be noted that the security tool determination method, device, equipment and storage medium of the present application can be used in the field of network security technology. It can also be used in any field other than the field of network security technology. The application field of the security tool determination method, device, equipment and storage medium of the present application is not limited.

[0075] The technical solutions of the present application will be described in detail below with specific embodiments. The following specific embodiments can be combined with each other, and the same or similar concepts or processes may not be described again in some embodiments. The embodiments of the present application will be described below with reference to the drawings.

[0076] In order to clearly understand the technical solutions of the present application, the prior art solutions will be described in detail first. Since network security is very important in the financial field, when conducting online global business, appropriate security tools need to be selected. Different countries have different security level requirements for the same business, for example, for SWIFT, some countries require two security tools, SMS verification code and dynamic token, while some countries only require SMS verification code. At the same time, different online businesses may not have the same security level requirements, some are related to the amount, some are related to whether they are local residents, some are related to the level of customers, etc. Therefore, due to the different security level requirements of different regions and different businesses, there is currently a lack of a method that can automatically determine the security tool for bank online business.

[0077] Therefore, in order to solve the problem that there is no method for automatically determining a security tool for online banking in the prior art, the inventor finds that a security tool template can be set, and when a customer initiates a service request, the system automatically adapts a corresponding template according to the service-related information of the customer to obtain a corresponding security tool.

[0078] Specifically, service-related information to be processed is obtained. The service-related information includes a first service-related identifier and specific data corresponding to the first service-related identifier. At least one preliminary security tool template matched according to the first service-related identifier is determined. A final security tool template is determined from the preliminary security tool template according to the specific data. A corresponding security tool is determined according to the final security tool template.

[0079] The security tool determination method of the present application can determine at least one preliminary security tool template matched according to the first service-related identifier in the service-related information, and determine a final security tool template from the preliminary security tool template according to the specific data in the service-related information, because the security tool template is set in advance according to the first service-related identifier and the specific data. Therefore, the corresponding security tool can be determined according to the final security tool template in different scenarios.

[0080] Based on the above creative findings, the inventor proposes the technical solution of the present application.

[0081] The application scenario of the security tool determination method provided by the embodiments of the present application will be introduced below. As shown in Figure 1 The network architecture of the application scenario corresponding to the security tool determination method provided by the embodiments of the present application includes a first electronic device 1 and a second electronic device 2. The second electronic device 2 stores service-related information to be processed, which can be obtained from a service processing request sent by a user terminal.

[0082] For example, the second electronic device 2 sends service-related information to be processed to the first electronic device 1, where the service-related information includes a first service-related identifier and specific data corresponding to the first service-related identifier. The first electronic device 1 determines at least one preliminary security tool template matched according to the first service-related identifier, and determines a final security tool template from the preliminary security tool template according to the specific data. The first electronic device 1 determines a corresponding security tool according to the final security tool template. At this time, the first electronic device 1 can send the security tool to the second electronic device 2, and the second electronic device 2 performs security verification processing using the corresponding security tool.

[0083] The embodiments of the present application will be introduced below in conjunction with the drawings of the specification.

[0084] Figure 2 Flowchart of the security tool determination method provided in the present application Figure 1 As shown in the figure, in the embodiment, the execution subject of the present embodiment is a security tool determination device, which can be integrated in an electronic device. The security tool determination method provided in the embodiment includes the following steps: Figure 2 Step S101, obtaining service-related information to be processed. The service-related information includes a first service-related identifier and specific data corresponding to the first service-related identifier.

[0085] In the embodiment, the service-related information to be processed can be obtained according to a service processing request sent by a user terminal. The service-related information refers to information related to online services, including a first service-related identifier and specific data corresponding to the first service-related identifier.

[0086] The first service-related identifier includes user attribute identifiers, service processing identifiers, bank identifiers, etc. The user attribute identifiers include user names, user levels, user ages, user places of birth, etc. The service processing identifiers include service types, service stages, service types, transfer currencies, transfer amounts, transfer types, etc. The bank identifiers include bank numbers and bank names.

[0087] The specific data corresponding to the first service-related identifier is specific text, specific numerical value, etc., such as the specific data of the user name being user a, the specific data of the user age being 20, and the specific data of the service type being a transfer transaction service, etc.

[0088] Step S102, determining at least one preliminary selected security tool template matched according to the first service-related identifier.

[0089] In the embodiment, the first service-related identifier can be matched with at least one preliminary selected security tool template. The preliminary selected security tool template can be determined according to the first service-related identifier from all preset security tool templates, or the preliminary selected security tool template matched can be directly determined according to the first service-related identifier, wherein the preliminary selected security tool template and the first service-related identifier have a mapping relationship.

[0090] The preset security tool template and the preliminary selected security tool template can be preset. Both the preset security tool template and the preliminary selected security tool template include preset service-related identifiers and security tool identifiers. Both the preset security tool template and the preliminary selected security tool template can be stored in a preset storage database for subsequent use.

[0091] Step S103, determining a final security tool template from the preliminary selected security tool template according to the specific data.

[0092]

[0093] In this embodiment, the preliminary security tool templates can be one or more, and the final security tool template can be selected from the preliminary security tool templates according to the specific data. For example, the preliminary security tool templates can be selected according to the data range of the specific data. Each preliminary security tool template is provided with a data range corresponding to the specific data. If the specific data is within the data range set by the security tool template, it means that the corresponding preliminary security tool template is the final security tool template.

[0094] In step S104, the corresponding security tool is determined according to the final security tool template.

[0095] The final security tool template is provided with the identification of the corresponding security tool and the acquisition address of the security tool. The corresponding security tool can be directly determined according to the final security tool template, or the corresponding security tool can be directly acquired according to the final security tool template.

[0096] The security tool determination method provided by the embodiment of the application includes: obtaining service-related information to be processed. The service-related information includes a first service-related identifier and specific data corresponding to the first service-related identifier. At least one preliminary security tool template matched is determined according to the first service-related identifier. A final security tool template is determined from the preliminary security tool templates according to the specific data. The corresponding security tool is determined according to the final security tool template.

[0097] The security tool determination method provided by the application can determine at least one preliminary security tool template matched according to the first service-related identifier in the service-related information, and determine a final security tool template from the preliminary security tool templates according to the specific data in the service-related information, because the security tool templates are pre-set according to the first service-related identifier and the specific data. Therefore, the corresponding security tool can be determined according to the final security tool template in different scenarios.

[0098] Figure 3 The flowchart of the security tool determination method provided by the application Figure 2 As shown in Figure 3 The security tool determination method provided by the embodiment is further refined on the basis of the security tool determination method provided by the previous embodiment of the application. The security tool determination method provided by the embodiment includes the following steps.

[0099] In step S201, the service processing request to be processed sent by the user terminal is received.

[0100] In this embodiment, when the service processing request to be processed sent by the user terminal is received, the service processing request is processed to obtain the corresponding service-related information. The service processing request generally includes service-related information, a sending address, a sending time and other information.

[0101] Step S202, determine the service related information from the service processing request.

[0102] In this embodiment, the service related information to be determined can be pre-set, such as determined according to the service related information contained in the preset security tool template set by the preset setting. For example, the preset security tool template includes the second service related identifier and the data range of the specific data corresponding to the second service related identifier. Then the service related information determined from the service processing request can be the second service related identifier and the specific data corresponding to the second service related identifier.

[0103] Step S203, find the matched preset security tool template from all preset security tool templates stored in the preset storage database. The preset security tool template includes the second service related identifier. The second service related identifier of the matched preset security tool template is the same as the first service related identifier.

[0104] In this embodiment, for example, it is assumed that the second service related identifier in the preset security tool template a is a transfer service, and the user level is B. It is assumed that the second service related identifier in the preset security tool template b is a transfer service. It is assumed that the second service related identifier in the preset security tool template c is the user's place of origin and the transfer service. The first service related identifier in the service related information is a transfer service, and the user level is B. Then it can be determined that the matched preset security tool template is the preset security tool template a.

[0105] Step S204, determine the matched preset security tool template as the preliminary selected security tool template.

[0106] In this embodiment, the first service related identifier and the second service related identifier are used for the first screening, and the preliminary selected security tool template is screened from all preset security tool templates, which can provide a basis for determining the final security tool template subsequently.

[0107] The preset security tool template further includes: a data range corresponding to the second service related identifier. The preliminary selected security tool template is multiple.

[0108] Step S205, screen each preliminary selected security tool template according to the specific data to determine the final security tool template. The specific data is in the data range of the final security tool template.

[0109] In this embodiment, for example, if the specific data is a transfer amount of 10,000, the data range of the primary security tool template a is 3,000-9,000, and the data range of the primary security tool template b is 5,000-14,000, the primary security tool template b is the final security tool template. Similarly, if the specific data is a user level B, the data range of the primary security tool template a is a user level greater than or equal to B, and the data range of the primary security tool template b is a user level greater than C and less than B, the primary security tool template a is the final security tool template.

[0110] In step S206, the corresponding security tool is determined according to the final security tool template.

[0111] In this embodiment, the implementation of step 206 is similar to the implementation of step 104 of the previous embodiment, and will not be repeated here.

[0112] Optionally, in this embodiment, after S206, it further includes:

[0113] The security tool is returned to the user terminal for security verification processing.

[0114] After determining the security tool, the security tool can also be returned to the user terminal to implement security verification processing.

[0115] Optionally, in this embodiment, the security tool template can also be pre-set, modified, and the like, and the specific process is as follows:

[0116] In response to the user's setting processing of the initial security tool template, the second business-related identifier, the data range corresponding to the second business-related identifier, and the security tool, the corresponding preset security tool template is generated.

[0117] In this embodiment, the security tool can be directly embedded in the initial security tool template to facilitate subsequent security verification processing using the security tool. When the user needs to modify the initial security tool template, the generated preset security tool template can be modified at any time, and when a new preset security tool template is needed, the initial security tool template can be processed as described above.

[0118] In this embodiment, another way can also be used to determine the final security tool template, thereby determining the corresponding security tool. The idea of this method is based on regions, and the regions are used for preliminary screening, and the specific process is as follows:

[0119] Optionally, in this embodiment, the first business-related identifier includes a user attribute identifier.

[0120] S203 and S204 can be replaced by:

[0121] The generating area corresponding to the service processing request is determined according to the user attribute identifier.

[0122] The initial security tool template corresponding to the generating area is determined from all preset security tool templates stored in the preset storage database. The generating area and the initial security tool template have a mapping relationship.

[0123] In the embodiment, the way of determining the initial security tool template is the way of determining the generating area based on the service processing request. Since different regions have different security level requirements for the same service, the corresponding security tool template can be set in advance for each region. Thus, the initial security tool template corresponding to the generating area is determined from all preset security tool templates stored in the preset storage database based on the generating area corresponding to the service processing request.

[0124] Optionally, in the embodiment, the process of determining the generating area corresponding to the service processing request according to the user attribute identifier can be specifically as follows:

[0125] The location area where the user terminal is currently located is determined according to the user attribute identifier.

[0126] The location area is determined as the generating area corresponding to the service processing request.

[0127] The specific location area where the user terminal is currently located is determined according to the user attribute identifier such as the user's frequent area, so that the specific location area where the user terminal is currently located can be determined. The specific location area of the user terminal can also be determined by, for example, the network address of the request. Thus, the initial security tool template matched with the generating area can be determined based on the generating area.

[0128] Optionally, in the embodiment, the first service related identifier further includes a service processing identifier. The specific data includes service specific data corresponding to the service processing identifier. The initial security tool template is multiple.

[0129] S205 can be replaced by:

[0130] Each initial security tool template is screened according to the service specific data to determine the final security tool template. The first service specific data is in the service data range of the final security tool template.

[0131] In the embodiment, for example, if the specific data is a transaction amount of 20,000, the data range of the initial security tool template a is 3,000-9,000, and the data range of the initial security tool template b is 10,000-20,000, the initial security tool template b is the final security tool template.

[0132] In the embodiment, the overall process is as follows: Figure 4As shown, first, a security tool template is preset and stored. In actual application, for each bank or branch, a preset security tool template can be loaded according to a row number and a service number. Meanwhile, dimensions of the security tool template, i.e. the business-related identifier in the foregoing embodiment and the data range of the specific data corresponding to the business-related identifier, are obtained. When a user terminal initiates a business processing request, the business-related information in the business processing request is obtained according to the dimensions of the security tool template, and meanwhile, the matched security tool template is screened according to the business-related information. After the matched security tool template is determined, the security tool is returned to the user terminal for security verification processing.

[0133] In this embodiment, the combination of security tools is very flexible, supporting single security tools such as SMS verification code, dynamic password, email verification code, fingerprint, face, etc., and also supporting combined security tools such as SMS verification code + dynamic password, so as to meet various regulatory requirements of overseas banks.

[0134] 2. The corresponding security tool template can be dynamically matched according to the transaction information input by the customer

[0135] Figure 5 The structure schematic diagram of the security tool determination apparatus provided in the present application is shown in Figure 5 As shown, in this embodiment, the security tool determination apparatus 300 can be arranged in an electronic device, and the security tool determination apparatus 300 comprises:

[0136] The acquisition module 301 is configured to acquire business-related information to be processed. The business-related information comprises a first business-related identifier and specific data corresponding to the first business-related identifier.

[0137] The first determination module 302 is configured to determine at least one preliminary security tool template matched according to the first business-related identifier.

[0138] The second determination module 303 is configured to determine a final security tool template from the preliminary security tool template according to the specific data.

[0139] The third determination module 304 is configured to determine a corresponding security tool according to the final security tool template.

[0140] The security tool determination apparatus provided in this embodiment can execute the technical solutions of the method embodiment shown in Figure 2 The implementation principle and technical effects are similar to those of the method embodiment shown in Figure 2 Therefore, they will not be described here one by one.

[0141] The security tool determination apparatus provided in the present application further refines the security tool determination apparatus provided in the foregoing embodiment, and the security tool determination apparatus 300 comprises:

[0142] Optionally, in the embodiment, the first determining module 302 is specifically configured to:

[0143] find a matched preset security tool template from all preset security tool templates stored in the preset storage database. The preset security tool template comprises a second business-related identifier. The second business-related identifier of the matched preset security tool template is the same as the first business-related identifier. The matched preset security tool template is determined as a preliminary selected security tool template.

[0144] Optionally, in the embodiment, the preset security tool template further comprises a data range corresponding to the second business-related identifier. There are a plurality of preliminary selected security tool templates.

[0145] The second determining module 303 is specifically configured to:

[0146] screen the preliminary selected security tool templates according to specific data to determine a final security tool template. The specific data is in the data range of the final security tool template.

[0147] Optionally, in the embodiment, the obtaining module 301 is specifically configured to:

[0148] receive a service processing request to be processed sent by a user terminal. Determine business-related information from the service processing request.

[0149] Optionally, in the embodiment, the first business-related identifier comprises a user attribute identifier.

[0150] The first determining module 302 is specifically configured to:

[0151] determine a generation area corresponding to the service processing request according to the user attribute identifier. Determine a corresponding preliminary selected security tool template from all preset security tool templates stored in the preset storage database according to the generation area. The generation area and the preliminary selected security tool template have a mapping relationship.

[0152] Optionally, in the embodiment, when determining the generation area corresponding to the service processing request according to the user attribute identifier, the first determining module 302 is specifically configured to:

[0153] determine a location area where the user terminal is currently located according to the user attribute identifier. Determine the location area as the generation area corresponding to the service processing request.

[0154] Optionally, in the embodiment, the first business-related identifier further comprises a service processing identifier. The specific data comprises service specific data corresponding to the service processing identifier. There are a plurality of preliminary selected security tool templates.

[0155] The second determining module 303 is specifically configured to:

[0156] The first service-specific data is in the service data range of the final security tool template.

[0157] Optionally, in the embodiment, the security tool determination apparatus 300 further comprises:

[0158] The verification module is configured to return the security tool to the user terminal for security verification processing.

[0159] Optionally, in the embodiment, the security tool determination apparatus 300 further comprises:

[0160] The generation module is configured to generate a preset security tool template corresponding to the initial security tool template in response to the user's setting processing of the second service-related identifier of the initial security tool template, the data range corresponding to the second service-related identifier, and the security tool.

[0161] The security tool determination apparatus provided in the embodiment can perform Figures 2-4 The technical solutions of the method embodiment, the implementation principles and the technical effects are similar to those of the security tool determination apparatus embodiment, and will not be repeated here. Figures 2-4

[0162] According to the embodiments of the present application, the present application further provides an electronic device, a computer readable storage medium and a computer program product.

[0163] As Figure 6 shown, Figure 6 is a structural schematic diagram of an electronic device provided by the present application. The electronic device is intended for various forms of digital computers, such as laptop computers, desktop computers, workstations, personal digital assistants, blade servers, mainframe computers, and other suitable computers. The components shown herein, their connections and relationships, and their functions, are merely examples and are not intended to limit the implementation of the present application described and / or claimed herein.

[0164] As Figure 6 shown, the electronic device includes a processor 401 and a memory 402. The various components are connected to each other by different buses, and can be installed on a common mainboard or otherwise as needed. The processor can process instructions executed within the electronic device.

[0165] ​The memory 402 is a non-transitory computer readable storage medium provided by the present application. The memory stores instructions executable by the at least one processor, so that the at least one processor executes the security tool determination method provided by the present application. The non-transitory computer readable storage medium of the present application stores computer instructions for causing a computer to execute the security tool determination method provided by the present application.

[0166] The memory 402 is a non-transitory computer readable storage medium, which can be used to store non-transitory software programs, non-transitory computer executable programs and modules, such as program instructions / modules of the security tool determination method in the embodiments of the present application (for example, the acquisition module 301, the first determination module 302, the second determination module 303 and the third determination module 304 shown in the embodiments of the present application). Figure 5 The processor 401 executes various function applications and data processing of the electronic device by running the non-transitory software programs, instructions and modules stored in the memory 402, that is, implements the security tool determination method in the above method embodiments.

[0167] Meanwhile, the present embodiment also provides a computer product. When the instructions in the computer product are executed by the processor of the electronic device, the electronic device can execute the security tool determination method of the above embodiments.

[0168] Other embodiments of the present application will be apparent to those skilled in the art from consideration of the specification and practice of the application disclosed herein. The present application is intended to cover any variations, uses or adaptive changes of the present application embodiments following the general principles of the present application embodiments and including known or customary practices in the art not expressly disclosed in the present application.

[0169] It should be understood that the present application embodiments are not limited to the precise construction that has been described above and shown in the accompanying drawings, and that various modifications and changes can be made by those skilled in the art without departing from the scope of the present application embodiments. The scope of the present application embodiments is limited only by the appended claims.

Claims

1. A method for determining a security tool, characterized in that, include: Receive pending service processing requests sent by user terminals; Determine business-related information from the business processing request; The business-related information includes: a first business-related identifier and the specific data corresponding to the first business-related identifier; At least one initial security tool template is determined based on the first business-related identifier; The final security tool template is determined from the initial security tool template based on the specific data. Determine the corresponding security tool based on the final security tool template; If the first service-related identifier includes: user attribute identifier and service processing identifier, the specific data includes: specific service data corresponding to the service processing identifier; The step of determining at least one initial security tool template based on the first service-related identifier includes: The current location area of ​​the user terminal is determined based on the user attribute identifier; The location region is determined as the generation region corresponding to the business processing request; Based on the generated region, a corresponding initial security tool template is determined from all preset security tool templates stored in the preset storage database; there is a mapping relationship between the generated region and the initial security tool template; there are multiple initial security tool templates. The step of determining the final security tool template from the initial selection of security tool templates based on the specific data includes: The initial security tool templates are filtered based on the specific business data to determine the final security tool template; the specific business data falls within the business data range of the final security tool template.

2. The method according to claim 1, characterized in that, The step of determining at least one initial security tool template based on the first service-related identifier includes: The system searches for a matching preset security tool template from all preset security tool templates stored in the preset storage database; the preset security tool template includes a second business-related identifier; the second business-related identifier of the matching preset security tool template is the same as the first business-related identifier; The matched preset security tool template is selected as the initial security tool template.

3. The method according to claim 2, characterized in that, The preset security tool template also includes: the data range corresponding to the second business-related identifier; there are multiple initial security tool templates; The step of determining the final security tool template from the initial security tool templates based on the specific data includes: The initial security tool templates are filtered based on the specific data to determine the final security tool template; the specific data is within the data range of the final security tool template.

4. The method according to any one of claims 1 to 3, characterized in that, After determining the corresponding security tool based on the final security tool template, the process further includes: The security tool is then returned to the user terminal for security verification.

5. The method according to any one of claims 1 to 3, characterized in that, The method further includes: In response to the user's settings for the second business-related identifier of the initial security tool template, the data range corresponding to the second business-related identifier, and the security tool settings, a corresponding preset security tool template is generated.

6. A safety tool determining device, characterized in that, include: The acquisition module is used to receive pending service processing requests sent by user terminals and determine service-related information from the service processing requests. The business-related information includes: a first business-related identifier and the specific data corresponding to the first business-related identifier; The first determining module is used to determine at least one matching initial security tool template based on the first business-related identifier; The second determining module is used to determine the final security tool template from the initial security tool templates based on the specific data. The third determining module is used to determine the corresponding security tool based on the final security tool template. If the first service-related identifier includes: user attribute identifier and service processing identifier, the specific data includes: specific service data corresponding to the service processing identifier; The first determining module is specifically used to determine the current location area of ​​the user terminal based on the user attribute identifier; The location region is determined as the generation region corresponding to the business processing request; Based on the generated region, a corresponding initial security tool template is determined from all preset security tool templates stored in the preset storage database; there is a mapping relationship between the generated region and the initial security tool template; there are multiple initial security tool templates. The second determining module is specifically used to filter each of the preliminary security tool templates based on the specific business data to determine the final security tool template; the specific business data is within the business data range of the final security tool template.

7. An electronic device, characterized in that, include: Memory and processor; The memory stores computer-executed instructions; The processor executes computer execution instructions stored in the memory to implement the security tool determination method as described in any one of claims 1 to 5.

8. A computer-readable storage medium, characterized in that, The computer-readable storage medium stores computer-executable instructions, which, when executed by a processor, are used to implement the security tool determination method as described in any one of claims 1 to 5.

9. A computer program product, characterized in that, The computer program product includes a computer program that, when executed by a processor, is used to implement the security tool determination method as described in any one of claims 1 to 5.

Citation Information

Patent Citations

  • System and method for carrying out secure data transmission between devices

    CN106657158A