Method for preventing loss of control of a secure mobile communication system based on terminal co-signing decision control

CN116647846BActive Publication Date: 2026-08-28NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202310603893.8
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2023-05-26
Publication Date
2026-08-28
Estimated Expiration
2043-05-26

AI Technical Summary

Technical Problem

[0003]由于实际应用中,公安、武警等特殊用户面临复杂地域的任务保障需求,便携/车载式等机动式移动通信系统,同步配套部署核心网保密产品,以支撑特殊用户的保密勤务调度通信应用,实现通信补盲,而机动环境下移动通信核心网和移动终端同样面临失控风险,尤其核心网保密产品失控的应急处理机制缺乏,对系统整体安全将带来严重威胁

Benefits of technology

[0022] The secure mobile communication system anti-loss-of-control method based on terminal joint name decision control described in this invention can be applied to secure mobile communication systems in mobile environments, effectively reducing the security threats to the entire system caused by loss of control of secure equipment such as the core network or mobile terminals; at the same time, the combination of joint name of multiple mobile terminals and user confirmation can prevent the risk of uncontrolled destruction of core network secure equipment in the event of network attacks on individual mobile terminals or coercion of mobile users.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116647846B_ABST
    Figure CN116647846B_ABST
Patent Text Reader

Abstract

The application provides a method for preventing loss of control of a secret mobile communication system based on terminal co-sign decision management and control, comprising: after an authorized mobile terminal user knows the loss of control information of the secret mobile communication system, inviting other mobile terminals to initiate a co-sign destruction instruction to the loss of control secret equipment in the secret mobile communication system; the loss of control secret equipment counts the legal co-sign destruction instructions received from different mobile terminals, and when the number of counted co-sign destruction instructions is greater than a set co-sign destruction instruction safety number threshold, immediately destroys internal key information and stops working. The application can be applied to the secret mobile communication system in a mobile environment, effectively reduces the security threat to the whole system caused by the loss of control of the core network or the secret equipment such as the mobile terminal; meanwhile, the combination of co-sign of multiple mobile terminals and user confirmation can prevent the risk of uncontrolled destruction of the core network secret equipment under the condition that individual mobile terminals are attacked by the network or mobile users are threatened.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of secure mobile communication technology, and more specifically, to a method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control. Background Technology

[0002] In secure mobile communication systems, mobile terminals often face loss, theft, or other loss of control. To prevent the loss of control of mobile terminals from threatening the secure communication of other mobile terminals under the system, remote control destruction of out-of-control mobile terminals is usually carried out based on security products deployed in the system's core network.

[0003] In practical applications, special users such as public security and armed police face mission support needs in complex areas. Portable / vehicle-mounted and other mobile mobile communication systems are deployed in tandem with core network security products to support the security-related dispatch communication applications of special users and fill communication gaps. However, in mobile environments, the mobile communication core network and mobile terminals also face the risk of loss of control. In particular, the lack of emergency handling mechanisms for loss of control of core network security products poses a serious threat to the overall security of the system. Summary of the Invention

[0004] This invention aims to provide a method for preventing loss of control in a secure mobile communication system based on joint decision-making and control of terminals. This method, through an authorized joint decision-making and control mechanism for mobile terminals, initiates remote destruction of the uncontrolled core network or secure mobile terminal products, thereby preventing the uncontrolled mobile secure products from posing a security threat to the mobile terminals under the system's jurisdiction or other systems, and improving the system's overall anti-loss capability.

[0005] This invention provides a method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and management, comprising:

[0006] After an authorized mobile terminal user becomes aware of the information that the secure mobile communication system is out of control, other mobile terminals can be invited to jointly initiate a destruction order for the out-of-control secure devices in the secure mobile communication system.

[0007] The uncontrolled security device counts the legitimate joint destruction commands received from different mobile terminals. When the count exceeds the set security threshold for the number of joint destruction commands, it immediately destroys the internal critical information and stops working.

[0008] Furthermore, the following steps are included:

[0009] S1, after the authorized mobile terminal user is aware of the information that the secure mobile communication system is out of control, he / she can operate mobile terminal A to initiate a joint destruction of the out-of-control secure equipment;

[0010] S2, Mobile terminal A generates a joint destruction request and sends it to different mobile terminals respectively;

[0011] S3, Mobile terminal X, which received the joint destruction request, pops up a joint destruction request prompt;

[0012] S4, confirm the pop-up joint destruction request prompt;

[0013] S5, Mobile Terminal X generates a joint destruction command and sends it to the uncontrolled security device;

[0014] S6, the out-of-control security device receives a joint destruction order and determines whether the joint destruction order is legal;

[0015] S7: When the number of legitimate joint destruction commands received by the uncontrolled security device reaches the security threshold for the number of joint destruction commands, it immediately destroys the internal critical information, responds to the mobile terminal A with the destruction result, and stops the security service.

[0016] Furthermore, step S2 specifically involves: Mobile terminal A splicing terminal A's identity identifier ID_ A Uncontrolled security device identification ID_ N and timestamp TIME A The system calculates the first hash value and then signs the first hash value using the private key of mobile terminal A to obtain the signature SIG of mobile terminal A. A Send a joint destruction request {ID_ A ||ID_ N ||TIME A ||SIG A Mobile terminal A sends the joint destruction request to different mobile terminals according to the threshold requirement for the number of joint mobile terminals.

[0017] Furthermore, step S3 specifically involves: the mobile terminal X that receives the joint destruction request, after verifying the signature of the joint destruction request, comparing the time information in the joint destruction request with the local time information. If the difference is within the time threshold range, the joint destruction request is valid, and a joint destruction request prompt will pop up.

[0018] Furthermore, step S5 specifically involves: Mobile terminal X and splicing terminal A's identity identifier ID_ A Uncontrolled security device identification ID_ N TIME A Terminal X Identity Identifier ID_ X And the signature SIG of mobile terminal A A The system calculates a second hash value and then signs the second hash value using the private key of mobile terminal X to obtain the signature SIG of mobile terminal X. X Generate joint destruction command {ID_ A ||ID_ N ||TIMEA ||SIG A ||ID_ X ||SIG X}, sent to the uncontrolled security device.

[0019] Furthermore, step S6 specifically involves: the uncontrolled security device verifying the received joint destruction instruction; after successful verification, comparing the time information in the joint destruction instruction with the local time information; if the difference is within the time threshold range, the joint destruction instruction is valid.

[0020] Furthermore, step S7 specifically involves: when the number of legitimate joint destruction commands received by the uncontrolled security device reaches the security threshold for the number of joint destruction commands, concatenating the terminal A identity identifier ID_ A Uncontrolled security device identification ID_ N and timestamp TIME A The system calculates a third hash value and then signs the third hash value using the private key of the uncontrolled security device to obtain the uncontrolled device's signature SIG. N Encapsulate the identity identifier ID of terminal A. A Uncontrolled security device ID_ N TIME A and signature SIG N Generate a joint destruction success response, immediately destroy internal critical information, send the joint destruction success response to mobile terminal A to acknowledge the destruction result, and terminate confidentiality services.

[0021] In summary, due to the adoption of the above technical solution, the beneficial effects of the present invention are:

[0022] The secure mobile communication system anti-loss-of-control method based on terminal joint name decision control described in this invention can be applied to secure mobile communication systems in mobile environments, effectively reducing the security threats to the entire system caused by loss of control of secure equipment such as the core network or mobile terminals; at the same time, the combination of joint name of multiple mobile terminals and user confirmation can prevent the risk of uncontrolled destruction of core network secure equipment in the event of network attacks on individual mobile terminals or coercion of mobile users. Attached Figure Description

[0023] To more clearly illustrate the technical solutions of the embodiments of the present invention, the accompanying drawings in the embodiments will be briefly described below. It should be understood that the following drawings only show some embodiments of the present invention and should not be regarded as a limitation on the scope. For those skilled in the art, other related drawings can be obtained based on these drawings without creative effort.

[0024] Figure 1This is a flowchart of a secure mobile communication system anti-loss-of-control method based on terminal joint decision-making control in an embodiment of the present invention.

[0025] Figure 2 This is a flowchart illustrating the generation of a joint destruction instruction in an embodiment of the present invention.

[0026] Figure 3 This is a flowchart of the joint destruction instruction processing in an embodiment of the present invention. Detailed Implementation

[0027] To make the objectives, technical solutions, and advantages of the embodiments of the present invention clearer, the technical solutions of the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings. Obviously, the described embodiments are only some embodiments of the present invention, and not all embodiments. The components of the embodiments of the present invention described and shown in the accompanying drawings can generally be arranged and designed in various different configurations.

[0028] Therefore, the following detailed description of the embodiments of the invention provided in the accompanying drawings is not intended to limit the scope of the claimed invention, but merely to illustrate selected embodiments of the invention. All other embodiments obtained by those skilled in the art based on the embodiments of the invention without inventive effort are within the scope of protection of the invention.

[0029] Example

[0030] This embodiment proposes a method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and management, including:

[0031] After an authorized mobile terminal user becomes aware of the information that the secure mobile communication system is out of control, they can invite other mobile terminals to initiate a joint destruction order for the out-of-control secure equipment (core network or mobile terminal secure products) in the secure mobile communication system.

[0032] The uncontrolled security device counts the legitimate joint destruction commands received from different mobile terminals. When the count exceeds the set security threshold for the number of joint destruction commands, it immediately destroys the internal critical information and stops working.

[0033] like Figure 1 As shown, the method for preventing loss of control of a secure mobile communication system based on terminal joint decision-making and control includes the following steps:

[0034] S1, after the authorized mobile terminal user is aware of the information that the secure mobile communication system is out of control, he / she can operate mobile terminal A to initiate a joint destruction of the out-of-control secure equipment;

[0035] S2, Mobile terminal A splices terminal A's identity identifier ID_ A Uncontrolled security device identification ID_N and timestamp TIME A The system calculates the first hash value and then signs the first hash value using the private key of mobile terminal A to obtain the signature SIG of mobile terminal A. A Send a joint destruction request {ID_ A ||ID_ N ||TIME A ||SIG A Mobile terminal A sends the joint destruction request to different mobile terminals according to the threshold requirement for the number of joint mobile terminals.

[0036] S3, as Figure 2 As shown, mobile terminal X, after receiving the joint destruction request, verifies the signature of the joint destruction request and compares the timestamp TIME in the joint destruction request. A If the difference between the local time information and the time information is within the time threshold range, the joint destruction request is valid and a joint destruction request prompt will pop up.

[0037] S4, the user using mobile terminal X confirms the operation of the pop-up joint destruction request prompt;

[0038] S5, Mobile Terminal X splicing Terminal A identity identifier ID_ A Uncontrolled security device identification ID_ N TIME A Terminal X Identity Identifier ID_ X And the signature SIG of mobile terminal A A The system calculates a second hash value and then signs the second hash value using the private key of mobile terminal X to obtain the signature SIG of mobile terminal X. X Generate joint destruction command {ID_ A ||ID_ N ||TIME A ||SIG A ||ID_ X ||SIG X}, sent to the uncontrolled security device;

[0039] S6. The uncontrolled security device verifies the received joint destruction command. After the verification is successful, it compares the time information in the joint destruction command with the local time information. If the difference is within the time threshold range, the joint destruction command is valid.

[0040] S7, such as Figure 3 As shown, when the number of legitimate joint destruction commands received by the uncontrolled security device reaches the security threshold for the number of joint destruction commands, the terminal A's identity identifier ID is concatenated. A Uncontrolled security device identification ID_N and timestamp TIME A The system calculates a third hash value and then signs the third hash value using the private key of the uncontrolled security device to obtain the uncontrolled device's signature SIG. N Encapsulate the identity identifier ID of terminal A. A Uncontrolled security device ID_ N TIME A and signature SIG N Generate a joint destruction success response, immediately destroy internal critical information, send the joint destruction success response to mobile terminal A to acknowledge the destruction result, and terminate confidentiality services.

[0041] As can be seen from the above, the secure mobile communication system anti-loss-of-control method based on terminal joint name decision control described in this invention can be applied to secure mobile communication systems in mobile environments, effectively reducing the security threats to the entire system caused by loss of control of secure equipment such as core network or mobile terminals; at the same time, the combination of joint name of multiple mobile terminals and user confirmation can prevent the risk of uncontrolled destruction of core network secure equipment in the event that individual mobile terminals are subjected to network attacks or mobile users are coerced.

[0042] The above description is merely a preferred embodiment of the present invention and is not intended to limit the invention. Various modifications and variations can be made to the present invention by those skilled in the art. Any modifications, equivalent substitutions, improvements, etc., made within the spirit and principles of the present invention should be included within the scope of protection of the present invention.

Claims

1. A method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control, characterized in that, include: After an authorized mobile terminal user becomes aware of the information that the secure mobile communication system is out of control, other mobile terminals can be invited to jointly initiate a destruction order for the out-of-control secure devices in the secure mobile communication system. The uncontrolled security device counts the legitimate joint destruction commands received from different mobile terminals. When the count exceeds the set security threshold for the number of joint destruction commands, it immediately destroys the internal critical information and stops working. The method for preventing loss of control of a secure mobile communication system based on terminal joint decision-making and control includes the following steps: S1, after the authorized mobile terminal user is aware of the information that the secure mobile communication system is out of control, he / she can operate mobile terminal A to initiate a joint destruction of the out-of-control secure equipment; S2, Mobile terminal A generates a joint destruction request and sends it to different mobile terminals respectively: Mobile terminal A concatenates its identity identifier ID_ A Uncontrolled security device identification ID_ N and timestamp TIME A The system calculates the first hash value and then signs the first hash value using the private key of mobile terminal A to obtain the signature SIG of mobile terminal A. A Send a joint destruction request {ID_ A ||ID_ N ||TIME A ||SIG A Mobile terminal A sends the joint destruction request to different mobile terminals according to the threshold requirement for the number of joint mobile terminals. S3, Mobile terminal X, which received the joint destruction request, pops up a joint destruction request prompt; S4, confirm the pop-up joint destruction request prompt; S5, Mobile Terminal X generates a joint destruction command and sends it to the uncontrolled security device; S6, the out-of-control security device receives a joint destruction order and determines whether the joint destruction order is legal; S7: When the number of legitimate joint destruction commands received by the uncontrolled security device reaches the security threshold for the number of joint destruction commands, it immediately destroys the internal critical information, responds to the mobile terminal A with the destruction result, and stops the security service.

2. The method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control as described in claim 1, characterized in that, Step S3 is as follows: The mobile terminal X that receives the joint destruction request verifies the joint destruction request through signature verification, compares the time information in the joint destruction request with the local time information. If the difference is within the time threshold range, the joint destruction request is valid, and a joint destruction request prompt pops up.

3. The method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control according to claim 2, characterized in that, Step S5 specifically involves: Mobile terminal X splicing terminal A's identity identifier ID_ A Uncontrolled security device identification ID_ N TIME A Terminal X Identity Identifier ID_ X And the signature SIG of mobile terminal A A The system calculates a second hash value and then signs the second hash value using the private key of mobile terminal X to obtain the signature SIG of mobile terminal X. X Generate joint destruction command {ID_ A ||ID_ N ||TIME A ||SIG A ||ID_ X ||SIG X }, sent to the uncontrolled security device.

4. The method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control according to claim 3, characterized in that, Step S6 is as follows: The uncontrolled security device verifies the received joint destruction instruction. After the verification is successful, it compares the time information in the joint destruction instruction with the local time information. If the difference is within the time threshold range, the joint destruction instruction is valid.

5. The method for preventing loss of control in a secure mobile communication system based on terminal joint decision-making and control according to claim 4, characterized in that, Step S7 specifically involves: when the number of legitimate joint destruction commands received by the uncontrolled security device reaches the security threshold for the number of joint destruction commands, the terminal A's identity identifier ID is concatenated. A Uncontrolled security device identification ID_ N and TIME A The system calculates a third hash value and then signs the third hash value using the private key of the uncontrolled security device to obtain the uncontrolled device's signature SIG. N Encapsulate the identity identifier ID of terminal A. A Uncontrolled security device ID_ N TIME A and signature SIG N Generate a joint destruction success response, immediately destroy internal critical information, send the joint destruction success response to mobile terminal A to acknowledge the destruction result, and terminate confidentiality services.

Citation Information

Patent Citations

  • Mobile communication terminal data protection method

    CN101478595A

  • Method and system for implementing social networking group member identity verification mechanism

    CN103731435A