A service verification system, method, apparatus, storage medium and electronic device
By using a secure SIM card and identity verification system, the problem of cumbersome identity verification process has been solved, enabling fast and secure identity verification, improving business execution efficiency and protecting data security.
Patent Information
- Application Number
- CN202410704105.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2024-05-31
- Publication Date
- 2025-11-25
- Estimated Expiration
- 2044-05-31
AI Technical Summary
The identity verification process in existing technologies is cumbersome, resulting in low efficiency in enterprise business execution.
The system uses a secure SIM card for identity verification. The first device generates an identity verification request, and the second device calls the installed secure SIM card to return the identity verification information. The verification system performs verification based on the identity verification information. Combined with the queries and comparisons of the risk control system and the management system, a fast and secure identity verification process is achieved.
It improves business execution efficiency, ensures information security, avoids the impact of cumbersome verification processes in existing technologies on efficiency, and protects data security through advanced encryption technology.
Smart Images

Figure CN118656816B_ABST
Abstract
Description
Technical Field
[0001] This invention relates to the field of computer technology, and in particular to a business verification system, method, apparatus, storage medium, and electronic device. Background Technology
[0002] With the continuous development of computer technology, technologies such as artificial intelligence and big data analysis have been applied to many business scenarios to improve users' various business experiences while ensuring the security of users' personal information and privacy data.
[0003] Currently, when enterprises execute transactions through corporate accounts, they need to undergo business risk control to ensure the security of these transactions. During this process, if the risk control system detects a risk in the enterprise's current transaction, it will initiate identity verification for the enterprise account. Only after confirming that the identity verification is successful will the transaction be executed.
[0004] However, the current identity verification process is quite cumbersome, which reduces the efficiency of enterprises in carrying out their business. Summary of the Invention
[0005] This specification provides a business verification system, method, apparatus, storage medium, and electronic device to partially solve the problem of low efficiency in enterprise business execution caused by the cumbersome identity verification process in the prior art.
[0006] The embodiments in this specification adopt the following technical solutions:
[0007] This specification provides a business verification system, which includes: a first device, a second device, and a verification system, wherein the second device has a preset security SIM card installed;
[0008] The first device is used to send a service request in response to a service operation performed by a user based on a service account;
[0009] The verification system is used to initiate an identity verification request for the user to be verified corresponding to the business account based on the business request, and to verify the business performed by the user based on the identity verification information returned by the second device based on the identity verification request.
[0010] The second device is used to invoke the installed secure SIM card based on the identity verification request, and return identity verification information based on the SIM card information corresponding to the user to be verified stored in the secure SIM card.
[0011] Furthermore, in some embodiments, the system further includes: a risk control system;
[0012] The risk control system is used to receive the business request sent by the first device, perform risk identification on the business executed by the user based on the business request, and send a business verification request to the verification system when it is determined that the business executed by the user is risky.
[0013] The verification system is used to initiate an identity verification request for the user to be verified corresponding to the business account based on the received business verification request.
[0014] Furthermore, in some embodiments, the second device is configured to display an identity verification page based on the identity verification request; obtain the verification information entered by the user to be verified on the identity verification page; compare the verification information with the security verification information set by the user to be verified and stored in the security SIM card in advance to obtain a comparison result; and return identity verification information based on the comparison result and the SIM card information corresponding to the user to be verified stored in the security SIM card.
[0015] Furthermore, in some embodiments, the system further includes: a third-party management system, which manages the binding relationship between the SIM card information of each security SIM card pre-issued by the third party and each user;
[0016] The verification system is used to send a query request to the management system based on the business request to check whether the user to be verified corresponding to the business account has applied for a security SIM card in advance;
[0017] The management system is configured to, based on the received query request and according to the binding relationship, query whether the user to be verified has pre-applied for a secure SIM card, and when it is found that the user to be verified has pre-applied for a secure SIM card, send the query result to the verification system;
[0018] The verification system is also used to initiate an identity verification request for the user to be verified corresponding to the business account based on the query results.
[0019] Furthermore, in some embodiments, the second device is used to return the identity information to the management system;
[0020] The management system is used to verify the identity verification information based on the SIM card information of the security SIM card bound to the user to be verified, obtain the identity verification result, and return the identity verification result to the verification system.
[0021] The verification system is used to receive the identity verification result and verify the services performed by the user based on the identity verification result.
[0022] This specification provides a business verification method, which is applied to a verification system and includes:
[0023] Based on the business request generated by the first device, an identity verification request is generated. The business request is generated by the first device in response to the business operation performed by the user based on the business account. The identity verification request is used to verify the identity of the user to be verified corresponding to the business account.
[0024] The second device verifies the service performed by the user based on the identity verification information returned by the second device based on the identity verification request. The identity verification information is returned by the second device based on the SIM card information corresponding to the user to be verified stored in the installed secure SIM card. The second device calls the secure SIM card based on the identity verification request.
[0025] Furthermore, in some implementations, an identity verification request is generated based on the service request generated by the first device, specifically including:
[0026] The system receives a business verification request from the risk control system. The business verification request is sent by the risk control system to the verification system after receiving the business request from the first device, performing risk identification on the business executed by the user, and determining that the business executed by the user is risky.
[0027] Based on the received business verification request, an identity verification request is initiated for the user to be verified corresponding to the business account.
[0028] Furthermore, in some implementations, an identity verification request is generated based on the service request generated by the first device, specifically including:
[0029] Based on the business request, a query request is sent to the third-party management system to inquire whether the user to be verified corresponding to the business account has applied for a security SIM card in advance. The management system is used to manage the SIM card information of each security SIM card pre-issued by the third party and the binding relationship between each user.
[0030] Based on the query results returned by the management system, an identity verification request is initiated for the user to be verified corresponding to the business account. The query results are returned by the management system to the verification system based on the received query request and the binding relationship, to check whether the user to be verified has applied for a security SIM card in advance.
[0031] Furthermore, in some embodiments, the service performed by the user is verified based on the authentication information returned by the second device based on the authentication request, specifically including:
[0032] The system receives the identity verification result sent by the management system. The identity verification result is obtained by the management system after verifying the identity verification information sent by the second device based on the SIM card information of the security SIM card bound to the user to be verified in advance.
[0033] Based on the identity verification result, the services performed by the user are verified.
[0034] This specification provides a service verification method, which is applied to a second device having a preset secure SIM card installed, including:
[0035] Based on the identity verification request initiated by the verification system, the pre-installed secure SIM card is invoked. The identity verification request is initiated by the verification system based on a service request generated by the first device. The service request is generated by the first device in response to a service operation performed by the user based on a service account. The identity verification request is used to verify the identity of the user to be verified corresponding to the service account.
[0036] Based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, the verification information is returned so that the verification system can verify the service performed by the user based on the verification information.
[0037] Furthermore, in some implementations, based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, the verification information is returned, specifically including:
[0038] Based on the identity verification request, the identity verification page is displayed;
[0039] Obtain the verification information entered by the user to be verified on the verification page;
[0040] The information to be verified is compared with the security verification information set by the user to be verified and stored in the security SIM card in advance to obtain the comparison result;
[0041] Based on the comparison results and the SIM card information corresponding to the user to be verified stored in the secure SIM card, the verification information is returned.
[0042] This specification provides a business verification device, including:
[0043] The request generation module is used to generate an identity verification request based on the business request generated by the first device. The business request is generated by the first device in response to the business operation performed by the user based on the business account. The identity verification request is used to verify the identity of the user to be verified corresponding to the business account.
[0044] The verification module is used to verify the services performed by the user based on the verification information returned by the second device based on the verification request. The verification information is returned by the second device based on the SIM card information corresponding to the user to be verified stored in the installed secure SIM card. The second device calls the secure SIM card based on the verification request.
[0045] This specification provides a service verification device, which includes a preset secure SIM card and comprises:
[0046] The calling module is used to call the pre-installed secure SIM card based on the identity verification request initiated by the verification system. The identity verification request is initiated by the verification system based on a service request generated by the first device. The service request is generated by the first device in response to a service operation performed by the user based on a service account. The identity verification request is used to verify the identity of the user to be verified corresponding to the service account.
[0047] The return module is used to return verification information based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, so that the verification system can verify the service performed by the user based on the verification information.
[0048] This specification provides a computer-readable storage medium storing a computer program that, when executed by a processor, implements the aforementioned business verification method.
[0049] This specification provides an electronic device, including a memory, a processor, and a computer program stored in the memory and executable on the processor. When the processor executes the program, it implements the above-described business verification method.
[0050] The above-mentioned technical solutions adopted in this specification can achieve the following beneficial effects:
[0051] In the service verification system and method provided in the embodiments of this specification, the first device sends a service request in response to a user's service operation based on a service account. The verification system can initiate a verification request for the user to be verified corresponding to the service account based on the service request. The second device in the service verification system can call the locally installed secure SIM card based on the verification request and return verification information based on the SIM card information corresponding to the user to be verified stored in the secure SIM card. The verification system can then verify the service performed by the user based on the verification information returned by the second device.
[0052] As can be seen from the above system and method, compared with the relatively complex business verification process in the prior art, the business verification system provided in this specification can send a verification request to the second device through the verification system, so as to quickly complete the verification required for the business through the secure SIM card installed in the second device. Moreover, since the secure SIM card adopts a higher level of encryption technology and security protocol, it can save the security of the data stored in it. This not only ensures the information security of users during the business execution process, but also significantly improves the efficiency of business execution. Attached Figure Description
[0053] Figure 1 An interactive diagram illustrating a business verification system based on an embodiment of this specification;
[0054] Figures 2A to 2F This is a schematic diagram illustrating the process of a user seeking identity verification activating a secure SIM card through a second device, as provided in the embodiments of this specification.
[0055] Figure 3 A schematic diagram illustrating the two methods for identity verification provided in the embodiments of this specification;
[0056] Figure 4 This is a detailed schematic diagram illustrating the process by which a user seeking identity verification completes the verification process based on the business verification system, as provided in the embodiments of this specification.
[0057] Figure 5 This is a flowchart illustrating a business verification process provided in this specification.
[0058] Figure 6 This is a flowchart illustrating a business verification process provided in this specification.
[0059] Figure 7 This is a schematic diagram of a business verification device provided in this specification;
[0060] Figure 8 This is a schematic diagram of a business verification device provided in this specification;
[0061] Figure 9 This specification provides a corresponding Figure 5 or Figure 6 A schematic diagram of an electronic device. Detailed Implementation
[0062] To make the objectives, technical solutions, and advantages of this specification clearer, the technical solutions of this specification will be clearly and completely described below in conjunction with specific embodiments and corresponding drawings. Obviously, the described embodiments are only a part of the embodiments of this specification, and not all of them. Based on the embodiments in this specification, all other embodiments obtained by those skilled in the art without creative effort are within the scope of protection of this specification.
[0063] Currently, when employees perform business operations required by the company, there may be situations where security verification is required during the business execution process. For example, if the backend platform detects a risk in the current business during the execution of a business by an employee, it can initiate a security verification for that business.
[0064] Typically, in order to improve business execution efficiency, companies will apply in advance to grant security verification permissions to a number of trusted employees on the backend platform. In other words, if a security verification is required, the identity verification that originally had to be completed by the company's legal representative can be completed by the employees who have been granted security verification permissions in advance.
[0065] During this process, the backend platform can send a verification request to the enterprise employee who has been granted security verification permissions. The enterprise employee performs operations such as facial scanning and entering a password based on the terminal device they are using or the client installed on the terminal device. After the backend platform confirms that the enterprise employee has passed the identity verification, it can continue to execute the business that the enterprise currently needs.
[0066] However, in practical applications, various situations may arise during the entire process described above. For example, if facial recognition is used to verify the identity of company employees, it is necessary to ensure that facial images used for identification and comparison can be collected under suitable environmental conditions. Another example is that currently, when company employees obtain secure verification permissions, their user identifiers (such as mobile phone numbers) need to be stored in the backend platform. If a user changes their mobile phone number, or their user identifier expires (such as an expired ID), not only will the company employee be unable to complete the identity verification, but it may also pose a certain risk to the company's account funds (if a user's previously used mobile phone number is reissued, and the number is not unbound in time on the backend platform, other users may use that mobile phone number to pass identity verification and steal the company's account funds).
[0067] Furthermore, in existing verification methods, once the backend platform identifies a risk in a company's current business operations, it must first send an identification code (such as a QR code or barcode) to the device used by the employee performing the operation. This employee then forwards the identification code to another employee with pre-granted security verification permissions, who then completes the verification using their account. As can be seen, the entire verification process is quite cumbersome, which significantly impacts the actual efficiency of business operations.
[0068] To address the aforementioned issues, this specification provides a business verification system that, while ensuring information security, can efficiently and quickly complete the identity verification required during business execution, thereby further guaranteeing the efficiency of business execution.
[0069] The technical solutions provided in the various embodiments of this specification are described in detail below with reference to the accompanying drawings.
[0070] Figure 1 This is an interactive diagram illustrating a business verification system based on an embodiment of this specification.
[0071] This specification provides an embodiment of a service verification system, which includes... Figure 1 The diagram shows a first device, an authentication system, and a second device. The first device is the device used by the user to perform business transactions; this device can be an electronic device such as a desktop computer, laptop, tablet, or smartphone. The second device refers to the device used by the user to verify their identity during business transactions; this second device can be a smartphone or other device capable of installing a secure SIM card.
[0072] For example, in the process of a company executing a transfer, the user using the first device can be the company employee responsible for completing the transfer, while the user using the second device, who is awaiting identity verification, can be the company's legal representative. That is, if the risk control system identifies a certain business risk in the transfer process using the first device, the company employee can initiate identity verification through the second device corresponding to the company's legal representative. After successful identity verification, the transfer can be completed.
[0073] Figure 1 The system shown also includes a verification system, which is mainly used to generate a corresponding verification request when it is necessary to verify the identity of the user performing the business. This allows the second device to call the installed secure SIM card based on the verification request to complete the identity verification for the user to be verified.
[0074] The secure SIM card installed in the second device has a larger storage capacity than a traditional SIM card, allowing it to store more data. Simultaneously, the secure SIM card boasts superior data processing capabilities, as it can be equipped with a more powerful processor capable of performing complex operations such as encryption and data analysis. More importantly, compared to traditional SIM cards, the secure SIM card employs higher levels of encryption technology and security protocols, ensuring that data stored on it is not susceptible to leakage and guaranteeing the security of the user's personal information.
[0075] The service verification system provided in the embodiments of this specification can utilize the secure data storage capability of a secure SIM card to achieve user identity verification.
[0076] It should be noted that in practical applications, an application for identity verification using a secure SIM card needs to be submitted beforehand. Specifically, during subsequent business operations, the user to be verified needs to use a second device equipped with a secure SIM card to send an application request to the backend platform to apply for activation of the secure SIM card identity verification service. During this process, the security verification information (i.e., a password) to be used during verification can be further configured. The entire application process can be as follows: Figures 2A to 2F As shown.
[0077] Figures 2A to 2F This is a schematic diagram illustrating the process of a user seeking identity verification activating a secure SIM card through a second device, as provided in the embodiments of this specification.
[0078] Figure 2A The interface shown is what appears when a user awaiting identity verification performs an application on the client installed on a second device. This interface demonstrates that the backend platform provides various services to protect user or enterprise information and account security. The user awaiting identity verification... Figure 2A Select the "Secure SIM Card Registration" service, which will cause the client to display the following... Figure 2B The interface shown.
[0079] exist Figure 2B The interface shown includes a "Confirm Activation" control, which users can tap to apply for and activate the service of using a secure SIM card for identity verification. Figure 2B The page shown may also include content introducing users to using a secure SIM card for identity verification. Figure 2B (Not shown in the image), allowing users to understand in more detail the precautions and specific procedures for using a secure SIM card for identity verification.
[0080] When the second device detects the user's touch Figure 2B After the "Confirm Start" control is executed, the user can be shown a message such as... Figure 2C The face verification interface shown is touched by the user. Figure 2C After clicking the "Start Face Verification" button, the second device can use its camera to capture the user's facial image to complete the face verification process.
[0081] After confirming that the user has passed facial recognition verification, the service of using a secure SIM card for subsequent identity verification can be activated for the user. At the same time, the second device can display to the user, such as... Figure 2D The interface shown. From Figure 2D The interface shown contains an entry point that allows users to set the security verification information (i.e., password) used for identity verification. Users can access this information via touch. Figure 2D The "Set Now" control in the middle displays to the user, such as Figure 2E The interface shown allows users to... Figure 2E Enter the security verification information you set in the interface shown. Figure 2E The PIN code set by the user is the security verification information. Therefore, when subsequent identity verification is triggered for the user to be verified, the user will need to enter the pre-set security verification information to complete the verification process.
[0082] Of course, users can also use touch. Figure 2D The "Do not set" control in the settings does not allow you to set the security verification information used in the identity verification process. It should be noted that even if the user does not set the security verification information in advance, the identity verification can still be completed through the SIM card information of the secure SIM card in the subsequent process. The details will be introduced in detail later.
[0083] Of course, in practical applications, the second device or the client installed on it needs to check whether a secure SIM card is installed on the second device or whether the secure SIM card installed on the second device has been activated when the user applies to activate the service for identity verification using a secure SIM card. If it is detected that no secure SIM card is installed on the second device or that the secure SIM card installed on the second device is inactive, then the user can be shown... Figure 2F The interface shown allows users to apply for a secure SIM card by touching the "Apply Now" control.
[0084] It should be noted that backend platforms often lack the qualifications to issue SIM cards in practical applications; that is, the backend platform itself does not issue secure SIM cards to users. Secure SIM cards are typically issued by telecommunications operators. Therefore, provided the backend platform collaborates with a telecommunications operator qualified to issue secure SIM cards, the second device can detect user touch input. Figure 2F When the "Apply Now" control is activated, a card activation request is sent to the telecommunications operator through the backend platform.
[0085] In the actual process of a user applying for a secure SIM card, there are several ways to achieve this. For example, the user can use a touchscreen... Figure 2F After clicking the "Apply Now" button, the second device can redirect to the telecommunications operator's SIM card activation page. On this page, the user can fill in their personal information and submit it. The second device then sends this information to the telecommunications operator, who can then issue and distribute the SIM card based on the user's information.
[0086] After the user submits their personal information, the second device can display an address entry page. The user can then fill in their shipping address, allowing the telecommunications operator to mail the completed secure SIM card to that address. Alternatively, the second device can also display the telecommunications operator's designated service center (which can be determined based on the user's location) to guide the user to pick up their secure SIM card at that center.
[0087] The above describes the general process for users to apply for and activate a secure SIM card to complete subsequent service verification. After completing the above application and activation process, the user can use the secure SIM card installed in the second device to complete the verification required for service execution.
[0088] Specifically, users can use the first device to perform business. The business mentioned here can be determined according to actual needs. For example, when the user is a company employee, the business performed can be to make payments or transfers to partners using the company account, or it can be to perform business such as tax filing or auditing through the company account.
[0089] During the process of a user performing a business transaction, there may be certain business risks. Therefore, when it is determined that there are risks in the business transactions performed by the user, the identity verification of the user to be verified can be triggered.
[0090] Based on this, the business verification system provided in the embodiments of this specification may also include a risk control system. This risk control system is mainly used to identify risks in the business performed by users based on their business accounts, so as to further ensure the information security and property security of users or enterprises.
[0091] The business request generated by the first device can actually be sent to the risk control system. When the risk control system receives the business request sent by the first device, it can identify the risks of the business performed by the user based on the business request.
[0092] Risk control systems can identify risks in various ways. For example, they can use pre-configured risk control rules to identify whether there are abnormal fields in the business data involved in a user's transaction, or whether the business accounts the user is dealing with are on a blacklist. Another example is the pre-deployment of a risk identification model trained on a large number of samples. When a user executes a transaction, the backend platform can input the relevant business data into this model to output a risk identification result. Once the risk identification result determines that the user's current transaction is risky, identity verification can be initiated for the user in subsequent processes. Other risk identification methods used by risk control systems will not be detailed here.
[0093] During the identity verification process, the risk control system can send a business verification request to the verification system when it determines that the business performed by the user is risky. The verification system can then initiate an identity verification request for the user to be verified corresponding to the business account based on the received business verification request.
[0094] In the above Figure 2E As shown in the interface, since the user awaiting verification can pre-set security verification information for verification, the second device can display the verification page based on this verification request. Furthermore, because the secure SIM card has a higher level of encryption technology and security protocols, it can guarantee the security of the data stored within it. Therefore, the security verification information set by the user when applying to activate the aforementioned services can be stored on the secure SIM card.
[0095] Based on this, the second device can obtain the verification information entered by the user on the verification page, and compare the obtained verification information with the security verification information set by the user in the security SIM card. The comparison result is obtained, and the verification information is returned based on the comparison result and the SIM card information corresponding to the user stored in the security SIM card.
[0096] The verification system can determine whether a user has passed the verification based on the identity verification information. If the user has passed the verification, the backend platform can continue to execute the user's required business based on the verification result of the verification system.
[0097] As mentioned above, secure SIM cards are typically manufactured and issued by telecommunications operators, who also maintain the SIM information corresponding to each issued secure SIM card. Therefore, in the embodiments of this specification, the aforementioned service verification system may also include a third-party management system. In practical applications, the process of determining whether a user has passed the identity verification can be completed by this third-party management system. Here, the third party can be considered as the telecommunications operator that issues the secure SIM card.
[0098] Specifically, the third-party management system needs to manage the SIM card information of each security SIM card pre-issued by the third party and the binding relationship between each user. Based on this, the verification system needs to send a query request to the management system based on the business request generated by the first device to query whether the user to be verified corresponding to the above business account has pre-applied for a security SIM card.
[0099] The management system can, based on the received query request and pre-managed binding relationships, determine whether the user awaiting verification has pre-applied for a secure SIM card. Upon confirming this, the system returns the query result to the verification system. The verification system can then use this result to initiate a verification request for the user corresponding to the business account.
[0100] Furthermore, in practical applications, the second device can return the aforementioned identity verification information to the management system. If the user to be verified has pre-set security verification information for the secure SIM card, the management system can query the SIM card information of the secure SIM card bound to the user to be verified, which is stored in the management system, based on the aforementioned binding relationship. Then, based on the queried SIM card information, the obtained identity verification information is verified to obtain the identity verification result.
[0101] In the embodiments of this specification, the SIM card information corresponding to the secure SIM card may refer to the public and private keys set by a third party for the issued secure SIM card. The secure SIM card installed in the second device may store the private key used for authentication, while the management system may store the public key used in the authentication process.
[0102] Based on this, after the second device obtains the comparison result by accessing the secure SIM card, it can sign the comparison result using the private key stored in the secure SIM card, thereby obtaining the aforementioned identity verification information. Upon receiving this identity verification information, the management system can use the public key corresponding to the secure SIM card bound to the user to be verified, which is stored in the database, to verify the signature of the identity verification information. If the signature verification is successful and the comparison result confirms that the user to be verified has entered the correct security verification information, then the system can determine that the user has passed the identity verification process.
[0103] As mentioned above, in practical applications, users seeking identity verification may not need to set up security verification information (such as a PIN code). Therefore, during the actual identity verification process, if the user has not pre-set security verification information, the second device can use the installed secure SIM card and the private key stored in the SIM card to sign information such as the current time and the device identifier of the second device to obtain the identity verification information. Similarly, the management system can verify the signature of the identity verification information using the public key corresponding to the user seeking identity verification.
[0104] Of course, the SIM card information mentioned above may include not only the public and private keys used for identity verification, but also information such as the SIM card identifier (e.g., SIM card ID), issuing authority identifier, and issuance timestamp. Therefore, in practice, this information can be signed using the private key to obtain identity verification information, which can then be sent to the management system for signature verification.
[0105] Therefore, the above content actually involves two specific identity verification methods: one is where the user to be verified has pre-set security verification information, and the other is where the user to be verified has not set security verification information. In either case, the second device can securely complete the identity verification process by accessing the secure SIM card. Figure 3 As shown.
[0106] Figure 3 This diagram illustrates two methods for completing identity verification, as provided in the embodiments of this specification.
[0107] exist Figure 3 In this context, the desktop computer that initiates the transfer request can be considered the primary device. Figure 3 The smartphone shown in the image, used for the identity verification interface, is a second device. Figure 3As can be seen, after the first device initiates a transfer, it triggers identity verification for the user to be verified. If the user has pre-set a PIN code for verification (i.e., the aforementioned security verification information), the verification result can be obtained by comparing the PIN code pre-stored in the secure SIM card information. If the user has not set a PIN code for verification, the user can verify their identity via touch... Figure 3 The "Confirm" control in Figure 3 (The "Confirm" control is located on the right side of the interface). After the second device detects that the user to be verified has touched the "Confirm" control, it can use the private key stored in the installed secure SIM card to sign information such as the current time, the device identifier of the second device, and the SIM card ID, obtaining verification information and sending it to the management system. Once the management system determines that the user to be verified has passed the verification based on the obtained verification information, the user can then use the first device to continue performing business and complete the transfer.
[0108] As can be seen from the above, the business verification system provided in this specification can send an identity verification request to a second device, thereby quickly completing the identity verification required for the business through the secure SIM card installed in the second device. Compared to the existing technology, which requires the user to recognize the obtained identification code and then perform facial verification to complete the identity verification process, this significantly improves the user's identity verification efficiency, thereby further improving the user's business execution efficiency. Moreover, because the secure SIM card uses higher-level encryption technology and security protocols, the security of the data stored on it can be preserved, thus further ensuring the information security of the user during business execution.
[0109] As can be seen from the above, the business verification system provided in this specification can actually include the risk control system of the backend platform and the management system of a third party. To more clearly describe the various steps involved in the identity verification process of the business verification system, the entire identity verification process for the user to be verified will be described in more detail below. Figure 4 As shown.
[0110] Figure 4 This is a detailed schematic diagram illustrating the process by which a user seeking identity verification completes the verification process based on a business verification system, as provided in the embodiments of this specification.
[0111] for Figure 4 The application scenarios involved could be business scenarios where company employees use company accounts to make remittances to other companies. In this process, company employees can use the company's primary device (such as a desktop computer in the company's office) to initiate a business request to make remittances to other companies.
[0112] The business request generated by the first device is first sent to the risk control system of the backend platform. The risk control system then uses this request to identify the risks associated with the business transaction performed by the employee. If the risk control system identifies a risk in the transaction performed by the employee, it can send a business verification request to the verification system. Upon receiving the verification request, the verification system needs to send a query request to the third-party management system based on the company account to determine whether the legal representative of the company (i.e., the user to be verified) has pre-applied for a secure SIM card.
[0113] The management system pre-stores the binding relationship between the SIM card information of each security SIM card and each user. Therefore, after receiving the above query request, the management system can use the binding relationship to query whether the legal representative of the enterprise has applied for a security SIM card in advance and return the query result to the verification system.
[0114] The verification system can return the query results of the availability of the corporate legal person's secure SIM card from the management system to the risk control system. The risk control system can then send a request to the verification system to initialize the verification parameters. The verification system will then create a corresponding verification session to initiate a verification request for the corporate legal person. The verification session created by the verification system needs to be sent to the first device, where a page will be displayed prompting corporate employees to proceed with the verification process. Therefore, the initialization of verification parameters mentioned here can be understood as the parameters required to create this verification session page.
[0115] After detecting the confirmation operation performed by the enterprise employee, the first device can send a request to the verification system to initiate identity verification. That is, the first device can launch the pre-installed Software Development Kit (SDK) for triggering identity verification. Through the SDK, based on the enterprise account, an identity verification request that needs to be sent to the verification system is generated.
[0116] The verification system can generate verification page parameters based on the received identity verification request and transmit these parameters to a third-party management system. The management system then uses these parameters to launch a pre-saved application stored on the secure SIM card installed on the second device. This application is primarily used to perform steps such as information comparison and returning verification information during the identity verification process.
[0117] Furthermore, the application can activate the client corresponding to the aforementioned backend platform installed on the second device, enabling the client to generate a verification page based on the aforementioned verification page parameters and display it to the corporate entity. The corporate entity can input the information to be verified on this verification page, allowing the second device to transmit this information to the secure SIM card. The application on the secure SIM card then compares the information to be verified with pre-saved security verification information (i.e., information pre-set by the corporate entity) to obtain the comparison result.
[0118] Furthermore, the application in the secure SIM card can use the private key stored in the secure SIM card to compare the result with the school's signature to obtain identity verification information. The second device can then return this identity verification information to the management system. The management system can use the pre-stored public key of the secure SIM card corresponding to the corporate entity to verify the signature of this identity verification information, obtain the identity verification result, and return it to the first device through the verification system.
[0119] After receiving the identity verification result, the first device will determine that the corporate legal representative has passed the identity verification and can then continue to execute the aforementioned corporate transfer business.
[0120] It should be noted that, assuming the user to be verified has pre-set security verification information, the second device can determine whether the verification information entered by the user matches the security verification information stored in the secure SIM card based on the comparison results described above. If they match, the device can use the private key stored in the secure SIM card to sign information such as the current time and the identifier of the second device to obtain the verification information. In other words, even if the user to be verified has pre-set security verification information, the verification information may not be obtained by signing the comparison results.
[0121] In addition, in the embodiments of this specification, the verification system and the risk control system can be deployed on the backend platform, and a high-speed and secure dedicated information transmission channel can be built between the backend platform and the third party. Therefore, the verification system and the management system can transmit data to each other through a specific security protocol on the dedicated information transmission channel, thereby ensuring the security of information transmission between the backend platform and the third party.
[0122] In the example above, the user to be verified can be either the legal representative of the company or a designated employee. Therefore, in practical applications, the designated employee, authorized to use the user's second device, can complete the verification process on behalf of the user. It should be noted that each user's security SIM card is unique. Conversely, if the security SIM card in the second device is replaced without prior approval from the verification system, the system will attempt to verify the user using the existing security SIM card. Obviously, this will result in verification failure.
[0123] In addition, in practical applications, situations may arise where the designated personnel change. Since the business verification system provided in this specification is based on a secure SIM card for identity verification, the second device containing the secure SIM card simply needs to be handed over to the new designated personnel for safekeeping. Compared to existing technologies where a change in the user used for identity verification could lead to the theft of user or company information and account funds, the method provided in this specification significantly avoids this situation.
[0124] In summary, even if situations arise such as changing the secure SIM card or the user used for identity verification changing, the uniqueness of the secure SIM card can ensure the normal execution of identity verification and guarantee the information security of users and enterprises.
[0125] Of course, the above-mentioned identity verification methods can also be combined with other methods. For example, in the process of verifying the identity of users, in addition to the method based on a secure SIM card, it is also necessary to combine methods such as entering SMS verification codes and facial verification to complete the entire identity verification process. This can further enhance the security of the entire business execution.
[0126] The above describes a business verification system provided in the embodiments of this specification. Based on this, the embodiments of this specification also provide a business verification method. This business verification method is mainly implemented by the verification system, and the specific process is as follows: Figure 5 As shown.
[0127] Figure 5 This document provides a schematic diagram of a business verification process, which includes the following steps:
[0128] S500: Generate an identity verification request based on the service request generated by the first device. The service request is generated by the first device in response to the service operation performed by the user based on the service account. The identity verification request is used to verify the identity of the user to be verified corresponding to the service account.
[0129] S502: Verify the service performed by the user based on the identity verification information returned by the second device based on the identity verification request, wherein the identity verification information is returned by the second device based on the SIM card information corresponding to the user to be verified stored in the installed secure SIM card, and the second device calls the secure SIM card based on the identity verification request.
[0130] The above process primarily utilizes the aforementioned verification system as the execution entity. During the user's execution of business using the first device, the verification system can verify the identity of the user to ensure the security of the business being executed. Specific details have already been provided in the introduction to the business verification system and will not be repeated here.
[0131] This specification also provides a service verification method using a second device as the execution subject, the specific process of which is as follows: Figure 6 As shown.
[0132] Figure 6 This document provides a schematic diagram of a business verification process, which includes the following steps:
[0133] S600: Based on the identity verification request initiated by the verification system, the pre-installed secure SIM card is invoked. The identity verification request is initiated by the verification system based on a service request generated by the first device. The service request is generated by the first device in response to a service operation performed by the user based on a service account. The identity verification request is used to verify the identity of the user to be verified corresponding to the service account.
[0134] S602: Based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, return the verification information so that the verification system can verify the service performed by the user based on the verification information.
[0135] The above process primarily utilizes the second device as the execution entity. Through the secure SIM card installed in the second device, user verification can be completed efficiently and securely. This not only ensures the security of the service being performed but also further improves execution efficiency compared to existing technologies. Specific details have already been explained in the introduction to the service verification system and will not be repeated here.
[0136] The above describes one or more embodiments of the service verification method provided in this specification. Based on the same idea, this specification also provides corresponding service verification devices, such as... Figure 7 , Figure 8 As shown.
[0137] Figure 7A schematic diagram of a business verification device provided in this specification includes:
[0138] The request generation module 701 is used to generate an identity verification request based on the business request generated by the first device. The business request is generated by the first device in response to the business operation performed by the user based on the business account. The identity verification request is used to verify the identity of the user to be verified corresponding to the business account.
[0139] The verification module 702 is used to verify the service performed by the user based on the verification information returned by the second device based on the verification request, wherein the verification information is returned by the second device based on the SIM card information corresponding to the user to be verified stored in the installed secure SIM card, and the second device calls the secure SIM card based on the verification request.
[0140] Optionally, the request generation module 701 is specifically used to: receive a business verification request sent by the risk control system, wherein the business verification request is sent by the risk control system to the verification system after receiving the business request sent by the first device, performing risk identification on the business executed by the user, and determining that the business executed by the user has risks; and based on the received business verification request, initiate an identity verification request for the user to be verified corresponding to the business account.
[0141] Optionally, the request generation module 701 is specifically used to: send a query request to a third-party management system based on the business request to inquire whether the user to be verified corresponding to the business account has pre-applied for a secure SIM card; the management system is used to manage the SIM card information of each secure SIM card pre-issued by the third party and the binding relationship between each user; based on the query result returned by the management system, initiate a verification request for the user to be verified corresponding to the business account; the query result is returned by the management system based on the received query request, according to the binding relationship, to the verification system when it finds that the user to be verified has pre-applied for a secure SIM card.
[0142] Optionally, the verification module 702 is specifically used to: receive the identity verification result sent by the management system, wherein the identity verification result is obtained by the management system after verifying the identity verification information sent by the second device based on the SIM card information of the security SIM card bound to the user to be verified in advance; and verify the service executed by the user based on the identity verification result.
[0143] Figure 8 This is a schematic diagram of a service verification device provided in this specification. The device is equipped with a preset secure SIM card and includes:
[0144] The module 801 is used to invoke the pre-installed secure SIM card based on the identity verification request initiated by the verification system. The identity verification request is initiated by the verification system based on a service request generated by the first device. The service request is generated by the first device in response to a service operation performed by the user based on a service account. The identity verification request is used to verify the identity of the user to be verified corresponding to the service account.
[0145] The return module 802 is used to return verification information based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, so that the verification system can verify the service performed by the user based on the verification information.
[0146] Optionally, the return module 802 is specifically configured to: display an identity verification page based on the identity verification request; obtain the verification information entered by the user to be verified on the identity verification page; compare the verification information with the security verification information set by the user to be verified in the security SIM card and obtain a comparison result; and return identity verification information based on the comparison result and the SIM card information corresponding to the user to be verified stored in the security SIM card.
[0147] The above-described apparatus embodiments correspond to the method embodiments, and detailed descriptions can be found in the description of the method embodiments section, which will not be repeated here. The apparatus embodiments are derived based on the corresponding method embodiments and have the same technical effects as the corresponding method embodiments; detailed descriptions can be found in the corresponding method embodiments.
[0148] This specification also provides an embodiment of a computer storage medium that can store multiple instructions adapted to be loaded and executed by a processor as described above. Figure 5 or Figure 6 The method described in the illustrated embodiment can be found in the following document for a detailed execution process. Figure 5 or Figure 6 The specific details of the illustrated embodiments will not be elaborated here.
[0149] This specification also provides a computer program product that stores at least one instruction, said at least one instruction being loaded and executed by the processor as described above. Figure 5 or Figure 6 The method described in the illustrated embodiment can be found in the following document for a detailed execution process. Figure 5 or Figure 6 The specific details of the illustrated embodiments will not be elaborated here.
[0150] The embodiments in this specification also provide Figure 9 The diagram shows the structure of the electronic device. Figure 9At the hardware level, the electronic device includes a processor, internal bus, network interface, memory, and non-volatile memory, and may also include other hardware required for the business operations. The processor reads the corresponding computer program from the non-volatile memory into memory and then runs it to implement the aforementioned business verification method.
[0151] Of course, in addition to software implementation, this specification does not exclude other implementation methods, such as logic devices or a combination of hardware and software. In other words, the execution subject of the following processing flow is not limited to each logic unit, but can also be hardware or logic devices.
[0152] In the 1990s, improvements to a technology could be clearly distinguished as either hardware improvements (e.g., improvements to the circuit structure of diodes, transistors, switches, etc.) or software improvements (improvements to the methodology). However, with technological advancements, many methodological improvements today can be considered direct improvements to the hardware circuit structure. Designers almost always obtain the corresponding hardware circuit structure by programming the improved methodology into the hardware circuit. Therefore, it cannot be said that a methodological improvement cannot be implemented using hardware physical modules. For example, a Programmable Logic Device (PLD) (such as a Field Programmable Gate Array (FPGA)) is such an integrated circuit whose logic function is determined by the user programming the device. Designers can program and "integrate" a digital system onto a PLD themselves, without needing chip manufacturers to design and manufacture dedicated integrated circuit chips. Furthermore, nowadays, instead of manually manufacturing integrated circuit chips, this programming is mostly implemented using "logic compiler" software. Similar to the software compiler used in program development, the original code before compilation must be written in a specific programming language, called a Hardware Description Language (HDL). There are many HDLs, such as ABEL (Advanced Boolean Expression Language), AHDL (Altera Hardware Description Language), Confluence, CUPL (Cornell University Programming Language), HDCal, JHDL (Java Hardware Description Language), Lava, Lola, MyHDL, PALASM, and RHDL (Ruby Hardware Description Language). Currently, the most commonly used are VHDL (Very-High-Speed Integrated Circuit Hardware Description Language) and Verilog. Those skilled in the art should understand that by simply performing some logic programming on the method flow using one of these hardware description languages and programming it into an integrated circuit, the hardware circuit implementing the logical method flow can be easily obtained.
[0153] The controller can be implemented in any suitable manner. For example, it can take the form of a microprocessor or processor and a computer-readable medium storing computer-readable program code (e.g., software or firmware) executable by the (micro)processor, logic gates, switches, application-specific integrated circuits (ASICs), programmable logic controllers, and embedded microcontrollers. Examples of controllers include, but are not limited to, the following microcontrollers: ARC 625D, Atmel AT91SAM, Microchip PIC18F26K20, and Silicon Labs C8051F320. A memory controller can also be implemented as part of the control logic of the memory. Those skilled in the art will also recognize that, in addition to implementing the controller in purely computer-readable program code form, the same functionality can be achieved by logically programming the method steps to make the controller take the form of logic gates, switches, application-specific integrated circuits, programmable logic controllers, and embedded microcontrollers. Therefore, such a controller can be considered a hardware component, and the means included therein for implementing various functions can also be considered as structures within the hardware component. Alternatively, the means for implementing various functions can be considered as both software modules implementing the method and structures within the hardware component.
[0154] The systems, devices, modules, or units described in the above embodiments can be implemented by computer chips or entities, or by products with certain functions. A typical implementation device is a computer. Specifically, a computer can be, for example, a personal computer, a laptop computer, a cellular phone, a camera phone, a smartphone, a personal digital assistant, a media player, a navigation device, an email device, a game console, a tablet computer, a wearable device, or any combination of these devices.
[0155] For ease of description, the above devices are described in terms of function, divided into various units. Of course, in implementing this specification, the functions of each unit can be implemented in one or more software and / or hardware.
[0156] Those skilled in the art will understand that embodiments of this specification can be provided as methods, systems, or computer program products. Therefore, this specification may take the form of a completely hardware embodiment, a completely software embodiment, or an embodiment combining software and hardware aspects. Furthermore, this specification may take the form of a computer program product embodied on one or more computer-usable storage media (including, but not limited to, disk storage, CD-ROM, optical storage, etc.) containing computer-usable program code.
[0157] This specification is described with reference to flowchart illustrations and / or block diagrams of methods, apparatus (systems), and computer program products according to embodiments of this specification. It will be understood that each block of the flowchart illustrations and / or block diagrams, and combinations of blocks in the flowchart illustrations and / or block diagrams, can be implemented by computer program instructions. These computer program instructions can be provided to a processor of a general-purpose computer, special-purpose computer, embedded processor, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create a machine for implementing the flowchart illustrations and / or block diagrams. Figure 1 One or more processes and / or boxes Figure 1 A device that provides the functions specified in one or more boxes.
[0158] These computer program instructions may also be stored in a computer-readable storage medium that can direct a computer or other programmable data processing device to function in a particular manner, such that the instructions stored in the computer-readable storage medium produce an article of manufacture including instruction means, which are implemented in a process Figure 1 One or more processes and / or boxes Figure 1 The function specified in one or more boxes.
[0159] These computer program instructions may also be loaded onto a computer or other programmable data processing equipment to cause a series of operational steps to be performed on the computer or other programmable equipment to produce a computer-implemented process, thereby providing instructions that execute on the computer or other programmable equipment for implementing the process. Figure 1 One or more processes and / or boxes Figure 1 The steps of the function specified in one or more boxes.
[0160] In a typical configuration, a computing device includes one or more processors (CPU), input / output interfaces, network interfaces, and memory.
[0161] Memory may include non-persistent storage in computer-readable media, such as random access memory (RAM) and / or non-volatile memory, such as read-only memory (ROM) or flash RAM. Memory is an example of computer-readable media.
[0162] Computer-readable media includes both permanent and non-permanent, removable and non-removable media that can store information using any method or technology. Information can be computer-readable instructions, data structures, modules of programs, or other data. Examples of computer storage media include, but are not limited to, phase-change memory (PRAM), static random access memory (SRAM), dynamic random access memory (DRAM), other types of random access memory (RAM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), flash memory or other memory technologies, CD-ROM, digital versatile optical disc (DVD) or other optical storage, magnetic tape, magnetic magnetic disk storage or other magnetic storage devices, or any other non-transferable medium that can be used to store information accessible by a computing device. As defined herein, computer-readable media does not include transient computer-readable media, such as modulated data signals and carrier waves.
[0163] It should also be noted that the terms "comprising," "including," or any other variations thereof are intended to cover non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements includes not only those elements but also other elements not expressly listed, or elements inherent to such a process, method, article, or apparatus. Without further limitation, an element defined by the phrase "comprising one..." does not exclude the presence of other identical elements in the process, method, article, or apparatus that includes said element.
[0164] Those skilled in the art will understand that the embodiments of this specification can be provided as methods, systems, or computer program products. Therefore, this specification may take the form of a completely hardware embodiment, a completely software embodiment, or an embodiment combining software and hardware aspects. Furthermore, this specification may take the form of a computer program product embodied on one or more computer-usable storage media (including, but not limited to, disk storage, CD-ROM, optical storage, etc.) containing computer-usable program code.
[0165] This specification can be described in the general context of computer-executable instructions that are executed by a computer, such as program modules. Generally, program modules include routines, programs, objects, components, data structures, etc., that perform a specific task or implement a specific abstract data type. This specification can also be practiced in distributed computing environments, where tasks are performed by remote processing devices connected via a communication network. In distributed computing environments, program modules can reside in local and remote computer storage media, including storage devices.
[0166] The various embodiments in this specification are described in a progressive manner. Similar or identical parts between embodiments can be referred to interchangeably. Each embodiment focuses on describing the differences from other embodiments. In particular, the system embodiments are basically similar to the method embodiments, so the description is relatively simple; relevant parts can be referred to the descriptions in the method embodiments.
[0167] The above description is merely an embodiment of this specification and is not intended to limit this specification. Various modifications and variations can be made to this specification by those skilled in the art. Any modifications, equivalent substitutions, improvements, etc., made within the spirit and principles of this specification should be included within the scope of the claims of this specification.
Claims
1. A business verification system, the system comprising: A first device, a second device, and a verification system, wherein a preset secure SIM card is installed in the second device; The first device is configured to send a service request in response to a service operation performed by a user based on a service account; The verification system is configured to initiate a verification request for a to-be-verified user corresponding to the service account based on the service request, and verify the service performed by the user according to verification information returned by the second device based on the verification request; The second device is configured to call the installed secure SIM card based on the verification request, and return verification information based on SIM card information of the to-be-verified user saved in the secure SIM card; The second device is configured to display a verification page based on the verification request; Obtain to-be-verified information input by the to-be-verified user on the verification page; Compare the to-be-verified information with security verification information of the to-be-verified user pre-saved in the secure SIM card to obtain a comparison result, and return verification information according to the comparison result and the SIM card information of the to-be-verified user saved in the secure SIM card.
2. The system of claim 1, further comprising: A risk control system; The risk control system is configured to receive the service request sent by the first device, perform risk identification on the service performed by the user according to the service request, and send a service verification request to the verification system when it is determined that the service performed by the user has risks. The verification system is configured to initiate a verification request for a to-be-verified user corresponding to the service account based on the received service verification request.
3. The system of claim 1, further comprising: A management system of a third party, the management system being configured to manage a binding relationship between SIM card information of each secure SIM card pre-issued by the third party and each user; The verification system is configured to send a query request to the management system to query whether the to-be-verified user corresponding to the service account has pre-applied for a secure SIM card based on the service request; The management system is configured to query whether the to-be-verified user has pre-applied for a secure SIM card according to the binding relationship based on the received query request, and send a query result to the verification system when it is queried that the to-be-verified user has pre-applied for a secure SIM card. The verification system is further configured to initiate a verification request for a to-be-verified user corresponding to the service account based on the query result.
4. The system of claim 3, wherein the second device is configured to return the verification information to the management system; The management system is configured to perform verification verification on the verification information according to the SIM card information of the secure SIM card bound by the to-be-verified user pre-saved, obtain a verification result, and return the verification result to the verification system; The verification system is configured to receive the verification result and verify the service performed by the user according to the verification result.
5. A service verification method, the method being applied to a verification system and comprising: generating a verification request based on a service request generated by a first device, the service request being generated by the first device in response to a user performing a service operation based on a service account, the verification request being used to verify a to-be-verified user corresponding to the service account; verifying the service performed by the user according to verification information returned by a second device based on the verification request, wherein the verification information is returned by the second device based on calling SIM card information of the to-be-verified user stored in a secure SIM card installed, and the second device is based on the verification request to call the secure SIM card; wherein the verification information is obtained by the second device comparing to-be-verified information input by the to-be-verified user with security verification information set by the to-be-verified user in the secure SIM card in advance, and returning according to a comparison result and the SIM card information of the to-be-verified user stored in the secure SIM card, and the to-be-verified information is input by the to-be-verified user on a verification page displayed by the second device based on the verification request.
6. The method of claim 5, wherein generating a verification request based on a service request generated by a first device specifically comprises: receiving a service verification request sent by a risk control system, the service verification request being sent by the risk control system to the verification system when the risk control system determines that the service performed by the user has risks after receiving the service request sent by the first device; initiating a verification request for a to-be-verified user corresponding to the service account based on the received service verification request.
7. The method of claim 5, wherein generating a verification request based on a service request generated by a first device specifically comprises: sending a query request to a management system of a third party to query whether a to-be-verified user corresponding to the service account has pre-applied for a secure SIM card based on the service request, the management system being used to manage a binding relationship between SIM card information of each secure SIM card pre-issued by the third party and each user; initiating a verification request for the to-be-verified user corresponding to the service account based on a query result returned by the management system, the query result being returned by the management system to the verification system when the management system queries that the to-be-verified user has pre-applied for a secure SIM card based on the received query request and the binding relationship.
8. The method of claim 7, wherein verifying the service performed by the user according to verification information returned by a second device based on the verification request specifically comprises: receiving a verification result sent by the management system, the verification result being obtained by the management system after verifying the verification information sent by the second device based on pre-stored SIM card information of a secure SIM card bound by the to-be-verified user; verifying the service performed by the user according to the verification result. 9.A service verification method, applied to a second device, wherein a preset secure SIM card is installed in the second device, and the method comprises: calling the secure SIM card pre-installed based on a verification system initiated identity verification request, wherein the identity verification request is initiated by the verification system based on a service request generated by a first device, the service request is generated by the first device in response to a user performing a service operation based on a service account, and the identity verification request is used to verify a to-be-verified user corresponding to the service account; returning identity verification information based on SIM card information of the to-be-verified user saved in the secure SIM card, so that the verification system verifies the service performed by the user based on the identity verification information; returning identity verification information based on SIM card information of the to-be-verified user saved in the secure SIM card, and the identity verification information specifically comprises: displaying an identity verification page based on the identity verification request; obtaining to-be-verified information input by the to-be-verified user on the identity verification page; comparing the to-be-verified information with security verification information set by the to-be-verified user pre-saved in the secure SIM card to obtain a comparison result; returning identity verification information according to the comparison result and the SIM card information of the to-be-verified user saved in the secure SIM card. 10.A service verification apparatus, comprising: a request generation module configured to generate an identity verification request based on a service request generated by a first device, wherein the service request is generated by the first device in response to a user performing a service operation based on a service account, and the identity verification request is used to verify a to-be-verified user corresponding to the service account; a verification module configured to verify a service performed by the user according to identity verification information returned by a second device based on the identity verification request, wherein the identity verification information is returned by the second device based on SIM card information of the to-be-verified user saved in a secure SIM card called by the second device, and the second device is the secure SIM card called based on the identity verification request; wherein the identity verification information is returned by the second device according to a comparison result and the SIM card information of the to-be-verified user saved in the secure SIM card, wherein the comparison result is obtained by comparing to-be-verified information input by the to-be-verified user on an identity verification page displayed by the second device based on the identity verification request with security verification information set by the to-be-verified user pre-saved in the secure SIM card, and the to-be-verified information is input by the to-be-verified user on the identity verification page. 11.A service verification apparatus, wherein a preset secure SIM card is installed in the apparatus, and the apparatus comprises: a calling module configured to call the secure SIM card pre-installed based on an identity verification request initiated by a verification system, wherein the identity verification request is initiated by the verification system based on a service request generated by a first device, the service request is generated by the first device in response to a user performing a service operation based on a service account, and the identity verification request is used to verify a to-be-verified user corresponding to the service account. The returning module is configured to return the verification information based on the SIM card information corresponding to the user to be verified stored in the secure SIM card, so that the verification system verifies the service performed by the user based on the verification information. The returning module is specifically configured to: based on the verification request, display a verification page, acquire the to-be-verified information input by the user to be verified on the verification page, compare the to-be-verified information with the security verification information set by the user to be verified and previously stored in the secure SIM card, obtain a comparison result, and return the verification information according to the comparison result and the SIM card information corresponding to the user to be verified stored in the secure SIM card. 12.A computer readable storage medium, the storage medium storing a computer program, the computer program being executed by a processor to implement the method of any one of claims 5-9. 13.An electronic device, comprising a memory, a processor, and a computer program stored in the memory and executable on the processor, wherein the processor implements the method of any one of claims 5-9 when executing the program.
Citation Information
Patent Citations
Method, electronic equipment and system for acquiring verification code
CN114006712A
Identity authentication method and device and storage medium
CN117892274A