Detection method and device, electronic equipment and storage medium

By comparing the developer certificate in the application whitelist with the certificate in the target application list and updating the whitelist, the problem of the application whitelist cannot be updated in time is solved, and the security of electronic devices is improved.

CN120046134APending Publication Date: 2025-05-27GUANGDONG OPPO MOBILE TELECOMMUNICATIONS CORP LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202311599671.X
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2023-11-27
Publication Date
2025-05-27

AI Technical Summary

Technical Problem

The application whitelist cannot promptly know the developer certificate update status of the target application, resulting in the developer certificate being unable to be updated in time, which in turn leads to the failure of identity verification and affects the security of electronic devices.

Method used

By obtaining the developer certificate in the initial application whitelist and the target application list, perform version comparison. If the version of the target developer certificate is higher than the version of the initial developer certificate, update the initial application whitelist to the target application whitelist to ensure that the version of the developer certificate is consistent.

Benefits of technology

Improve the efficiency of detecting the developer certificate updates on the application whitelist, ensure the security of electronic devices, and avoid identity verification failures.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120046134A_ABST
    Figure CN120046134A_ABST
Patent Text Reader

Abstract

The invention provides a detection method and device, electronic equipment and a storage medium, and the method comprises the steps: obtaining an initial application white list, and enabling each initial application program in the initial application white list to correspond to an initial developer certificate; obtaining a plurality of target application programs corresponding to the initial application white list from the target application list; performing version comparison on the target developer certificate and the initial developer certificate; and if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, updating the initial application white list to a target application white list based on the target developer certificate, so that the version of the corresponding developer certificate in the target application white list comprises the version of the corresponding developer certificate in the target application list. And the initial application white list is updated based on the target developer certificate corresponding to the target application program, so that the efficiency of update detection of the developer certificate in the application white list can be improved, and the security of the electronic equipment is improved.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This application relates to the technical field of electronic devices, and in particular, to a detection method, apparatus, electronic device, and storage medium. Background Art

[0002] With the continuous development of electronic device technology, the electronic device system can achieve a rich application ecosystem by installing various application programs. In the software development of the Android system, an application whitelist mechanism is usually adopted to implement access restrictions on target functions, that is, only applications within the application whitelist are allowed to call the target functions, thereby improving the security of the electronic device. Among them, when a target application calls a target function, it is necessary to perform identity verification on the developer certificate of the target application and the corresponding developer certificate in the application whitelist. If the identity verification is successful, the target application can call the target function.

[0003] In the related art, during the process of the application whitelist restricting access to the target function, the application whitelist cannot timely learn about the update situation of the developer certificate of the target application, so that the developer certificate in the application whitelist cannot be updated in time, and the new version of the developer certificate corresponding to the target application does not contain the old version of the developer certificate saved in the application whitelist, resulting in failed identity verification and affecting the security of the electronic device. Summary of the Invention

[0004] This application provides a detection method, apparatus, electronic device, and storage medium. This method can improve the efficiency of detecting the update of the developer certificate in the application whitelist, and further improve the security of the electronic device.

[0005] In a first aspect, a detection method is provided, including:

[0006] Obtain an initial application whitelist, where each initial application program in the initial application whitelist corresponds to an initial developer certificate;

[0007] Obtain a plurality of target application programs corresponding to the initial application whitelist from a target application list, where each target application program corresponds to a target developer certificate;

[0008] Compare the versions of the target developer certificate and the initial developer certificate;

[0009] If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, update the initial application whitelist to a target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list.

[0010] In a second aspect, a detection apparatus is provided, including:

[0011] A first acquisition module, configured to acquire an initial application whitelist, where each initial application in the initial application whitelist corresponds to an initial developer certificate;

[0012] A second acquisition module, configured to acquire a plurality of target application programs corresponding to the initial application whitelist from a target application list, where each target application program corresponds to a target developer certificate;

[0013] A comparison module, configured to compare the versions of the target developer certificate and the initial developer certificate;

[0014] An update module, configured to, if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, update the initial application whitelist to a target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list.

[0015] In a third aspect, an electronic device is provided, including:

[0016] A memory, configured to store executable program code;

[0017] A processor, configured to call and run the executable program code from the memory, so that the electronic device executes the detection method described in any one of the above.

[0018] In a fourth aspect, a computer-readable storage medium is provided, where the computer-readable storage medium stores a computer program, and when the computer program is executed, the detection method described in any one of the above is implemented.

[0019] The beneficial effects brought by the technical solutions provided in some embodiments of the present application at least include: The detection method provided in the present application compares the version of the target developer certificate corresponding to the target application program in the target application list with the initial developer certificate corresponding to the initial application whitelist. When the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, the initial application whitelist is updated to a target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list, thereby improving the efficiency of detecting the update of the developer certificate in the application whitelist, and further improving the security of the electronic device. Description of the Drawings

[0020] To more clearly illustrate the technical solutions in the embodiments of the present application or the prior art, the following will briefly introduce the drawings required for the description of the embodiments or the prior art. Obviously, the drawings in the following description are only some embodiments of the present application. For those skilled in the art, without creative efforts, other drawings can be obtained based on these drawings.

[0021] Figure 1 It is the first flowchart of the detection method provided by the embodiment of the present application.

[0022] Figure 2 It is the second flowchart of the detection method provided by the embodiment of the present application.

[0023] Figure 3 It is the third flowchart of the detection method provided by the embodiment of the present application.

[0024] Figure 4 It is the structural schematic diagram of the detection device provided by the embodiment of the present application.

[0025] Figure 5 It is the first structural schematic diagram of the electronic device provided by the embodiment of the present application.

[0026] Figure 6 It is the second structural schematic diagram of the electronic device provided by the embodiment of the present application. Detailed implementation manners

[0027] To make the features and advantages of the present application more obvious and understandable, the following will clearly and completely describe the technical solutions in the embodiments of the present application in conjunction with the drawings in the embodiments of the present application. Obviously, the described embodiments are only some embodiments of the present application, not all embodiments. Based on the embodiments in the present application, all other embodiments obtained by those skilled in the art without creative efforts belong to the scope of protection of the present application.

[0028] When the following description involves drawings, unless otherwise indicated, the same numbers in different drawings represent the same or similar elements. The implementation manners described in the following exemplary embodiments do not represent all implementation manners consistent with the present application. On the contrary, they are only examples of devices and methods consistent with some aspects of the present application as detailed in the appended claims.

[0029] Hereinafter, the terms "first" and "second" are only used for descriptive purposes and cannot be understood as implying or suggesting relative importance or implicitly indicating the quantity of the indicated technical features. Thus, the features defined with "first" and "second" may explicitly or implicitly include one or more of such features.

[0030] In the related art, during the process of using a whitelist to restrict access to a target function, the whitelist cannot timely learn about the update situation of the developer certificate of the target application, resulting in the inability to timely update the developer certificate in the whitelist. Moreover, the new version of the developer certificate corresponding to the target application does not contain the old version of the developer certificate saved in the whitelist, thus leading to the failure of identity verification and affecting the security of the electronic device.

[0031] To solve the technical problems existing in the related art, an embodiment of the present application provides a detection method. The execution subject of this detection method can be an electronic device, such as an electronic device like a smart phone, a tablet computer, a laptop computer, etc.

[0032] The following will be described in detail respectively. It should be noted that the description order of the following embodiments does not limit the preferred order of the embodiments. Please refer to Figure 1 , Figure 1 is the first process schematic diagram of the detection method provided by the embodiment of the present application. The specific process of this detection method can be as follows:

[0033] S101, obtain an initial application whitelist, where each initial application program in the initial application whitelist corresponds to an initial developer certificate.

[0034] In this embodiment, the electronic device can establish a communication connection with a resource device. The resource device can be the development team of the application program that uses the whitelist to restrict access to the target function, that is, the resource device side can create the application whitelist. It should be noted that the whitelist includes multiple application programs, and each application program corresponds to a developer certificate. The developer certificate can include a developer public key, a developer private key, and a digital signature, etc. Among them, the developer certificate is associated with the identity of the development team; the developer private key is generated when generating the developer certificate, and it must be strictly confidential and is used to digitally sign the application program; the developer public key can be publicly shared and is used to verify the validity of the digital signature; the digital signature is a unique signature value and is used to verify the integrity and source of the application program.

[0035] In some embodiments, the process of the resource device creating the application whitelist can be: the development team of the application program determines the application list to be included in the whitelist, and respectively extracts the developer certificates such as the application package name (whitePackageName) and the developer public key (whitePubKey) in the application list; records the application package names of all application programs in the application list and the corresponding developer public keys together to form the application whitelist (whiteList); embeds the data corresponding to the application whitelist into the code or configuration file of the application program in a hard-coded manner.

[0036] Among them, the recorded information of each application in the whitelist is: {whitePackageName, whitePubKey}; the manifestation form of the application whitelist is: {{whitePackageName1, whitePubKey1}, …, {whitePackageNamen, whitePubKeyn}}.

[0037] Specifically, the electronic device can obtain the initial application whitelist, i.e., whiteList, from the resource device side. Among them, the initial application whitelist includes multiple initial applications, and each initial application corresponds to an initial developer certificate. Each initial developer certificate includes an initial package name and an initial developer public key.

[0038] S102, obtain multiple target applications corresponding to the initial application whitelist from the target application list, where each target application corresponds to a target developer certificate.

[0039] Specifically, after obtaining the initial application whitelist, the electronic device can obtain multiple target applications corresponding to the initial application whitelist from the target application list. Among them, the target application list can be the application listing in the application store of the electronic device, the application download list of the applications that have been downloaded, etc.

[0040] After obtaining multiple target applications, the corresponding target developer certificates can be obtained from the multiple target applications respectively. Specifically, each target application corresponds to a target developer certificate, and each target developer certificate includes a target package name and a target developer public key.

[0041] S103, compare the versions of the target developer certificate and the initial developer certificate.

[0042] Compare the version of the target developer certificate corresponding to the target application with the version of the initial developer certificate corresponding to the initial application. Specifically, the target package name corresponding to the target application can be matched with the initial package name corresponding to the initial application. When the target package name is the same as the initial package name, compare the versions of the target developer public key and the initial developer public key.

[0043] S104, if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, update the initial application whitelist to the target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list.

[0044] It should be noted that the initial application whitelist may include all versions of the developer certificates corresponding to the corresponding initial application. For example, the initial application A includes 5 versions of developer certificates, and the version of its current developer certificate is the latest version. Then, the initial application whitelist also stores the historical versions of the remaining 4 developer certificates of the initial application A.

[0045] Specifically, if the version of the target developer certificate is higher than the version of the initial developer certificate, it indicates that the current version of the target application corresponding to the target application list in the electronic device is higher than the version of the corresponding initial application recorded in the initial whitelist. When invoking the target function of the target application, that is, running the target application, it is necessary to authenticate the target developer certificate corresponding to the target application with the initial developer certificate corresponding to the initial whitelist. However, since the version of the target developer certificate is higher than the version of the initial developer certificate, the authentication will fail.

[0046] Therefore, based on the target developer certificate, the initial application whitelist can be updated to the target application whitelist so that the versions of the developer certificates corresponding in the target application whitelist include the versions of the developer certificates corresponding in the target application list. Specifically, the application cloud server of the electronic device can transmit the data corresponding to the target developer certificate to the resource device, and the developer team corresponding to the resource device can update the target developer certificate to the initial application whitelist to obtain the target application whitelist, so as to ensure that the version of the developer certificate in the target application whitelist on the resource device side is higher than or equal to the version of the developer certificate in the target application list of the electronic device, so that when running the target application, the authentication can be successful to achieve the target function.

[0047] It should be noted that if the version of the target developer certificate is lower than or equal to the version of the initial developer certificate, it means that the version of the target developer certificate of the target application corresponding to the target application list is in the historical versions of the initial developer certificates of its corresponding initial application in the initial application whitelist. Then, when running the target application for authentication, the developer certificate corresponding to the target application exists in the initial application whitelist, and the authentication can be completed. Therefore, if the version of the target developer certificate is lower than or equal to the version of the initial developer certificate, the current initial application whitelist data remains unchanged.

[0048] In some embodiments, after updating the initial whitelist to the target whitelist, the version of the corresponding developer public key in the target whitelist is higher than or equal to the version of the corresponding developer public key in the target application list. The application cloud server of the electronic device can regularly perform security monitoring on the target application whitelist. For example, it can detect the developer certificates corresponding to the target application whitelist by means of security vulnerability announcements from security vendors, news information related to security events of the target application whitelist, etc. If any application in the target application whitelist has a security problem, such as information leakage of the developer certificate corresponding to any application, corresponding handling measures can be taken in a timely manner to ensure the integrity of the developer certificate information in the target whitelist, thereby further ensuring the success rate of identity verification between the applications in the electronic device and the target whitelist during operation and improving the security of the electronic device.

[0049] Specifically, security monitoring can be performed on the target application whitelist; if any application in the target application whitelist has a security problem, the application with the security problem is deleted from the application whitelist.

[0050] Optionally, security monitoring can also be performed on the target application whitelist; if any application in the target application whitelist has a security problem, the target application corresponding to the application with the security problem is found from the target application list; the target developer certificate corresponding to the target application is obtained, and the target application whitelist is updated based on the target developer certificate.

[0051] As can be seen from the above, in this embodiment, the initial application whitelist is obtained, where each initial application in the initial application whitelist corresponds to an initial developer certificate; multiple target applications corresponding to the initial application whitelist are obtained from the target application list, where each target application corresponds to a target developer certificate; the versions of the target developer certificate and the initial developer certificate are compared; if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, the initial application whitelist is updated to the target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list. By updating the initial application whitelist to the target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list, the efficiency of detecting the update of the developer certificate in the application whitelist is improved, and thus the security of the electronic device is improved. In addition, by the application cloud server performing security monitoring on the target application whitelist, the security of the electronic device can be further improved.

[0052] According to the method described in the previous embodiment, the following is further described in detail by example. This embodiment uses the detection method applied to electronic devices such as smart phones and tablet computers as an example.

[0053] Optional, see Figure 2 , Figure 2 This is a second flow chart of the detection method provided in the embodiment of the present application. The specific process of the detection method may include:

[0054] S201, obtaining an initial application whitelist, wherein each initial application program in the application whitelist corresponds to an initial developer certificate.

[0055] In this embodiment, the electronic device can establish a communication connection with the resource device, and the resource device can be the development team of the application that uses the application whitelist to restrict the access to the target function, that is, the resource device side can create an application whitelist. It should be noted that the application whitelist includes multiple applications, each application corresponds to a developer certificate, and the developer certificate may include a developer public key, a developer private key, and a digital signature.

[0056] Specifically, the electronic device can obtain an initial application whitelist, namely, whiteList, from the resource device side, wherein the initial application whitelist includes multiple initial application programs, and each initial application program corresponds to an initial developer certificate, and each initial developer certificate includes an initial package name and an initial developer public key.

[0057] S202: Acquire multiple first target application programs from an application listing list of an application store, wherein each first target application program corresponds to a first target developer certificate.

[0058] Specifically, after obtaining the initial application whitelist, the electronic device can obtain multiple first target applications from the application listing list of the application store. The application listing list of the application store can be a list of applications that the application cloud server provides to the electronic device for downloading, and the application listing list can include applications that have been downloaded and not downloaded by the electronic device.

[0059] After obtaining multiple first target applications, corresponding first target developer certificates can be obtained for the multiple first target applications respectively. Specifically, each first target developer certificate includes a first target package name and a first target developer public key, and each first target package name corresponds to an initial package name of an initial application in the initial whitelist.

[0060] S203: perform version comparison between the first target developer certificate and the initial developer certificate.

[0061] In some embodiments, a version comparison is performed between a first target developer certificate corresponding to a first target application and an initial developer certificate corresponding to an initial application. Specifically, a first target package name corresponding to the first target application may be matched with an initial package name corresponding to the initial application. When the first target package name is the same as the initial package name, a version comparison is performed between a first target developer public key and an initial developer public key.

[0062] S204. If the version corresponding to the first target developer public key is higher than the version corresponding to the initial developer public key, then based on the first target developer public key, the initial application whitelist is updated to a first target application whitelist, where the version of the developer public key corresponding to the first target application whitelist includes the version of the developer public key corresponding to the application listing in the application store.

[0063] Specifically, if the version corresponding to the first target developer certificate is higher than the version corresponding to the initial developer certificate, it indicates that the current version of the first target application corresponding to the application listing in the application store of the electronic device is higher than the version of the corresponding initial application recorded in the initial whitelist. When invoking the first target function of the first target application, that is, running the first target application, it is necessary to perform identity verification between the first target developer certificate corresponding to the first target application and the initial developer certificate corresponding to the initial whitelist. However, since the version corresponding to the first target developer certificate is higher than the version corresponding to the initial developer certificate, the identity verification will fail.

[0064] Therefore, based on the first target developer certificate, the initial application whitelist can be updated to a first target application whitelist so that the version of the developer certificate corresponding to the first target application whitelist includes the version of the developer certificate corresponding to the application listing in the application store. Specifically, the application program cloud server of the electronic device may transmit the data corresponding to the first target developer certificate to the resource device, and the developer team corresponding to the resource device may update the first target developer certificate to the initial application whitelist to obtain the first target application whitelist, so as to ensure that the version of the developer certificate corresponding to the target application whitelist on the resource device side is higher than or equal to the version of the developer certificate corresponding to the application listing in the application store of the electronic device, so that when running the target application, the identity verification can succeed to implement the target function.

[0065] Specifically, when the version corresponding to the first target developer public key is higher than the version corresponding to the initial developer public key, then based on the first target developer public key, the initial application whitelist is updated to a first target application whitelist, where the version of the developer public key corresponding to the first target application whitelist includes the version of the developer public key corresponding to the application listing in the application store.

[0066] It should be noted that if the version of the first target developer public key is lower than or equal to the version of the initial developer public key, it indicates that the version of the first target developer certificate corresponding to the first target application in the application listing is the historical version of the initial developer certificate corresponding to its corresponding initial application in the initial application whitelist. Then, when running the first target application for authentication, the developer certificate corresponding to the first target application exists in the initial application whitelist, and the authentication can be completed. Therefore, if the version of the first target developer certificate is lower than or equal to the version of the initial developer certificate, the current initial application whitelist data remains unchanged.

[0067] In some embodiments, after updating the initial whitelist to the first target whitelist, at this time, the version of the developer public key corresponding in the first target whitelist is higher than or equal to the version of the developer public key corresponding in the application listing. The application program cloud server of the electronic device can regularly perform security monitoring on the first target application whitelist. For example, it can detect the developer certificate corresponding to the first target application whitelist by means of security vulnerability announcements from security manufacturers, news information related to security events of the target application whitelist, etc. If any application in the first target application whitelist has a security problem, such as information leakage of the developer certificate corresponding to any application, corresponding handling measures can be taken in a timely manner to ensure the integrity of the developer certificate information in the target whitelist, thereby further ensuring the success rate of the identity verification between the application program in the electronic device and the target whitelist during operation and improving the security of the electronic device.

[0068] As can be seen from the above, in this embodiment, by comparing the version of the first target developer certificate corresponding to the first target application in the application listing with the version of the initial developer certificate corresponding in the initial application whitelist, when the version of the first target developer certificate is higher than the version of the initial developer certificate, based on the first target developer certificate, the initial application whitelist is updated to the first target application whitelist, so that the version of the developer certificate corresponding in the first target application whitelist includes the version of the developer certificate corresponding in the application listing. By detecting the initial developer certificate in the initial application whitelist by the application program cloud server based on the first target developer certificate corresponding to the application listing, it can be timely discovered whether the initial developer certificate in the initial whitelist needs to be updated to the first target developer certificate, improving the efficiency of detecting the update of the developer certificate in the application whitelist, and further improving the security of the electronic device. In addition, by performing security monitoring on the first target application whitelist by the application program cloud server, the security of the electronic device can be further improved.

[0069] Optionally, please refer to Figure 3 , Figure 3This is the third process schematic diagram of the detection method provided by the embodiments of the present application. The specific process of the detection method may include:

[0070] S301, obtain an initial application whitelist, where each initial application in the application whitelist corresponds to an initial developer certificate.

[0071] In this embodiment, the electronic device may establish a communication connection with the resource device. The resource device may be the development team of the application program that uses the application whitelist to restrict access to the target function. That is, the resource device side can create an application whitelist. It should be noted that the application whitelist includes multiple application programs, and each application program corresponds to a developer certificate. The developer certificate may include a developer public key, a developer private key, and a digital signature, etc.

[0072] Specifically, the electronic device may obtain the initial application whitelist, that is, whiteList, from the resource device side. The initial application whitelist includes multiple initial application programs, and each initial application program corresponds to an initial developer certificate. Each initial developer certificate includes an initial package name and an initial developer public key.

[0073] S302, obtain multiple second target application programs from the application download list, where each second target application program corresponds to a second target developer certificate.

[0074] Specifically, after obtaining the initial application whitelist, the electronic device may obtain multiple second target application programs from the application download list. The application programs in the application download list are the application programs that have been downloaded by the electronic device.

[0075] After obtaining multiple second target application programs, the corresponding second target developer certificates can be obtained for the multiple second target application programs respectively. Specifically, each second target developer certificate includes a second target package name and a second target developer public key, and each second target package name corresponds to an initial package name of an initial application program in the initial whitelist.

[0076] It can be understood that since the application listing in the application store is the application program updated to the latest version by the application program cloud server, and the application programs in the application download list may be old version application programs, the version of the second target developer public key is lower than or equal to the version of the first target developer public key.

[0077] S303, compare the version of the second target developer certificate with the initial developer certificate.

[0078] In some embodiments, a version comparison is performed on the second target developer certificate corresponding to the second target application and the initial developer certificate corresponding to the initial application. Specifically, the second target package name corresponding to the second target application can be matched with the initial package name corresponding to the initial application, and when the second target package name is the same as the initial package name, the second target developer public key is compared with the initial developer public key.

[0079] S304: If the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, the initial application whitelist is updated to the second target application whitelist based on the second target developer public key, wherein the version of the corresponding developer public key in the second target application whitelist includes the version of the corresponding developer public key in the application download list.

[0080] Specifically, if the version corresponding to the second target developer certificate is higher than the version corresponding to the initial developer certificate, it means that the current version corresponding to the second target application in the application download list of the electronic device is higher than the version of the corresponding initial application recorded in the initial whitelist. When calling the second target function of the second target application, i.e. running the second target application, it is necessary to authenticate the second target developer certificate corresponding to the second target application with the initial developer certificate corresponding to the initial whitelist, but the authentication fails because the version corresponding to the second target developer certificate is higher than the version corresponding to the initial developer certificate.

[0081] Therefore, the initial application whitelist can be updated to the second target application whitelist based on the second target developer certificate, so that the version of the corresponding developer certificate in the second target application whitelist includes the version of the corresponding developer certificate in the application download list. Specifically, the application cloud server of the electronic device can transmit the data corresponding to the second target developer certificate to the resource device, and the developer team corresponding to the resource device can update the second target developer certificate to the initial application whitelist to obtain the second target application whitelist, so as to ensure that the version corresponding to the developer certificate in the target application whitelist on the resource device side is higher than or equal to the version corresponding to the developer certificate in the application download list of the electronic device, so that when running the target application, the identity authentication can be successful to achieve the target function.

[0082] Specifically, if the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, the initial application whitelist is updated to the second target application whitelist based on the second target developer public key, wherein the version of the corresponding developer public key in the second target application whitelist includes the version of the corresponding developer public key in the application listing list.

[0083] S305, if the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, update the initial application whitelist to a third target application whitelist based on the first target developer public key and the second target developer public key. Among them, the version of the developer public key corresponding to the third target application whitelist includes the version of the developer public key corresponding to the application download list and the version of the developer public key corresponding to the application listing list.

[0084] It should be noted that since the version of the application program in the application download list is lower than or equal to the version of the application program in the application listing list, the version of the second target developer certificate corresponding to the application program in the application download list is also lower than or equal to the version of the first target developer certificate corresponding to the application program in the application listing list. Then, in order to retain developer certificates of different versions in the updated target application whitelist, the initial application whitelist can be updated to a third target application whitelist based on the first target developer certificate and the second target developer certificate.

[0085] Specifically, the initial application whitelist can be updated to a third target application whitelist based on the first target developer certificate and the second target developer certificate, so that the version of the developer certificate corresponding to the third target application whitelist includes the version of the developer certificate corresponding to the application listing list and the version of the developer certificate corresponding to the application download list. Specifically, the application program cloud server of the electronic device can transmit the data corresponding to the first target developer certificate and the second target developer certificate to the resource device, and the developer team corresponding to the resource device can update the first target developer certificate and the second target developer certificate to the initial application whitelist to obtain the third target application whitelist, so as to ensure that the version of the developer certificate corresponding to the target application whitelist on the resource device side is higher than or equal to the version of the developer certificate corresponding to the application listing list and the application download list of the electronic device, so that the identity authentication can be successfully performed to implement the target function when the target application program is running.

[0086] Specifically, if the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, update the initial application whitelist to a third target application whitelist based on the first target developer public key and the second target developer public key. Among them, the version of the developer public key corresponding to the third target application whitelist includes the version of the developer public key corresponding to the application download list and the version of the developer public key corresponding to the application listing list.

[0087] As can be seen from the above, based on the first target developer certificate, this embodiment updates the initial application whitelist to the first target application whitelist, so that the version of the corresponding developer certificate in the first target application whitelist includes the version of the corresponding developer certificate in the application listing. By detecting the initial developer certificate in the initial application whitelist through the application cloud server based on the second target developer certificate corresponding to the application download list, it can be timely discovered whether the initial developer certificate in the initial whitelist needs to be updated to the second target developer certificate, improving the efficiency of detecting the update of the developer certificate in the application whitelist, and thus enhancing the security of the electronic device.

[0088] In addition, based on the first target developer certificate and the second developer certificate, this embodiment also updates the initial application whitelist to the third target application whitelist, so that the version of the corresponding developer certificate in the third target application whitelist includes the version of the corresponding developer certificate in the application listing and the version of the corresponding developer certificate in the application download list. As a result, the application programs in the third target application whitelist can include the corresponding latest version of the developer certificate and the historical version of the developer certificate, and the versions of both the first target developer certificate and the second developer certificate are higher than the initial developer certificate, thereby enhancing the feasibility of this solution.

[0089] It should also be noted that by the application cloud server performing security monitoring on the target application whitelist, the security of the electronic device can be further improved.

[0090] In addition, the embodiment of the present application also provides a detection device. Please refer to Figure 4 , Figure 4 which is a schematic structural diagram of the detection device provided by the embodiment of the present application. Among them, the detection device 400 may include a first acquisition module 401, a second acquisition module 402, a comparison module 403, and an update module 404, specifically as follows:

[0091] The first acquisition module 401 is configured to acquire an initial application whitelist, where each initial application program in the initial application whitelist corresponds to an initial developer certificate;

[0092] The second acquisition module 402 is configured to acquire a plurality of target application programs corresponding to the initial application whitelist from the target application list, where each target application program corresponds to a target developer certificate;

[0093] The comparison module 403 is configured to compare the version of the target developer certificate with the version of the initial developer certificate;

[0094] An update module 404, configured to, if the version of the target developer certificate is higher than the version of the initial developer certificate, update the initial application whitelist to a target application whitelist based on the target developer certificate, so that the version of the developer certificate corresponding to the target application whitelist includes the version of the developer certificate corresponding to the target application list.

[0095] In some embodiments, the initial developer certificate includes an initial package name and an initial developer public key. The second acquisition module 402 may further be configured to: acquire a plurality of first target application programs from an application listing of an application store, where each first target application program corresponds to a first target developer certificate, the first target developer certificate includes a first target package name and a first target developer public key, and each first target package name corresponds to the initial package name.

[0096] Specifically, the comparison module 403 may further be configured to: compare the version of the first target developer public key with the version of the initial developer public key; the update module 404 may further be configured to, if the version of the first target developer public key is higher than the version of the initial developer public key, update the initial application whitelist to a first target application whitelist based on the first target developer public key, where the version of the developer public key corresponding to the first target application whitelist includes the version of the developer public key corresponding to the application listing.

[0097] In some embodiments, the second acquisition module 402 may further be configured to: acquire a plurality of second target application programs from an application download list, where each second target application program corresponds to a second target developer certificate, the second target developer certificate includes a second target package name and a second target developer public key, each second target package name corresponds to the initial package name, and the version of the second target developer public key is lower than or equal to the version of the first target developer public key.

[0098] Specifically, the comparison module 403 may further be configured to: compare the second target developer public key with the initial developer public key; the update module 404 may further be configured to, if the version of the second target developer public key is higher than the version of the initial developer public key, update the initial application whitelist to a second target application whitelist based on the second target developer public key, where the version of the developer public key corresponding to the second target application whitelist includes the version of the developer public key corresponding to the application download list.

[0099] Optionally, the comparison module 403 can also be used to: compare the second target developer public key with the initial developer public key; the update module 404 can also be used to: if the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, update the initial application whitelist to a third target application whitelist based on the first target developer public key and the second target developer public key, where the version of the developer public key corresponding to the third target application whitelist includes the version of the developer public key corresponding to the application download list and the version of the developer public key corresponding to the application listing list.

[0100] In some embodiments, the detection device 400 may further include a security monitoring module, and the security monitoring module can be used to: perform security monitoring on the target application whitelist; if any application program in the target application whitelist has a security problem, delete the application program with the security problem from the target application whitelist.

[0101] Optionally, the security monitoring module can also be used to: perform security monitoring on the target application whitelist; if any application program in the target application whitelist has a security problem, find the target application program corresponding to the application program with the security problem from the target application list; obtain the target developer certificate corresponding to the target application program, and update the target application whitelist based on the target developer certificate.

[0102] It should be noted that the detection device provided in the embodiments of the present application and the detection method in the above embodiments belong to the same concept. Any method provided in the detection method embodiments can be run on the detection device. For the specific implementation process, please refer to the detection method embodiments and will not be elaborated here.

[0103] In this embodiment, the detection device 400 obtains the initial application whitelist through the first acquisition module 401, where each initial application program in the initial application whitelist corresponds to an initial developer certificate; obtains a plurality of target application programs corresponding to the initial application whitelist from the target application list through the second acquisition module 402, where each target application program corresponds to a target developer certificate; compares the version of the target developer certificate with the version of the initial developer certificate through the comparison module 403; if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, updates the initial application whitelist to the target application whitelist based on the target developer certificate, so that the version of the developer certificate corresponding to the target application whitelist includes the version of the developer certificate corresponding to the target application list.

[0104] This embodiment also provides a computer-readable storage medium, in which computer program code is stored. When the computer program code runs on a computer, the computer is caused to execute the above-related method steps to implement a detection method provided in the above embodiment.

[0105] Among them, the storage medium may include: read-only memory (ROM, Read Only Memory), random access memory (RAM, Random Access Memory), magnetic disk or optical disk, etc.

[0106] Since the instructions stored in the storage medium can execute the steps in any of the detection methods provided in the embodiments of the present application, the beneficial effects that can be achieved by any of the detection methods provided in the embodiments of the present application can be realized. For details, please refer to the previous embodiments and will not be elaborated here.

[0107] Correspondingly, an electronic device 500 is further provided in the embodiments of the present application. The electronic device 500 may include devices such as in-vehicle terminals. Please refer to Figure 5 , Figure 5 which is the first structural schematic diagram of the electronic device provided in the embodiments of the present application. The electronic device 500 includes a processor 501 and a memory 502. Among them, the processor 501 is electrically connected to the memory 502.

[0108] The processor 501 is the control center of the electronic device 500, connecting various parts of the entire electronic device through various interfaces and lines. By running or calling the computer program stored in the memory 502 and calling the data stored in the memory 502, it executes various functions of the electronic device and processes data, thereby monitoring the electronic device as a whole.

[0109] The memory 502 can be used to store software programs and modules. The processor 501 executes various functional applications and data processing by running the computer programs and modules stored in the memory 502. The memory 502 may mainly include a program storage area and a data storage area. Among them, the program storage area can store an operating system, computer programs required for at least one function, etc.; the data storage area can store data created according to the use of the electronic device.

[0110] In addition, the memory 502 may include high-speed random access memory, and may also include non-volatile memory, such as at least one magnetic disk storage device, flash memory device, or other volatile solid-state storage devices. Correspondingly, the memory 502 may further include a memory controller to provide the processor 501 with access to the memory 502.

[0111] In this embodiment, the processor 501 in the electronic device 500 loads the instructions corresponding to the processes of one or more computer programs into the memory 502 according to the following steps, and the processor 501 runs the computer programs stored in the memory 502 to implement various functions as follows:

[0112] Obtain an initial application whitelist, where each initial application program in the initial application whitelist corresponds to an initial developer certificate;

[0113] Obtain a plurality of target application programs corresponding to the initial application whitelist from the target application list, where each target application program corresponds to a target developer certificate;

[0114] Compare the versions of the target developer certificate and the initial developer certificate;

[0115] If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, update the initial application whitelist to the target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list.

[0116] In some embodiments, please refer to Figure 6 , Figure 6 FIG. is the second schematic structural diagram of the electronic device provided by the embodiment of the present application. The electronic device 500 may include: a processor 501, a memory 502, a display screen 503, a camera component 504, an audio circuit 505, a sensor 506, and a power supply 507. Among them, the processor 501 is electrically connected to the display 503, the camera component 504, the audio circuit 505, the sensor 506, and the power supply 507 respectively.

[0117] The display screen 503 can be used to display information input by the user or information provided to the user and various graphical user interfaces of the electronic device, and these graphical user interfaces can be composed of images, texts, icons, videos, and any combination thereof.

[0118] The imaging component 504 may include image processing circuitry, which may be implemented using hardware and / or software components and may include various processing units that define an Image Signal Processing pipeline. The image processing circuitry may at least include: multiple cameras, an Image Signal Processor (ISP processor), a control logic unit, and an image memory, etc. Each of the cameras may at least include one or more lenses and an image sensor. The image sensor may include a color filter array (such as a Bayer filter). The image sensor may acquire the light intensity and wavelength information captured by each imaging pixel of the image sensor and provide a set of raw image data that can be processed by the image signal processor.

[0119] The audio circuit 505 may be used to provide an audio interface between the user and the electronic device through a speaker and a microphone. Among them, the audio circuit 505 includes a microphone. The microphone is electrically connected to the processor 501. The microphone is used to receive the voice information input by the user.

[0120] The sensor 506 is used to collect information about the electronic device itself, or the user, or the external environment. For example, the sensor 506 may include one or more of a vibration sensor, a temperature sensor, a distance sensor, a magnetic field sensor, a light sensor, an acceleration sensor, a fingerprint sensor, a Hall sensor, a position sensor, a gyroscope, an inertial sensor, an attitude sensor, a barometer, a heart rate sensor, etc.

[0121] The power supply 507 is used to supply power to each component of the electronic device 500. In some embodiments, the power supply 507 may be logically connected to the processor 501 through a power management system, so as to implement functions such as management of charging, discharging, and power consumption management through the power management system.

[0122] In the embodiments provided in this application, it should be understood that the disclosed devices and methods may be implemented in other ways. For example, the device embodiments described above are only illustrative. For example, the division of modules or units is only a logical function division. In actual implementation, there may be other division methods. For example, multiple units or components may be combined or integrated into another device, or some features may be ignored or not executed. Another point, the displayed or discussed coupling or direct coupling or communication connection between each other may be through some interfaces. The indirect coupling or communication connection of the device or unit may be in an electrical, mechanical or other form.

[0123] For the detection device according to the embodiments of the present application, its various functional modules can be integrated in a processing chip, or each module can exist physically alone, or two or more modules can be integrated in one module. The above-mentioned integrated modules can be implemented in the form of hardware or in the form of software functional modules. If the integrated module is implemented in the form of a software functional module and sold or used as an independent product, it can also be stored in a computer-readable storage medium.

[0124] The above has introduced in detail the detection method, device, electronic device and storage medium provided by the embodiments of the present application. Specific examples are used in this article to elaborate on the principle and implementation manner of the present application. The above description of the embodiments is only used to help understand the method and its core idea of the present application; at the same time, for those skilled in the art, according to the idea of the present application, there will be changes in the specific implementation manner and application scope. In summary, the content of this specification should not be construed as a limitation to the present application.

Claims

1. A detection method, It is characterized in that include: Obtaining an initial application whitelist, wherein each initial application in the initial application whitelist corresponds to an initial developer certificate; Acquire multiple target application programs corresponding to the initial application whitelist from the target application list, wherein each of the target application programs corresponds to a target developer certificate; Performing a version comparison between the target developer certificate and the initial developer certificate; If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, the initial application whitelist is updated to the target application whitelist based on the target developer certificate, so that the version of the corresponding developer certificate in the target application whitelist includes the version of the corresponding developer certificate in the target application list.

2. The detection method according to claim 1, It is characterized in that The initial developer certificate includes an initial package name and an initial developer public key, and the step of obtaining a plurality of target applications corresponding to the initial application whitelist from the target application list, wherein each target application corresponds to a target developer certificate, includes: A plurality of first target applications are obtained from an application listing list of an application store, wherein each of the first target applications corresponds to a first target developer certificate, the first target developer certificate includes a first target package name and a first target developer public key, and each of the first target package names corresponds to the initial package name.

3. The detection method according to claim 2, It is characterized in that The comparing the versions of the target developer certificate and the initial developer certificate includes: Performing a version comparison between the first target developer public key and the initial developer public key; If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, based on the target developer certificate, updating the initial application whitelist to the target application whitelist so that the version of the developer certificate corresponding to the target application whitelist includes the version of the developer certificate corresponding to the target application list, including: If the version corresponding to the first target developer public key is higher than the version corresponding to the initial developer public key, the initial application whitelist is updated to the first target application whitelist based on the first target developer public key, wherein the version of the corresponding developer public key in the first target application whitelist includes the version of the corresponding developer public key in the application listing list.

4. The detection method according to claim 3, It is characterized in that The step of acquiring multiple target application programs corresponding to the initial application whitelist from the target application list, wherein each target application program corresponds to a target developer certificate, includes: Obtain multiple second target applications from the application download list, wherein each of the second target applications corresponds to a second target developer certificate, the second target developer certificate includes a second target package name and a second target developer public key, each of the second target package name corresponds to an initial package name, and the version of the second target developer public key is lower than or equal to the version of the first target developer public key.

5. The detection method according to claim 4, It is characterized in that The comparing the versions of the target developer certificate and the initial developer certificate includes: Comparing the second target developer public key with the initial developer public key; If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, based on the target developer certificate, updating the initial application whitelist to the target application whitelist so that the version of the developer certificate corresponding to the target application whitelist includes the version of the developer certificate corresponding to the target application list, including: If the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, the initial application whitelist is updated to the second target application whitelist based on the second target developer public key, wherein the version of the corresponding developer public key in the second target application whitelist includes the version of the corresponding developer public key in the application download list.

6. The detection method according to claim 4, It is characterized in that The comparing the versions of the target developer certificate and the initial developer certificate includes: Comparing the second target developer public key with the initial developer public key; If the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, based on the target developer certificate, updating the initial application whitelist to the target application whitelist so that the version of the developer certificate corresponding to the target application whitelist includes the version of the developer certificate corresponding to the target application list, including: If the version corresponding to the second target developer public key is higher than the version corresponding to the initial developer public key, the initial application whitelist is updated to a third target application whitelist based on the first target developer public key and the second target developer public key, wherein the version of the corresponding developer public key in the third target application whitelist includes the version of the corresponding developer public key in the application download list and the version of the corresponding developer public key in the application listing list.

7. The detection method according to any one of claims 1 to 6, It is characterized in that The method further comprises: Perform security monitoring on the target application whitelist; If any application in the target application whitelist has a security problem, the application having the security problem will be deleted from the target application whitelist.

8. The detection method according to any one of claims 1 to 6, It is characterized in that The method further comprises: Perform security monitoring on the target application whitelist; If any application in the target application whitelist has a security problem, find the target application corresponding to the application with the security problem from the target application list; Obtain the target developer certificate corresponding to the target application, and update the target application whitelist based on the target developer certificate.

9. A detection device, characterized in that, comprising: A first acquisition module, configured to acquire an initial application whitelist, wherein each initial application in the initial application whitelist corresponds to an initial developer certificate; A second acquisition module, configured to acquire a plurality of target applications corresponding to the initial application whitelist from the target application list, wherein each target application corresponds to a target developer certificate; A comparison module, configured to compare the versions of the target developer certificate and the initial developer certificate; An update module, configured to, if the version corresponding to the target developer certificate is higher than the version corresponding to the initial developer certificate, update the initial application whitelist to a target application whitelist based on the target developer certificate, so that the versions of the corresponding developer certificates in the target application whitelist include the versions of the corresponding developer certificates in the target application list.

10. An electronic device, characterized in that, comprising: A memory, configured to store executable program code; A processor, configured to call and run the executable program code from the memory, so that the electronic device executes the detection method according to any one of claims 1 to 8.

11. A computer-readable storage medium, characterized in that, The computer-readable storage medium stores a computer program, and when the computer program is executed, the detection method according to any one of claims 1 to 8 is implemented.