Page sharing method and device, electronic equipment and storage medium
By verifying the user identity and encrypting the page description information to generate target links, the problem of insufficient security in page sharing is solved, and more efficient and reliable page sharing protection is achieved.
Patent Information
- Application Number
- CN202410008500.3
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2024-01-03
- Publication Date
- 2025-07-04
AI Technical Summary
In the existing page sharing technology, page links are prone to expose the internal configuration information of the page provider, are susceptible to malicious attacks, and lack security and reliability.
After receiving the page sharing request, verify that the user is identified as a normal object, obtain the page description information and encrypt it to generate a target link to ensure that only normal users can access the target page.
Through encryption processing, the probability of malicious parties using target links to attack the page provider is reduced, the security and reliability of page sharing is improved, and the efficiency of generating links is maintained.
Smart Images

Figure CN120263430A_ABST
Abstract
Description
Technical Field
[0001] This application relates to the field of Internet communication technologies, and in particular, to a page sharing method, apparatus, electronic device, and storage medium. Background Art
[0002] Through page sharing, information sharing can be achieved among users. In related technologies, when a first user accesses a certain page, the first user can request to share the page with a second user. The second user will obtain a link to the page, and the second user can access the page through the link. However, in such page sharing, the page link often exposes the internal configuration information of the page provider, and thus is vulnerable to being exploited by malicious parties to cause an attack on the page provider. Therefore, a more secure and reliable page sharing solution is needed. Summary of the Invention
[0003] To solve at least one of the above-mentioned technical problems, this application provides a page sharing method, apparatus, electronic device, and storage medium:
[0004] According to a first aspect of this application, a page sharing method is provided. The method includes:
[0005] When a first object accesses a target page in a logged-in state, receiving a sharing request from the first object for the target page. The sharing request carries a first object identifier of the first object, and the target page is an internal page of a target application;
[0006] When it is determined that the first object identifier indicates a normal object, obtaining page description information of the target page;
[0007] Encrypting the first object identifier and the page description information to obtain associated data;
[0008] Generating a target link for the target page based on the associated data, where the target link is used for sharing.
[0009] According to a second aspect of this application, a page sharing apparatus is provided. The apparatus includes:
[0010] A request receiving module: configured to receive a sharing request from a first object for a target page when the first object accesses the target page in a logged-in state. The sharing request carries a first object identifier of the first object, and the target page is an internal page of a target application;
[0011] An information obtaining module: configured to obtain page description information of the target page when it is determined that the first object identifier indicates a normal object;
[0012] Encryption module: used to encrypt the first object identifier and the page description information to obtain associated data;
[0013] First link generation module: used to generate a target link for the target page based on the associated data, and the target link is used to be shared.
[0014] According to the third aspect of the present application, an electronic device is provided. The electronic device includes at least one processor and a memory communicatively connected to the at least one processor; wherein, at least one instruction or at least one program segment is stored in the memory, and the at least one instruction or at least one program segment is loaded and executed by the at least one processor to implement the page sharing method as described in the first aspect.
[0015] According to the fourth aspect of the present application, a computer-readable storage medium is provided. At least one instruction or at least one program segment is stored in the computer-readable storage medium, and the at least one instruction or at least one program segment is loaded and executed by a processor to implement the page sharing method as described in the first aspect.
[0016] According to the fifth aspect of the present application, a computer program product is provided. The computer program product includes at least one instruction or at least one program segment, and the at least one instruction or at least one program segment is loaded and executed by a processor to implement the page sharing method as described in the first aspect.
[0017] It should be understood that the above general description and the following detailed description are only exemplary and explanatory, and do not limit the present application.
[0018] Implementing the present application has the following beneficial effects:
[0019] In the case where the first object accesses the target page in a logged-in state, the present application receives a sharing request of the first object for the target page; then, when it is determined that the first object identifier indicates a normal object, the page description information of the target page is obtained; furthermore, the first object identifier and the page description information are encrypted to obtain associated data; finally, a target link for the target page is generated based on the associated data. The target link is used to be shared, so that the shared person can access the target page through the target link. The present application provides an active security protection logic for page sharing for logged-in objects. On the one hand, the successful generation of the target link requires the condition that the first object identifier indicates a normal object, which can avoid generating a target link for an abnormal logged-in object; on the other hand, for the target page to be shared, the encrypted first object identifier and page description information are carried in the target link for sharing. Selectively encrypting important information reduces the probability that the target link is exploited by malicious parties to attack the page provider, taking into account both the generation efficiency of the target link in page sharing and the security and reliability of page sharing.
[0020] Other features and aspects of the present application will become apparent from the following detailed description of exemplary embodiments with reference to the accompanying drawings. BRIEF DESCRIPTION OF THE DRAWINGS
[0021] To more clearly illustrate the technical solutions and advantages in the embodiments of the present application or the prior art, the accompanying drawings required for use in the description of the embodiments or the prior art will be briefly introduced below. Obviously, the accompanying drawings in the following description are only some embodiments of the present application. For those of ordinary skill in the art, other drawings can be obtained based on these drawings without creative efforts.
[0022] Figure 1 Shows a schematic diagram of an application environment according to an embodiment of the present application;
[0023] Figure 2 Shows a schematic flowchart of a page sharing method according to an embodiment of the present application;
[0024] Figure 3 Shows a schematic flowchart of an object security judgment logic based on page sharing times and basic behaviors according to an embodiment of the present application;
[0025] Figure 4 Shows a schematic flowchart of a non-login object requesting access to a target link according to an embodiment of the present application;
[0026] Figure 5 Shows a schematic flowchart of a logged-in object requesting access to a target link according to an embodiment of the present application;
[0027] Figure 6 Shows a schematic flowchart of an object security judgment logic based on page refresh times and basic behaviors according to an embodiment of the present application;
[0028] Figure 7 Shows a schematic flowchart of generating a link to be copied according to an embodiment of the present application;
[0029] Figure 8 Also shows a schematic flowchart of a non-login object requesting access to a target link according to an embodiment of the present application;
[0030] Figure 9 Shows a schematic flowchart of a page sharing method according to an embodiment of the present application;
[0031] Figure 10 Shows a block diagram of a device according to an embodiment of the present application;
[0032] Figure 11 Shows a schematic diagram of an electronic device according to an embodiment of the present application. DETAILED DESCRIPTION OF THE EMBODIMENTS
[0033] The following will clearly and completely describe the technical solutions in the embodiments of the present application with reference to the accompanying drawings in the embodiments of the present application. Obviously, the described embodiments are only a part of the embodiments of the present application, rather than all of the embodiments. All other embodiments obtained by those of ordinary skill in the art based on the embodiments in the present application without creative efforts shall fall within the scope of protection of the present application.
[0034] It should be noted that the terms "first", "second", etc. in the specification and claims of the present application and the above-mentioned accompanying drawings are used to distinguish similar objects, and do not necessarily have to be used to describe a specific order or sequence. It should be understood that such data can be interchanged under appropriate circumstances so that the embodiments of the present application described herein can be implemented in an order other than those illustrated or described herein. In addition, the terms "comprising" and "having" and any variations thereof are intended to cover non-exclusive inclusion. For example, a process, method, system, product or server including a series of steps or units does not necessarily have to be limited to those steps or units clearly listed, but may include other steps or units not clearly listed or inherent to these processes, methods, products or devices.
[0035] In the embodiments of the present application, the term "module" or "unit" refers to a computer program with a predetermined function or a part of a computer program, which works together with other related parts to achieve a predetermined goal, and can be fully or partially implemented by using software, hardware (such as a processing circuit or a memory), or a combination thereof. Similarly, a processor (or multiple processors or memories) can be used to implement one or more modules or units. In addition, each module or unit can be a part of an overall module or unit that includes the function of the module or unit.
[0036] The following will detail various exemplary embodiments, features, and aspects of the present application with reference to the accompanying drawings. The same reference numerals in the drawings denote elements with the same or similar functions. Although various aspects of the embodiments are shown in the drawings, the drawings do not have to be drawn to scale unless otherwise specified.
[0037] The special term "exemplary" here means "serving as an example, an embodiment". Any embodiment described as "exemplary" here does not have to be construed as superior to or better than other embodiments.
[0038] As used herein, the term "and / or" is merely a description of the relationship between associated objects, indicating that there can be three relationships. For example, A and / or B can represent: A exists alone, both A and B exist simultaneously, and B exists alone. Additionally, the term "at least one" as used herein means any one of multiple items or any combination of at least two of multiple items. For example, including at least one of A, B, and C can represent including any one or more elements selected from the set composed of A, B, and C.
[0039] In addition, for a better illustration of the present application, numerous specific details are given in the following detailed implementation manners. Those skilled in the art should understand that the present application can still be implemented without certain specific details. In some instances, methods, means, elements, and circuits well-known to those skilled in the art are not described in detail to highlight the gist of the present application.
[0040] Before further elaborating on the embodiments of the present application, the nouns and terms involved in the embodiments of the present application are described, and the nouns and terms involved in the embodiments of the present application are subject to the following explanations.
[0041] DES (Data Encryption Standard): A block algorithm using key encryption.
[0042] AES (Advanced Encryption Standard): A block encryption standard.
[0043] SM4: A block cipher standard.
[0044] Please refer to Figure 1 , Figure 1 which shows a schematic diagram of the application environment according to an embodiment of the present application. The application environment may include a terminal 10 and a server 20. The terminal 10 and the server 20 can be directly or indirectly connected through wired or wireless communication means. A target application is installed on the terminal 10, and the target page is an internal page of the target application. The server 20 is the server of the target application. When a first object accesses the target page in a logged-in state, the first object sends a sharing request for the target page to the server 20 through the terminal 10, and the sharing request carries the first object identifier of the first object. Based on the received sharing request, when the server 20 determines that the first object identifier indicates a normal object, it obtains the page description information of the target page; then, it encrypts the first object identifier and the page description information to obtain associated data; then, it generates a target link for the target page based on the associated data, and the target link is used for sharing. It should be noted that Figure 1 is merely an example.
[0045] The terminal 10 can be an entity device of types such as a smart phone, a computer (such as a desktop computer, a tablet computer, a laptop computer), an augmented reality (AR) / virtual reality (VR) device, a digital assistant, a smart voice interaction device (such as a smart speaker), a smart wearable device, a smart home appliance, a vehicle-mounted terminal, etc. The operating system of the terminal 10 can be an Android system, an iOS system (a mobile operating system developed by Apple Inc.), a Linux system (an operating system), a Microsoft Windows system (Microsoft Windows operating system), etc. Application programs such as video applications, information flow applications, browser applications, navigation applications, etc. can be installed on the terminal 10.
[0046] The server side 20 can be an independent physical server, or a server cluster or a distributed system composed of multiple physical servers, or a cloud server that provides basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communications, middleware services, domain name services, security services, CDN (Content Delivery Network), and big data and artificial intelligence platforms. The server can include a network communication unit, a processor, a memory, and so on.
[0047] In practical applications, the page sharing method provided by the embodiments of the present application can utilize technologies related to Machine Learning (ML). Machine learning is a multi-disciplinary cross-cutting discipline that involves multiple disciplines such as probability theory, statistics, approximation theory, convex analysis, and algorithm complexity theory. It specifically studies how a computer simulates or realizes human learning behaviors to acquire new knowledge or skills and reorganize the existing knowledge structure to continuously improve its own performance. Machine learning is the core of artificial intelligence and the fundamental way to make a computer intelligent, and its applications cover all fields of artificial intelligence. Machine learning and deep learning usually include technologies such as artificial neural networks, belief networks, reinforcement learning, transfer learning, inductive learning, and rote learning. The pre-trained model is the latest development result of deep learning, integrating the above technologies. For example, when performing security analysis on the basic behavior data, sharing behavior data, refresh behavior data, etc. of a logged-in object to determine whether it is an abnormal object, relevant machine learning models can be introduced to achieve this.
[0048] It should be noted that for object identifiers, behavior data, etc. that are associated with user information, when the embodiments of the present application are applied to specific products or technologies, user permission or consent needs to be obtained, and the collection, use, and processing of relevant data need to comply with the relevant laws, regulations, and standards of relevant countries and regions.
[0049] Figure 2 and 8 The flowchart shows a page sharing method according to an embodiment of the present application. As Figure 2 shown, the method includes:
[0050] S201: When a first object accesses a target page in a logged-in state, receive a sharing request for the target page from the first object. The sharing request carries a first object identifier of the first object, and the target page is an internal page of a target application;
[0051] In an embodiment of the present application, when a first object accesses a target page in a logged-in state, the server receives a sharing request for the target page from the first object. The target application is installed on the terminal, and the target page is an internal page of the target application. The first object accesses the target page in a logged-in state. It can be understood that the first object represents user x, the first object identifier represents the first account, user x logs in to the target application with the first account, and then accesses the target page. The server is the server of the target application. The terminal and the server can be directly or indirectly connected through wired or wireless communication means. When user x expects to share the target page, user x can generate a sharing request for the target page in the logged-in state of the first object by triggering relevant controls provided on the interface where the target page is located (such as clicking a button indicating the sharing function on the interface). Correspondingly, the sharing request carries the first object identifier, such as the first account. The first account can be the target application account registered by user x. And the sharing request is sent from the terminal to the server. Of course, when the first object logs in to the target application, in addition to logging in to the first object identifier through the target application installed on the terminal, it can also log in to the first object identifier through the browser application installed on the terminal, and can also log in to the first object identifier through the built-in browser of other non-browser applications installed on the terminal.
[0052] In practical applications, taking the target application as an information flow application, the object as a user, and the object identifier as an account as an example, 1) User x starts the information flow application, and the first account is logged in to the information flow application. The server obtains a set of recommended information for the first account and sends it to the terminal. The recommended information in the set of recommended information comes from the media content pool, and one piece of recommended information corresponds to one piece of media content. The terminal displays a recommended information display page, and the recommended information display page displays each piece of recommended information in the set of recommended information in the form of an information flow, that is, arranges and displays multiple pieces of recommended information in a certain order. The above-mentioned target page can indicate the recommended information display page here.
[0053] 2) In the information flow application, a first account is logged in, and user x performs an information search using xxx as the search term. The server obtains multiple search results for the search term and sends them to the terminal. The multiple search results come from the media content pool, and one search result corresponds to one piece of media content. The terminal displays a search result display page, which is used to display the multiple search results in the form of an information flow, that is, the multiple search results are arranged in a certain order and then displayed. The above-mentioned target page can indicate the search result display page here.
[0054] In the above 1) and 2), the media content pool consists of multiple pieces of media content, and the media content can indicate the user-generated content under the registered account name. The form of the media content can be text, text with pictures, images, audio, video (including short videos), etc.
[0055] S202: When it is determined that the first object identifier indicates a normal object, obtain the page description information of the target page;
[0056] In the embodiments of the present application, when it is determined that the first object identifier indicates a normal object, the server obtains the page description information of the target page. The premise for obtaining the page description information is given here, that is, the first object identifier indicates a normal object. Such a setting can avoid generating a page link for a sharing request of an abnormal object and improve the initiative of security protection.
[0057] In one embodiment, as Figure 3 shown, before obtaining the page description information of the target page when it is determined that the first object identifier indicates a normal object, the method further includes:
[0058] S301: Obtain the page sharing times corresponding to the first object identifier within a first preset time interval; when the page sharing times are less than the times threshold, determine that the first object identifier indicates a normal object; or,
[0059] S302: Obtain the first basic behavior data corresponding to the first object identifier, where the first basic behavior data includes at least one of the following: device information for logging in to the target application, information of object identifiers interacting with the first object identifier, and media content publishing status corresponding to the first object identifier; when the first basic behavior data conforms to a first preset rule, determine that the first object identifier indicates a normal object.
[0060] Performing security analysis from the aspects of page sharing times and basic behaviors provides a basis for judging whether the first object identifier indicates a normal object, which is beneficial to ensuring the accuracy of the active security evaluation at the object dimension.
[0061] The first preset time interval is a time window, and the corresponding time window can be determined according to the current time. For example, if the time window is one day, then the first preset time interval indicates today. Correspondingly, the number of page shares corresponding to the first object identifier within the first preset time interval should be understood as the number of page shares determined based on the sharing behaviors that have occurred today. The number of page shares can be determined based on the number of received sharing requests. Further, the sharing request can also carry the object identifiers of at least one object to be shared, and the object identifiers of the object to be shared can indicate the registered accounts of the target application or the registered accounts of other applications installed on the terminal. The response of the server to the sharing request can be to generate a page link and send the page link based on the object identifiers of at least one object to be shared. The number of page shares can also be determined based on the number of object identifiers of the object to be shared. If the number of page shares is less than the threshold, it can indicate that the first object identifier indicates a normal object. If the number of page shares is greater than or equal to the threshold, it can indicate that the first object identifier indicates an abnormal object, that is, an abnormal object with overly frequent page sharing within the time window. In practical applications, an abnormal object with overly frequent page sharing within the time window can even be regarded as a machine. It should be noted that the time window can be not fixed. For example, within the same day, one time window is 0:00 - 8:00, and another time window is 8:01 - 24:00. If the current time is 6:00, then the first preset time interval indicates 0:00 - 8:00.
[0062] The first basic behavior data is the data describing the basic behaviors of the first object identifier. The first basic behavior data includes at least one of the following: the device information for logging in to the target application, the information of the object identifiers interacting with the first object identifier, and the media content publishing situation corresponding to the first object identifier.
[0063] The relevant object logs in to the target application with the first object identifier through a device (such as the terminal here), and the device information for logging in to the target application is determined based on historical login behaviors, which is used to reflect the used device situation. The device information for logging in to the target application can include at least one device identifier, and each device identifier corresponds to a logged-in device. Using the first sub-rule provided by the first preset rule, it can be determined whether the number of logged-in devices is excessive. If so, it indicates that the first object identifier indicates an abnormal object. The device information for logging in to the target application can also include at least one login time corresponding to each device identifier. Using the first sub-rule provided by the first preset rule, it can also be determined whether multiple logged-in devices are frequently used. If so, it indicates that the first object identifier indicates an abnormal object.
[0064] The information of the object identifier interacting with the first object identifier may include at least one object identifier that has established a friendship relationship with the first object identifier, that is, at least one friend object identifier. Using the second sub-rule provided by the first preset rule, it can be determined whether the number of friend object identifiers is too small. If so, it indicates that the first object identifier indicates an abnormal object. The information of the object identifier interacting with the first object identifier may also include the object label corresponding to each friend object identifier. Using the second sub-rule provided by the first preset rule, it can be determined whether the friend object identifier carries an abnormal object label. If so, it indicates that the first object identifier indicates an abnormal object.
[0065] The media content publishing situation corresponding to the first object identifier may include the number of media contents under the first object identifier. Using the third sub-rule provided by the first preset rule, it can be determined whether the number of media contents is too small. If so, it indicates that the first object identifier indicates an abnormal object. The media content publishing situation corresponding to the first object identifier may also include the content verticality of the media contents under the first object identifier. The content verticality reflects the degree of concentration and stability of the publishing object in publishing media contents in the relevant field (such as the good-at field). The content verticality can be determined based on the content category of the media content. Using the third sub-rule provided by the first preset rule, it can be determined whether the content verticality of the media content is lower than the preset verticality. If so, it indicates that the first object identifier indicates an abnormal object.
[0066] In practical applications, according to actual needs, the object security judgment logic provided in S301 and S302 above can be used simultaneously. Of course, to avoid conflicts, it can be stipulated whether a normal object needs to meet the object security judgment requirements based on both the page sharing times and the basic behavior, or needs to meet the object security judgment requirements based on the page sharing times or the object security judgment requirements based on the basic behavior.
[0067] The page description information is used to describe the target page. On the one hand, the page description information can be a page identifier, and the page identifier corresponds to the target page one by one. It can be understood that the target page can be fixed, so that the target page can be located through the page identifier subsequently. For the fixation of the target page, it can be to store the page snapshot of the target page. Correspondingly, the page snapshot of the target page in the storage can be read through the page identifier subsequently. On the other hand, the page description information can include a page identifier and a page timestamp. Subsequently, the associated page can be located through the page identifier and the page timestamp. The associated page can be the same as the target page, or there can be differences between the associated page and the target page. Correspondingly, obtaining the page description information of the target page can include the following steps: First, obtain the page identifier of the target page; then, obtain the page timestamp for defining the page display content, and the page timestamp is determined based on the time information carried in the sharing request or the time when the sharing request is received; furthermore, obtain the page description information based on the page identifier and the page timestamp. It should be understood that such an intension setting of the page description information takes into account the resource consumption of fixing the target page and reducing the content of interfering information in the displayed page.
[0068] Exemplarily, if the target page indicates the home page of a registered account in the target application, the content of the home page may change due to user operations. For example, the display items on the home page include user-generated content under the registered account: media content 1-3, and the target page indicates the home page containing media content 1-3. Subsequently, media content 1 is deleted due to user operations, but media content 4 is newly added. The page identifier in the page description information can be used to indicate this home page, and the page timestamp in the page description information can be used to filter the current display items of this home page in the time dimension. In this way, the display items of the home page as the associated page include media content 2 and 3. In practical applications, the home page of a registered account can be constructed around a specific direction, such as a personal home page, a scenario home page, a theme home page, a column home page, a space home page, etc. The user-generated content in the display items on the home page can be articles, and can be displayed in the form of an article list. Of course, the display items on the home page can also include other home page information.
[0069] Combined with the description of the "retrieval result display page" in the foregoing step S201, if the target page indicates a retrieval result display page, even if the retrieval terms are the same, the retrieval results may change. The page identifier in the page description information can be used to indicate the retrieval result display page for the same retrieval terms, and the page timestamp in the page description information can be used to filter the current display items of this retrieval result display page in the time dimension.
[0070] S203: Encrypt the first object identifier and the page description information to obtain associated data;
[0071] In an embodiment of the present application, the server encrypts the first object identifier and the page description information to obtain associated data. The first object identifier and the page description information may be concatenated to obtain a concatenated result; and then the concatenated result may be encrypted using a preset cryptographic algorithm to obtain associated data. The preset cryptographic algorithm may be a symmetric encryption and decryption algorithm, such as DES, AES, SM4, etc. Of course, the preset cryptographic algorithm may also be an asymmetric encryption and decryption algorithm. In addition, the encrypted result obtained by processing with the preset cryptographic algorithm may be converted into a visible string using an encoding method such as Base64, thereby determining that the visible string is associated data.
[0072] In practical applications, multiple encryption type identifiers can be set, and each encryption type identifier corresponds to a combination of a key and a cryptographic algorithm. The target encryption type identifier can be selected from multiple encryption type identifiers considering performance cost and probability of being cracked, and then the preset cryptographic algorithm is obtained based on the key and cryptographic algorithm corresponding to the target encryption type identifier, and then the concatenation result is encrypted to obtain ciphertext data. The target encryption type identifier can be used as a prefix of the ciphertext data to obtain associated data.
[0073] S204: Generate a target link of the target page based on the associated data, where the target link is used to be shared.
[0074] In an embodiment of the present application, the server generates a target link of a target page based on associated data. It can be understood that a target link containing associated data is generated according to preset link template information. The preset link template information describes at least one element constituting the link to be shared, and the associated data belongs to at least one element. At least one element may also include domain name information of the target application, etc. In actual applications, taking the case where the object is a user and the object identifier is an account as an example, if the target page indicates the homepage of a registered account in the target application, for the target page, there is often an original link containing the domain name information of the target application and the registered account. According to the preset link template information, the registered account contained in the original link can be replaced with the associated data, so as to avoid the situation where malicious parties replace and traverse the obvious accounts in the page link to achieve page access.
[0075] The target link is used to be shared. The sharing request may also carry at least one object identifier of the object to be shared. After generating the target link, the server may send the target link in a targeted manner based on the object identifier of at least one object to be shared, thereby achieving that the target link is shared from the first object to the object to be shared. The object to be shared may request access to the target link. The following will describe in detail the process of requesting access to the target link when the object to be shared has not logged into the target application, and the process of requesting access to the target link when the object to be shared has logged into the target application.
[0076] (I) The process of requesting access to the target link when the target user is not logged into the target application:
[0077] As a possible implementation, Figure 4 , 9 As shown, the target link is shared by the first object to the second object, and after the target link of the target page is generated based on the associated data, the method further includes:
[0078] S401: receiving an access request from the second object to the target link when the second object has not logged into the target application;
[0079] S402: determining the associated data from the target link, and decrypting the associated data to obtain the first object identifier and the page description information;
[0080] S403: Generate first display guide information based on a second preset rule and sharing behavior data indicating the first object identifier within a second preset time interval;
[0081] S404: Determine second display guidance information for the non-logged-in state of the second object based on a third preset rule, where the second display guidance information is used to indicate an upper limit on the amount of media content in the page to be displayed and a desensitization strategy for the page to be displayed;
[0082] S405: Generate a first display page based on the page description information, the first display guide information, and the second display guide information.
[0083] The second object requests to access the target link when not logging into the target application, which may be requesting to access the target link through the target application or other applications installed on the terminal without the registered object identifier of logging into the target application, such as clicking the target link or pasting the target link.
[0084] The access logic of the non-logged-in object to the target link is provided here, wherein "decrypting the associated data to obtain the first object identifier and the page description information" is the reverse operation of the aforementioned step S203. Of course, for the aforementioned step S203, the server side can also establish a mapping relationship between the associated data and the page description information when obtaining the associated data. In this way, the first object identifier and the page description information can also be obtained based on the associated data and the mapping relationship. Combined with the record of the page description information in the aforementioned step S202, the page description information is used to describe the target page. The target page can be located or the associated page that is different from the target page can be located through the page description information. It should be understood that a candidate page to be displayed can be determined through the page description information. However, whether the candidate page can be displayed and whether it can be displayed completely depends on the display guidance information.
[0085] The first display guidance information is generated based on the sharing behavior data indicating the first object identifier within a second preset time interval. The second preset time interval is a time window, such as a time window with a duration that meets the preset duration determined with the current time as the end time. The sharing behavior data falling within the second preset time interval can serve as the data source for the object security judgment logic. The basis in the object security judgment logic is the second preset rule, and the second preset rule provides the object security judgment requirements for the sharing behavior. When the data source meets the object security judgment requirements for the sharing behavior, the first display guidance information can indicate to display the above-mentioned candidate page; when the data source does not meet the object security judgment requirements for the sharing behavior, the first display guidance information can indicate not to display the above-mentioned candidate page. Considering the time difference between the current request of the second object to access the target link and the security analysis of the first object identifier during the generation of the target link, generating the first display guidance information in combination with the sharing behavior data falling within the second preset time interval provides a security protection means with traceability ability, improving the security protection initiative after the target link is shared.
[0086] The third preset rule mainly targets the situation where the object is not logged in to the target application. The third preset rule provides regulations for restricting the page content of the page to be displayed in this situation. Correspondingly, the second display guidance information can be determined based on the third preset rule. The second display guidance information can indicate the upper limit of the number of media contents in the page to be displayed and the desensitization strategy for the page to be displayed. The above-mentioned candidate page can be filtered based on the second display guidance information to obtain an intermediate page. If the number of media contents in the candidate page is greater than the upper limit, the media contents with an earlier release time can be preferentially filtered to screen out the media contents that meet the upper limit. The desensitization strategy can include multiple preset sensitive contents and the corresponding replacement methods for each preset sensitive content. The preset sensitive content can be a field in the text or a visual element in the image. The replacement method for the field can be blank replacement, such as replacing the sensitive content with blank content; it can also be general content replacement, such as replacing the sensitive content with xxx. The replacement method for the visual element can be color block replacement, such as replacing the sensitive content with a black color block; it can also be display effect adjustment, such as increasing the display blur of the sensitive content. Generally, the preset sensitive content indicates the key information in the page, such as the object identifier, etc. If there are differences between the intermediate page and the candidate page, it can illustrate that the second display guidance information plays a role in indicating an incomplete display of the candidate page.
[0087] Exemplarily, it is possible to first determine whether the first display guidance information indicates refusal to display a page. If the first display guidance information indicates refusal to display a page, then the first display page can be a blank page or a template page notifying access restrictions. If the first display guidance information does not indicate refusal to display a page, then it is possible to first determine candidate pages to be displayed based on the page description information, and then filter the candidate pages based on the second display guidance information to obtain an intermediate page. The intermediate page can be used as the first display page. Correspondingly, the server sends the first display page to the terminal, and the terminal displays the first display page.
[0088] The access logic of non-login objects to the target link involves re-judging the object security of the first object identifier providing the target link and restricting the page content to be displayed to non-login objects, which is conducive to achieving more comprehensive security protection before and after sharing the target link and reducing the probability of information leakage caused by the page displayed to non-login objects.
[0089] (2) The process of the object to be shared requesting access to the target link when logging in to the target application:
[0090] As a possible implementation, as Figure 5 shown, after the target link is shared by the first object to a third object and the target link for generating the target page is generated based on the associated data, the method further includes:
[0091] S501: In the case where the third object logs in to the target application, receive an access request from the third object for the target link;
[0092] S502: Determine the associated data from the target link and decrypt the associated data to obtain the first object identifier and the page description information;
[0093] S503: Generate first display guidance information based on a second preset rule and sharing behavior data indicating the first object identifier within a second preset time interval;
[0094] S504: Generate a second display page based on the page description information and the first display guidance information.
[0095] When the third object logs in to the target application, in addition to logging in to the second object identifier through the target application installed on the terminal, it can also log in to the second object identifier through the browser application installed on the terminal, and can also log in to the second object identifier through the built-in browser of other non-browser applications installed on the terminal.
[0096] The access logic of the login object to the target link is provided here. Among them, "decrypting the associated data to obtain the first object identifier and the page description information" is the reverse operation of the foregoing step S203. Combining the description of the page description information in the foregoing step S202, the page description information is used to describe the target page. Through the page description information, the target page can be located or the associated page different from the target page can be located. It should be understood that a candidate page to be displayed can be determined through the page description information. However, whether the candidate page can be displayed also depends on the display guidance information.
[0097] The first display guidance information is generated based on the sharing behavior data indicating the first object identifier within the second preset time interval. The second preset time interval is a time window. For example, the time window with a duration meeting the preset duration determined with the current time as the end time. The sharing behavior data falling within the second preset time interval can be used as the data source for the object security judgment logic. The basis in the object security judgment logic is the second preset rule, and the second preset rule provides the object security judgment requirements for the sharing behavior. When the data source meets the object security judgment requirements for the sharing behavior, the first display guidance information can indicate to display the above-mentioned candidate page; when the data source does not meet the object security judgment requirements for the sharing behavior, the first display guidance information can indicate not to display the above-mentioned candidate page. Considering the time difference between the current third object's request to access the target link and the security analysis of the first object identifier during the generation of the target link, generating the first display guidance information by combining the sharing behavior data falling within the second preset time interval provides a security protection means with traceability ability, improving the security protection initiative after the target link is shared.
[0098] Exemplarily, it can be first determined whether the first display guidance information indicates to reject the display of the page. If the first display guidance information indicates to reject the display of the page, then the first display page can be a blank page or a template page notifying access restriction. If the first display guidance information does not indicate to reject the display of the page, then the candidate page to be displayed can be determined through the page description information first. The candidate page can be used as the second display page. Correspondingly, the server sends the second display page to the terminal, and the terminal displays the second display page.
[0099] The access logic of the login object to the target link involves re-object security judgment on the first object identifier providing the target link, which is conducive to achieving more comprehensive security protection before and after the target link is shared. In addition, if the second object identifier exists in the preset blacklist, the server will generate the third display guidance information indicating to reject the display of the page, which can more effectively prevent malicious parties from scraping the information in the internal pages of the target application.
[0100] In one embodiment, the access request carries a second object identifier of the third object, and the method may further include the following steps: determining level information corresponding to the second object identifier based on a fourth preset rule and second basic behavior data corresponding to the second object identifier, where the fourth preset rule is used to record a one-to-one correspondence between multiple preset behavior data requirements and multiple level information, and the second basic behavior data includes at least one of the following: device information for logging in to the target application, information on object identifiers that interact with the second object identifier, and the media content publishing status corresponding to the second object identifier;
[0101] As Figure 6 shown, after generating the second display page based on the page description information and the first display guidance information, the method further includes:
[0102] S601: For the second display page, obtaining the number of refreshes corresponding to the second object identifier within a third preset time interval;
[0103] S602: In the case where the number of refreshes is greater than a preset number of refreshes, determining that the second object identifier indicates an abnormal object, where the preset number of refreshes is determined based on the level information corresponding to the second object identifier.
[0104] Perform security analysis from the aspect of basic behavior and label level information for the second object identifier. At the same time, determine the preset number of refreshes based on the level information, and thereby determine whether the refresh behavior for the second display page within the third preset time interval is too frequent. Here, an adaptable object security judgment requirement based on the number of refreshes is provided in combination with the object level, providing favorable support for achieving more comprehensive security protection before and after sharing the target link.
[0105] For the second basic behavior data here, reference can be made to the description of the first basic behavior data in the foregoing step S302, which will not be elaborated. The fourth preset rule is used to record a one-to-one correspondence between multiple preset behavior data requirements and multiple level information. It can be understood that multiple level information indicates multiple security levels, and there are high and low distinctions among multiple security levels. The higher the security level, the higher the possibility that the second object identifier indicates a normal object; the lower the security level, the higher the possibility that the second object identifier indicates a normal object. If the second basic behavior data meets the preset behavior data requirements corresponding to a certain level information, then it can be determined that the level information corresponding to the second object identifier is this level information. Table 1 below provides an example of the fourth preset rule:
[0106]
[0107] Table 1
[0108] The preset refresh times are determined based on the level information corresponding to the second object identifier. Combining the above discussion, generally, the higher the security level, the higher the probability that the second object identifier indicates a normal object. Correspondingly, the preset refresh times are also more; the lower the security level, the higher the probability that the second object identifier indicates an abnormal object. Correspondingly, the preset refresh times are also less. For example, in Table 1 above, the preset refresh times corresponding to the high security level are 50, the preset refresh times corresponding to the medium security level are 30, and the preset refresh times corresponding to the low security level are 20.
[0109] In one embodiment, as Figure 7 shown, after generating the second display page based on the page description information and the first display guidance information, the method further includes:
[0110] S701: Obtain the original link of the second display page;
[0111] S702: Generate a link to be copied for the second display page based on the original link and the prompt information, where the prompt information is used to prompt the access object of the link to be copied to log in to the target application.
[0112] The server - side response to the sharing request can be to generate a page link and send the page link based on the object identifier of at least one object to be shared. Of course, the server - side response to the sharing request can also be to generate a page link, and the page link can be shared by relevant objects in an active copying form. However, the generation logic of the page link follows the content described in the foregoing steps S201 - S204. Here, a scheme for generating a link to be copied is provided. The potential object for copying the link provided here is the third object, that is, the object to which the target link is shared. Considering the relevance between the second display page and the target page, the potential copying behavior of the third object will prompt the target page to enter the next - level sharing. Incorporating the prompt information into the original link of the second display page to generate a link to be copied can achieve more fine - grained hierarchical security protection after the target link is shared.
[0113] Exemplarily, for the original link of the second display page, it may be the same as the original link of the target page or a new link. Generally, the original link does not carry encrypted data. Taking the link to be copied as link x as an example, the third object shares link x with the fourth object in the form of active copying, and the sharing of link x is carried out in application y. The fourth object requests to access link x, and the built-in browser of application y parses link x and obtains the jump link to be logged in based on the prompt information during the parsing process. The jump link indicates the target application. If it is detected that the target application is installed on the terminal z used by the fourth object, based on the built-in browser and the jump link, it jumps to the page pointed to by the jump link in the target application. If it is detected that the target application is not installed on the terminal z used by the fourth object, the installation package of the target application indicated by the jump link is downloaded based on the built-in browser. After the installation of the target application is completed on terminal z, based on the built-in browser and the jump link, it jumps to the page pointed to by the jump link in the target application. Of course, if the target application logs in with the object identifier corresponding to the fourth object, the page pointed to by the jump link is the second display page; if the target application does not log in with the object identifier corresponding to the fourth object, the page pointed to by the jump link is the template page for prompting login.
[0114] Next, the generation of the first display guidance information will be introduced. Here, the sharing behavior data falling within the second preset time interval is distinguished in terms of connotation, that is, the first type of data and the second type of data. When the two types of data do not meet the second preset rule, the server side will not only generate the first display guidance information indicating the rejection of the display page, but also generate different types of risk control information. While paying attention to the current request of the second object to access the target link, different types of risk control information can be used to perform more targeted and personalized risk control on the first object identifier, and also ensure the timeliness and coverage effect of security protection.
[0115] 1) The first type of data includes at least one of the following: the number of times the target link is shared, the number of times the target link is accessed, and the distribution of the communication protocol addresses accessing the target link. The sharing request may also carry the object identifier of at least one object to be shared. The server side's response to the sharing request may be to generate the target link and send the target link based on the object identifier of at least one object to be shared. The number of times the target link is shared can be determined based on the number of times the same target link is generated or sent. The number of times the target link is accessed can be determined based on the number of access requests received for the same target link. Relevant objects often carry information indicating the communication protocol address (such as IP address) when requesting to access the target link. The communication protocol addresses of relevant objects can be determined based on this information, and then the communication protocol addresses of all access objects within the second preset time interval can be obtained to obtain the regional distribution of these communication protocol addresses.
[0116] Using the object security judgment requirements for sharing behaviors provided by the second preset rule, it is possible to determine whether the number of times the target link has been shared is excessive. If so, it indicates that the first object identifier indicates an abnormal object. It is possible to determine whether the number of times the target link has been accessed is excessive. If so, it indicates that the first object identifier indicates an abnormal object. It is possible to determine whether the distribution of communication protocol addresses accessing the target link is relatively concentrated. If so, it indicates that the first object identifier indicates an abnormal object.
[0117] If the first object identifier indicates an abnormal object, the server also generates first display guidance information and a first type of risk control information. The first display guidance information is used to indicate rejecting the display of the page, and the first type of risk control information is used to indicate restricting the sharing behavior of the page corresponding to the first object identifier. It can be understood that after generating the first type of risk control information, the server may not respond to the sharing request carrying the first object identifier; and / or, although the first object identifier is logged in the target application, the relevant object cannot generate a sharing request by triggering the relevant control in the interface provided by the terminal.
[0118] 2) The second type of data includes at least one of the following: the number of times each link in the link set has been shared, the number of times each link in the link set has been accessed, the distribution of communication protocol addresses accessing each link in the link set, and the link set is composed of all the shared links corresponding to the first object identifier. Compared with the focus on the target link in the first type of data in 1), the second type of data focuses on all the shared links corresponding to the first object identifier. Here, for the determination of the number of times each link has been shared, the number of times each link has been accessed, and the distribution of communication protocol addresses accessing each link, reference can be made to the relevant records for determining the first type of data in 1), which will not be elaborated here.
[0119] If the first type of data is regarded as the statistics for local links, then the second type of data can be regarded as the statistics for global links. If the link set includes N links, the second type of data may include the first type of data for each of the N links. The second type of data may also include the total number of times shared, the total number of times accessed, and the summary result of the distribution obtained based on the first type of data for each of the N links.
[0120] Using the object security judgment requirements for sharing behaviors provided by the second preset rule, it is possible to determine whether the total number of times shared is excessive. If so, it indicates that the first object identifier indicates an abnormal object. It is possible to determine whether the total number of times accessed is excessive. If so, it indicates that the first object identifier indicates an abnormal object. It is possible to determine whether the summary result of the distribution is relatively concentrated. If so, it indicates that the first object identifier indicates an abnormal object.
[0121] If the first object identifier indicates an abnormal object, the server side also generates first display guidance information and second type of risk control information. The first display guidance information is used to indicate rejecting the display of a page, and the second type of risk control information is used to indicate restricting the page sharing behavior corresponding to the first object identifier, and rejecting to provide page display for all shared links corresponding to the first object identifier. It can be understood that after generating the second type of risk control information, the server side may not respond to a sharing request carrying the first object identifier; and / or, although the first object identifier is logged in the target application, the relevant object cannot generate a sharing request by triggering relevant controls in the interface provided by the terminal. At the same time, the server side rejects to provide page display for all shared links corresponding to the first object identifier. That is, not only for the target link, but for all shared links, after each link is requested to be accessed, the server side rejects to display the relevant page. The display page provided by the server side may be a blank page, or a template page notifying access restriction.
[0122] In practical applications, when applying the page sharing method provided by the embodiments of the present application, after the target link is shared with a logged-in object, the display effect of the second display page seen by the logged-in object when clicking the target link may be similar to, or even the same as, the display effect of the target page. However, the display effect of the first display page seen by a non-logged-in object when clicking the target link is different from the display effect of the target page. For example, compared with the target page, the number of media contents in the first display page is less, and some page contents are unclear or missing. In addition, if a non-logged-in object triggers the media content viewing control provided in the interface where the first display page is located, it is also impossible to further view the media content, but instead jumps to a template page prompting to log in to the target application.
[0123] By applying the page sharing method provided by the embodiments of the present application, it is possible to more effectively prevent malicious parties from scraping information in the internal pages of the target application, and thus better protect business data. Security judgment objects in terms of object dimension are set before and after the sharing of the target link. Before the sharing of the target link, the sharing object (the first object) is concerned; after the sharing of the target link, when the access object is a logged-in object, both the sharing object (the first object) and the access object (the third object) can be concerned; after the sharing of the target link, when the access object is a non-logged-in object, the sharing object (the first object) can be concerned, and second display guidance information indicating the upper limit of the number of media contents in the page to be displayed and the desensitization strategy for the page to be displayed is supplemented. Thus, more comprehensive security protection before and after the sharing of the target link is achieved.
[0124] As can be seen from the technical solutions provided by the embodiments of the present application above, when a first object accesses a target page in a logged-in state, the embodiments of the present application receive a sharing request of the first object for the target page; then, when it is determined that the first object identifier indicates a normal object, the page description information of the target page is obtained; furthermore, the first object identifier and the page description information are encrypted to obtain associated data; finally, a target link for the target page is generated based on the associated data. The target link is used for sharing, so that the shared person can access the target page through the target link. The embodiments of the present application provide an active security protection logic for page sharing for logged-in objects. On the one hand, the successful generation of the target link requires the condition that the first object identifier indicates a normal object, which can avoid generating a target link for an abnormal logged-in object; on the other hand, for the target page to be shared, the encrypted first object identifier and page description information are carried in the target link for sharing, and important information is selectively encrypted, reducing the probability that the target link is exploited by malicious parties to attack the page provider, taking into account both the generation efficiency of the target link in page sharing and the security and reliability of page sharing.
[0125] The embodiments of the present application also provide a page sharing device, as Figure 10 shown. The page sharing device 100 includes:
[0126] A request receiving module 1001: configured to receive the sharing request of the first object for the target page when the first object accesses the target page in a logged-in state, the sharing request carrying the first object identifier of the first object, and the target page being an internal page of a target application;
[0127] An information obtaining module 1002: configured to obtain the page description information of the target page when it is determined that the first object identifier indicates a normal object;
[0128] An encryption module 1003: configured to encrypt the first object identifier and the page description information to obtain associated data;
[0129] A first link generation module 1004: configured to generate a target link for the target page based on the associated data, and the target link is used for sharing.
[0130] In one embodiment, the device further includes a first object security judgment module, and the first object security judgment module includes:
[0131] A first judgment unit: configured to obtain the number of page sharing times corresponding to the first object identifier within a first preset time interval; when the number of page sharing times is less than a threshold number of times, determine that the first object identifier indicates a normal object; or,
[0132] Second determination unit: configured to obtain first basic behavior data corresponding to the first object identifier, where the first basic behavior data includes at least one of the following: device information for logging in to the target application, information of object identifiers interacting with the first object identifier, and media content publishing status corresponding to the first object identifier; and determine that the first object identifier indicates a normal object when the first basic behavior data conforms to a first preset rule.
[0133] In one embodiment, the obtaining the page description information of the target page includes: obtaining a page identifier of the target page; obtaining a page timestamp for defining page display content, where the page timestamp is determined based on time information carried in the sharing request or the time of receiving the sharing request; and obtaining the page description information based on the page identifier and the page timestamp.
[0134] In one embodiment, the target link is shared by the first object to a second object, and the apparatus further includes a first link access device, where the first link access device includes:
[0135] First receiving unit: configured to receive an access request for the target link from the second object when the second object is not logged in to the target application.
[0136] First decryption unit: configured to determine the associated data from the target link and decrypt the associated data to obtain the first object identifier and the page description information.
[0137] First information generation unit: configured to generate first display guidance information based on a second preset rule and sharing behavior data indicating the first object identifier within a second preset time interval.
[0138] Second information generation unit: configured to determine second display guidance information for the non-logged-in state of the second object based on a third preset rule, where the second display guidance information is used to indicate an upper limit of the number of media contents in the page to be displayed and a desensitization strategy for the page to be displayed.
[0139] First page generation unit: configured to generate a first display page based on the page description information, the first display guidance information, and the second display guidance information.
[0140] In one embodiment, the generating the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval includes:
[0141] In the case that the sharing behavior data is the first type of data and the first type of data does not meet the second preset rule, determine that the first object identifier indicates an abnormal object, and generate the first display guidance information and the first type of risk control information;
[0142] Wherein, the first display guidance information is used to indicate a page rejection display, and the first type of risk control information is used to indicate restricting the page sharing behavior corresponding to the first object identifier. The first type of data includes at least one of the following: the number of times the target link is shared, the number of times the target link is accessed, and the distribution of communication protocol addresses accessing the target link.
[0143] In one embodiment, generating the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval includes:
[0144] In the case that the sharing behavior data is the second type of data and the second type of data does not meet the second preset rule, determine that the first object identifier indicates an abnormal object, and generate the first display guidance information and the second type of risk control information;
[0145] Wherein, the first display guidance information is used to indicate a page rejection display, and the second type of risk control information is used to indicate restricting the page sharing behavior corresponding to the first object identifier and rejecting page display for all shared links corresponding to the first object identifier. The second type of data includes at least one of the following: the number of times each link in the link set is shared, the number of times each link in the link set is accessed, and the distribution of communication protocol addresses accessing each link in the link set. The link set is composed of all shared links corresponding to the first object identifier.
[0146] In one embodiment, the target link is shared by the first object to a third object, and the device further includes a second link access device. The first link access device includes:
[0147] A second receiving unit: configured to receive an access request for the target link from the third object when the third object logs in to the target application;
[0148] A second decryption unit: configured to determine the associated data from the target link and decrypt the associated data to obtain the first object identifier and the page description information;
[0149] A third information generation unit: configured to generate the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval;
[0150] The second page generation unit: configured to generate a second display page based on the page description information and the first display guidance information.
[0151] In one embodiment, the access request carries a second object identifier of the third object, and the device further includes a level information determination module and a second object security judgment module. The level information determination module: is configured to determine the level information corresponding to the second object identifier based on a fourth preset rule and the second basic behavior data corresponding to the second object identifier. The fourth preset rule is used to record the one-to-one correspondence between multiple preset behavior data requirements and multiple level information. The second basic behavior data includes at least one of the following: device information for logging in to the target application, information of object identifiers interacting with the second object identifier, and the media content publishing situation corresponding to the second object identifier.
[0152] The second object security judgment module: is configured to, for the second display page, obtain the number of refreshes corresponding to the second object identifier within a third preset time interval; in the case where the number of refreshes is greater than a preset number of refreshes, determine that the second object identifier indicates an abnormal object, and the preset number of refreshes is determined based on the level information corresponding to the second object identifier.
[0153] In one embodiment, the device further includes a second link generation module. The second link generation module: is configured to obtain the original link of the second display page; generate a link to be copied for the second display page based on the original link and prompt information, where the prompt information is used to prompt the access object of the link to be copied to log in to the target application.
[0154] It should be noted that the device in the device embodiment and the method embodiment are based on the same inventive concept.
[0155] In some embodiments, the functions or modules included in the device provided in the embodiments of the present application can be used to execute the methods described in the method embodiments above. The specific implementation can refer to the description of the method embodiments above. For the sake of brevity, it will not be repeated here.
[0156] The embodiments of the present application further provide a computer-readable storage medium. At least one instruction or at least one segment of program is stored in the computer-readable storage medium, and the at least one instruction or at least one segment of program is loaded and executed by a processor to implement the above method. The computer-readable storage medium can be a non-volatile computer-readable storage medium.
[0157] An embodiment of the present application also provides an electronic device, which includes at least one processor and a memory communicatively connected to the at least one processor; wherein, at least one instruction or at least one program segment is stored in the memory, and the at least one instruction or at least one program segment is loaded and executed by the at least one processor to implement the above method.
[0158] The electronic device may be provided as a terminal, a server or other forms of devices.
[0159] Figure 11 A block diagram of an electronic device according to an embodiment of the present application is shown. Refer to Figure 11 , the electronic device 1900 includes a processing component 1922, which further includes one or more processors, and memory resources represented by a memory 1932 for storing instructions executable by the processing component 1922. In addition, the processing component 1922 is configured to execute instructions to perform the above method.
[0160] The electronic device 1900 may further include a power supply component 1926 configured to perform power management of the electronic device 1900, a wired or wireless network interface 1950 configured to connect the electronic device 1900 to a network, and an input / output (I / O) interface 1958. The electronic device 1900 may operate based on an operating system stored in the memory 1932, such as Windows ServerTM, Mac OS XTM, UnixTM, LinuxTM, FreeBSDTM or the like.
[0161] In an exemplary embodiment, a non-volatile computer-readable storage medium is also provided, such as a memory 1932 including computer program instructions, and the above computer program instructions can be executed by the processing component 1922 of the electronic device 1900 to complete the above method.
[0162] The present application may be a system, a method and / or a computer program product. The computer program product may include a computer-readable storage medium having thereon at least one instruction or at least one program segment for causing a processor to implement various aspects of the present application.
[0163] A computer-readable storage medium can be a tangible device that can hold and store instructions for use by an instruction execution device. A computer-readable storage medium may be, for example—but not limited to—an electrical storage device, a magnetic storage device, an optical storage device, an electromagnetic storage device, a semiconductor storage device, or any suitable combination of the foregoing. More specific examples (a non-exhaustive list) of the computer-readable storage medium include: a portable computer disk, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or flash memory), a static random access memory (SRAM), a portable compact disc read-only memory (CD-ROM), a digital versatile disc (DVD), a memory stick, a floppy disk, a mechanically encoded device such as a punched card or raised structures in grooves having instructions stored thereon, and any suitable combination of the foregoing. The computer-readable storage medium as used herein is not construed as being a transient signal per se, such as a radio wave or other freely propagating electromagnetic wave, an electromagnetic wave propagating through a waveguide or other transmission medium (e.g., an optical pulse through an optical fiber cable), or an electrical signal transmitted through a wire.
[0164] At least one instruction or at least one program described herein can be downloaded from the computer-readable storage medium to respective computing / processing devices, or downloaded to an external computer or an external storage device through a network, such as the Internet, a local area network, a wide area network, and / or a wireless network. The network can include a copper transmission cable, an optical fiber transmission, a wireless transmission, a router, a firewall, a switch, a gateway computer, and / or an edge server. A network adapter card or network interface in each computing / processing device receives at least one instruction or at least one program from the network and forwards the at least one instruction or at least one program for storage in a computer-readable storage medium in each computing / processing device.
[0165] At least one instruction or at least one program for performing the operations of the present application may be an assembly instruction, an instruction set architecture (ISA) instruction, a machine instruction, a machine-related instruction, microcode, a firmware instruction, status setting data, or source code or object code written in any combination of one or more programming languages, including object-oriented programming languages such as Smalltalk, C++, etc., and conventional procedural programming languages such as the "C" language or similar programming languages. The at least one instruction or at least one program may be executed entirely on the user's computer, partially on the user's computer, executed as a stand-alone software package, partially on the user's computer and partially on a remote computer, or entirely on a remote computer or server. In the case of a remote computer, the remote computer may be connected to the user's computer through any type of network, including a local area network (LAN) or a wide area network (WAN), or may be connected to an external computer (e.g., through the Internet using an Internet service provider). In some embodiments, by using the status information of at least one instruction or at least one program to customize an electronic circuit, such as a programmable logic circuit, a field programmable gate array (FPGA), or a programmable logic array (PLA), the electronic circuit can execute the at least one instruction or at least one program to implement various aspects of the present application.
[0166] Aspects of the present application are described herein with reference to the flowcharts and / or block diagrams of methods, apparatus (systems), and computer program products according to embodiments of the present application. It should be understood that each block of the flowcharts and / or block diagrams, and combinations of blocks in the flowcharts and / or block diagrams, can be implemented by at least one instruction or at least one program.
[0167] The at least one instruction or at least one program may be provided to a processor of a general-purpose computer, a special-purpose computer, or other programmable data processing device, thereby producing a machine such that when these instructions are executed by the processor of the computer or other programmable data processing device, a device is produced that implements the functions / actions specified in one or more blocks of the flowchart and / or block diagram. The at least one instruction or at least one program may also be stored in a computer-readable storage medium, and these instructions cause the computer, the programmable data processing device, and / or other devices to work in a specific manner. Thus, the computer-readable medium storing the instructions includes a manufactured article that includes instructions for implementing various aspects of the functions / actions specified in one or more blocks of the flowchart and / or block diagram.
[0168] It is also possible to load at least one instruction or at least one program segment onto a computer, other programmable data processing device, or other device, so that a series of operation steps are performed on the computer, other programmable data processing device, or other device to generate a computer-implemented process, thereby enabling the instructions executed on the computer, other programmable data processing device, or other device to implement the functions / actions specified in one or more blocks of the flowchart and / or block diagram.
[0169] The flowcharts and block diagrams in the accompanying drawings illustrate the possible architectures, functions, and operations of systems, methods, and computer program products according to various embodiments of the present application. In this regard, each block in the flowchart or block diagram may represent a module, a program segment, or a part of an instruction, and the above-mentioned module, program segment, or part of an instruction contains one or more executable instructions for implementing the specified logical function. In some alternative implementations, the functions represented by the blocks may occur in an order different from that represented in the accompanying drawings. For example, two consecutive blocks may actually be executed substantially in parallel, and they may sometimes be executed in the reverse order, depending on the functions involved. It should also be noted that each block in the block diagram and / or flowchart, and combinations of blocks in the block diagram and / or flowchart, may be implemented by a dedicated hardware-based system that performs the specified functions or actions, or may be implemented by a combination of dedicated hardware and computer instructions.
[0170] The embodiments of the present application have been described above. The above description is exemplary and not exhaustive, and is not limited to the disclosed embodiments. Many modifications and variations will be apparent to those of ordinary skill in the art without departing from the scope and spirit of the described embodiments. The choice of terms used herein is intended to best explain the principles of the embodiments, practical applications, or improvements to technologies in the market, or to enable other ordinary skill in the art to understand the embodiments disclosed herein.
Claims
1. A page sharing method, characterized in that, The method includes: When a first object accesses a target page in a logged-in state, receiving a sharing request from the first object for the target page, where the sharing request carries a first object identifier of the first object, and the target page is an internal page of a target application; When it is determined that the first object identifier indicates a normal object, obtaining page description information of the target page; Encrypting the first object identifier and the page description information to obtain associated data; Generating a target link for the target page based on the associated data, where the target link is for sharing.
2. The method according to claim 1, wherein Before obtaining the page description information of the target page when it is determined that the first object identifier indicates a normal object, the method further includes: Obtaining the number of page shares corresponding to the first object identifier within a first preset time interval; when the number of page shares is less than a threshold number of times, determining that the first object identifier indicates a normal object; or, Obtaining first basic behavior data corresponding to the first object identifier, where the first basic behavior data includes at least one of the following: device information for logging in to the target application, information on object identifiers that interact with the first object identifier, and the media content publishing situation corresponding to the first object identifier; when the first basic behavior data conforms to a first preset rule, determining that the first object identifier indicates a normal object.
3. The method according to claim 1, wherein The obtaining of the page description information of the target page includes: Obtaining a page identifier of the target page; Obtaining a page timestamp for defining page display content, where the page timestamp is determined based on the time information carried in the sharing request or the time of receiving the sharing request; Obtaining the page description information based on the page identifier and the page timestamp.
4. The method according to any one of claims 1 to 3, characterized in that, After the target link is shared by the first object to a second object and the target link for the target page is generated based on the associated data, the method further includes: When the second object has not logged in to the target application, receiving an access request from the second object for the target link; Determining the associated data from the target link and decrypting the associated data to obtain the first object identifier and the page description information; Generating first display guidance information based on a second preset rule and sharing behavior data indicating the first object identifier within a second preset time interval; Determining second display guidance information for the non-logged-in state of the second object based on a third preset rule, where the second display guidance information is used to indicate the upper limit of the number of media contents in the page to be displayed and the desensitization strategy for the page to be displayed; Generating a first display page based on the page description information, the first display guidance information, and the second display guidance information.
5. The method according to claim 4, characterized in that The generating of the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval includes: When the sharing behavior data is of the first type and the first type of data does not meet the second preset rule, determine that the first object identifier indicates an abnormal object, and generate the first display guidance information and the first type of risk control information; Among them, the first display guidance information is used to indicate a page for refusing to display, and the first type of risk control information is used to indicate restricting the page sharing behavior corresponding to the first object identifier. The first type of data includes at least one of the following: the number of times the target link is shared, the number of times the target link is accessed, and the distribution of communication protocol addresses accessing the target link.
6. The method according to claim 4, characterized in that Generating the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval includes: When the sharing behavior data is of the second type and the second type of data does not meet the second preset rule, determine that the first object identifier indicates an abnormal object, and generate the first display guidance information and the second type of risk control information; Among them, the first display guidance information is used to indicate a page for refusing to display, and the second type of risk control information is used to indicate restricting the page sharing behavior corresponding to the first object identifier and refusing to provide page display for all shared links corresponding to the first object identifier. The second type of data includes at least one of the following: the number of times each link in the link set is shared, the number of times each link in the link set is accessed, and the distribution of communication protocol addresses accessing each link in the link set. The link set is composed of all shared links corresponding to the first object identifier.
7. The method according to any one of claims 1-3, characterized in that, After the target link is shared by the first object to the third object and the target link of the target page is generated based on the associated data, the method further includes: When the third object logs in to the target application, receiving an access request from the third object for the target link; Determine the associated data from the target link, and decrypt the associated data to obtain the first object identifier and the page description information; Generate the first display guidance information based on the second preset rule and the sharing behavior data indicating the first object identifier within the second preset time interval; Generate a second display page based on the page description information and the first display guidance information.
8. The method according to claim 7, wherein The access request carries a second object identifier of the third object, and the method further includes: Determine the level information corresponding to the second object identifier based on the fourth preset rule and the second basic behavior data corresponding to the second object identifier. The fourth preset rule is used to record the one-to-one correspondence between multiple preset behavior data requirements and multiple level information. The second basic behavior data includes at least one of the following: device information for logging in to the target application, information of object identifiers interacting with the second object identifier, and media content publishing situation corresponding to the second object identifier; After generating the second display page based on the page description information and the first display guidance information, the method further includes: For the second display page, obtain the number of refreshes corresponding to the second object identifier within a third preset time interval; When the number of refreshes is greater than a preset number of refreshes, determine that the second object identifier indicates an abnormal object, where the preset number of refreshes is determined based on the level information corresponding to the second object identifier.
9. The method according to claim 7, wherein After generating the second display page based on the page description information and the first display guidance information, the method further includes: Obtain the original link of the second display page; Generate a link to be copied for the second display page based on the original link and a prompt message, where the prompt message is used to prompt the access object of the link to be copied to log in to the target application.
10. A page sharing device, characterized in that, The device includes: A request receiving module: configured to receive a sharing request of the first object for the target page when the first object accesses the target page in a logged-in state, where the sharing request carries a first object identifier of the first object, and the target page is an internal page of a target application; An information obtaining module: configured to obtain page description information of the target page when it is determined that the first object identifier indicates a normal object; An encryption module: configured to encrypt the first object identifier and the page description information to obtain associated data; A first link generation module: configured to generate a target link of the target page based on the associated data, where the target link is used for sharing.
11. An electronic device, characterized in that, The electronic device includes at least one processor and a memory communicatively connected to the at least one processor; wherein, at least one instruction or at least one program segment is stored in the memory, and the at least one instruction or at least one program segment is loaded and executed by the at least one processor to implement the page sharing method according to any one of claims 1-9.
12. A computer-readable storage medium, characterized in that, At least one instruction or at least one program segment is stored in the computer-readable storage medium, and the at least one instruction or at least one program segment is loaded and executed by a processor to implement the page sharing method according to any one of claims 1-9.