数据访问控制方法
By loading a security program at the operating system kernel level and using file and process hooks to generate a global linked list, the relationship between processes and security domains is recorded in real time. This solves the problems of unreasonable permission allocation and cross-scenario violations in data access control under diverse scenarios, and achieves refined management and security improvement of data access.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- 北京熠智科技有限公司
- Filing Date
- 2026-04-21
- Publication Date
- 2026-07-17
AI Technical Summary
In existing technologies, data access control is difficult to adapt to diverse application scenarios, resulting in unreasonable permission allocation, cross-scenario access violations, and increased risk of data leakage.
By loading a security program at the operating system kernel level, a global linked list is generated using file open hooks and process exit hooks. The process ID and security domain relationship are recorded in real time. The relative path and device ID are combined to determine whether a file belongs to a security domain and to execute the preset access control policy.
It enables data access control in multiple scenarios, reduces unreasonable permission allocation and cross-scenario access violations, lowers the risk of data leakage, and ensures data security.
Smart Images

Figure CN122087850B_ABST