Device fingerprint verification method, device fingerprint generation method, and electronic device
By obtaining the device fingerprint information and its generation time, generating verification information and performing verification, the problem of the device fingerprint being replaced or tampered during use is solved, and the security and verification accuracy of the device fingerprint are achieved.
Patent Information
- Application Number
- PCT/CN2024/118369
- Authority / Receiving Office
- WO · WO
- Patent Type
- Applications
- Current Assignee / Owner
- Priority Date
- 2024-02-23
- Filing Date
- 2024-09-11
- Publication Date
- 2025-08-28
AI Technical Summary
The device fingerprint may be replaced or tampered during use, resulting in the inability to guarantee security.
By obtaining the target device fingerprint information sent by the client and its generation time, verification information is generated and verification is performed, including restoring and decrypting the initial device fingerprint information, it is determined whether the device fingerprint has been replaced or tampered with.
Improve the security of the device fingerprint, ensure that the device fingerprint is not replaced or tampered during use, and enhance the accuracy and security of verification.
Smart Images

Figure CN2024118369_28082025_PF_FP_ABST
Abstract
Description
Device fingerprint verification method, device fingerprint generation method and electronic device
[0001] CROSS-REFERENCE TO RELATED APPLICATIONS
[0002] This application claims priority to Chinese patent application CN202410204010.0, filed on February 23, 2024, entitled “A device fingerprint verification method, a device fingerprint generation method, and an electronic device,” and the entire contents of that application are incorporated herein by reference. Technical Field
[0003] The present application belongs to the field of network security technology, and in particular relates to a device fingerprint verification method, a device fingerprint generation method and an electronic device. Background Art
[0004] Device fingerprints are used to uniquely identify a device's device characteristics or unique device identifier. These can include inherent, difficult-to-tamper, unique device identifiers and a collection of device features. For example, a mobile phone is assigned a unique International Mobile Equipment Identity (IMEI) number during the manufacturing process, which uniquely identifies the device. Another example is a computer's network card, which is assigned a unique Media Access Control Address (MAC address) during the manufacturing process. However, device fingerprints can be replaced or tampered with during use, making the security of the device fingerprint unreliable.
[0005] Summary of the Invention
[0006] The present application provides a device fingerprint verification method, a device fingerprint generation method and an electronic device, which are used to solve the technical problem in the prior art that the device fingerprint is replaced or tampered with, resulting in the security of the device fingerprint cannot be guaranteed.
[0007] In a first aspect, an embodiment of the present application provides a device fingerprint verification method, comprising: obtaining request data sent by a client; wherein the request data includes target device fingerprint information corresponding to the client, the target device fingerprint information includes initial device fingerprint information and time information spliced with the initial device fingerprint information, the time information includes a first generation time of generating the target device fingerprint information; restoring first verification information corresponding to the first generation time based on the target device fingerprint information; and verifying the target device fingerprint information based on the first verification information.
[0008] In the above scheme, after obtaining the target device fingerprint information corresponding to the target device, since the above target device fingerprint information includes the initial device fingerprint information and the time information spliced therewith, the first verification information corresponding to the first generation time in the time information can be restored, and the target device fingerprint information can be quickly verified based on the above first verification information, so as to determine whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0009] In an optional embodiment, after verifying the target device fingerprint information based on the first verification information, the method further includes: if the first verification information is verified normally, restoring second verification information corresponding to the initial device fingerprint information based on the target device fingerprint information; and verifying the target device fingerprint information based on the second verification information. In the above solution, if the first verification information is verified normally, the target device fingerprint information can be further verified. By restoring the second verification information corresponding to the initial device fingerprint information, the target device fingerprint information can be more accurately verified, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0010] In an optional embodiment, verifying the target device fingerprint information based on the second verification information includes: decrypting the second verification information; and determining whether the second verification information is successfully decrypted; wherein unsuccessful decryption of the second verification information indicates an abnormality in the target device fingerprint information. In the above solution, decrypting the second verification information can be used to implement decryption verification of the target device fingerprint information, thereby improving verification accuracy and ensuring the security of the device fingerprint.
[0011] In an optional embodiment, the initial device fingerprint information includes business information; after determining whether the second verification information is successfully decrypted, the method further includes: if the second verification information is successfully decrypted and the corresponding third verification information is obtained, then determining whether the business verification information is the same as the business information; wherein, the business verification information is the verification information in the third verification information that corresponds to the business information, and the fact that the business verification information is different from the business information indicates that there is an abnormality in the target device fingerprint information. In the above scheme, if the second verification information is verified normally, the target device fingerprint information can be further verified. By determining whether the business verification information in the decrypted third verification information is the same as the business information, the business verification of the target device fingerprint information is achieved, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0012] In a second aspect, an embodiment of the present application provides a device fingerprint generation method, including: obtaining initial device fingerprint information and a first generation time corresponding to a client; wherein the first generation time is the time when target device fingerprint information is generated; generating the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time.
[0013] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0014] In an optional embodiment, generating the target device fingerprint information based on the initial device fingerprint information and the first generation time includes: concatenating the initial device fingerprint information and the first generation time to obtain the target device fingerprint information. In the above solution, the initial device fingerprint information and the first generation time can be concatenated, so that the target device fingerprint information can be quickly verified based on the first generation time, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0015] In an optional embodiment, generating the target device fingerprint information based on the initial device fingerprint information and the first generation time includes: encoding the first generation time to obtain the time information; and concatenating the initial device fingerprint information and the time information to obtain the target device fingerprint information. In the above solution, the first generation time can be encoded first, and then the initial fingerprint information and the encoded time information can be concatenated, thereby reducing the data volume of the target device fingerprint information while achieving rapid verification.
[0016] In an optional embodiment, obtaining the initial device fingerprint information corresponding to the client includes: obtaining the device fingerprint ID and device feature information corresponding to the client; wherein the device feature information includes at least one of the second generation time of the first generation of the device fingerprint ID, the verifiable information corresponding to the client, and the business information corresponding to the client; generating the initial device fingerprint information based on the device fingerprint ID and the device feature information. In the above scheme, the initial device fingerprint information can include the device fingerprint ID and the device feature information, so that it can adapt to more usage scenarios and perform different verifications on the target device fingerprint information based on different scenarios, thereby reducing the risk of the device fingerprint ID being replaced or tampered with, and ensuring the security of the device fingerprint.
[0017] In an optional embodiment, generating the initial device fingerprint information based on the device fingerprint ID and the device characteristic information includes: concatenating the device fingerprint ID and the device characteristic information to obtain first device fingerprint information; encrypting the first device fingerprint information to obtain second device fingerprint information; and performing character transcoding on the second device fingerprint information to obtain the initial device fingerprint information. In the above solution, after concatenating the device fingerprint ID and the device characteristic information, the concatenated first device fingerprint information can be encrypted and character transcoded, thereby further reducing the risk of device fingerprint replacement or tampering and ensuring the security of the device fingerprint.
[0018] In an optional embodiment, performing character transcoding on the second device fingerprint information to obtain the initial device fingerprint information includes: performing character transcoding on the second device fingerprint information using a preset transcoding method to obtain the initial device fingerprint information; wherein the initial device fingerprint information does not include special characters. In the above solution, the second device fingerprint information can be character transcoded using a preset transcoding method to obtain initial device fingerprint information that does not include special characters; since the device fingerprint will be used as a parameter of the request, special characters pose a risk during transmission, and therefore, using the above transcoding method can reduce such risks, thereby ensuring the security of the device fingerprint.
[0019] In a third aspect, an embodiment of the present application provides another device fingerprint verification method, including: obtaining initial device fingerprint information and a first generation time corresponding to a client; wherein the first generation time is the time when the target device fingerprint information is generated; generating the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time; obtaining request data sent by the client; wherein the request data includes the target device fingerprint information corresponding to the client; restoring first verification information corresponding to the first generation time based on the target device fingerprint information; and verifying the target device fingerprint information based on the first verification information.
[0020] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be quickly verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0021] In a fourth aspect, an embodiment of the present application provides a device fingerprint verification device, comprising: a first acquisition module, used to obtain request data sent by a client; wherein the request data includes the target device fingerprint information corresponding to the client, the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, the time information includes a first generation time for generating the target device fingerprint information; a first restoration module, used to restore first verification information corresponding to the first generation time according to the target device fingerprint information; a first verification module, used to verify the target device fingerprint information based on the first verification information.
[0022] In the above scheme, after obtaining the target device fingerprint information corresponding to the target device, since the above target device fingerprint information includes the initial device fingerprint information and the time information spliced therewith, the first verification information corresponding to the first generation time in the time information can be restored, and the target device fingerprint information can be quickly verified based on the above first verification information, so as to determine whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0023] In an optional embodiment, the device fingerprint verification apparatus further includes: a second restoration module configured to restore second verification information corresponding to the initial device fingerprint information based on the target device fingerprint information if the first verification information is verified normally; and a second verification module configured to verify the target device fingerprint information based on the second verification information. In the above scheme, if the first verification information is verified normally, the target device fingerprint information can be further verified. By restoring the second verification information corresponding to the initial device fingerprint information, the target device fingerprint information can be more accurately verified, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0024] In an optional embodiment, the second verification module is specifically configured to: decrypt the second verification information; and determine whether the decryption of the second verification information is successful; wherein, unsuccessful decryption of the second verification information indicates an abnormality in the target device fingerprint information. In the above solution, decrypting the second verification information can be used to perform decryption verification of the target device fingerprint information, thereby improving verification accuracy and ensuring the security of the device fingerprint.
[0025] In an optional embodiment, the initial device fingerprint information includes business information; the device fingerprint verification device further includes: a judgment module for judging whether the business verification information is the same as the business information if the second verification information is successfully decrypted and the corresponding third verification information is obtained; wherein the business verification information is the verification information in the third verification information corresponding to the business information, and the fact that the business verification information is different from the business information indicates that there is an abnormality in the target device fingerprint information. In the above scheme, if the second verification information is verified normally, the target device fingerprint information can be further verified. By judging whether the business verification information in the decrypted third verification information is the same as the business information, the business verification of the target device fingerprint information is achieved, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0026] In a fifth aspect, an embodiment of the present application provides a device fingerprint generation device, including: a second acquisition module, used to obtain the initial device fingerprint information corresponding to the client and a first generation time; wherein, the first generation time is the time when the target device fingerprint information is generated; a first generation module, used to generate the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein, the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time.
[0027] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0028] In an optional embodiment, the first generation module is specifically configured to concatenate the initial device fingerprint information and the first generation time to obtain the target device fingerprint information. In the above solution, the initial device fingerprint information and the first generation time can be concatenated, so that the target device fingerprint information can be quickly verified based on the first generation time, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0029] In an optional embodiment, the first generation module is specifically configured to: encode the first generation time to obtain the time information; and concatenate the initial device fingerprint information and the time information to obtain the target device fingerprint information. In the above solution, the first generation time can be encoded first, and then the initial fingerprint information and the encoded time information can be concatenated, thereby reducing the data volume of the target device fingerprint information while achieving rapid verification.
[0030] In an optional embodiment, the second acquisition module is specifically used to: obtain the device fingerprint ID and device feature information corresponding to the client; wherein the device feature information includes at least one of the second generation time of the first generation of the device fingerprint ID, the verifiable information corresponding to the client, and the business information corresponding to the client; and generate the initial device fingerprint information based on the device fingerprint ID and the device feature information. In the above scheme, the initial device fingerprint information can include the device fingerprint ID and the device feature information, so that it can adapt to more usage scenarios and perform different verifications on the target device fingerprint information based on different scenarios, thereby reducing the risk of the device fingerprint ID being replaced or tampered with, and ensuring the security of the device fingerprint.
[0031] In an optional embodiment, the second acquisition module is further configured to: concatenate the device fingerprint ID and the device characteristic information to obtain first device fingerprint information; encrypt the first device fingerprint information to obtain second device fingerprint information; and perform character transcoding on the second device fingerprint information to obtain the initial device fingerprint information. In the above solution, after concatenating the device fingerprint ID and the device characteristic information, the concatenated first device fingerprint information can be encrypted and character transcoded, thereby further reducing the risk of device fingerprint replacement or tampering, and ensuring the security of the device fingerprint.
[0032] In an optional embodiment, the second acquisition module is further configured to perform character transcoding on the second device fingerprint information using a preset transcoding method to obtain the initial device fingerprint information; wherein the initial device fingerprint information does not include special characters. In the above solution, the second device fingerprint information can be character transcoded using a preset transcoding method to obtain initial device fingerprint information that does not include special characters. Since the device fingerprint will be used as a parameter in the request, special characters pose a risk during transmission. Therefore, the above transcoding method can reduce such risks and thus ensure the security of the device fingerprint.
[0033] In a sixth aspect, an embodiment of the present application provides another device fingerprint verification device, including: a third acquisition module, used to obtain the initial device fingerprint information and a first generation time corresponding to the client; wherein the first generation time is the time when the target device fingerprint information is generated; a second generation module, used to generate the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time; a fourth acquisition module, used to obtain the request data sent by the client; wherein the request data includes the target device fingerprint information corresponding to the client; a third restoration module, used to restore the first verification information corresponding to the first generation time based on the target device fingerprint information; a third verification module, used to verify the target device fingerprint information based on the first verification information.
[0034] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be quickly verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0035] In the seventh aspect, an embodiment of the present application provides an electronic device, comprising: a processor, a memory and a bus; the processor and the memory communicate with each other through the bus; the memory stores computer program instructions that can be executed by the processor, and the processor calls the computer program instructions to execute the device fingerprint verification method described in the first aspect and the third aspect or the device fingerprint generation method described in the second aspect.
[0036] In an eighth aspect, an embodiment of the present application provides a computer-readable storage medium, which stores computer program instructions. When the computer program instructions are executed by a computer, the computer executes the device fingerprint verification method described in the first aspect or the third aspect or the device fingerprint generation method described in the second aspect.
[0037] Other features and advantages of the present application will be described in the following description and, in part, will become apparent from the description or be understood by practicing the embodiments of the present application. The objectives and other advantages of the present application can be achieved and obtained through the structures particularly pointed out in the written description, claims, and drawings. BRIEF DESCRIPTION OF THE DRAWINGS
[0038] In order to more clearly illustrate the technical solutions of the embodiments of the present application, the following is a brief introduction to the drawings required for use in the embodiments of the present application. It should be understood that the following drawings only show certain embodiments of the present application and therefore should not be regarded as limiting the scope. For ordinary technicians in this field, other relevant drawings can be obtained based on these drawings without creative work.
[0039] FIG1 is a flow chart of a device fingerprint verification method provided by an embodiment of the present application;
[0040] FIG2 is a flow chart of a method for generating a device fingerprint according to an embodiment of the present application;
[0041] FIG3 is a flow chart of another device fingerprint verification method provided in an embodiment of the present application;
[0042] FIG4 is a structural block diagram of a device fingerprint verification apparatus provided in an embodiment of the present application;
[0043] FIG5 is a structural block diagram of a device fingerprint generation apparatus provided in an embodiment of the present application;
[0044] FIG6 is a structural block diagram of another device fingerprint verification apparatus provided in an embodiment of the present application;
[0045] FIG7 is a structural block diagram of an electronic device provided in an embodiment of the present application. DETAILED DESCRIPTION
[0046] The technical solutions in the embodiments of the present application will be described clearly and completely below in conjunction with the accompanying drawings in the embodiments of the present application.
[0047] It should be noted that the term "plurality" in the embodiments of the present invention refers to two or more. Therefore, in the embodiments of the present invention, "plurality" can also be understood as "at least two." "And / or" describes the relationship between associated objects, indicating that three possible relationships exist. For example, "A and / or B" can represent: A exists alone, A and B exist simultaneously, or B exists alone. Furthermore, the character " / ," unless otherwise specified, generally indicates an "or" relationship between the associated objects.
[0048] Please refer to FIG. 1 , which is a flow chart of a device fingerprint verification method provided in an embodiment of the present application. The device fingerprint verification method can be applied to a server, wherein the device fingerprint verification method may include the following steps:
[0049] Step S101: Obtain request data sent by the client.
[0050] Step S102: Restore first verification information corresponding to the first generation time according to the target device fingerprint information.
[0051] Step S103: Verify the target device fingerprint information according to the first verification information.
[0052] Specifically, in the above step S101, when the client needs to execute a service, the client may send request data to the server, so that the server can verify the target device fingerprint information of the client based on the above request data.
[0053] The request data may include the target device fingerprint information corresponding to the client. As an embodiment, the target device fingerprint information may include initial device fingerprint information and time information; the target device fingerprint information may be generated by concatenating the initial device fingerprint information and time information.
[0054] The initial device fingerprint information can be generated based on information related to the client. It should be noted that, first of all, the embodiment of the present application does not specifically limit the specific implementation of the above-mentioned information related to the client, and those skilled in the art can make appropriate adjustments according to actual conditions. For example, the information related to the client may include one or more of the following information: the device fingerprint identity document (ID), the time when the above-mentioned device fingerprint ID was first generated, the verifiable information corresponding to the client, the business information corresponding to the client, etc.
[0055] In the embodiments of this application, the device fingerprint ID refers to the device feature or unique device identifier used to uniquely identify the client, and the device fingerprint information refers to the device identifier generated based on the device fingerprint ID and used to identify the target device. The difference between the two is that a client only corresponds to one device fingerprint ID, but can correspond to multiple device fingerprint information.
[0056] The time when the device fingerprint ID is first created can provide some time information during verification to facilitate historical queries, and can also be used for legal time verification; the verifiable information corresponding to the client can include attribute information related to the target device, such as: Android ID, device model and other information; business information can be used to characterize the corresponding business on the client. For example, suppose there are two applications (Application, App), and the same device installs these two Apps with the same device fingerprint ID, but in order to distinguish the two Apps, two different business information can be generated, so that the target device fingerprint information issued by the two APPs is different.
[0057] Secondly, the embodiments of this application do not specifically limit the specific implementation method for generating the initial device fingerprint information. Those skilled in the art may make appropriate adjustments based on actual circumstances. For example, client-related information may be input into a pre-trained neural network model to output the initial device fingerprint information; alternatively, multiple pieces of client-related information may be concatenated to obtain the initial device fingerprint information; alternatively, client-related information may be encrypted to obtain the initial device fingerprint information, etc.
[0058] The time information can be obtained based on the first generation time of the target device fingerprint information. As an embodiment, the time information can include the above-mentioned first generation time; as another embodiment, the above-mentioned first generation time can be processed before obtaining the above-mentioned time information. It is understood that the embodiments of this application do not specifically limit the specific implementation method of the above-mentioned processing of the first generation time, and those skilled in the art can make appropriate adjustments based on actual conditions; for example, the first generation time can be compressed, encrypted, transcoded, etc., or subjected to one or more processing.
[0059] In the above step S102, since the target device fingerprint information includes the initial device fingerprint information and the time information spliced with the initial device fingerprint information, the first verification information corresponding to the first generation time in the target device fingerprint information can be quickly restored.
[0060] As an implementation method, if the time information includes the above-mentioned first generation time, the information at the position corresponding to the first generation time in the target device fingerprint information can be directly extracted to obtain the first verification information; as another implementation method, if the first generation time is processed first, after extracting the information at the position corresponding to the first generation time in the target device fingerprint information, the extracted data can be processed in the opposite way to obtain the first verification information.
[0061] In step S103, the first verification information may be verified to verify the fingerprint information of the target device. In one embodiment, the first verification information may be verified by determining whether the first verification information is the same as the first generation time.
[0062] If the first verification information is different from the first generation time, it indicates that the first verification information verification is abnormal. In this case, it indicates that there is an abnormality in the target device fingerprint information, and subsequent processing can be directly carried out according to the abnormality. For example, if the first generation time is 2023 and the first verification information is 3023, it means that the target device fingerprint information has been tampered with.
[0063] If the first verification time is the same as the first generation time, then the first verification information is verified normally. At this point, as an implementation, it can be assumed that there is no abnormality in the target device fingerprint information; as another implementation, other verification methods can be used to further verify the target device fingerprint information.
[0064] In the above scheme, after obtaining the target device fingerprint information corresponding to the target device, since the above target device fingerprint information includes the initial device fingerprint information and the time information spliced therewith, the first verification information corresponding to the first generation time in the time information can be restored, and the target device fingerprint information can be quickly verified based on the above first verification information, so as to determine whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0065] Furthermore, based on the above embodiment, after step S103, the device fingerprint verification method provided in the embodiment of the present application may further include the following steps:
[0066] Step 1): If the first verification information is verified to be normal, the second verification information corresponding to the initial device fingerprint information is restored according to the target device fingerprint information.
[0067] Step 2) Verify the target device fingerprint information based on the second verification information.
[0068] Specifically, in step 1), if the first verification information is verified normally, other verification methods can be used to further verify the target device fingerprint information. As an embodiment, the second verification information corresponding to the initial device fingerprint information can be restored based on the target device fingerprint information.
[0069] It should be noted that the embodiments of this application do not specifically limit the specific implementation method for restoring the initial device fingerprint information. Those skilled in the art may make appropriate adjustments based on the specific implementation method for generating the initial device fingerprint information. For example, the initial device fingerprint information may be split; or the initial fingerprint information may be decrypted; or the initial device fingerprint information may be decoded.
[0070] In the above step 2), the purpose of verifying the target device fingerprint information can be achieved by verifying the above second verification information. It should be noted that the embodiment of the present application does not specifically limit the specific implementation method of verifying the above second verification information, and those skilled in the art can make appropriate adjustments based on the specific implementation method of the initial device fingerprint information. For example, if the initial device fingerprint information is obtained by encryption, it can be determined whether the second verification information can be decrypted normally; or, if the initial device fingerprint information includes a device fingerprint ID, it can be determined whether the second verification information is the same as the device fingerprint ID; or, if the initial device fingerprint information includes business information, it can be determined whether the second verification information is the same as the business information, etc.
[0071] In the above scheme, if the first verification information is verified normally, the target device fingerprint information can be further verified. By restoring the second verification information corresponding to the initial device fingerprint information, the target device fingerprint information can be verified more accurately, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0072] Furthermore, based on the above embodiment, the step of verifying the target device fingerprint information according to the second verification information may specifically include the following steps:
[0073] Step 1): decrypt the second verification information.
[0074] Step 2) Determine whether the second verification information is decrypted successfully.
[0075] Specifically, in step 1), if encryption is performed during the generation of the initial device fingerprint information, the second verification information can be decrypted and verified to achieve the purpose of verifying the target device fingerprint information. Therefore, the second verification information can be decrypted.
[0076] In step 2) above, the second verification information can be verified by determining whether the second verification information is successfully decrypted. If the decryption of the second verification information is unsuccessful, it indicates that the second verification information verification is abnormal. In this case, it indicates that there is an abnormality in the fingerprint information of the target device, and subsequent processing can be directly carried out according to the abnormality. For example, if the second verification information cannot be successfully decrypted or a parameter parsing abnormality occurs during the decryption of the second verification information, it indicates that the fingerprint information of the target device has been tampered with.
[0077] If the second verification information is successfully decrypted, it indicates that the second verification information is verified normally. At this point, as an implementation method, it can be considered that there is no abnormality in the target device fingerprint information; as another implementation method, other verification methods can be used to further verify the target device fingerprint information.
[0078] In the above solution, the second verification information can be decrypted to achieve decryption verification of the target device fingerprint information, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0079] Furthermore, based on the above embodiment, the initial device fingerprint information may further include business information. In this case, after the above step of verifying the target device fingerprint information based on the second verification information, the device fingerprint verification method provided in the embodiment of the present application may further include the following steps:
[0080] If the second verification information is decrypted successfully and the corresponding third verification information is obtained, it is determined whether the service verification information is the same as the service information.
[0081] Specifically, in the above steps, if the second verification information is successfully decrypted, other verification methods can be used to further verify the target device fingerprint information. As an implementation method, if the initial device fingerprint information includes business information, the target device fingerprint information can be verified by performing business verification on the third verification information. Therefore, the business verification information in the decrypted third verification information can be extracted to determine whether the business verification information is the same as the business information.
[0082] The service verification information is the verification information in the third verification information that corresponds to the service information. The service information can be used to represent the corresponding service on the client. If the service verification information is different from the service information, it indicates that the third verification information verification is abnormal. In this case, it indicates that there is an abnormality in the target device fingerprint information, and subsequent processing can be directly carried out according to the abnormality. For example, if the service verification information is different from the service information, it may be that the target device fingerprint information has been replaced.
[0083] If the business verification information is the same as the business information, then the third verification information is verified normally. At this point, as an implementation, it can be considered that there is no abnormality in the target device fingerprint information; as another implementation, other verification methods can be used to further verify the target device fingerprint information.
[0084] In the above scheme, if the second verification information is verified normally, the target device fingerprint information can be further verified by judging whether the business verification information in the decrypted third verification information is the same as the business information, thereby realizing the business verification of the target device fingerprint information, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0085] Please refer to FIG. 2 , which is a flow chart of a device fingerprint generation method provided in an embodiment of the present application. The device fingerprint generation method can be applied to a server, wherein the device fingerprint generation method may include the following steps:
[0086] Step S201: Obtain initial device fingerprint information and a first generation time corresponding to the client.
[0087] Step S202: Generate target device fingerprint information according to the initial device fingerprint information and the first generation time.
[0088] Specifically, in the above step S201, the initial device fingerprint information can be generated based on information related to the client, and the information related to the client may include one or more of the device fingerprint ID, the time when the above device fingerprint ID is first generated, the verifiable information corresponding to the client, the business information corresponding to the client, and the like.
[0089] The first generation time is the time when the target device fingerprint information is generated. In other words, the first generation time may refer to the time when steps S201 and S202 provided in the embodiments of this application are executed. In one embodiment, the first generation time may be the current time; in another embodiment, the first generation time may be the time when the target device fingerprint information is expected to be generated in the future. For example, the first generation time may include at least one of year, month, day, hour, minute, and second.
[0090] It should be noted that the embodiments of this application do not impose specific limitations on the specific implementation methods for obtaining the initial device fingerprint information and the first generation time, and those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the initial device fingerprint information and the first generation time may be received from an external device; or the initial device fingerprint information and the first generation time may be read from a local or cloud-stored location; or the initial device fingerprint information may be generated in real time.
[0091] In step S202, target device fingerprint information can be generated based on the initial device fingerprint information and the first generation time. The target device fingerprint information includes the initial device fingerprint information and time information concatenated with the initial device fingerprint information, where the time information includes the first generation time. Therefore, the initial device fingerprint information and the time information can be concatenated to obtain the target device fingerprint information.
[0092] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0093] Furthermore, based on the above embodiment, as an implementation method, the above step S202 may specifically include the following steps:
[0094] The initial device fingerprint information and the first generation time are combined to obtain the target device fingerprint information.
[0095] Specifically, the initial device fingerprint information and the first generation time can be directly concatenated to obtain the target device fingerprint information. The initial device fingerprint information and the first generation time can be concatenated by adding the first generation time to the initial device fingerprint information. For example, if the initial device fingerprint information is abcd and the first generation time is 2001, the target device fingerprint information obtained after concatenation can be abcd2001.
[0096] It should be noted that the embodiments of the present application do not impose any specific restrictions on the specific location where the first generation time is added to the initial device fingerprint information. Those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the first generation time may be added after the initial device fingerprint information (e.g., abcd2001); or, the first generation time may be added before the initial device fingerprint information (e.g., 2001abcd); or, the first generation time may be added within the initial device fingerprint information (e.g., ab2001cd).
[0097] In the above scheme, the initial device fingerprint information and the first generation time can be spliced together, so that the target device fingerprint information can be quickly verified based on the first generation time, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0098] Furthermore, based on the above embodiment, as another implementation, the above step S202 may specifically include the following steps:
[0099] Step 1) Encode the first generation time to obtain time information.
[0100] Step 2) Concatenate the initial device fingerprint information and time information to obtain the target device fingerprint information.
[0101] Specifically, in the above step 1), the first generation time may be encoded to obtain time information, and then the initial device fingerprint information and the time information may be concatenated to obtain the target device fingerprint information.
[0102] It should be noted that the embodiment of the present application does not specifically limit the specific implementation method of encoding the first generation time. Those skilled in the art can make appropriate adjustments based on actual conditions. For example, the first generation time can be compressed or Huffman encoded.
[0103] Taking the base-58 compression of the first generation time as an example, assuming that the first generation time is 20231030, the base-58 compression can be used to obtain the compressed time information 2MFYS.
[0104] In the above step 2), the compressed time information can be spliced with the initial device fingerprint information; it can be understood that the specific implementation method of splicing the time information and the initial device fingerprint information is similar to the specific implementation method of splicing the first generated time and the initial device fingerprint information, and will not be repeated here.
[0105] In the above solution, the first generation time may be encoded first, and then the initial fingerprint information and the encoded time information may be concatenated, thereby reducing the data volume of the target device fingerprint information while achieving fast verification.
[0106] Furthermore, based on the above embodiment, the above step S201 may specifically include the following steps:
[0107] Step 1) Obtain the device fingerprint ID and device feature information corresponding to the client.
[0108] Step 2) Generate initial device fingerprint information based on the device fingerprint ID and device feature information.
[0109] Specifically, in step 1) above, the device fingerprint ID corresponding to the client can be generated only once and then stored locally or in the cloud; while the device characteristic information corresponding to the client can be obtained and stored synchronously at the same time as the device fingerprint ID is generated, or the device information can be queried in real time. The device characteristic information may include at least one of the second generation time of the first generation of the device fingerprint ID, the verifiable information corresponding to the client, and the business information corresponding to the client.
[0110] It should be noted that, first, the embodiments of this application do not specifically limit the specific implementation method for obtaining the device fingerprint ID corresponding to the client, and those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the device fingerprint ID may be received from an external device; or the device fingerprint ID may be read from a local or cloud-stored device; or the device fingerprint ID may be generated for the first time based on the device parameters reported by the client.
[0111] Secondly, the embodiments of this application do not specifically limit the specific implementation methods for obtaining device feature information corresponding to the client. Those skilled in the art may make appropriate adjustments based on actual circumstances. For example, device feature information sent by an external device may be received; device feature information stored locally or in the cloud may be read; or device feature information may be queried in real time.
[0112] It is understandable that the method of obtaining the device fingerprint ID corresponding to the client and the method of obtaining the device feature information corresponding to the client may be the same or different.
[0113] In step 2) above, the present embodiment does not specifically limit the specific implementation method for generating the initial device fingerprint information based on the device fingerprint ID and device feature information. Those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the device fingerprint ID and device feature information may be concatenated to obtain the initial device fingerprint information; or the device fingerprint ID and device feature information may be encrypted to obtain the initial device fingerprint information; or the device fingerprint ID and device feature information may be encoded to obtain the initial device fingerprint information, etc.
[0114] In the above solution, the initial device fingerprint information can include the device fingerprint ID and device feature information, so that it can adapt to more usage scenarios and perform different verifications on the target device fingerprint information based on different scenarios, thereby reducing the risk of the device fingerprint ID being replaced or tampered with, and ensuring the security of the device fingerprint.
[0115] Furthermore, based on the above embodiment, the step of generating initial device fingerprint information based on the device fingerprint ID and device feature information may specifically include the following steps:
[0116] Step 1) Concatenate the device fingerprint ID and device feature information to obtain first device fingerprint information.
[0117] Step 2): Encrypt the first device fingerprint information to obtain the second device fingerprint information.
[0118] Step 3) Perform character transcoding on the second device fingerprint information to obtain initial device fingerprint information.
[0119] Specifically, in the above step 1), the device fingerprint ID and the device feature information may be concatenated to obtain the first device fingerprint information.
[0120] Among them, the method of splicing the device fingerprint ID and the device feature information can be: adding the device feature information to the device fingerprint ID, for example: assuming that the device fingerprint ID is efg, the device feature information can include A, B, and C, then the first device fingerprint information obtained after splicing can be efgABC.
[0121] It should be noted that the embodiments of this application do not impose any specific restrictions on the specific location where the device feature information is added to the device fingerprint ID. Those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the device feature information may be added after the device fingerprint ID (e.g., efgABC); or, the device feature information may be added before the device fingerprint ID (e.g., ABCefg); or, the device feature information may be added within the device fingerprint ID (e.g., eABfCg).
[0122] In the above step 2), the first device fingerprint information obtained by splicing in the above step 1) may be encrypted, thereby obtaining the second device fingerprint information.
[0123] It should be noted that the embodiments of this application do not specifically limit the specific implementation method for encrypting the first device fingerprint information, and those skilled in the art may make appropriate adjustments based on actual circumstances. For example, one or more encryption algorithms such as a symmetric encryption algorithm, an asymmetric encryption algorithm, and a hash algorithm may be used to encrypt the first device fingerprint information.
[0124] In the above step 3), the second device fingerprint information encrypted in the above step 2) may be character-transcoded, thereby obtaining the initial device fingerprint information.
[0125] It should be noted that the embodiments of this application do not specifically limit the specific implementation method for transcoding the second device fingerprint information, and those skilled in the art may make appropriate adjustments based on actual circumstances. For example, the second device fingerprint information may be transcoded using one or more of the following character transcoding methods: ASCII encoding, BASE64, BASE62, etc.
[0126] In the above solution, after concatenating the device fingerprint ID and the device feature information, the concatenated first device fingerprint information can be encrypted and character transcoded, thereby further reducing the risk of the device fingerprint being replaced or tampered with, and ensuring the security of the device fingerprint.
[0127] Furthermore, based on the above embodiment, the step of performing character transcoding on the second device fingerprint information to obtain the initial device fingerprint information may specifically include the following steps:
[0128] The second device fingerprint information is character-transcoded using a preset transcoding method to obtain initial device fingerprint information; wherein the initial device fingerprint information does not include special characters.
[0129] Specifically, as an implementation method, the special characters may include one or more of symbols such as "+", " / ", "=", etc.; as another implementation method, in the above-mentioned preset transcoding method, the second device fingerprint information may be character-transcoded using BASE62 that removes special characters, thereby obtaining initial device fingerprint information that does not include special characters.
[0130] In the above scheme, the second device fingerprint information can be character-transcoded using a preset transcoding method to obtain initial device fingerprint information that does not include special characters. Since the device fingerprint will be used as a parameter of the request, special characters pose risks during transmission. Therefore, the above transcoding method can reduce the above risks and thus ensure the security of the device fingerprint.
[0131] Please refer to FIG3 , which is a flowchart of another device fingerprint verification method provided by an embodiment of the present application. The device fingerprint verification method can be applied to a server, wherein the device fingerprint verification method may include the following steps:
[0132] Step S301: Obtain initial device fingerprint information and a first generation time corresponding to the client.
[0133] Step S302: Generate target device fingerprint information according to the initial device fingerprint information and the first generation time.
[0134] Step S303: Obtain the request data sent by the client.
[0135] Step S304: Restore first verification information corresponding to the first generation time according to the target device fingerprint information.
[0136] Step S305: Verify the target device fingerprint information according to the first verification information.
[0137] Specifically, in the above step S301, the initial device fingerprint information can be generated based on information related to the client, and the information related to the client may include one or more of the device fingerprint ID, the time when the above device fingerprint ID is first generated, the verifiable information corresponding to the client, the business information corresponding to the client, and the like.
[0138] The first generation time is the time when the target device fingerprint information is generated. In other words, the first generation time may refer to the time when steps S301 and S302 provided in the embodiment of this application are executed. In one embodiment, the first generation time may be the current time; in another embodiment, the first generation time may be the time when the target device fingerprint information is expected to be generated in the future. For example, the first generation time may include at least one of year, month, day, hour, minute, and second.
[0139] In step S302, target device fingerprint information can be generated based on the initial device fingerprint information and the first generation time. The target device fingerprint information includes the initial device fingerprint information and time information concatenated with the initial device fingerprint information, where the time information includes the first generation time. Therefore, the initial device fingerprint information and the time information can be concatenated to obtain the target device fingerprint information.
[0140] In step S303, when the client needs to perform a service, the client may send request data to the server so that the server can verify the target device fingerprint information of the client based on the request data. The request data may include the target device fingerprint information corresponding to the client.
[0141] In the above step S304, since the target device fingerprint information includes the initial device fingerprint information and the time information spliced with the initial device fingerprint information, the first verification information corresponding to the first generation time in the target device fingerprint information can be quickly restored.
[0142] As an implementation method, if the time information includes the above-mentioned first generation time, the information at the position corresponding to the first generation time in the target device fingerprint information can be directly extracted to obtain the first verification information; as another implementation method, if the first generation time is processed first, after extracting the information at the position corresponding to the first generation time in the target device fingerprint information, the extracted data can be processed in the opposite way to obtain the first verification information.
[0143] In step S305, the first verification information may be verified to verify the target device fingerprint information. In one embodiment, the first verification information may be verified by determining whether the first verification information is the same as the first generation time.
[0144] If the first verification information differs from the first generation time, this indicates a verification anomaly. This indicates an anomaly in the target device's fingerprint information, and subsequent processing can be performed based on the anomaly. For example, if the first generation time is 2023 and the first verification information is 3023, this indicates that the target device's fingerprint information has been tampered with.
[0145] If the first verification time is the same as the first generation time, then the first verification information is verified normally. At this point, as an implementation, it can be assumed that there is no abnormality in the target device fingerprint information. As another implementation, other verification methods can be used to further verify the target device fingerprint information.
[0146] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be quickly verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0147] In summary, the above-mentioned device fingerprint verification method and device fingerprint generation method can both be executed on the server. After generating the target device fingerprint information, the server can send the target device fingerprint information to the client. After receiving the target device fingerprint information, the client can store the target device fingerprint information. When the client needs to make a data request, it can carry the target device fingerprint information. Correspondingly, after receiving the data request from the client, the server can verify the target device fingerprint information carried in the data request.
[0148] Please refer to Figure 4, which is a structural block diagram of a device fingerprint verification device provided in an embodiment of the present application. The device fingerprint verification device 400 includes: a first acquisition module 401, which is used to obtain request data sent by a client; wherein the request data includes target device fingerprint information corresponding to the client, the target device fingerprint information includes initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes a first generation time of generating the target device fingerprint information; a first restoration module 402, which is used to restore first verification information corresponding to the first generation time based on the target device fingerprint information; and a first verification module 403, which is used to verify the target device fingerprint information based on the first verification information.
[0149] In the above scheme, after obtaining the target device fingerprint information corresponding to the target device, since the above target device fingerprint information includes the initial device fingerprint information and the time information spliced therewith, the first verification information corresponding to the first generation time in the time information can be restored, and the target device fingerprint information can be quickly verified based on the above first verification information, so as to determine whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0150] In an optional embodiment, the device fingerprint verification apparatus 400 further includes: a second restoration module, configured to restore second verification information corresponding to the initial device fingerprint information based on the target device fingerprint information if the first verification information is verified normally; and a second verification module, configured to verify the target device fingerprint information based on the second verification information.
[0151] In the above scheme, if the first verification information is verified normally, the target device fingerprint information can be further verified. By restoring the second verification information corresponding to the initial device fingerprint information, the target device fingerprint information can be verified more accurately, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0152] In an optional embodiment, the second verification module is specifically used to: decrypt the second verification information; determine whether the second verification information is successfully decrypted; wherein, unsuccessful decryption of the second verification information indicates that there is an abnormality in the fingerprint information of the target device.
[0153] In the above solution, the second verification information can be decrypted to achieve decryption verification of the target device fingerprint information, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0154] In an optional embodiment, the initial device fingerprint information includes business information; the device fingerprint verification device 400 also includes: a judgment module, which is used to judge whether the business verification information is the same as the business information if the second verification information is decrypted successfully and the corresponding third verification information is obtained; wherein, the business verification information is the verification information in the third verification information corresponding to the business information, and the fact that the business verification information is different from the business information indicates that there is an abnormality in the target device fingerprint information.
[0155] In the above scheme, if the second verification information is verified normally, the target device fingerprint information can be further verified by judging whether the business verification information in the decrypted third verification information is the same as the business information, thereby realizing the business verification of the target device fingerprint information, thereby improving the accuracy of the verification and ensuring the security of the device fingerprint.
[0156] Please refer to Figure 5, which is a structural block diagram of a device fingerprint generation device provided in an embodiment of the present application. The device fingerprint generation device 500 includes: a second acquisition module 501, used to obtain initial device fingerprint information corresponding to the client and a first generation time; wherein the first generation time is the time when the target device fingerprint information is generated; a first generation module 502, used to generate the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time.
[0157] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0158] In an optional implementation, the first generating module 502 is specifically configured to: concatenate the initial device fingerprint information and the first generation time to obtain the target device fingerprint information.
[0159] In the above scheme, the initial device fingerprint information and the first generation time can be spliced together, so that the target device fingerprint information can be quickly verified based on the first generation time, thereby determining whether the target device fingerprint information has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0160] In an optional implementation, the first generation module 502 is specifically configured to: encode the first generation time to obtain the time information; and concatenate the initial device fingerprint information and the time information to obtain the target device fingerprint information.
[0161] In the above solution, the first generation time may be encoded first, and then the initial fingerprint information and the encoded time information may be concatenated, thereby reducing the data volume of the target device fingerprint information while achieving fast verification.
[0162] In an optional embodiment, the second acquisition module 501 is specifically used to: obtain the device fingerprint ID and device feature information corresponding to the client; wherein the device feature information includes at least one of the second generation time of the first generation of the device fingerprint ID, the verifiable information corresponding to the client, and the business information corresponding to the client; generate the initial device fingerprint information based on the device fingerprint ID and the device feature information.
[0163] In the above solution, the initial device fingerprint information can include the device fingerprint ID and device feature information, so that it can adapt to more usage scenarios and perform different verifications on the target device fingerprint information based on different scenarios, thereby reducing the risk of the device fingerprint ID being replaced or tampered with, and ensuring the security of the device fingerprint.
[0164] In an optional embodiment, the second acquisition module 501 is further used to: concatenate the device fingerprint ID and the device feature information to obtain first device fingerprint information; encrypt the first device fingerprint information to obtain second device fingerprint information; and perform character transcoding on the second device fingerprint information to obtain the initial device fingerprint information.
[0165] In the above solution, after concatenating the device fingerprint ID and the device feature information, the concatenated first device fingerprint information can be encrypted and character transcoded, thereby further reducing the risk of the device fingerprint being replaced or tampered with, and ensuring the security of the device fingerprint.
[0166] In an optional implementation, the second acquisition module 501 is further configured to: perform character transcoding on the second device fingerprint information using a preset transcoding method to obtain the initial device fingerprint information; wherein the initial device fingerprint information does not include special characters.
[0167] In the above scheme, the second device fingerprint information can be character-transcoded using a preset transcoding method to obtain initial device fingerprint information that does not include special characters. Since the device fingerprint will be used as a parameter of the request, special characters pose risks during transmission. Therefore, the above transcoding method can reduce the above risks and thus ensure the security of the device fingerprint.
[0168] Please refer to Figure 6, which is a structural block diagram of another device fingerprint verification device provided in an embodiment of the present application. The device fingerprint verification device 600 includes: a third acquisition module 601, used to obtain initial device fingerprint information and a first generation time corresponding to a client; wherein the first generation time is the time when the target device fingerprint information is generated; a second generation module 602, used to generate the target device fingerprint information based on the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time; a fourth acquisition module 603, used to obtain request data sent by the client; wherein the request data includes the target device fingerprint information corresponding to the client; a third restoration module 604, used to restore first verification information corresponding to the first generation time based on the target device fingerprint information; and a third verification module 605, used to verify the target device fingerprint information based on the first verification information.
[0169] In the above scheme, after obtaining the initial device fingerprint information corresponding to the target device and the first generation time corresponding to the target device fingerprint information, the target device fingerprint information can be generated based on the above initial device fingerprint information and the first generation time; based on the above target device fingerprint information, the device fingerprint can be quickly verified to determine whether the device fingerprint has been replaced or tampered with during use, thereby ensuring the security of the device fingerprint.
[0170] Please refer to Figure 7, which is a structural block diagram of an electronic device provided in an embodiment of the present application. The electronic device 700 includes: at least one processor 701, at least one communication interface 702, at least one memory 703 and at least one communication bus 704. Among them, the communication bus 704 is used to realize direct connection and communication between these components, the communication interface 702 is used to communicate signaling or data with other node devices, and the memory 703 stores machine-readable instructions executable by the processor 701. When the electronic device 700 is running, the processor 701 communicates with the memory 703 through the communication bus 704, and the above-mentioned device fingerprint verification method or device fingerprint generation method is executed when the machine-readable instruction is called by the processor 701.
[0171] For example, the processor 701 of an embodiment of the present application may implement the following method by reading a computer program from the memory 703 via the communication bus 704 and executing the computer program: Step S101: Obtaining request data sent by a client. Step S102: Recovering first verification information corresponding to a first generation time based on the target device fingerprint information. Step S103: Verifying the target device fingerprint information based on the first verification information. Alternatively, the following method may be implemented: Step S201: Obtaining initial device fingerprint information and a first generation time corresponding to the client. Step S202: Generating target device fingerprint information based on the initial device fingerprint information and the first generation time.
[0172] Among them, the processor 701 includes one or more, which can be an integrated circuit chip with signal processing capabilities. The above-mentioned processor 701 can be a general-purpose processor, including a central processing unit (CPU), a micro control unit (MCU), a network processor (NP) or other conventional processors; it can also be a special-purpose processor, including a neural network processor (NPU), a graphics processing unit (GPU), a digital signal processor (DSP), an application-specific integrated circuit (ASIC), a field programmable gate array (FPGA) or other programmable logic devices, discrete gates or transistor logic devices, discrete hardware components. Moreover, when there are multiple processors 701, some of them can be general-purpose processors and the other part can be special-purpose processors.
[0173] The memory 703 includes one or more, which may be, but is not limited to, random access memory (RAM), read-only memory (ROM), programmable read-only memory (PROM), erasable programmable read-only memory (EPROM), electrically erasable programmable read-only memory (EEPROM), etc.
[0174] It will be understood that the structure shown in FIG7 is for illustration only, and the electronic device 700 may also include more or fewer components than those shown in FIG7 , or have a configuration different from that shown in FIG7 . The components shown in FIG7 may be implemented using hardware, software, or a combination thereof. In the embodiments of the present application, the electronic device 700 may be, but is not limited to, a physical device such as a desktop computer, a laptop computer, a smart phone, a smart wearable device, an in-vehicle device, and may also be a virtual device such as a virtual machine. In addition, the electronic device 700 is not necessarily a single device, but may also be a combination of multiple devices, such as a server cluster, and the like.
[0175] An embodiment of the present application further provides a computer-readable storage medium storing computer program instructions. When the computer program instructions are executed by a computer, the computer executes the device fingerprint verification method or the device fingerprint generation method described in the aforementioned method embodiment.
[0176] In the embodiments provided in this application, it should be understood that the disclosed devices and methods can be implemented in other ways. The device embodiments described above are merely schematic. For example, the division of the units is only a logical function division. There may be other division methods in actual implementation. For example, multiple units or components can be combined or integrated into another system, or some features can be ignored or not executed. Another point is that the mutual coupling or direct coupling or communication connection shown or discussed can be through some communication interface, indirect coupling or communication connection of devices or units, which can be electrical, mechanical or other forms.
[0177] In addition, the units described as separate components may or may not be physically separate, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed across multiple network units. Some or all of the units may be selected according to actual needs to achieve the purpose of the solution of this embodiment.
[0178] Furthermore, the functional modules in each embodiment of the present application can be integrated together to form an independent part, or each module can exist independently, or two or more modules can be integrated to form an independent part.
[0179] It should be noted that if the function is implemented in the form of a software function module and sold or used as an independent product, it can be stored in a computer-readable storage medium. Based on this understanding, the technical solution of the present application, or the part that contributes to the prior art, or the part of the technical solution, can be embodied in the form of a software product. The computer software product is stored in a storage medium and includes several instructions for enabling a computer device (which can be a personal computer, a server, or a network device, etc.) to execute all or part of the steps of the method described in each embodiment of the present application. The aforementioned storage medium includes: various media that can store program codes, such as a USB flash drive, a mobile hard disk, a read-only memory (ROM), a random access memory (RAM), a magnetic disk, or an optical disk.
[0180] In this document, relational terms such as first and second, etc. are used merely to distinguish one entity or operation from another entity or operation, but do not necessarily require or imply any actual relationship or order between these entities or operations.
[0181] The above description is merely an embodiment of the present application and is not intended to limit the scope of protection of the present application. For those skilled in the art, various modifications and variations of the present application are possible. Any modifications, equivalent substitutions, improvements, etc. made within the spirit and principles of the present application shall be included in the scope of protection of the present application.
Claims
1. A device fingerprint verification method, characterized in that: include: Obtaining request data sent by the client; wherein the request data includes target device fingerprint information corresponding to the client, the target device fingerprint information includes initial device fingerprint information and time information spliced with the initial device fingerprint information, the time information including a first generation time of generating the target device fingerprint information; Restoring first verification information corresponding to the first generation time according to the target device fingerprint information; The target device fingerprint information is verified according to the first verification information.
2. The device fingerprint verification method according to claim 1, characterized in that: After verifying the target device fingerprint information according to the first verification information, the method further includes: If the first verification information is verified to be normal, restoring the second verification information corresponding to the initial device fingerprint information according to the target device fingerprint information; The target device fingerprint information is verified according to the second verification information.
3. The device fingerprint verification method according to claim 2, characterized in that: The verifying the target device fingerprint information according to the second verification information includes: decrypting the second verification information; Determine whether the second verification information is successfully decrypted; wherein, if the second verification information is not successfully decrypted, it indicates that there is an abnormality in the fingerprint information of the target device.
4. The device fingerprint verification method according to claim 3, characterized in that: The initial device fingerprint information includes business information; after determining whether the second verification information is successfully decrypted, the method further includes: If the second verification information is decrypted successfully and the corresponding third verification information is obtained, it is determined whether the business verification information is the same as the business information; wherein, the business verification information is the verification information corresponding to the business information in the third verification information, and the fact that the business verification information is different from the business information indicates that there is an abnormality in the fingerprint information of the target device.
5. A device fingerprint generation method, characterized in that: include: Obtaining the initial device fingerprint information and the first generation time corresponding to the client; wherein the first generation time is the time when the target device fingerprint information is generated; The target device fingerprint information is generated according to the initial device fingerprint information and the first generation time; wherein the target device fingerprint information includes the initial device fingerprint information and time information spliced with the initial device fingerprint information, and the time information includes the first generation time.
6. The device fingerprint generation method according to claim 5, characterized in that: The generating the target device fingerprint information according to the initial device fingerprint information and the first generation time includes: Combine the initial device fingerprint information and the first generation time to obtain the target device fingerprint information. Prepare fingerprint information.
7. The device fingerprint generation method according to claim 5, characterized in that: The generating the target device fingerprint information according to the initial device fingerprint information and the first generation time includes: Encoding the first generation time to obtain the time information; The initial device fingerprint information and the time information are combined to obtain the target device fingerprint information.
8. The device fingerprint generation method according to any one of claims 5 to 7, characterized in that: The obtaining of the initial device fingerprint information corresponding to the client includes: Obtaining a device fingerprint ID and device feature information corresponding to the client; wherein the device feature information includes at least one of a second generation time of the first generation of the device fingerprint ID, verifiable information corresponding to the client, and business information corresponding to the client; The initial device fingerprint information is generated according to the device fingerprint ID and the device feature information.
9. The device fingerprint generation method according to claim 8, characterized in that: Generating the initial device fingerprint information according to the device fingerprint ID and the device feature information includes: Concatenate the device fingerprint ID and the device feature information to obtain first device fingerprint information; Encrypting the first device fingerprint information to obtain second device fingerprint information; Perform character transcoding on the second device fingerprint information to obtain the initial device fingerprint information.
10. The device fingerprint generation method according to claim 9, characterized in that: The performing character transcoding on the second device fingerprint information to obtain the initial device fingerprint information includes: The second device fingerprint information is character-transcoded using a preset transcoding method to obtain the initial device fingerprint information; wherein the initial device fingerprint information does not include special characters.
11. An electronic device, characterized in that: include: processor, memory, and bus; The processor and the memory communicate with each other via the bus; The memory stores computer program instructions that can be executed by the processor, and the processor calls the computer program instructions to execute the device fingerprint verification method according to any one of claims 1 to 4 or the device fingerprint generation method according to any one of claims 5 to 10.
12. A computer-readable storage medium, characterized in that The computer-readable storage medium stores computer program instructions, which, when executed by a computer, enable the computer to execute the device fingerprint verification method according to any one of claims 1 to 4 or the device fingerprint generation method according to any one of claims 5 to 10.
Citation Information
Patent Citations
System and method for security authentication of mobile devices
CN106529963A
Equipment fingerprint information processing method and device and server
CN109818906A
Equipment fingerprint verification method, equipment fingerprint generation method and electronic equipment
CN118035981A
Portable telephone terminal, tampering prevention system and method
JP2007274101A
Device verification method and apparatus
US20170289139A1