The invention discloses a TPCM (Trusted Platform Control Module)-based
operating system security update solution, which comprises the following steps that: when an
operating system is started, a TPCM performs self-inspection, and after the self-inspection is passed, the TPCM generates a pair of public and private keys; the method comprises the following steps: an
operating system supplier signs an update packet by using a private key before issuing the update packet, and generates a hash value of the update packet after the update packet is signed; after the
user equipment receives the update
package, the TPCM verifies the signature of the update
package by using the public key of the operating
system supplier, and after the signature
verification is passed, the TPCM calculates the hash value of the update
package and compares the hash value with the hash value in the signature; after the comparison is passed, the TPCM transmits the update package to an operating
system for installation, and in the update package installation process, the TPCM monitors the update progress in real time; after updating is completed, the TPCM generates an updating log, and the TPCM sends the generated updating log to an operating
system supplier. By introducing the trusted platform control module, the security and efficiency of the updating process of the operating system are improved.