Application Installation Certificate Verification for Piracy Prevention
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In open platforms like Android, there is a lack of effective methods to prevent software piracy, unauthorized use, and the distribution of malicious applications, as there is no way to distinguish between development and commercial environments, leading to issues with application installation and security.
Innovation Solution
A method and system for managing application installation on electronic devices using a certificate system that verifies application signature keys, ensuring only authorized applications are installed by matching them with development or commercial signatures, and limiting access based on defined application authority ranges.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If applications are distributed freely through email or web in an open platform, then application accessibility and ease of operation are improved, but security and reliability deteriorate due to software piracy and malicious code
Solution Approach 1:
The patent implements preliminary action by verifying application signature keys before installation. The electronic device checks whether the application signature key matches either a development signature key or commercial signature key, and for development keys, verifies whether the device corresponds to information on a test electronic device defined in the signature key. This pre-verification mechanism prevents malicious applications from being installed while maintaining ease of operation for legitimate applications.
2Adaptability or versatility
If development applications are transmitted and installed freely without distinction between commercial and development environments, then adaptability and ease of operation are improved, but harmful factors increase due to unauthorized use and software piracy
Solution Approach 1:
The patent applies local quality by differentiating verification requirements based on the type of signature key. For development signature keys, the system performs additional verification to check whether the electronic device corresponds to information on a test electronic device defined in the signature key. For commercial signature keys, standard verification is performed. This localized verification approach maintains adaptability for different application types while preventing software piracy through targeted security measures.
3Reliability
If a certificate verification system is implemented to prevent unauthorized installation, then reliability and security are improved, but device complexity increases
Solution Approach 1:
The patent implements partial action by performing selective verification based on the signature key type. The system first determines the type of signature key (development or commercial), then applies appropriate verification levels. For development keys, additional verification steps are performed, while commercial keys receive standard verification. This partial verification approach improves reliability without unnecessarily increasing device complexity for all applications.
Data Source
AI summary
A method of managing application installation is provided. The method includes receiving an application by an electronic device, determining an application signature key included in the application, if the application signature key matches a development signature key among the development signature key and a commercial signature key, verifying the application signature key in relation to whether the electronic device corresponds to information on a test electronic device defined in the application signature key, and installing the application based on a verification result of the application signature key.


