Application Security via Device Fingerprint Binding

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Container technology poses challenges in protecting applications from unauthorized copying and theft, as they can be easily replicated within containers, compromising software security and developer rights.

Innovation Solution

A method involving a terminal device that acquires an authorization code and device fingerprint, compares these with license information to verify authenticity, allowing or prohibiting application execution based on a successful match, utilizing an offline authorization server and credit platform to manage and distribute authorization codes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If container technology is used to run applications, then application deployment flexibility and ease of operation are improved, but application security and protection from unauthorized copying deteriorate

Engineering Contradiction:
Improveapplication deployment flexibilityVSAvoidapplication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies preliminary action by binding the application to a specific terminal device's fingerprint information before the application is copied or stolen. The authorization code is generated in advance with the terminal device fingerprint embedded, so that when the application is launched, the system can automatically verify whether the current running device matches the bound fingerprint. This preventive binding mechanism ensures security is established before any potential unauthorized copying can occur, resolving the contradiction between deployment flexibility and security protection.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If traditional licensing methods are used, then application security is improved, but ease of operation and deployment flexibility deteriorate

Engineering Contradiction:
Improveapplication securityVSAvoiddeployment flexibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies copying by using the terminal device fingerprint as an unchangeable copy that is bound to the application. Instead of traditional licensing that requires complex verification systems, the system creates a cryptographic binding between the application and the device fingerprint. This fingerprint copy is embedded in the authorization code, allowing the application to be securely deployed across different environments while maintaining security through the immutable nature of the fingerprint binding, thus resolving the contradiction between security and deployment flexibility.

Inventive Principle:
Principle #26Copying

3Reliability

If authorization verification is performed, then application security is improved, but processing time and system complexity increase

Engineering Contradiction:
Improveauthorization securityVSAvoidverification processing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent applies preliminary action by pre-generating the authorization code with the terminal device fingerprint bound to it during the application installation or activation phase. This eliminates the need for real-time complex verification when the application is launched. The fingerprint binding is established in advance, and the authorization code serves as a pre-validated credential, significantly reducing verification processing time while maintaining strong security, thus resolving the contradiction between security and processing time.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS20240394343A1Method and system of running application, electronic device and storage medium
Publication Date: 2024.11.28 BEIJING BOE TECH DEV CO LTD
  • US20240394343A1 patent drawing
  • US20240394343A1 patent drawing
  • US20240394343A1 patent drawing

AI summary

A method and a system of running an application, an electronic device and a storage medium are provided. The method includes: acquiring an authorization code, where the authorization code is used to authorize the terminal device to run the application; acquiring a license information; extracting a device fingerprint and an authorization code associated with the device fingerprint from the license information; generating a verification result by comparing the authorization code extracted from the license information with the acquired authorization code and comparing the device fingerprint extracted from the license information with a device fingerprint of the terminal device; and allowing the terminal device to run the application or prohibiting the terminal device from running the application, according to the verification result.