Cloud-Based Binary Code Security via Dynamic Library Integration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for protecting binary code are inefficient, requiring significant developer effort and time, and cannot quickly respond to hacker attacks, as they rely on Software Development Kits (SDKs) that need to be integrated into source code and are not effective against rapid hacker threats.

Innovation Solution

A cloud-based application security service system that generates, secures, and distributes binary code through a client-device-cloud-device workflow, using security libraries with hash verification, anti-debugging, and anti-dump functions to create a secure execution package, enabling rapid protection against hacker attacks.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If SDK is used to protect binary code by integrating into source code, then security protection is provided, but developer effort and time are significantly increased

Engineering Contradiction:
Improvebinary code securityVSAvoiddeveloper effort and time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent introduces a cloud-based security service as an intermediary between the application developer and the security protection mechanism. The developer uploads source code to the cloud, where security libraries are automatically integrated and binary code is generated with embedded security measures. This mediator eliminates the need for developers to directly integrate complex security SDKs, significantly reducing developer effort and time while maintaining reliable security protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent applies preliminary action by pre-configuring security libraries and protection mechanisms in the cloud environment before the actual binary code generation. Security measures are prepared in advance and automatically applied during the compilation process, so that when developers receive the final binary code, security protection is already integrated without requiring additional developer time or effort.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If traditional security methods are used, then some security protection is achieved, but rapid response to hacker attacks is not possible

Engineering Contradiction:
Improvesecurity protectionVSAvoidresponse speed to hacker attacks
Core Design Contradiction:
ReliabilityVSSpeed

Solution Approach 1:

The patent implements dynamics by enabling real-time updates and dynamic configuration of security libraries through the cloud-based system. When new hacker threats are detected, security libraries can be updated in the cloud and automatically applied to generated binary code without requiring developers to modify their source code. This dynamic approach allows rapid response to emerging threats while maintaining continuous security protection.

Inventive Principle:
Principle #15Dynamics

3Reliability

If security libraries are applied to binary code, then security protection is enhanced, but performance may be impacted

Engineering Contradiction:
Improvesecurity protectionVSAvoidperformance impact
Core Design Contradiction:
ReliabilityVSUse of energy by moving object

Solution Approach 1:

The patent applies local quality by selectively integrating security libraries only in the specific modules or functions of the binary code where security risks are identified, rather than applying security measures uniformly throughout the entire codebase. The cloud-based system analyzes the source code and applies security protections locally to critical sections, maintaining security enhancement while minimizing performance impact on non-critical portions of the application.

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10296728B2Method and system for providing cloud-based application security service
Publication Date: 2019.05.21 INKA ENTWORKS INC
  • US10296728B2 patent drawing
  • US10296728B2 patent drawing
  • US10296728B2 patent drawing

AI summary

The present invention relates to a method and a system for providing a cloud-based application security service. The system for providing the cloud-based application security service according to the present invention includes: a client device including a compiler, an execution package composition unit, an uploader, and a downloader; and a cloud device including an execution package decomposition unit, a security library providing unit, a security library application unit, and an execution package recomposition unit, thereby, based on a cloud, providing convenience in security application and rapid action against hacker attacks.