Mobile App Access Control via Controlled Shell Categorization

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need to protect children from accessing inappropriate applications on mobile devices, as they often contain mature content that can be harmful to their development and safety.

Innovation Solution

A system and method for controlling access to applications on mobile devices by categorizing them based on usage policies, where a controlled shell collects information about applications, determines their category designation, and blocks or permits access according to predefined rules, including restrictions on time, location, and resource usage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Object-affected harmful factors

If parental control technologies are implemented to block inappropriate applications, then child safety is improved, but device functionality and user freedom deteriorate

Engineering Contradiction:
Improveexposure to inappropriate contentVSAvoidapplication access freedom
Core Design Contradiction:
Object-affected harmful factorsVSAdaptability or versatility

Solution Approach 1:

The system changes the parameter of application categorization by analyzing multiple attributes (metadata, hash sums, content analysis) to assign age-appropriate category designations. This allows differential access control based on application characteristics rather than uniform blocking, resolving the contradiction between safety and functionality.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The controlled shell applies different access control rules to different applications based on their category designations. Instead of uniform blocking, each application receives localized quality control appropriate to its content rating, allowing children to access age-appropriate applications while blocking inappropriate ones.

Inventive Principle:
Principle #3Local quality

2Measurement precision

If comprehensive application analysis is performed to determine category designation, then categorization accuracy is improved, but processing time and system complexity worsen

Engineering Contradiction:
Improvecategorization accuracyVSAvoidapplication launch delay
Core Design Contradiction:
Measurement precisionVSLoss of time

Solution Approach 1:

The controlled shell performs preliminary analysis of application attributes (metadata, hash sums, content) during installation or first launch to determine category designation. This preliminary action stores the categorization result for future use, avoiding repeated analysis and reducing launch delays while maintaining accurate categorization.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The analysis process is segmented into multiple stages: collecting application attributes, determining category designation, and storing results. This segmentation allows the system to perform comprehensive analysis only when necessary (installation/first launch) rather than continuously, reducing processing time for subsequent application launches.

Inventive Principle:
Principle #1Segmentation

3Reliability

If usage policy rules are strictly enforced to block prohibited applications, then child protection is improved, but user flexibility and adaptability deteriorate

Engineering Contradiction:
Improvepolicy enforcement consistencyVSAvoidparental control flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The usage policy rules are implemented dynamically, allowing parents to configure which category designations are permitted or prohibited. The controlled shell adapts its blocking behavior based on these configurable policies, providing consistent enforcement of selected rules while allowing flexibility in policy selection. Parents can adjust policies as children grow, maintaining reliability while enabling adaptability.

Inventive Principle:
Principle #15Dynamics

Data Source

PatentUS9509833B2System and method controlling access to applications on a mobile device
Publication Date: 2016.11.29 AO KASPERSKY LAB
  • US9509833B2 patent drawing
  • US9509833B2 patent drawing
  • US9509833B2 patent drawing

AI summary

Disclosed are systems and methods for controlling access to applications of a mobile device. An example method includes collecting, by a controlled shell of an OS of the mobile device, information about an application of the user device; determining a category designation of the application based on the collected information; determining, by the controlled shell, whether the category designation of the application complies with one or more rules of a usage policy of the mobile device; blocking user access to the application if it is determined that a rule exists prohibiting use of applications in the designated category or if no rule exists permitting use of the applications in the designated category; and permitting user access to the application if it is determined that a rule exists allowing use of applications in the designated category or if no rule exists prohibiting use of the applications in the designated category.