Mobile Terminal Preloader Port Software Download Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing mobile terminals are vulnerable to hacker attacks through USB connections, allowing unauthorized data deletion or tampering, which compromises their limiting functions.

Innovation Solution

A method and system that utilize a preloader port to establish a connection between a computer terminal and a mobile terminal, sending a download agent signed and encrypted with an RSA private key, ensuring only authenticated software downloads can proceed, thereby preventing unauthorized access.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If USB connection is used for software downloading, then download convenience is improved, but security against hacker attacks deteriorates

Engineering Contradiction:
Improvedownload convenienceVSAvoidhacker attack vulnerability
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a preloader program as an intermediary layer between the USB connection interface and the system software. This preloader acts as a mediator that intercepts and validates all communication through the USB port, checking digital signatures of download agents before allowing execution. This intermediary mechanism enables convenient USB-based downloading while preventing unauthorized hacker tools from executing, thus resolving the contradiction between download convenience and security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If download tools are allowed to communicate via USB, then software installation flexibility is improved, but device integrity protection deteriorates

Engineering Contradiction:
Improvesoftware installation flexibilityVSAvoiddevice integrity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent implements preliminary action by pre-configuring the preloader program with authentication capabilities and digital signature verification mechanisms before any software download occurs. The preloader is预先 loaded into memory and establishes security policies in advance, enabling flexible software installation through USB while ensuring device integrity through pre-established authentication protocols. This preliminary preparation allows the system to adaptively accept legitimate software while blocking unauthorized modifications.

Inventive Principle:
Principle #10Preliminary action

3Object-affected harmful factors

If preloader authentication is implemented, then security against unauthorized access is improved, but download process complexity increases

Engineering Contradiction:
Improveunauthorized access preventionVSAvoiddownload process complexity
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent extracts the complex authentication logic from the main download process and isolates it into a separate preloader program. This extraction principle separates security verification functions from the primary software installation workflow, allowing the authentication mechanism to operate independently in the preloader layer. Users experience a simplified download process while the extracted preloader handles complex security checks, thus improving unauthorized access prevention without significantly increasing user-perceived complexity.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentEP3480720B1Method and system for downloading software based on mobile terminal
Publication Date: 2021.12.22 HUIZHOU TCL MOBILE COMM CO LTD
  • EP3480720B1 patent drawingFigure 1
  • EP3480720B1 patent drawingFigure 2
  • EP3480720B1 patent drawingFigure 3

AI summary

A system and method for downloading software based on a mobile terminal is provided. The method for downloading software based on a mobile terminal includes: when software is required to be downloaded from a computer terminal to the mobile terminal, a software downloading tool on the computer terminal is controlled to establish a connection with the mobile terminal by means of a preloader port of the mobile terminal and to send a DA download agent to the mobile terminal; a preloader program of the mobile terminal checks whether the DA download agent is signed and encrypted by a private key which is matched with an RSA public key preset in the preloader program, and if yes, the mobile terminal starts the DA download agent and finishes downloading corresponding software. The method for downloading software based on a mobile terminal can effectively prevent any illegal tool from having communication capability with the mobile phone by means of USB connection for data deletion or tampering, and greatly reduce the possibility that a hacker damages the "limiting function" of the mobile phone.