Mobile Terminal Security Framework with Command Blocking Unit
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Open mobile platforms are vulnerable to personal information leakage and malicious attacks from applications with malware, as they allow unrestricted access to system resources, leading to unintended operations and security risks.
Innovation Solution
A mobile terminal framework with a determining unit and blocking unit that evaluates and blocks unauthorized command execution requests, using reference information and additional data to differentiate between legitimate and malicious applications, thereby controlling access to system resources.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If open platform API access is allowed for applications, then service versatility and user convenience are improved, but security risks and personal information leakage increase
Solution Approach 1:
The patent introduces a determining unit as an intermediary component between applications and system resources. This unit evaluates command execution requests from applications and determines whether to grant access based on authorization status, thereby mediating between the need for open API access and security protection
Solution Approach 2:
The system performs preliminary evaluation and authorization checks before allowing applications to access system resources. The determining unit assesses whether applications are authorized to execute specific commands before granting API access, preventing malicious operations in advance
2Reliability
If application access to system resources is restricted, then security is improved, but functionality and user convenience deteriorate
Solution Approach 1:
The patent applies different access control policies to different applications based on their authorization status. Authorized applications receive full system resource access while unauthorized applications are blocked, creating localized quality differences in access permissions rather than uniform restriction
Solution Approach 2:
The system dynamically evaluates each command execution request based on the current authorization status of the application. The determining unit adapts its decision-making process to each specific request, allowing flexible access control that responds to changing conditions rather than static restrictions
3Productivity
If all application commands are permitted to execute, then application functionality is maintained, but malicious operations and system errors increase
Solution Approach 1:
The blocking unit serves as a protective intermediary that filters out malicious commands while allowing legitimate application functionality to proceed. It blocks unauthorized applications from executing harmful operations while permitting authorized applications to maintain full functionality
Solution Approach 2:
The system applies preliminary anti-action by blocking unauthorized applications before they can execute malicious operations. The determining unit identifies and blocks potentially harmful commands in advance, preventing malicious operations rather than responding to them after occurrence
Data Source
Figure 1
Figure 2A
Figure 2B
AI summary
A mobile terminal and a method for securing information are provided. The mobile terminal includes an application part to receive information related to an application; a determining unit to receive a command issued by the application and to determine whether the command or the application is authorized to access a system resource of the mobile terminal; and a blocking unit to block an execution of the command in response to a determination that the execution of the command is unauthorized or issued by the unauthorized application. The method includes receiving information related to an application; receiving a request for executing a command issued by the application; determining whether the requested command or the application is authorized to access a system resource of a mobile terminal; and blocking execution of the command in response to a determination that the execution of the command is unauthorized or issued by an unauthorized application.