Mobile Terminal Security Framework with Command Blocking Unit

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Open mobile platforms are vulnerable to personal information leakage and malicious attacks from applications with malware, as they allow unrestricted access to system resources, leading to unintended operations and security risks.

Innovation Solution

A mobile terminal framework with a determining unit and blocking unit that evaluates and blocks unauthorized command execution requests, using reference information and additional data to differentiate between legitimate and malicious applications, thereby controlling access to system resources.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If open platform API access is allowed for applications, then service versatility and user convenience are improved, but security risks and personal information leakage increase

Engineering Contradiction:
Improveservice versatilityVSAvoidsecurity risks
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a determining unit as an intermediary component between applications and system resources. This unit evaluates command execution requests from applications and determines whether to grant access based on authorization status, thereby mediating between the need for open API access and security protection

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary evaluation and authorization checks before allowing applications to access system resources. The determining unit assesses whether applications are authorized to execute specific commands before granting API access, preventing malicious operations in advance

Inventive Principle:
Principle #10Preliminary action

2Reliability

If application access to system resources is restricted, then security is improved, but functionality and user convenience deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoiduser convenience
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent applies different access control policies to different applications based on their authorization status. Authorized applications receive full system resource access while unauthorized applications are blocked, creating localized quality differences in access permissions rather than uniform restriction

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The system dynamically evaluates each command execution request based on the current authorization status of the application. The determining unit adapts its decision-making process to each specific request, allowing flexible access control that responds to changing conditions rather than static restrictions

Inventive Principle:
Principle #15Dynamics

3Productivity

If all application commands are permitted to execute, then application functionality is maintained, but malicious operations and system errors increase

Engineering Contradiction:
Improveapplication functionalityVSAvoidmalicious operations
Core Design Contradiction:
ProductivityVSObject-generated harmful factors

Solution Approach 1:

The blocking unit serves as a protective intermediary that filters out malicious commands while allowing legitimate application functionality to proceed. It blocks unauthorized applications from executing harmful operations while permitting authorized applications to maintain full functionality

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system applies preliminary anti-action by blocking unauthorized applications before they can execute malicious operations. The determining unit identifies and blocks potentially harmful commands in advance, preventing malicious operations rather than responding to them after occurrence

Inventive Principle:
Principle #9Preliminary anti-action

Data Source

PatentEP2562673B1Apparatus and method for securing mobile terminal
Publication Date: 2016.07.13 PANTECH CO LTD
  • EP2562673B1 patent drawingFigure 1
  • EP2562673B1 patent drawingFigure 2A
  • EP2562673B1 patent drawingFigure 2B

AI summary

A mobile terminal and a method for securing information are provided. The mobile terminal includes an application part to receive information related to an application; a determining unit to receive a command issued by the application and to determine whether the command or the application is authorized to access a system resource of the mobile terminal; and a blocking unit to block an execution of the command in response to a determination that the execution of the command is unauthorized or issued by the unauthorized application. The method includes receiving information related to an application; receiving a request for executing a command issued by the application; determining whether the requested command or the application is authorized to access a system resource of a mobile terminal; and blocking execution of the command in response to a determination that the execution of the command is unauthorized or issued by an unauthorized application.