Non-executable Preview Interface for Malicious Website Access

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Malicious websites, such as phishing sites and web page viruses, pose significant security risks as they can embed viruses and compromise computer systems, making it difficult for users to detect and protect against them.

Innovation Solution

A method and apparatus that determine if a website is malicious and provide a non-executable preview interface to the user, allowing them to view information without directly accessing the site, thereby enhancing terminal security and enabling centralized management of preview interfaces through a server.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Loss of information

If a user directly accesses a malicious website to view its content, then the user can obtain information about the website, but the terminal security is compromised and may be infected with viruses

Engineering Contradiction:
Improveinformation about malicious websiteVSAvoidterminal security
Core Design Contradiction:
Loss of informationVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a server as an intermediary between the user's terminal and the malicious website. The server retrieves and processes the website content, then transmits a sanitized version to the terminal. This mediator approach allows information access while blocking direct exposure to malicious elements, resolving the contradiction between information gain and security protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Instead of accessing the original malicious website directly, the system creates and transmits a copy of the website content through a server. This copy is processed to remove executable and harmful elements while preserving the informational content, allowing users to view website information without the security risks of the original site.

Inventive Principle:
Principle #26Copying

2Loss of information

If a terminal accesses and processes malicious website content directly, then the user can view website information, but system resources are consumed and security risks increase

Engineering Contradiction:
Improvewebsite informationVSAvoidsystem resource consumption
Core Design Contradiction:
Loss of informationVSUse of energy by moving object

Solution Approach 1:

The server acts as an intermediary that performs resource-intensive operations (website retrieval, content analysis, executable removal) remotely. The terminal only receives and displays the processed content, significantly reducing local resource consumption while maintaining the ability to access website information.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system separates the website access and processing functions from the terminal. The server handles content retrieval and sanitization, while the terminal handles only display. This segmentation transfers computational burden from the terminal to the server, reducing energy consumption at the user end.

Inventive Principle:
Principle #1Segmentation

3Adaptability or versatility

If executable code is allowed in website content, then the website functionality is preserved, but virus embedding and system harm occur

Engineering Contradiction:
Improvewebsite functionalityVSAvoidvirus embedding
Core Design Contradiction:
Adaptability or versatilityVSObject-generated harmful factors

Solution Approach 1:

The system extracts and removes executable code and potentially harmful elements from the website content while preserving the informational and display elements. This extraction process eliminates virus embedding capabilities while maintaining the website's informational functionality, resolving the contradiction between functionality and security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent converts the potentially harmful executable content into beneficial informational content by removing the executable portion while retaining the displayable information. What was originally a security risk (executable code) becomes a security feature (sanitized content that cannot execute viruses) while still providing website information.

Inventive Principle:
Principle #22Blessing in disguise (Convert harm into benefit)

Data Source

PatentUS10264000B2Malicious website access method and apparatus
Publication Date: 2019.04.16 TENCENT TECHNOLOGY (SHENZHEN) CO LTD
  • US10264000B2 patent drawing
  • US10264000B2 patent drawing
  • US10264000B2 patent drawing

AI summary

A malicious website access method and apparatus are provided. The method includes: determining whether a website is a malicious website; and acquiring a non-executable preview interface of a web page of the malicious website for a terminal to display, if the website is a malicious website. A user may view, through a non-executable preview interface, information about a website to be accessed by the user. Moreover, because a terminal does not access a malicious website directly, the terminal is not exposed to malicious websites, thereby enhancing security of the terminal.