Non-executable Preview Interface for Malicious Website Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Malicious websites, such as phishing sites and web page viruses, pose significant security risks as they can embed viruses and compromise computer systems, making it difficult for users to detect and protect against them.
Innovation Solution
A method and apparatus that determine if a website is malicious and provide a non-executable preview interface to the user, allowing them to view information without directly accessing the site, thereby enhancing terminal security and enabling centralized management of preview interfaces through a server.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If a user directly accesses a malicious website to view its content, then the user can obtain information about the website, but the terminal security is compromised and may be infected with viruses
Solution Approach 1:
The patent introduces a server as an intermediary between the user's terminal and the malicious website. The server retrieves and processes the website content, then transmits a sanitized version to the terminal. This mediator approach allows information access while blocking direct exposure to malicious elements, resolving the contradiction between information gain and security protection.
Solution Approach 2:
Instead of accessing the original malicious website directly, the system creates and transmits a copy of the website content through a server. This copy is processed to remove executable and harmful elements while preserving the informational content, allowing users to view website information without the security risks of the original site.
2Loss of information
If a terminal accesses and processes malicious website content directly, then the user can view website information, but system resources are consumed and security risks increase
Solution Approach 1:
The server acts as an intermediary that performs resource-intensive operations (website retrieval, content analysis, executable removal) remotely. The terminal only receives and displays the processed content, significantly reducing local resource consumption while maintaining the ability to access website information.
Solution Approach 2:
The system separates the website access and processing functions from the terminal. The server handles content retrieval and sanitization, while the terminal handles only display. This segmentation transfers computational burden from the terminal to the server, reducing energy consumption at the user end.
3Adaptability or versatility
If executable code is allowed in website content, then the website functionality is preserved, but virus embedding and system harm occur
Solution Approach 1:
The system extracts and removes executable code and potentially harmful elements from the website content while preserving the informational and display elements. This extraction process eliminates virus embedding capabilities while maintaining the website's informational functionality, resolving the contradiction between functionality and security.
Solution Approach 2:
The patent converts the potentially harmful executable content into beneficial informational content by removing the executable portion while retaining the displayable information. What was originally a security risk (executable code) becomes a security feature (sanitized content that cannot execute viruses) while still providing website information.
Data Source
AI summary
A malicious website access method and apparatus are provided. The method includes: determining whether a website is a malicious website; and acquiring a non-executable preview interface of a web page of the malicious website for a terminal to display, if the website is a malicious website. A user may view, through a non-executable preview interface, information about a website to be accessed by the user. Moreover, because a terminal does not access a malicious website directly, the terminal is not exposed to malicious websites, thereby enhancing security of the terminal.


