Security Mode Prompt Apparatus Using Intermediary Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing security mode prompt methods are insecure as they can be easily forged or stolen, allowing malicious software to deceive users into believing a device is in a secure mode, thereby compromising sensitive operations like password entry or payments.
Innovation Solution
A method that involves acquiring prestored security information, establishing a correspondence between this information and user-entered verification information, and displaying confusion information for user selection, ensuring the selection meets a preset rule to confirm the device is in a secure mode, thereby preventing direct output and potential theft of security information.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If secret picture is displayed on screen to indicate security mode, then user can visually confirm security mode, but attacker can steal the picture through peeking or image shooting and forge it
Solution Approach 1:
The patent introduces an intermediary verification mechanism where the system compares the captured verification information (taken during security mode) with the displayed security information. This intermediary comparison process prevents direct theft while maintaining visual confirmation, as the attacker cannot obtain the verification information without triggering the security comparison mechanism.
Solution Approach 2:
The patent requires the user to capture verification information (such as a screenshot or photo) during the security mode indication period before the system compares it with the stored security information. This preliminary action of capturing verification information creates a time window that is monitored and controlled by the system, preventing unauthorized theft while allowing legitimate verification.
2Loss of information
If security information is directly output to screen, then user can see security status, but information can be stolen by others
Solution Approach 1:
The system uses an intermediary comparison mechanism where the displayed security information is cross-verified with captured verification information through a security module. This intermediary process ensures that even if information is visible on screen, it cannot be stolen or forged without detection, as the security module validates the authenticity through comparison.
Solution Approach 2:
The patent changes the parameter of information presentation from direct static display to dynamic verification-based display. The security information is displayed only within a controlled time window and is subject to verification through capture and comparison processes, transforming the information delivery mode from vulnerable direct output to secure verified presentation.
3Reliability
If device switches to security mode, then key operations are protected, but malicious software can prevent switching
Solution Approach 1:
The patent implements a feedback mechanism where the system provides visual confirmation (displaying security information) when security mode is successfully activated. This feedback loop allows the user to verify that the security mode switch occurred despite potential interference from malicious software, maintaining both security and operational accessibility.
Solution Approach 2:
The system performs preliminary verification by capturing verification information immediately when security mode is triggered, before malicious software can interfere with the process. This preliminary action ensures that the security mode activation is properly recorded and verified, preventing malicious software from blocking the switching process.
Data Source
AI summary
A security mode prompt method and apparatus where the method includes when it is determined that a terminal is currently in a first security mode, acquiring prestored first security information; receiving first verification information entered by a user, and establishing a first correspondence between the first security information and the first verification information; displaying confusion information, the first security information, and the first verification information on a screen for the user to select; receiving a selection result of the user, and determining, according to the first correspondence, whether the selection result of the user meets a preset rule; and when the selection result of the user meets the preset rule, prompting the user that the terminal is in a second security mode. Using the present disclosure, security of a terminal can be improved.


