摘要
随着信息安全获得国家层面的关注,二维码安全已成为社会普遍关注的焦点问题。本文以矩阵式二维码中应用最广泛的QR码为基础,通过论述QR码的图形结构、编码方式和编码过程,总结了常见的攻击二维码的方法,并提出从编码环节和解析环节协同引入安全机制的防护策略。目的在于从技术层面和二维码产业的顶层架构层面规范二维码市场的运行秩序,促进二维码行业形成统一的编码体系、解析体系、应用标准以及行业规范。
With the great concern of information security from state level, the security of two-dimensional code becomes the focus of society. Based on QR code, the most widely-used one in matrix two-dimensional codes, the graphics structure, encoding mode and encoding process of QR code are expounded, several common methods attacking two-dimensional code summarized, and protection strategies in coordinate introduction of security mechanism from both encoding and parsing links also presented. The purpose is to regu- late the operation order of two-dimensional code from technical level and the top-level architecture of two-dimensional code industry, thus promoting the two-dimensional code industry and forming the unified encoding system, analytical system, application standard and industry standard.
出处
《信息安全与通信保密》
2015年第10期110-113,共4页
Information Security and Communications Privacy
基金
山东省质量技术监督局科研项目(No.2013KYZ23)
关键词
二维码安全
QR码
RC4加密算法
第三方认证
security of two-dimensional codes
QR code
RC4 encryption algorithm
third-party certification