【24h】

Secure protocol for Subscriber Identity Module

机译:用于订户标识模块的安全协议

获取原文

摘要

Subscriber Identity Module (SIM) is the backbone of modern mobile communication. SIM can be used to store a number of user sensitive information such as user contacts, SMS, banking information (some banking applications store user credentials on the SIM) etc. Unfortunately, the current SIM model has a major weakness. When the mobile device is lost, an adversary can simply steal a user's SIM and use it. He/she can then extract the user's sensitive information stored on the SIM. Moreover, The adversary can then pose as the user and communicate with the contacts stored on the SIM. This opens up the avenue to a large number of social engineering techniques. Additionally, if the user has provided his/her number as a recovery option for some accounts, the adversary can get access to them. The current methodology to deal with a stolen SIM is to contact your particular service provider and report a theft. The service provider then blocks the services on your SIM, but the adversary still has access to the data which is stored on the SIM. Therefore, a secure scheme is required to ensure that only legal users are able to access and utilize their SIM.
机译:用户标识模块(SIM)是现代移动通信的骨干。 SIM可以用于存储许多用户敏感信息,如用户联系人,短信,银行信息(一些银行应用程序存储在SIM)上的用户凭证等等,所以当前的SIM模型具有主要的弱点。当移动设备丢失时,对手可以简单地窃取用户的SIM并使用它。然后,他/她可以提取存储在SIM上的用户的敏感信息。此外,对手可以作为用户姿态并与存储在SIM上的联系人通信。这为大量的社会工程技术开辟了大道。此外,如果用户为某些帐户提供了他/她的号码作为恢复选项,则对手可以访问它们。处理被盗SIM的目前的方法是联系您的特定服务提供商并报告盗窃。然后,服务提供商能够阻止SIM卡上的服务,但对手仍然可以访问存储在SIM上的数据。因此,需要一种安全方案来确保只有合法用户能够访问和利用他们的SIM。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号