首页> 外国专利> System and method for ensuring system integrity against, and detection of, rollback attacks for stored value data in mobile devices

System and method for ensuring system integrity against, and detection of, rollback attacks for stored value data in mobile devices

机译:用于确保针对移动设备中的储值数据的回滚攻击和检测系统完整性的系统和方法

摘要

Mobile device, e.g. a mobile telephone or smartphone, comprises: an Android (RTM) application AA; a trusted execution environment TEE; and a trusted application TA, e.g. a wallet application, adapted to run in the trusted execution environment. The trusted application comprises business logic to perform a transaction, e.g. a financial transaction. Each transaction comprises transformation of a first set of data, representing e.g. monetary value, stored in mobile device memory into an amended set of data stored in said memory. The trusted application requests the Android (RTM) application to generate a unique cryptographic signature for the transaction and to store the signature with the amended set of data in said memory. The Android (RTM) application may comprise a hardware backed key store HWBKS, used to generate the signature in the form of a public-private key pair. The cryptographic signature may be pre-generated prior to initiating the trusted application. Transactions may only be performed after confirming signature authenticity. May provide a standard chip used in a smartphone with the functionality of a prepaid stored value payment card which stores a data representation of a cash value and avoids rollback or backup attacks.
机译:移动设备,例如移动电话或智能电话,包括:Android(RTM)应用程序AA;可信执行环境TEE;和受信任的应用程序TA,例如钱包应用程序,适合在受信任的执行环境中运行。可信应用程序包括执行交易的业务逻辑,例如金融交易。每个交易包括第一数据集的变换,例如,代表将存储在移动设备存储器中的货币值修改为存储在所述存储器中的一组修改的数据。受信任的应用程序请求Android(RTM)应用程序为该事务生成唯一的加密签名,并将带有修改后的数据集的签名存储在所述内存中。 Android(RTM)应用程序可以包括硬件支持的密钥存储区HWBKS,用于生成公共-私有密钥对形式的签名。可以在启动可信应用之前预先生成密码签名。只有在确认签名真实性之后才能进行交易。可以提供智能手机中使用的具有预付储值支付卡功能的标准芯片,该卡可以存储现金值的数据表示形式,并避免回滚或备份攻击。

著录项

  • 公开/公告号GB2552076A

    专利类型

  • 公开/公告日2018-01-10

    原文格式PDF

  • 申请/专利权人 SILVERLEAP TECHNOLOGY LIMITED;

    申请/专利号GB20170008568

  • 发明设计人 MATHEW SMITH;DAYAN NIROSHA BANDULA;

    申请日2017-05-30

  • 分类号G06F21/64;G06F21/60;G06Q20/32;

  • 国家 GB

  • 入库时间 2022-08-21 12:32:10

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号