Check patentability & draft patents in minutes with Patsnap Eureka AI!

One-time password (OTP) generation method and system based on safety element

A technology of dynamic password and security element, applied in the field of information security, can solve the problem of unresolved channel transmission security risks, and achieve the effect of ensuring security

Active Publication Date: 2018-10-02
WATCHDATA SYST +1
View PDF14 Cites 5 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, there are certain security risks in the OTP scheme of mobile terminals. The generation and display of OTP dynamic passwords are exposed in an open execution environment and are easily obtained by hackers.
After the password is generated in the dynamic password system, it is sent to the mobile terminal. After the password is sent, the security risks of channel transmission, mobile terminal reception, and OTP dynamic password display are not resolved.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • One-time password (OTP) generation method and system based on safety element
  • One-time password (OTP) generation method and system based on safety element
  • One-time password (OTP) generation method and system based on safety element

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0035] Various exemplary embodiments of the present invention will now be described in detail with reference to the accompanying drawings. It should be noted that the relative arrangements of components and steps, numerical expressions and numerical values ​​set forth in these embodiments do not limit the scope of the present invention unless specifically stated otherwise.

[0036] At the same time, it should be understood that, for the convenience of description, the sizes of the various parts shown in the drawings are not drawn according to the actual proportional relationship.

[0037] The following description of at least one exemplary embodiment is merely illustrative in nature and in no way taken as limiting the invention, its application or uses.

[0038] Techniques, methods and devices known to those of ordinary skill in the relevant art may not be discussed in detail, but where appropriate, such techniques, methods and devices should be considered part of the descript...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The embodiment of the invention discloses a one-time password (OTP) generation method and system based on a safety element. The method comprises steps: an OTP CA (Client Application) running in an REEsends a one-time password generation application to an OTP TA (Trusted Application) running in a TEE (Trusted Execution Environment); the OTP TA receives an OTP permission password through a TUI, theOTP permission password is verified through an Applet running in an SE module, and if passing the verification, the OTP is generated through the Applet and is displayed through the TUI. According tothe method and the system disclosed in the invention, a TEE-based mobile terminal OTP safety scheme is provided, generation of the OTP is initiated in the REE in the mobile terminal, the TEE is entered, the generated information needed by the password is decrypted and acquired in the SE, password generation is realized in the SE, interaction with a user is realized through the TUI, and the safetyof the business data is ensured.

Description

technical field [0001] The invention relates to the technical field of information security, in particular to a method and system for generating a dynamic password based on a security element. Background technique [0002] The rapid development of mobile Internet technology has brought convenience and convenience to people, but it is also accompanied by many security risks. The developed mobile phone operating system is vulnerable to malicious software, and the user's privacy and property cannot be guaranteed. The international standard organization GP (Global Platform) has formulated the TEE (Trusted Execution Environment) standard. TEE is a closed security area on the main processor of a mobile device, which ensures the safe and reliable storage, processing and protection of sensitive data. The software architecture goal of TEE is to enable TA (Trusted Applications) to provide service providers with isolation and trusted capabilities, and to use TA functions through inter...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/08
CPCH04L9/0863
Inventor 陈胜
Owner WATCHDATA SYST
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More