NFC Module Security via SIM-Integrated Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current mobile devices with NFC chips lack sufficient security measures to prevent unauthorized use after theft or loss, as secret data for authentication is stored in the device's memory, compromising security benefits.

Innovation Solution

Storing security data necessary for authentication within a security device, such as a subscriber smart card, and remotely blocking access to this data to prevent unauthorized use of the NFC proximity communication module.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If secret data for authentication is stored in the mobile device's memory, then authentication functionality is enabled, but security is compromised in case of theft or loss

Engineering Contradiction:
ImprovesecurityVSAvoiddata storage architecture
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the authentication system into two distinct parts: the NFC chip (proximity communication module) and the security component (authentication server). The secret data is stored exclusively in the security component, not in the mobile device's general memory. This segmentation ensures that even if the mobile device is compromised, the authentication credentials remain protected in a separate, secure location that requires proper authentication protocols to access.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces an intermediary authentication server that acts as a mediator between the NFC chip and external systems. Instead of storing secret data directly in the mobile device, the system uses this intermediary component to manage authentication credentials. The intermediary verifies authentication requests and manages the secret data in a secure environment, preventing direct access even if the mobile device is stolen.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If secret data is stored in removable memory card, then flexibility is improved, but security control is weakened compared to integrated security device

Engineering Contradiction:
Improvedata storage flexibilityVSAvoidsecurity control
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent merges the authentication functionality into the security component that is integrated with the SIM card or permanently associated with the mobile device. By combining the authentication server with the security element, the system ensures that authentication credentials cannot be easily removed or transferred to other devices, maintaining strong security control while still allowing legitimate users to access their authentication data through proper authentication procedures.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentEP2008483B1Method of securing access to a proximity communication module in a mobile terminal
Publication Date: 2020.03.04 ORANGE SA
  • EP2008483B1 patent drawingFigure 1
  • EP2008483B1 patent drawingFigure 2

AI summary

The invention relates to a method of securing access to a proximity communication module (30) comprising a security component (32) linked to wireless communication means (33, 34), said proximity communication module (30) being embedded in a terminal (10) comprising a security device (20) able to be remotely disabled. The method comprises at least one step of recording security data in the security device (20) and a step of authenticating the security device (20) by the security component (32) of the proximity communication module (30) as a function of the security data recorded in the security device (20).