NFC Module Security via SIM-Integrated Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current mobile devices with NFC chips lack sufficient security measures to prevent unauthorized use after theft or loss, as secret data for authentication is stored in the device's memory, compromising security benefits.
Innovation Solution
Storing security data necessary for authentication within a security device, such as a subscriber smart card, and remotely blocking access to this data to prevent unauthorized use of the NFC proximity communication module.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If secret data for authentication is stored in the mobile device's memory, then authentication functionality is enabled, but security is compromised in case of theft or loss
Solution Approach 1:
The patent segments the authentication system into two distinct parts: the NFC chip (proximity communication module) and the security component (authentication server). The secret data is stored exclusively in the security component, not in the mobile device's general memory. This segmentation ensures that even if the mobile device is compromised, the authentication credentials remain protected in a separate, secure location that requires proper authentication protocols to access.
Solution Approach 2:
The patent introduces an intermediary authentication server that acts as a mediator between the NFC chip and external systems. Instead of storing secret data directly in the mobile device, the system uses this intermediary component to manage authentication credentials. The intermediary verifies authentication requests and manages the secret data in a secure environment, preventing direct access even if the mobile device is stolen.
2Adaptability or versatility
If secret data is stored in removable memory card, then flexibility is improved, but security control is weakened compared to integrated security device
Solution Approach 1:
The patent merges the authentication functionality into the security component that is integrated with the SIM card or permanently associated with the mobile device. By combining the authentication server with the security element, the system ensures that authentication credentials cannot be easily removed or transferred to other devices, maintaining strong security control while still allowing legitimate users to access their authentication data through proper authentication procedures.
Data Source
Figure 1
Figure 2
AI summary
The invention relates to a method of securing access to a proximity communication module (30) comprising a security component (32) linked to wireless communication means (33, 34), said proximity communication module (30) being embedded in a terminal (10) comprising a security device (20) able to be remotely disabled. The method comprises at least one step of recording security data in the security device (20) and a step of authenticating the security device (20) by the security component (32) of the proximity communication module (30) as a function of the security data recorded in the security device (20).