Secure Element Authentication for Mobile Devices

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Traditional data storage and communication techniques on mobile communication devices leave data vulnerable to malicious access, compromising device functionality and security.

Innovation Solution

Implementing a secure element using tamper-resistant hardware to store and manage user credentials, processing challenges without exposing them outside the secure element, and utilizing a private key for decryption and authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If traditional data storage and communication techniques are used on mobile communication devices, then ease of operation and device functionality are maintained, but data security and protection against malicious access deteriorate

Engineering Contradiction:
Improvedata securityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent segments the mobile device into two distinct parts: a regular processing environment and a secure element. The secure element is a separate, isolated component that stores credentials and performs authentication operations independently from the main device processor, preventing malicious software on the main device from accessing sensitive data.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The secure element acts as an intermediary between the mobile device and external authentication systems. It receives challenges from external systems, processes them using stored credentials internally without exposing the credentials, and returns authentication responses, thereby mediating secure communication without compromising data security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If credentials are stored and processed outside tamper-resistant hardware, then device complexity and ease of operation are maintained, but vulnerability to malicious access increases

Engineering Contradiction:
Improveauthentication securityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent extracts the credential storage and processing functions from the main device environment and places them into a separate secure element. This extraction isolates sensitive credentials from potential threats in the main device, ensuring that even if the main device is compromised, the credentials remain protected.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The secure element combines multiple security features including tamper-resistant hardware, encrypted storage, and secure processing capabilities into a single composite component. This integration provides robust security while maintaining a simple interface for the user and device software.

Inventive Principle:
Principle #40Composite materials

Data Source

PatentUS9509686B2Secure element authentication
Publication Date: 2016.11.29 MICROSOFT TECHNOLOGY LICENSING LLC
  • US9509686B2 patent drawing
  • US9509686B2 patent drawing
  • US9509686B2 patent drawing

AI summary

Secure element authentication techniques are described. In implementations, a confirmation is received that an identity of a user has been physically verified using one or more physical documents. One or more credentials that are usable to authenticate the user are caused to be stored in a secure element of a mobile communication device of the user, the secure element implemented using tamper-resistant hardware.