Secure Element SIM Authentication for Proxy Attack Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile network operators face challenges in preventing subsidy lock attacks, where attackers attempt to activate wireless devices with non-qualifying SIMs by using proxy SIMs to deceive locking software and gain unauthorized access to network services.

Innovation Solution

Implementing a secure mechanism that uses cryptographic signing to verify the integrity of SIM information, ensuring that only qualifying SIMs can activate devices on the network, by utilizing Public Key Infrastructure (PKI) techniques and private key authentication to prevent fake responses from proxy SIMs.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If locking software queries SIM information without cryptographic verification, then device activation is simple and fast, but the system becomes vulnerable to proxy SIM attacks

Engineering Contradiction:
Improvesubsidy lock enforcementVSAvoidactivation process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

A cryptographic intermediary layer is introduced between the SIM information query and the activation decision. The baseband processor acts as a mediator that verifies cryptographic signatures on SIM information before proceeding with activation, thereby maintaining reliability while managing complexity through structured verification steps

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

Cryptographic verification is performed as a preliminary action before device activation. The baseband processor validates the cryptographic signature on SIM information in advance, ensuring that only authenticated SIMs can proceed with activation, thus preventing proxy SIM attacks before they can compromise the subsidy lock

Inventive Principle:
Principle #10Preliminary action

2Ease of operation

If the system accepts any SIM for activation, then device usability is maximized, but unauthorized access and subsidy lock bypass occur

Engineering Contradiction:
Improvedevice activationVSAvoidunauthorized access
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The mechanical/simple SIM recognition process is replaced with a cryptographic verification system. Instead of merely reading SIM information, the baseband processor now performs cryptographic signature verification, substituting a security-based mechanism for the previous trust-based activation process

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

Solution Approach 2:

A feedback loop is established where the baseband processor continuously verifies cryptographic signatures on SIM information and provides feedback on authentication status. This feedback mechanism ensures that only properly authenticated SIMs can activate the device, preventing unauthorized access while maintaining ease of operation for legitimate users

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10397001B2Secure mechanism for subsidy lock enforcement
Publication Date: 2019.08.27 APPLE INC
  • US10397001B2 patent drawing
  • US10397001B2 patent drawing
  • US10397001B2 patent drawing

AI summary

A malicious party may attempt to avoid a mobile network operator (MNO) contract involved with subsidy-lock by inserting an interfering piece of hardware called a proxy SIM in a device. The device provided herein uses an authentication technique to guard against a proxy-SIM attack. The device includes a secure element (SE) with subscriber identity module (SIM) functionality present on the SE. The device sends the SE a nonce to be signed over. The SE signs using a public key infrastructure (PKI) private key of the SE and provides a response. The device evaluates whether the response contains a valid signature. If the validation is successful, the device relies on SIM data provided in the response to continue with activation of the device, so that the device can provide services under the MNO contract. If the validation fails, the device will not attempt to access network services with the SIM functionality.