SIMLOCK Password Generation via Secure Center Extraction

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing SIMLOCK password generation methods are insecure, as hackers can tamper with IMEI numbers to change passwords or decipher algorithms to obtain all mobile phone passwords, leading to inadequate security.

Innovation Solution

A method and device for generating and injecting SIMLOCK passwords, where a SIMLOCK password generating device sends a randomly generated password to a mobile terminal, which checks for an injection flag, injects the password into memory if not present, and verifies the password by comparing it with a newly received one, improving security by ensuring independence and randomness of passwords.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Extent of automation

If SIMLOCK passwords are generated through algorithms with IMEI numbers as inputs, then password generation is automated and integrated into software, but security is insufficient as hackers can tamper with IMEI numbers or decipher algorithms

Engineering Contradiction:
Improvepassword generation automationVSAvoidpassword security
Core Design Contradiction:
Extent of automationVSReliability

Solution Approach 1:

The patent extracts the password generation process from the mobile terminal software and relocates it to a separate security management center. The security management center generates passwords independently using secure algorithms, and only transmits the generated passwords to terminals. This separation prevents hackers from tampering with IMEI numbers or deciphering algorithms embedded in terminal software, as the critical password generation logic resides in a secure, centralized location.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces a security management center as an intermediary between the password generation process and mobile terminals. This intermediary handles all password generation and distribution, acting as a trusted third party that ensures security. The security management center uses secure algorithms to generate passwords based on IMEI numbers, then transmits them through secure channels to terminals, eliminating the need for vulnerable embedded algorithms in terminal software.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If SIMLOCK passwords are randomly generated by a separate device, then security and independence of passwords are improved, but password injection and verification processes become more complex

Engineering Contradiction:
Improvepassword securityVSAvoidpassword injection process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements preliminary action by having the security management center generate and prepare passwords before they are needed by terminals. The center pre-generates passwords using secure algorithms, stores them securely, and makes them ready for distribution. This preliminary preparation simplifies the terminal's task, as terminals only need to receive and store pre-generated passwords rather than implementing complex generation algorithms themselves.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements feedback mechanisms where terminals send verification requests to the security management center, and the center responds with verification results. The center tracks which terminals have received which passwords and provides feedback on injection status. This feedback system ensures secure distribution while maintaining relatively simple terminal architecture, as the complex verification logic resides in the security management center rather than in each terminal.

Inventive Principle:
Principle #23Feedback

Data Source

PatentEP3657836B1Method and device for generating and injecting simlock password
Publication Date: 2023.08.30 HUIZHOU TCL MOBILE COMM CO LTD
  • EP3657836B1 patent drawingFigure 1
  • EP3657836B1 patent drawingFigure 2
  • EP3657836B1 patent drawingFigure 3~4

AI summary

The present application provides a method for generating a SIMLOCK password. The method includes: obtaining an IMEI number of a mobile terminal; searching for the IMEI number in a database; if the IMEI number is not found, randomly generating a SIMLOCK password so that the SIMLOCK password corresponds to the IMEI number; and sending the SIMLOCK password to the mobile terminal, wherein the database is configured to store the IMEI number and the SIMLOCK password corresponding to the IMEI number. Through the above manner, the present disclosure may improve security of the mobile terminal.