Wireless Device SIM Binding for Unauthorized Use Prevention

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for protecting wireless communications devices against unauthorized use are inadequate, as they often require additional hardware, are susceptible to attacks, or provide little security value, especially in scenarios where the device is stolen and refitted with new software.

Innovation Solution

A method that establishes a bidirectional binding between a wireless communications device and a subscription identification module, using a user-initiated process to store and verify module and device identifiers, and requires successful verification to enable functionality, preventing unauthorized use by blocking access to the subscription associated with the module.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If operator locking mechanisms are used to block illegitimate use, then subscription costs are protected, but the device itself can still be used with another SIM card

Engineering Contradiction:
Improvesubscription protectionVSAvoiddevice misuse
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent combines device identifier binding with SIM card binding to create a dual-layer protection mechanism. The device stores both its own identifier and the SIM card identifier, and verifies both during authentication, merging two separate identification systems into one unified security approach

Inventive Principle:
Principle #5Merging (Combining)

2Ease of manufacture

If communication between SIM card and mobile phone is unprotected, then implementation is simple, but data exchange is susceptible to interception and modification attacks

Engineering Contradiction:
Improveimplementation simplicityVSAvoidcommunication security
Core Design Contradiction:
Ease of manufactureVSReliability

Solution Approach 1:

The patent performs preliminary binding of device and SIM card identifiers during an initial setup phase, storing both identifiers in the device's memory before any communication occurs. This preliminary action creates a trusted foundation that secures subsequent communications without requiring complex real-time protection mechanisms

Inventive Principle:
Principle #10Preliminary action

3Reliability

If phone lock with PIN code is implemented, then access protection is provided, but user cannot use phone if PIN is forgotten and backdoors work irrespective of rightful ownership

Engineering Contradiction:
Improveaccess protectionVSAvoiduser accessibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a network operator as an intermediary that holds the master key for resetting device-SIM bindings. When a user loses access, they can contact the operator who can verify ownership through alternative means and reset the binding, eliminating the need for user-held backdoors while maintaining security

Inventive Principle:
Principle #24Intermediary (Mediator)

4Reliability

If additional security hardware is added to protect against theft, then security is improved, but device complexity increases and requires double security hardware

Engineering Contradiction:
Improvetheft protectionVSAvoidhardware requirements
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent uses software-based identifier storage and verification that replicates the security function of hardware binding without requiring additional physical security modules. The device creates a software copy of the SIM card identifier and verifies it against stored bindings, achieving hardware-level security through software mechanisms

Inventive Principle:
Principle #26Copying

Data Source

PatentUS9686399B2Protection of a wireless communications device against unauthorized use
Publication Date: 2017.06.20 TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)
  • US9686399B2 patent drawing
  • US9686399B2 patent drawing
  • US9686399B2 patent drawing

AI summary

A method for protecting a wireless communications device against unauthorized use of functionality provided by the wireless communications device, the method comprising: receiving a binding command to bind the wireless communications device to a subscription identification module operationally coupled to the wireless communications device and associated with a subscription to a communications service; responsive to the received command, storing a module identifier identifying the subscription identification module; and storing a device identifier identifying the wireless communications device; obtaining an unbind code and storing the obtained unbind code; performing a module verification verifying that a subscription identification module identified by a stored module identifier is operationally coupled to the wireless communications device, performing a device verification verifying whether a wireless communications device identified by a stored device identifier is operationally coupled to the subscription identification module; and preventing operation of at least a part of said functionality unless the module verification and the device verification have been performed successfully.