SECURE DATA PROCESSING IN UNTRUSTED ENVIRONMENTS

    公开(公告)号:EP4386603A3

    公开(公告)日:2024-09-11

    申请号:EP24164818.7

    申请日:2020-10-22

    申请人: SAP SE

    摘要: Aspects of the current subject matter are directed to performing privacy-preserving analytics over sensitive data without sharing plaintext data and without requiring a trusted third party. Implementations provide for utilizing a trusted execution environment within a server to compute the privacy-preserving result. Data owners via user devices send their encrypted data directly to an enclave managed by a trusted execution environment, without the server and the cloud service provider for the server seeing the plaintext data. The enclave computes the analytics directly on the data and releases the privacy-preserving result that can be ensured by code analysis and remote attestation from all parties.

    PROVISIONING INITIATED FROM A CONTACTLESS DEVICE

    公开(公告)号:EP4366241A3

    公开(公告)日:2024-07-10

    申请号:EP24166040.6

    申请日:2018-12-12

    发明人: BELLENGER, Thomas

    摘要: A method is disclosed. The method includes generating an initialization request message to provision access data, transmitting the initialization request to a server computer, and receiving, by the communication device, a dynamic data element from the server computer. The method also includes performing a message exchange process with a user device, wherein a cryptogram is received from the user device by the communication device during the message exchange process. The method also includes transmitting a provisioning request message including a user device identifier and the cryptogram to the server computer. The method also includes receiving, by the communication device, the access data.

    AUTHENTICATION SYSTEM USING SECURE MULTI-PARTY COMPUTATION

    公开(公告)号:EP4343591A2

    公开(公告)日:2024-03-27

    申请号:EP24156945.8

    申请日:2017-03-24

    IPC分类号: G06F21/12

    摘要: The invention is directed to a system that enables an authentication process that involves secure multi-party computation. The authentication process can be performed between a user device operated by a user and an access device. The user device and the access device may conduct the authentication process such that enrollment information and authentication information input by the user is not transmitted between the devices. Instead, the user device may determine and utilize obfuscated values associated with the authentication information. The user device may also determine an obfuscated authentication function that can be utilized to determine an authentication result without revealing enrollment information and authentication information associated with the user. The user can be authenticated based on the authentication result.