Protecting data stored in a chip card interface device in the event of compromise
    1.
    发明授权
    Protecting data stored in a chip card interface device in the event of compromise 有权
    在妥协的情况下保护存储在芯片卡接口设备中的数据

    公开(公告)号:US09038188B2

    公开(公告)日:2015-05-19

    申请号:US12847366

    申请日:2010-07-30

    IPC分类号: G06F21/00 G07F7/10

    CPC分类号: G07F7/1008

    摘要: A chip card interface device (CCID) is configured for protecting data stored at the CCID in the event of a compromise. The CCID has a housing and a compromise detection system including one or more detection devices configured for detecting a compromise of the housing. The compromise detection system is configured for generating a detection signal indicating the detected compromise. A data protection system is coupled with the compromise detection system and includes a memory device and a processing device coupled with the compromise detection system. The processing device is for receiving the detection signal and erasing data stored on the memory device based on the detection signal in some embodiments. In some embodiments, the processing device also activates a locking function for rendering itself inoperable based on the detection signal.

    摘要翻译: 芯片卡接口设备(CCID)被配置为在妥协的情况下保护存储在CCID中的数据。 CCID具有外壳和妥协检测系统,包括被配置为检测外壳折中的一个或多个检测装置。 妥协检测系统被配置为产生指示所检测到的妥协的检测信号。 数据保护系统与妥协检测系统相结合,并且包括与妥协检测系统耦合的存储器设备和处理设备。 处理装置用于在一些实施例中基于检测信号接收检测信号和擦除存储在存储装置上的数据。 在一些实施例中,处理设备还基于检测信号激活锁定功能以使其本身不可操作。

    PERSONAL IDENTIFICATION NUMBER CHANGING SYSTEM AND METHOD
    2.
    发明申请
    PERSONAL IDENTIFICATION NUMBER CHANGING SYSTEM AND METHOD 审中-公开
    个人识别号码变更系统及方法

    公开(公告)号:US20110178903A1

    公开(公告)日:2011-07-21

    申请号:US12752567

    申请日:2010-04-01

    IPC分类号: G06Q40/00 G06K7/01 G06Q10/00

    摘要: Systems and methods are provided for enabling a cardholder to authenticate and change a current PIN associated with a chip card using a chip card interface device (CCID) having a chip card input/output device configured for interacting with the chip card. A PIN entry device receives from the cardholder a current PIN, which is communicated to the chip card along with a verify command. The chip card compares the current PIN input by the cardholder with the PIN stored on the chip card. If the cardholder input is verified, the cardholder can input a desired new PIN. The CCID then communicates a locked PIN through a host to the issuing bank's backend system, which unlocks the PIN and stores the desired PIN. The backend system then creates a PIN change script including the new PIN and communicates the script to the chip card over the network. The chip card runs the script, which instructs the chip card to store the new PIN in place of the previous PIN.

    摘要翻译: 系统和方法被提供用于使得持卡人可以使用具有芯片卡输入/输出设备的芯片卡接口设备(CCID)来认证和改变与芯片卡相关联的当前PIN码,该芯片卡接口设备被配置用于与芯片卡进行交互。 PIN输入设备从持卡人接收当前的PIN,该当前PIN与验证命令一起被传送到芯片卡。 芯片卡将持卡人的当前PIN输入与存储在芯片卡上的PIN进行比较。 如果持卡人输入被验证,持卡人可以输入所需的新PIN。 CCID然后通过主机将锁定的PIN传送到开证行的后端系统,该系统解锁PIN并存储所需的PIN码。 后端系统然后创建一个包含新PIN的PIN码脚本,并通过网络将该脚本传送给芯片卡。 芯片卡运行脚本,指示芯片卡存储新的PIN代替以前的PIN。

    Authenticating a chip card interface device
    3.
    发明授权
    Authenticating a chip card interface device 有权
    验证芯片卡接口设备

    公开(公告)号:US08707413B2

    公开(公告)日:2014-04-22

    申请号:US12847373

    申请日:2010-07-30

    IPC分类号: G07F7/08

    CPC分类号: G07F7/00

    摘要: A system is configured for authenticating a chip card interface device (CCID) during a transaction with the CCID. The system has a communication device configured for communicating with the CCID over a network and a processing device coupled with the communication device. The processing device is configured for receiving a transaction initiation communication from the CCID and instructing the communication device to communicate a request for authentication information including a random number to the CCID. The CCID encrypts the random number with a unique chip key (UCK) previously created with a master chip key (MCK). Then, the CCID communicates the encrypted random number to the system along with a serial number. The system recalculates the UCK using the serial number, encrypts a copy of the random number using the recalculated UCK and compares the encrypted copy with the encrypted random number received from the CCID to authenticate the CCID.

    摘要翻译: 系统被配置为在与CCID的交易期间认证芯片卡接口设备(CCID)。 该系统具有配置用于通过网络与CCID进行通信的通信设备和与通信设备耦合的处理设备。 处理装置被配置为从CCID接收事务发起通信,并且指示通信设备向CCID传送包括随机数的认证信息的请求。 CCID使用先前使用主芯片密钥(MCK)创建的唯一芯片密钥(UCK)对随机数进行加密。 然后,CCID将加密的随机数与序列号一起传送到系统。 系统使用序列号重新计算UCK,使用重新计算的UCK加密随机数的副本,并将加密副本与从CCID接收到的加密随机数进行比较,以验证CCID。

    AUTHENTICATING A CHIP CARD INTERFACE DEVICE
    4.
    发明申请
    AUTHENTICATING A CHIP CARD INTERFACE DEVICE 有权
    验证芯片卡接口设备

    公开(公告)号:US20110179290A1

    公开(公告)日:2011-07-21

    申请号:US12847373

    申请日:2010-07-30

    IPC分类号: G06F21/20 G06F21/24

    CPC分类号: G07F7/00

    摘要: A system is configured for authenticating a chip card interface device (CCID) during a transaction with the CCID. The system has a communication device configured for communicating with the CCID over a network and a processing device coupled with the communication device. The processing device is configured for receiving a transaction initiation communication from the CCID and instructing the communication device to communicate a request for authentication information including a random number to the CCID. The CCID encrypts the random number with a unique chip key (UCK) previously created with a master chip key (MCK). Then, the CCID communicates the encrypted random number to the system along with a serial number. The system recalculates the UCK using the serial number, encrypts a copy of the random number using the recalculated UCK and compares the encrypted copy with the encrypted random number received from the CCID to authenticate the CCID.

    摘要翻译: 系统被配置为在与CCID的交易期间认证芯片卡接口设备(CCID)。 该系统具有配置用于通过网络与CCID进行通信的通信设备和与通信设备耦合的处理设备。 处理装置被配置为从CCID接收事务发起通信,并且指示通信设备向CCID传送包括随机数的认证信息的请求。 CCID使用先前使用主芯片密钥(MCK)创建的唯一芯片密钥(UCK)对随机数进行加密。 然后,CCID将加密的随机数与序列号一起传送到系统。 系统使用序列号重新计算UCK,使用重新计算的UCK加密随机数的副本,并将加密副本与从CCID接收到的加密随机数进行比较,以验证CCID。

    Personal encryption device
    5.
    发明授权
    Personal encryption device 有权
    个人加密装置

    公开(公告)号:US08516609B2

    公开(公告)日:2013-08-20

    申请号:US13025507

    申请日:2011-02-11

    IPC分类号: G06F12/14 G06F11/30 G06F7/04

    CPC分类号: H04L9/0877

    摘要: A method and system for securing a handheld computing device is described. A personal encryption device may be physically connected to a handheld computing device. Responsive to the connection, a main screen user interface may be displayed on a display of the handheld computing device. The main screen user interface may include at least one cryptography option for a user of the handheld computing device. A user-defined input representative of selection of a first cryptography option of the at least one cryptography option may be received, and at least one cryptography process associated with the selected first cryptography option may be implemented by the handheld computing device and personal encryption device. The cryptography options may include encryption, decryption, digital signatures, and digital signature verification.

    摘要翻译: 描述了用于固定手持计算设备的方法和系统。 个人加密设备可以物理地连接到手持计算设备。 响应于连接,可以在手持计算设备的显示器上显示主屏幕用户界面。 主屏幕用户界面可以包括用于手持计算设备的用户的至少一个密码选项。 可以接收表示选择所述至少一个加密选项的第一加密选项的用户定义的输入,并且与所选择的第一加密选项相关联的至少一个加密处理可以由手持式计算设备和个人加密设备来实现。 加密选项可以包括加密,解密,数字签名和数字签名验证。

    PERSONAL ENCRYPTION DEVICE
    6.
    发明申请
    PERSONAL ENCRYPTION DEVICE 有权
    个人加密设备

    公开(公告)号:US20120210122A1

    公开(公告)日:2012-08-16

    申请号:US13025507

    申请日:2011-02-11

    IPC分类号: H04L9/00 G06F12/14

    CPC分类号: H04L9/0877

    摘要: A method and system for securing a handheld computing device is described. A personal encryption device may be physically connected to a handheld computing device. Responsive to the connection, a main screen user interface may be displayed on a display of the handheld computing device. The main screen user interface may include at least one cryptography option for a user of the handheld computing device. A user-defined input representative of selection of a first cryptography option of the at least one cryptography option may be received, and at least one cryptography process associated with the selected first cryptography option may be implemented by the handheld computing device and personal encryption device. The cryptography options may include encryption, decryption, digital signatures, and digital signature verification.

    摘要翻译: 描述了用于固定手持计算设备的方法和系统。 个人加密设备可以物理地连接到手持式计算设备。 响应于连接,可以在手持计算设备的显示器上显示主屏幕用户界面。 主屏幕用户界面可以包括用于手持计算设备的用户的至少一个密码选项。 可以接收表示选择所述至少一个加密选项的第一加密选项的用户定义的输入,并且与所选择的第一加密选项相关联的至少一个加密处理可以由手持式计算设备和个人加密设备来实现。 加密选项可以包括加密,解密,数字签名和数字签名验证。

    PROTECTING DATA STORED IN A CHIP CARD INTERFACE DEVICE IN THE EVENT OF COMPROMISE
    7.
    发明申请
    PROTECTING DATA STORED IN A CHIP CARD INTERFACE DEVICE IN THE EVENT OF COMPROMISE 有权
    保护存储在切换卡片接口设备中的数据

    公开(公告)号:US20110179494A1

    公开(公告)日:2011-07-21

    申请号:US12847366

    申请日:2010-07-30

    IPC分类号: G06F21/00 G06F12/14

    CPC分类号: G07F7/1008

    摘要: A chip card interface device (CCID) is configured for protecting data stored at the CCID in the event of a compromise. The CCID has a housing and a compromise detection system including one or more detection devices configured for detecting a compromise of the housing. The compromise detection system is configured for generating a detection signal indicating the detected compromise. A data protection system is coupled with the compromise detection system and includes a memory device and a processing device coupled with the compromise detection system. The processing device is for receiving the detection signal and erasing data stored on the memory device based on the detection signal in some embodiments. In some embodiments, the processing device also activates a locking function for rendering itself inoperable based on the detection signal.

    摘要翻译: 芯片卡接口设备(CCID)被配置为在妥协的情况下保护存储在CCID中的数据。 CCID具有外壳和妥协检测系统,包括被配置为检测外壳折中的一个或多个检测装置。 妥协检测系统被配置为产生指示所检测到的妥协的检测信号。 数据保护系统与妥协检测系统相结合,并且包括与妥协检测系统耦合的存储器设备和处理设备。 处理装置用于在一些实施例中基于检测信号接收检测信号和擦除存储在存储装置上的数据。 在一些实施例中,处理设备还基于检测信号激活锁定功能以使其本身不可操作。