Mobile Access: Zutrittskontrolle mit dem Handy (NFC)

Size: px
Start display at page:

Download "Mobile Access: Zutrittskontrolle mit dem Handy (NFC)"

Transcription

1 SICHERHEITS-Fachkongress 2013 Mobile Access: Zutrittskontrolle mit dem Handy (NFC) Dominik Gruntz, Institut für Mobile und Verteilte Systeme FHNW (Fachhochschule Nordwestschweiz)

2 NFC Experience at FHNW 2005/06 First NFC demonstrator (with Siemens CX70 Emoty) NFC was included in a removable cover 2009/10 Mobile Payment project (Nokia 6131 NFC, S40 Phone) touch'n'pay Self Service Shop (together with NEXPERTS / e24) Supported by the Hasler foundation NFC Forum Global Competition: First price in the category "The Best NFC Service of the Year 2010" 2010/11 Android Nexus S (with NFC) Tag reading/writing and P2P (several publications) 2012 Access Project MIFARE on NFC devices 2013/14 NFC Projects Access Control with BIXI [KTI] and P2P [AFF] SICHERHEITS-Fachkongress

3 Mobile Access with NFC NFC Applications & Operating Modes What is NFC? NFC Architecture What is the Secure Element? NFC Access Systems How do we apply NFC to access solutions? NFC Summary Open Questions SICHERHEITS-Fachkongress

4 What is NFC NFC (Near Field Communication) Communication technology based on radio waves at MHz frequency Compatible to ISO/IEC A (Mifare), B and F (FeliCa) Short range (<= 10 cm theoretical) Effective: 1-4 cm Low speed (106 / 216 / 414 kbps) => 13-50KBytes per sec Effective: 24 kbps => 3KB per sec Low friction setup (no discovery and no pairing as with Bluetooth) Setup-time < 0.1 Sec Standardization: NFC Forum (founded 2004 by NXP, Sony, Nokia) Definition of standards Popularization of NFC Today: More than 150 members SICHERHEITS-Fachkongress

5 NFC Devices NFC Devices Android: Samsung Galaxy SII / Nexus / S4, HTC One SV / X BlackBerry: Z10, Q10, Curve, Bold 9900/9930 Windows Mobile: Nokia Lumia. HTC Windows Phone 8X, Samsung Ativ S Shipped NFC devices 2011: 30 Mio devices, 2012: 100 Mio devices, 2014: 500 Mio [ABI] Swisscom Switzerland 25% of the devices sold in Q1/2013 support NFC! 2013: 40% of devices sold by Swisscom support NFC Market share of the iphone: 50-60% => almost all non-iphone devices sold do support NFC! SICHERHEITS-Fachkongress

6 NFC Applications Smart Poster Reading data from a tag (comparable to QR-code-reading) Tasks Use NFC tags to automate tasks (e.g. set volumes, set alarms, etc) or to configure a WiFi network SICHERHEITS-Fachkongress

7 NFC Applications Device Connection ear-phones, speakers, cameras or printers (Bluetooth connection initiated by NFC) Sharing Data Videos, pictures, business cards, coupons SICHERHEITS-Fachkongress

8 NFC Applications Access Control Emulation of a contactless card Mobile Payment Emulation of a contactless card SICHERHEITS-Fachkongress

9 NFC Device Operating Modes Reader-Writer Mode Peer-To-Peer Mode Tag/Card Emulation Mode SICHERHEITS-Fachkongress

10 NFC Device Operating Modes Reader-Writer Mode Mobile Device is able to read external tags/smartcards, Device becomes RFID reader/writer (and can launch applications) Tag content: Text, URI (WebLink, Phone Number), SmartPoster Like QR-Codes, but faster Tags No need to launch an application With Android, an intent is thrown if a tag is detected Different form factors for NFC tags: tags, stickers, cards, key fobs, clocks Supported Technologies: ISO A/B, Mifare Ultralight, Classic/Standard 1K/4K NXP DESFire, Sony Felica, Innovision Topaz, Jewel tag => NFC Forum Specs define how NFC Messages are stored SICHERHEITS-Fachkongress

11 NFC Device Operating Modes Peer-To-Peer Mode Bidirectional P2P connection to exchange data between devices Proximity triggered interactions Nexus S: Devices have to be placed back-to-back Technologies S-Beam (Samsung): NFC + Wifi direct Android Beam: NFC + Bluetooth Standard: SNEP (Simple NDEF Exchange Prot.) Applications Exchange of vcards (e.g. XING) Hand-over of Tickets & P2P Payment Web-page sharing, Youtube-video-sharing Application sharing Exchange of device info in order to establish a faster connection automatically (e.g. Bluetooth) Legic: 4000er Legic reader support P2P SICHERHEITS-Fachkongress

12 NFC Device Operating Modes Tag/Card Emulation Mode Device emulates a passive tag (typically a smart card) Device can emulate (contain) multiple smartcards Reader can t distinguish between real smartcard & tag emulation Android: Emulated tag can be read only if screen is on Examples Access to the farm shop (Legic key) Oyster-Card, London Visa paywave Payment System Google Wallet SICHERHEITS-Fachkongress

13 Mobile Access with NFC NFC Applications & Operating Modes What is NFC? NFC Architecture What is the Secure Element? NFC Access Systems How do we apply NFC to access solutions? NFC Summary Open Questions SICHERHEITS-Fachkongress

14 NFC Device Architecture Structure of a NFC device Host-Controller Application Execution Environment (AEE) Controls UI, Communication and peripheral devices (Phone OS) NFC-Controller Contactless Front-end (CLF) Converter between HF signal and digital data Secure Element Trusted Execution Environment (TEE) Secure environment to execute and store security relevant applications and data App 1 NFC Controller Host- Controller NFC API Antenna App 2 Secure Element SICHERHEITS-Fachkongress

15 Secure Element Secure Storage in NFC device Tamper-proof storage for sensible data (money, tickets, keys) Cryptographic operations (encryption, signatures) Secure environment for the execution of program code (sandbox model) May contain applications from different providers Must provide individual installation, maintenance and revocation Platforms SmartCard (Global Platform) JavaCard system APDU commands Legic Applet Payment Applet Card OS (JavaCard) Secure Storage Crypto HW (3DES, AES, RSA / RNG) SICHERHEITS-Fachkongress

16 Secure Element Java Card / Global Platform Well standardized platform (1997 / 1999) Applets are portable between NFC phones and smart cards Memory (very limited device) Immutable (ROM): 160 KB Mutable (EEPROM): 72 KB Volatile (RAM): 4 KB Communication / Security Communication with APDU (Application Protocol Data Unit) commands Data sent over the NFC interface should be max 1-2KB Secure Channel in order to install applications a secure key must be known Security Domains Hierarchy SICHERHEITS-Fachkongress

17 Secure Element Secure Element nonremovable removable emulated Embedded Hardware (Secure IC) UICC over SWP (Secure SIM) MicroSD- Card (Secure MC) Bluetooth Stickers Micro-USB Stickers SICHERHEITS-Fachkongress

18 Trusted Service Manager TSM TSM is a Trusted Third Party that brings the service providers together for the provisioning and life cycle management of SE related credentials in a secure manner. TSM Functions Data Preparation and personalization, Key-Management & Security Provision / Deletion of Applets OTA (Over-The-Air) Service Provider 1 MNO TSM 1 Service Provider 2 Service Provider TSM MNO TSM 1 Service Provider n MNO TSM 1 SICHERHEITS-Fachkongress

19 Mobile Access with NFC NFC Applications & Operating Modes What is NFC? NFC Architecture What is the Secure Element? NFC Access Systems How do we apply NFC to access solutions? NFC Summary Open Questions SICHERHEITS-Fachkongress

20 Mobile Access Typical Online Access Control Solution Source: SICHERHEITS-Fachkongress

21 Mobile Access Solution 1: Mobile Access Cards Access card can be emulated in a mobile device and distributed OTA Mifare 1K Mifare DESFire Advantages Existing infrastructure can be reused Several cards may be stored on a mobile device Access rights can be distributed over-the-air (e.g. for field workers) Disadvantage If mobile phone is not online, installed cards cannot be revoked No access if battery is down (device dependent) SICHERHEITS-Fachkongress

22 Mobile Access Solution 2: Mobile Access Rights Instead of the identification, the mobile device presents a ticket Advantages Works offline Access rights do not have to be revoked (as they are only valid for a short time frame) Disadvantage Access point has to be made more intelligent (for the verification of the tickets at the access point) Reference: SICHERHEITS-Fachkongress

23 Mobile Access Solution 3: Separate NFC Token The user identification or the access ticket is stored on a separate NFC token which contains a SE New access rights can be delivered over the mobile phone BLE / BT2.1 Advantages Works with devices which do not support NFC Disadvantage Needs a separate battery and has to be turned on for communication with the phone Access Server OTA SICHERHEITS-Fachkongress

24 Mobile Access Solution 4: Remote Card Actualization The information stored on a card could be updated using a mobile device New access rights could be delivered with push notifications Mobile device is only a proxy, a secure channel is established from the server to the mobile device Advantages Existing infrastructure can be reused Disadvantage We still need the cards SICHERHEITS-Fachkongress

25 Mobile Access with NFC NFC Applications & Operating Modes What is NFC? NFC Architecture What is the Secure Element? NFC Access Systems How do we apply NFC to access solutions? NFC Summary Open Questions SICHERHEITS-Fachkongress

26 Open Questions / Problems Secure Element Which SE do we choose? UICC-SE: Solution only works with selected MNOs Embedded-SE: How do we get access to the SE TSM: Who plays the role of the Service Provider TSM? Models beyond card emulation P2P between mobile device and access point Inverse reader mode (=> SE embedded in the access point) Host-based Card Emulation (Android 4.4 KitKat) Battery Problem What happens if the mobile device battery is down? Security Relay attacks could also be applied to access solutions M. Roland, J. Langer, and J. Scharinger: Applying Relay Attacks to Google Wallet, in Proceedings of the 5th International Workshop on Near Field Communication, IEEE, February Mobile device can be attacked with malware (man-in-the-middle) SICHERHEITS-Fachkongress

Touch'n'pay ein NFC Feldversuch. Dominik Gruntz Fachhochschule Nordwestschweiz Institut für Mobile und Verteilte Systeme

Touch'n'pay ein NFC Feldversuch. Dominik Gruntz Fachhochschule Nordwestschweiz Institut für Mobile und Verteilte Systeme Touch'n'pay ein NFC Feldversuch Dominik Gruntz Institut für Mobile und Verteilte Systeme NFC Experience at FHNW 2005/06 First NFC demonstrator (with Siemens CX70 Emoty) NFC was included in a removable

More information

NFC Test Challenges for Mobile Device Developers Presented by: Miguel Angel Guijarro miguel-angel_guijarro@agilent.com

NFC Test Challenges for Mobile Device Developers Presented by: Miguel Angel Guijarro miguel-angel_guijarro@agilent.com NFC Test Challenges for Mobile Device Developers Presented by: Miguel Angel Guijarro miguel-angel_guijarro@agilent.com 1 Outlook About NFC Developing a NFC Device Test Challenges Test Solutions Q&A 2 What

More information

Training. NFC in Android. Public. MobileKnowledge October 2015

Training. NFC in Android. Public. MobileKnowledge October 2015 NFC in Android Public MobileKnowledge October 2015 Index Android mobile Operating System Market share Brief history Programing in Android NFC in Android Communicating my Android phone with NFC Readers

More information

Mobile NFC 101. Presenter: Nick von Dadelszen Date: 31st August 2012 Company: Lateral Security (IT) Services Limited

Mobile NFC 101. Presenter: Nick von Dadelszen Date: 31st August 2012 Company: Lateral Security (IT) Services Limited Mobile NFC 101 Presenter: Nick von Dadelszen Date: 31st August 2012 Company: Lateral Security (IT) Services Limited Company Lateral Security (IT) Services Limited Company Overview Founded in April 2008

More information

Training. MIFARE4Mobile. Public. MobileKnowledge April 2015

Training. MIFARE4Mobile. Public. MobileKnowledge April 2015 MIFARE4Mobile Public MobileKnowledge April 2015 Agenda Why MIFARE4Mobile? MIFARE in Mobile related technologies MIFARE technology NFC technology MIFARE4Mobile technology High level system architecture

More information

Handsets, reader tools, standardisation and certification 2011-09-01

Handsets, reader tools, standardisation and certification 2011-09-01 Handsets, reader tools, standardisation and certification 2011-09-01 Content 1 2 3 Standardisation and certification Handsets Reader tools A Appendix Background material 2 Standardisation and certification

More information

Significance of Tokenization in Promoting Cloud Based Secure Elements

Significance of Tokenization in Promoting Cloud Based Secure Elements Significance of Tokenization in Promoting Cloud Based Secure Elements Busra O zdenizci 1, Vedat Coskun 1*, Kerem Ok 1 and Turgay Karlidere 2 1 NFC Lab - Istanbul, Department of Information Technologies,

More information

NFC. Technical Overview. Release r05

NFC. Technical Overview. Release r05 Release r05 Trademarks The Bluetooth word mark and logos are owned by the Bluetooth SIG, Inc. and any use of such marks by Stollmann E+V GmbH is under license. Other trademarks and trade names are those

More information

NFC: Enabler for Innovative Mobility and Payment NFC: MOBILIDADE E MEIOS DE PAGAMENTO

NFC: Enabler for Innovative Mobility and Payment NFC: MOBILIDADE E MEIOS DE PAGAMENTO NFC: Enabler for Innovative Mobility and Payment Cards Brazil Sao Paulo, April 3rd to 5th 2007 Rodolfo Gomes - 1st Level Customer Application Support NFC&RFID Europe A new Company has reborn Few months

More information

An NFC Ticketing System with a new approach of an Inverse Reader Mode

An NFC Ticketing System with a new approach of an Inverse Reader Mode An NFC Ticketing System with a new approach of an Inverse Reader Mode Christian Saminger, Stefan Grünberger and Josef Langer NFC University of Applied Sciences Upper Austria 5 th International Workshop

More information

NFC Tags & Solutions. Understanding Near Field Communication (NFC) Technology. Executive Summary

NFC Tags & Solutions. Understanding Near Field Communication (NFC) Technology. Executive Summary NFC Tags & Solutions Understanding Near Field Communication (NFC) Technology Executive Summary Payment systems and marketing loyalty programs are just the beginning for NFC technology. In addition to the

More information

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare?

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare? Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare? Michael Roland NFC Research Lab Hagenberg University of Applied Sciences Upper Austria Softwarepark 11, 4232

More information

Banking. Extending Value to Customers. KONA Banking product matrix. KONA@I is leading the next generation of payment solutions.

Banking. Extending Value to Customers. KONA Banking product matrix. KONA@I is leading the next generation of payment solutions. Smart IC Banking Banking Extending Value to Customers KONA Banking product matrix Contact - SDA Product EEPROM Java Card Type KONA Products KONA@I is leading the next generation of payment solutions Banks,

More information

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare?

Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare? Software Card Emulation in NFC-enabled Mobile Phones: Great Advantage or Security Nightmare? Michael Roland University of Applied Sciences Upper Austria,, Austria IWSSISPMU2012 International Workshop on

More information

NFC in Android. Martijn Coenen <maco@google.com>

NFC in Android. Martijn Coenen <maco@google.com> NFC in Android Martijn Coenen Agenda State of NFC in mobile What can you do with NFC in Android? Android Beam NFC Tags Card emulation and HCE Q & A State of NFC in mobile NFC and Android

More information

Mobile Electronic Payments

Mobile Electronic Payments Chapter 7 Mobile Electronic Payments 7.1 Rationale and Motivation Mobile electronic payments are rapidly becoming a reality. There is no doubt that users of mobile phones are willing and even asking to

More information

Using an NFC-equipped mobile phone as a token in physical access control

Using an NFC-equipped mobile phone as a token in physical access control University of Twente Faculty of electrical engineering, mathematics and computer science Nedap Securiy Management Using an NFC-equipped mobile phone as a token in physical access control Author: Martijn

More information

An NFC Ticketing System with a new approach of an Inverse Reader Mode

An NFC Ticketing System with a new approach of an Inverse Reader Mode An NFC Ticketing System with a new approach of an Inverse Reader Mode Dresden, 22/11/2013 Felipe de Sousa Silva Outline NFC Overview NFC Public Ticket System. Intention of the Inverse Reader Mode The Inverse

More information

Applying the NFC Secure Element in Mobile Identity Apps. RANDY VANDERHOOF Executive Director Smart Card Alliance

Applying the NFC Secure Element in Mobile Identity Apps. RANDY VANDERHOOF Executive Director Smart Card Alliance Applying the NFC Secure Element in Mobile Identity Apps RANDY VANDERHOOF Executive Director Smart Card Alliance Session ID: MBS - 403 Session Classification: Mobile Security Agenda Agenda topics NFC basics:

More information

NFC Hacking: The Easy Way

NFC Hacking: The Easy Way DEFCON 20 NFC Hacking: The Easy Way Eddie Lee eddie{at}blackwinghq.com About Me! Security Researcher for Blackwing Intelligence (formerly Praetorian Global)! New site live: blackwinghq.com! We re always

More information

Loyalty Systems over Near Field Communication (NFC)

Loyalty Systems over Near Field Communication (NFC) Loyalty Systems over Near Field Communication (NFC) Diogo Simões IST - Technical University of Lisbon Av. Prof. Cavaco Silva Tagus Park 2780-990 Porto Salvo, Portugal diogo.simoes@tagus.ist.utl.pt Abstract.

More information

DEVELOPING NFC APPS for BLACKBERRY

DEVELOPING NFC APPS for BLACKBERRY 1 DEVELOPING NFC APPS for BLACKBERRY NFC Forum, Developers Showcase March 21 st, 2014 Larry McDonough, Principal Evangelist @LMCDUNNA 2 CONTENTS Development on BlackBerry BlackBerry NFC Support 5 most

More information

Using RFID Techniques for a Universal Identification Device

Using RFID Techniques for a Universal Identification Device Using RFID Techniques for a Universal Identification Device Roman Zharinov, Ulia Trifonova, Alexey Gorin Saint-Petersburg State University of Aerospace Instrumentation Saint-Petersburg, Russia {roman,

More information

Application of Near Field Communication Technology for Mobile Airline Ticketing

Application of Near Field Communication Technology for Mobile Airline Ticketing Journal of Computer Science 8 (8): 1235-1243, 2012 ISSN 1549-3636 2012 Science Publications Application of Near Field Communication Technology for Mobile Airline Ticketing Wayan Suparta Institute of Space

More information

NFC Hacking: The Easy Way

NFC Hacking: The Easy Way DEFCON 20 NFC Hacking: The Easy Way Eddie Lee eddie{at}blackwinghq.com About Me! Security Researcher for Blackwing Intelligence (formerly Praetorian Global)! We re always looking for cool security projects!

More information

NFC Mobile Handset High Level Requirements V2

NFC Mobile Handset High Level Requirements V2 NFC Mobile Handset High Level Requirements V2 Release 2.0 Date : 28/09/2011 Reference: 110928 - AFSCM TECH - LIVBL - NFC Mobile Handset High Level Requirements - v2.0.doc AFSCM NFC Mobile Handset High

More information

Wireless IoT Technologies and Applications - Near Field Communication

Wireless IoT Technologies and Applications - Near Field Communication Wireless IoT Technologies and Applications - Near Field Communication Bryce Yau Manager, IC Design 6 May 2016 Outline IOT and NFC NFC Introduction NFC Standards NFC Chip Manufactures and Users NFC Device

More information

Mobile Cloud Computing

Mobile Cloud Computing Mobile Cloud Computing Dr Samia Bouzefrane Laboratoire CEDRIC CNAM, 292 rue Saint Martin http://cedric.cnam.fr/~bouzefra samia.bouzefrane@cnam.fr 1 Agenda Mobile Cloud computing Mobile trusted computing

More information

Frequently Asked Questions

Frequently Asked Questions Frequently Asked Questions NFC for Consumers What is NFC? Near Field Communication (NFC) is a short-range wireless connectivity technology standard designed for intuitive, simple, and safe communication

More information

Your Mobile Phone as a Ticket (NFC)

Your Mobile Phone as a Ticket (NFC) Your Mobile Phone as a Ticket (NFC) Francisco Maria van Uden Chaves IST - Technical University of Lisbon Av. Prof. Cavaco Silva Tagus Park 2780-990 Porto Salvo, Portugal francisco.chaves@ist.utl.pt Abstract.

More information

Best Practices for Integrating Mobile into the Access Control Architecture

Best Practices for Integrating Mobile into the Access Control Architecture Best Practices for Integrating Mobile into the Access Control Architecture Merging Security and Convenience with Mobile Mobile Access Using a mobile device to gain access to different buildings is not

More information

Mobile MasterCard PayPass Testing and Approval Guide. December 2009 - Version 2.0

Mobile MasterCard PayPass Testing and Approval Guide. December 2009 - Version 2.0 Mobile MasterCard PayPass Testing and Approval Guide December 2009 - Version 2.0 Proprietary Rights Trademarks The information contained in this document is proprietary and confidential to MasterCard International

More information

Training MIFARE SDK. Public. MobileKnowledge June 2015

Training MIFARE SDK. Public. MobileKnowledge June 2015 MIFARE SDK Public MobileKnowledge June 2015 Agenda Overview of MIFARE SDK related technologies NFC Technology (Read/Write mode) MIFARE, NTAG and ICODE products NFC in Android MIFARE SDK Introduction to

More information

Mobile Payment: The next step of secure payment VDI / VDE-Colloquium. Hans-Jörg Frey Senior Product Manager May 16th, 2013

Mobile Payment: The next step of secure payment VDI / VDE-Colloquium. Hans-Jörg Frey Senior Product Manager May 16th, 2013 Mobile Payment: The next step of secure payment VDI / VDE-Colloquium May 16th, 2013 G&D has been growing through continuous innovation Server software and services Token and embedded security Cards for

More information

MOBILE NEAR-FIELD COMMUNICATIONS (NFC) PAYMENTS

MOBILE NEAR-FIELD COMMUNICATIONS (NFC) PAYMENTS MOBILE NEAR-FIELD COMMUNICATIONS (NFC) PAYMENTS MAY 2013 THESE TECHNOLOGIES ARE BECOMING CONVENIENT AND SIMPLE WAYS TO PAY. Every day merchants seek better ways to grow their business and improve efficiency.

More information

PN532 NFC RFID Module User Guide

PN532 NFC RFID Module User Guide PN532 NFC RFID Module User Guide Version 3 Introduction NFC is a popular technology in recent years. We often heard this word while smart phone company such as Samsung or HTC introduces their latest high-end

More information

Technical Article. NFiC: a new, economical way to make a device NFC-compliant. Prashant Dekate

Technical Article. NFiC: a new, economical way to make a device NFC-compliant. Prashant Dekate Technical NFiC: a new, economical way to make a device NFC-compliant Prashant Dekate NFiC: a new, economical way to make a device NFC-compliant Prashant Dekate The installed base of devices with Near Field

More information

Vulnerability Analysis and Attacks on NFC enabled Mobile Phones

Vulnerability Analysis and Attacks on NFC enabled Mobile Phones Vulnerability Analysis and Attacks on NFC enabled Mobile Phones Collin Mulliner Fraunhofer SIT (Darmstadt, Germany) 1st International Workshop on Sensor Security March 2009 Fukuoka, Japan 1 Near Field

More information

Gemalto Mifare 1K Datasheet

Gemalto Mifare 1K Datasheet Gemalto Mifare 1K Datasheet Contents 1. Overview...3 1.1 User convenience and speed...3 1.2 Security...3 1.3 Anticollision...3 2. Gemalto Mifare Features...4 2.1 Compatibility with norms...4 2.2 Electrical...4

More information

Contactless Payments with Mobile Wallets. Overview and Technology

Contactless Payments with Mobile Wallets. Overview and Technology Contactless Payments with Mobile Wallets Overview and Technology History of Contactless Systems Upass (smartcard) a pre-paid card for the transportation system in Seoul and its suburbs, first used in

More information

APPFORUM2014. Helping the developer community build next-generation, multi-platform apps. SCHAUMBURG, ILLINOIS SEPTEMBER 8-10

APPFORUM2014. Helping the developer community build next-generation, multi-platform apps. SCHAUMBURG, ILLINOIS SEPTEMBER 8-10 APPFORUM2014 Helping the developer community build next-generation, multi-platform apps. SCHAUMBURG, ILLINOIS SEPTEMBER 8-10 NFC OVERVIEW Chuck Bolen Chief Architect Enterprise Mobile Computing APPFORUM2014

More information

Chytré karty opět o rok dál...

Chytré karty opět o rok dál... Chytré karty opět o rok dál... SmartCardForum 2010 Jan Němec Product expert, Gemalto Květen 2010 Agenda Chytré karty včera, dnes a zítra Úvod do problematiky NFC Integrace NFC do mobilních zařízení Java

More information

Abracon PTM Introduction to ANFCA Series Flexible Peel & Stick NFC Antennas

Abracon PTM Introduction to ANFCA Series Flexible Peel & Stick NFC Antennas Abracon PTM Introduction to ANFCA Series Flexible Peel & Stick NFC Antennas WWW.ABRACON.COM ANFCA Series Flexible Peel & Stick NFC Antennas Purpose To introduce ANFCA Series, Flexible Peel & Stick NFC

More information

HCE, Apple Pay The shock of simplifying the NFC? paper

HCE, Apple Pay The shock of simplifying the NFC? paper HCE, Apple Pay The shock of simplifying the NFC? White paper 2 Contents Introduction 4 1. The landscape of mobile NFC payment 5 2. HCE, the second breath of NFC 8 2.1. What is HCE? 8 2.2. Main impacts

More information

Renesas Devcon 2012 NFC Ecosystem And Solutions

Renesas Devcon 2012 NFC Ecosystem And Solutions Renesas Devcon 2012 NFC Ecosystem And Solutions Nick Mori, Marketing Manager Class ID: BC03B Renesas Electronics America Inc. Nick Mori Product Marketing Manager Responsible for product marketing roles

More information

ARCHITECTURE & DEVLOPMENT OF NFC APPLICATIONS

ARCHITECTURE & DEVLOPMENT OF NFC APPLICATIONS ARCHITECTURE & DEVLOPMENT OF NFC APPLICATIONS MOBILE JAVA DEVELOPMENT, JAVA CARD, USIM AND TOUCH-BASED SERVICES Amosse Edouard Contexte : le téléphone portefeuille universel SERVICES Paiement Access Ticketing

More information

SINGLE DEVICE FOR MULTIPLE TASKS

SINGLE DEVICE FOR MULTIPLE TASKS ViZRO s BioMate M043 SINGLE DEVICE FOR MULTIPLE TASKS Datasheet ViZRO S BioPad Vizro Technologies www.vizro.net INDEX 1. Introduction 2. Main Application Area 3.Technical Specifications 4.Product Picture

More information

NFC Application Mobile Payments

NFC Application Mobile Payments NFC Application Mobile Payments Public MobileKnowledge June 2014 Agenda Introduction to payments Card based payments Mobile based payments NFC based payments mpos solutions NXP Product portfolio Successful

More information

Near Field Communication Technology and its Utilization in Mobile Telephones

Near Field Communication Technology and its Utilization in Mobile Telephones Near Field Communication Technology and its Utilization in Mobile Telephones Josef Langer 15 th Oct. 2010 Campus : Softwarepark Research, Business & Education > 1.400 students >1.000 employees FH- R&D

More information

NACCU 2013. Migrating to Contactless: 2013 1

NACCU 2013. Migrating to Contactless: 2013 1 NACCU 2013 Migrating to Contactless: 2013 1 AGENDA The demise of cards has been predicted for many years. When will this really happen? This presentation by two card industry experts will cover the rise

More information

Security Requirements in the Era of Mobile communication The case of the financial industry

Security Requirements in the Era of Mobile communication The case of the financial industry Security Requirements in the Era of Mobile communication The case of the financial industry 7th February 2012 Dr. Kai Grassie, CTO Agenda Development and status of Mobile Payment Technology-Trends in Mobile

More information

Mobile Near-Field Communications (NFC) Payments

Mobile Near-Field Communications (NFC) Payments Mobile Near-Field Communications (NFC) Payments OCTOBER 2013 GENERAL INFORMATION American Express continues to develop its infrastructure and capabilities to support growing market interest in mobile payments

More information

Information Security Group (ISG) Core Research Areas. The ISG Smart Card Centre. From Smart Cards to NFC Smart Phone Security

Information Security Group (ISG) Core Research Areas. The ISG Smart Card Centre. From Smart Cards to NFC Smart Phone Security Information Security Group (ISG) From Smart Cards to NFC Smart Phone Security Information Security Group Activities Prof. Keith and Mayes Research From the Information Security Group ACE-CSR at Royal Holloway

More information

NFC Momentum: Beyond the Killer App. Koichi Tagawa Sony Chairman, NFC Forum

NFC Momentum: Beyond the Killer App. Koichi Tagawa Sony Chairman, NFC Forum NFC Momentum: Beyond the Killer App Koichi Tagawa Sony Chairman, NFC Forum NFC Solutions Summit May 22, 2012 NFC Phones Here Now Available in the market Acer E320 Liquid Express BIackBerry Bold 9790 BIackBerry

More information

NFC Testing. Near Field Communication Research Lab Hagenberg. Gerald Madlmayr. NFC Research Lab, Hagenberg. E-Smart 2008, Sophia Antipolis

NFC Testing. Near Field Communication Research Lab Hagenberg. Gerald Madlmayr. NFC Research Lab, Hagenberg. E-Smart 2008, Sophia Antipolis NFC Testing Gerald Madlmayr NFC, E-Smart 2008, Sophia Antipolis 1 NFC Research Topics Software: Contactless Applications and Infrastructure Hardware: Testing & Interoperability Security Usability Founded

More information

Secure Element Deployment & Host Card Emulation v1.0

Secure Element Deployment & Host Card Emulation v1.0 Secure Element Deployment & Host Card Emulation v1.0 2 Document History Version Date Editor Remarks 1.0 29/04/2014 HCE Taskforce Public release Copyright 2014 SIMalliance ltd. The information contained

More information

BGS MOBILE PLATFORM HCE AND CLOUD BASED PAYMENTS

BGS MOBILE PLATFORM HCE AND CLOUD BASED PAYMENTS HCE AND CLOUD BASED PAYMENTS 1 Contactless payments are vital for further development of the payment industry. More than 3 mln POS terminals around the globe can accept contactless payments. Mobile phones

More information

advant advanced contactless smart card system

advant advanced contactless smart card system LA-11-001l-en [08.2012] advant advanced contactless smart card system power Fully scalable fully flexible Key applications & standards 2 1 5 The LEGIC advant product line ideally supports the design and

More information

Wednesday, January 15, 14. Secure and Private Service Discovery over Low Energy Bluetooth

Wednesday, January 15, 14. Secure and Private Service Discovery over Low Energy Bluetooth Secure and Private Service Discovery over Low Energy Bluetooth Square Register Hardware credit card reader Developed for businesses Android and ios app Square Wallet Android and ios app Works with Square

More information

Threat Modeling for offline NFC Payments

Threat Modeling for offline NFC Payments Threat Modeling for offline NFC Payments 1 Fan Jia, 2 Yong Liu, 3 Li Zhang *1,Corresponding Author,2 Key Laboratory of Communication and Information Systems, Beijing Jiaotong University, Beijing, China,

More information

Credential Management for Cloud Computing

Credential Management for Cloud Computing Credential Management for Cloud Computing Workshop Cloud Security, 16.07.2014 Dr. Johannes Luyken Page 1 Security breaches increase in their impact by exploiting online access to confidential data that

More information

AN1305. MIFARE Classic as NFC Type MIFARE Classic Tag. Application note COMPANY PUBLIC. Rev. 1.3 2 October 2012 130513. Document information

AN1305. MIFARE Classic as NFC Type MIFARE Classic Tag. Application note COMPANY PUBLIC. Rev. 1.3 2 October 2012 130513. Document information MIFARE Classic as NFC Type MIFARE Classic Tag Document information Info Content Keywords NFC Forum, NFC data mapping, MIFARE Classic 1K/4K, MIFARE Classic 1K, MIFARE Classic 4K, MIFARE Plus X/S, NFC Type

More information

ACI TOKEN MANAGER FOR MOBILE: TOKEN SERVICE PROVISION, HCE AND EMBEDDED SECURE ELEMENT IN THE CLOUD

ACI TOKEN MANAGER FOR MOBILE: TOKEN SERVICE PROVISION, HCE AND EMBEDDED SECURE ELEMENT IN THE CLOUD DELIVERS PEACE OF MIND PRODUCT FLYER ACI TOKEN MANAGER FOR MOBILE: TOKEN SERVICE PROVISION, HCE AND EMBEDDED SECURE ELEMENT IN THE CLOUD ENABLE FULL SUPPORT OF THE MOBILE PAYMENTS PROCESS FOR EMBEDDED

More information

NFC TagWriter by NXP

NFC TagWriter by NXP Rev. 1.6 27 April 2016 User manual Document information Info Content Keywords User manual Abstract This document describes the features of the TagWriter and steps to setup TagWriter application in smart

More information

STOF Model & Mobile Ticketing. T-110.6130 Systems Engineering in Data Communications Software 3.11.2011 Antero Juntunen / Doctoral Student

STOF Model & Mobile Ticketing. T-110.6130 Systems Engineering in Data Communications Software 3.11.2011 Antero Juntunen / Doctoral Student STOF Model & Mobile Ticketing T-110.6130 Systems Engineering in Data Communications Software Antero Juntunen / Doctoral Student Contents STOF Model Service Domain Technology Domain Organization Domain

More information

EMV-TT. Now available on Android. White Paper by

EMV-TT. Now available on Android. White Paper by EMV-TT A virtualised payment system with the following benefits: MNO and TSM independence Full EMV terminal and backend compliance Scheme agnostic (MasterCard and VISA supported) Supports transactions

More information

NFC Near Field Communication

NFC Near Field Communication NFC Near Field Communication Gregor Hohpe 2010 Google, Inc. All rights reserved, Core Technology Passive card powered by radio field 212kbps, 100ms read/write cycle Authentication, data integrity protection

More information

NFC Based Equipment Management Inventory System

NFC Based Equipment Management Inventory System Journal of Information Hiding and Multimedia Signal Processing c 2015 ISSN 2073-4212 Ubiquitous International Volume 6, Number 6, November 2015 NFC Based Equipment Management Inventory System Rung-Shiang

More information

Ex15x //DATASHEET. Xs4 Mini. Cutting-edge design + Amazing technology:

Ex15x //DATASHEET. Xs4 Mini. Cutting-edge design + Amazing technology: //DATASHEET XS4 Mini Cutting-edge design + Amazing technology: Stylish design is a SALTO trademark and with the XS4 Mini, we raise the bar on this already high standard thanks to the XS4 Mini s small,

More information

Microsoft Identity Lifecycle Manager & Gemalto.NET Solutions. Jan 23 rd, 2007

Microsoft Identity Lifecycle Manager & Gemalto.NET Solutions. Jan 23 rd, 2007 Microsoft Identity Lifecycle Manager & Gemalto.NET Solutions Jan 23 rd, 2007 Microsoft ILM is a comprehensive, integrated, identity and access solution within the Microsoft system architecture. It includes

More information

Mobile Cloud & Mobile Ticketing

Mobile Cloud & Mobile Ticketing Mobile Cloud & Mobile Ticketing T-109.4300 Network Services Business Models Lecture Antero Juntunen Researcher antero.juntunen@tkk.fi Contents Mobile Cloud Introduction Drivers Restraints Conclusions Mobile

More information

Relay Attacks in EMV Contactless Cards with Android OTS Devices

Relay Attacks in EMV Contactless Cards with Android OTS Devices Relay Attacks in EMV Contactless Cards with Android OTS Devices José Vila, Ricardo J. Rodríguez pvtolkien@gmail.com, rj.rodriguez@unileon.es All wrongs reversed Computer Science and Research Institute

More information

Secure your Privacy. www.jrsys.com.tw. jrsys, Inc. All rights reserved.

Secure your Privacy. www.jrsys.com.tw. jrsys, Inc. All rights reserved. Secure your Privacy www.jrsys.com.tw CNN 2013/7/16 8:25PM Man Middle In The I got your ID/Password! Mobile Secure Secure sensitive access data Random Login Web Authentication One Secure Time Channel Password

More information

Trends in der Forschung für kontaktlose Anwendungen

Trends in der Forschung für kontaktlose Anwendungen Trends in der Forschung für kontaktlose Anwendungen 8. Dresdner RFID Symposium 4. 5. 12. 2014; Dresden, Deutschland Holger Bock, Infineon Technologies Austria AG Überblick Einleitung CATRENE-Projekt NewP@ss

More information

THE APPEAL FOR CONTACTLESS PAYMENT 3 AVAILABLE CONTACTLESS TECHNOLOGIES 3 USING ISO 14443 BASED TECHNOLOGY FOR PAYMENT 4

THE APPEAL FOR CONTACTLESS PAYMENT 3 AVAILABLE CONTACTLESS TECHNOLOGIES 3 USING ISO 14443 BASED TECHNOLOGY FOR PAYMENT 4 CONTACTLESS THE APPEAL FOR CONTACTLESS 3 AVAILABLE CONTACTLESS TECHNOLOGIES 3 USING ISO 14443 BASED TECHNOLOGY FOR 4 DESIGNING AN EMV LIKE CONTACTLESS SYSTEM 5 INGENICO, LEADER IN CONTACTLESS TECHNOLOGY

More information

Financial industry Solutions. Redefining Micro Location for the Financial industry in a Mobile World

Financial industry Solutions. Redefining Micro Location for the Financial industry in a Mobile World Financial industry Solutions Redefining Micro Location for the Financial industry in a Mobile World Company Overview Founded in 2011, strong expertise in location tracking and information security technologies

More information

Mobile Payment using HCE and mpoint payment gateway based on NFC enabled phones. AUTHOR : GRZEGORZ MILCARZ S111040

Mobile Payment using HCE and mpoint payment gateway based on NFC enabled phones. AUTHOR : GRZEGORZ MILCARZ S111040 Mobile Payment using HCE and mpoint payment gateway based on NFC enabled phones. AUTHOR : GRZEGORZ MILCARZ S111040 DATE NOVEMBER 27, 2014 Summary The goal of the thesis is to create a proof of concept

More information

Mobile/NFC Security Fundamentals. NFC Application Use Cases: Security Perspectives. Smart Card Alliance and NFC Forum Webinar May 9, 2013

Mobile/NFC Security Fundamentals. NFC Application Use Cases: Security Perspectives. Smart Card Alliance and NFC Forum Webinar May 9, 2013 Mobile/NFC Security Fundamentals NFC Application Use Cases: Security Perspectives Smart Card Alliance and NFC Forum Webinar May 9, 2013 Introductions Randy Vanderhoof Executive Director, Smart Card Alliance

More information

Security on NFC-Enabled Platforms

Security on NFC-Enabled Platforms Security on NFC-Enabled Platforms Building Trust in the New Mobile Applications Ecosystem Whitepaper www.infineon.com/nfc Content A New Stage in the Evolution of Personal Mobility 4-7 The Need for Hardware-based

More information

RF-Enabled Applications and Technology: Comparing and Contrasting RFID and RF-Enabled Smart Cards

RF-Enabled Applications and Technology: Comparing and Contrasting RFID and RF-Enabled Smart Cards RF-Enabled Applications and Technology: Comparing and Contrasting RFID and RF-Enabled Smart Cards January 2007 Developed by: Smart Card Alliance Identity Council RF-Enabled Applications and Technology:

More information

Latest and Future development of Mobile Payment in Hong Kong

Latest and Future development of Mobile Payment in Hong Kong Latest and Future development of Mobile Payment in Hong Kong About oti Founded in 1990 (NASDAQ: OTIV). Offices in US, Europe, Africa, Asia Global provider of cashless payment solutions Experts in secured

More information

Security in Near Field Communication (NFC)

Security in Near Field Communication (NFC) Security in Near Field Communication (NFC) Strengths and Weaknesses Ernst Haselsteiner and Klemens Breitfuß Philips Semiconductors Mikronweg 1, 8101 Gratkorn, Austria ernst.haselsteiner@philips.com klemens.breitfuss@philips.com

More information

State of the Art for Near Field Communication: security and privacy within the field

State of the Art for Near Field Communication: security and privacy within the field State of the Art for Near Field Communication: security and privacy within the field Liam Church and Maria Moloney Escher Group Ltd, Ireland Liam.Church@eschergroup.com, Maria.Moloney@echergroup.com Third

More information

Developing a new Protection Profile for (U)SIM UICC platforms. ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R.

Developing a new Protection Profile for (U)SIM UICC platforms. ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R. Developing a new Protection Profile for (U)SIM UICC platforms ICCC 2008, Korea, Jiju Septembre 2008 JP.Wary/M.Eznack/C.Loiseaux/R.Presty Project Background A Protection Profile for (U)SIM Security Requirements

More information

Over-the-Internet: Efficient Remote Content Management for Secure Elements in Mobile Devices

Over-the-Internet: Efficient Remote Content Management for Secure Elements in Mobile Devices Over-the-Internet: Efficient Remote Content Management for Secure Elements in Mobile Devices Mohamed Sabt, Mohammed Achemlal, Abdelmadjid Bouabdallah To cite this version: Mohamed Sabt, Mohammed Achemlal,

More information

SALTO Systems I SALTO Carriers. innovation in ID technology. MIFARE DESFire

SALTO Systems I SALTO Carriers. innovation in ID technology. MIFARE DESFire MIFAR SALTO Systems I SALTO Carriers innov innovation in ID technology MIFARE DESFire SALTO Carriers SALTO offers wide range of carriers(fobs, bracalets, contact less bracelets, contacless fobs, contact

More information

Android pay. Frequently asked questions

Android pay. Frequently asked questions Android pay Frequently asked questions June 2015 Android Pay - FAQs In May 2015, Android Pay was announced by Google. Android Pay is Google s payments solution that allows consumers to do in-store and

More information

How To Secure A Paypass Card From Being Hacked By A Hacker

How To Secure A Paypass Card From Being Hacked By A Hacker PayPass Vulnerabilities Balázs Bucsay http://rycon.hu - earthquake_at_rycon_dot_hu PR-Audit Kft. http://www.praudit.hu/ PayPass PayPass lets you make everyday purchases without having to swipe the magnetic

More information

Smart Card Technology Capabilities

Smart Card Technology Capabilities Smart Card Technology Capabilities Won J. Jun Giesecke & Devrient (G&D) July 8, 2003 Smart Card Technology Capabilities 1 Table of Contents Smart Card Basics Current Technology Requirements and Standards

More information

NFC Tags. A technical introduction, applications and products

NFC Tags. A technical introduction, applications and products Rev. 1.3 1 December 2011 White paper Info Author(s) Abstract Content Francesco Gallo An introduction for a business, marketing or technical audience to NFC Forum tags and NFC-enabled tags, describing applicable

More information

EESTEL. Association of European Experts in E-Transactions Systems. Apple iphone 6, Apple Pay, What else? EESTEL White Paper.

EESTEL. Association of European Experts in E-Transactions Systems. Apple iphone 6, Apple Pay, What else? EESTEL White Paper. EESTEL White Paper October 29, 2014 Apple iphone 6, Apple Pay, What else? On 2014, September 9 th, Apple has launched three major products: iphone 6, Apple Watch and Apple Pay. On October 17 th, Apple

More information

Timo Müller NFC AND THE VEHICLE. TESTING THE LINUX NFC STACK. BMW Car IT GmbH

Timo Müller NFC AND THE VEHICLE. TESTING THE LINUX NFC STACK. BMW Car IT GmbH Timo Müller NFC AND THE VEHICLE. TESTING THE LINUX NFC STACK. BMW Car IT GmbH NEARD FIELD COMMUNICATION. WHAT IS IT? Easy connections, quick transactions, and simple data sharing. NFC-Forum.org Fast connection

More information

mpay, mshop, mtransfer!

mpay, mshop, mtransfer! WHITEPAPER mpay, mshop, mtransfer! This whitepaper is an extract from: Mobile Payment Markets Strategies & Forecasts 2010-2014... information you can do business with mpay, mshop, mtransfer! 1. Introduction

More information

Bringing Security & Interoperability to Mobile Transactions. Critical Considerations

Bringing Security & Interoperability to Mobile Transactions. Critical Considerations Bringing Security & Interoperability to Mobile Transactions Critical Considerations April 2012 Transactions 2 Table of Contents 1. Introduction... 3 2. Section 1: Facing up the challenges of a connected

More information

The future of contactless mobile payment: with or without Secure Element?

The future of contactless mobile payment: with or without Secure Element? The future of contactless mobile payment: with or without Secure Element? By Sylvain Godbert, mobile payment and security expert at Nextendis By Jean-Philippe Amiel, director of Nextendis February, 2015

More information