Mobile trusted module (mtm)-based short message service security system and method thereof

US2016309331A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2016309331-A1
Application numberUS-201615130782-A
CountryUS
Kind codeA1
Filing dateApr 15, 2016
Priority dateApr 16, 2015
Publication dateOct 20, 2016
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

An MTM-based short message service security system and a method thereof are provided. A hardware security module according to the present invention includes an access control unit configured to verify the integrity of a SMS application and a request from the SMS application, and verify whether the SMS application has a permission for the request; a key management unit configured to store and manage a public key and a private key of the terminal, and an encryption key shared with a server configured to transmit a security message between the server and the terminal; and a security message processing unit configured to convert the security message based on a preset security policy when the security message is received from the server, and return the converted message to the SMS application.

First claim

Opening claim text (preview).

What is claimed is: 1 . A hardware security module, comprising: an access control unit configured to verify the integrity of a SMS application a request from the SMS application, and verify whether the SMS application has a permission for the request; a key management unit configured to store and manage a public key and a private key of the terminal, and an encryption key shared with a server configured for the security message between the SMS server and the terminal; and a security message processing unit configured to convert the security message based on a preset security policy when the security message is received from the server, and return the converted message to the SMS application. 2 . The hardware security module of claim 1 , wherein the security message processing unit uses the encryption key, decrypts the security message, and returns the decrypted security message to the SMS application. 3 . The hardware security module of claim 1 , wherein the security message processing unit uses the encryption key, decrypts the security message, re-encrypts the decrypted security message using a separate key, and returns the re-encrypted security message and a key ID of the separate key to the SMS application. 4 . The hardware security module of claim 1 , wherein, when the request for the security message is received from the SMS application, the security message processing unit generates the security message through encrypting the received short message with the encryption key, and returns the message to the SMS application. 5 . A short message service security method that is provided by a user terminal including a hardware security module configured to encrypt or decrypt a short message in cooperation with a SMS application that is executed in an application processor, the method comprising: receiving a security message encrypted with an encryption key shared with a server; converting the security message based on a preset security policy for managing the security message; and transmitting a reception checking message to the server when reception of the security message is completed. 6 . The short message service security method of claim 5 , wherein the converting includes decrypting the security message using the encryption key and displaying the decrypted security message. 7 . The short message service security method of claim 5 , wherein the converting includes decrypting the security message using the encryption key, re-encrypting the decrypted security message using a separate key, and storing the re-encrypted security message and a key ID of the separate key. 8 . The short message service security method of claim 5 , further comprising when a security message writing request is received from the SMS application, generating a security message in which the short message is encrypted using the encryption key, and returning the message to the SMS application. 9 . A short message service security method that is provided by a server that manages the encryption keys shared with each target terminal, generates the security message in which a short message received from a transmitting terminal is encrypted, and transmits the security message to the target terminal, the method comprising: generating a security message in which the short message is encrypted using an encryption key shared with the target terminal when the short message that is received from the transmitting terminal and not encrypted matches a security policy set in the target terminal; delivering the security message to the target terminal and requesting a security message reception checking task from the target terminal; and verifying reception of the security message. 10 . The short message service security method of claim 9 , wherein the verifying of the reception includes: setting a time-out for reception verification of the security message; determining whether a reception checking message generated when the target terminal performs a security message reception checking procedure is delivered within the time-out; and generating a reception checking error message when the reception checking message is not delivered within the time-out based on the determination result. 11 . The short message service security method of claim 9 , wherein the reception checking message includes a hash value of plain text of the received security message or the received security message, and includes hash values of plain texts of most recently received N security messages, and wherein the verifying of the reception further includes: checking whether a hash value of plain text of the transmitted security message or plain texts of recently transmitted N security messages matches a hash value included in the reception checking message when the reception checking message is delivered within the time-out; and generating a verification checking message when the values match, and generating an error message when the values do not match.

Assignees

Inventors

Classifications

  • H04W12/10Primary

    Integrity · CPC title

  • Short messaging services, e.g. short message services [SMS] or unstructured supplementary service data [USSD] · CPC title

  • H04W12/04Primary

    Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2016309331A1 cover?
An MTM-based short message service security system and a method thereof are provided. A hardware security module according to the present invention includes an access control unit configured to verify the integrity of a SMS application and a request from the SMS application, and verify whether the SMS application has a permission for the request; a key management unit configured to store and ma…
Who is the assignee on this patent?
Electronics & Telecommunications Res Inst
What technology area does this patent fall under?
Primary CPC classification H04W12/10. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Oct 20 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).