CN101533539A - Method for inputting password and device thereof - Google Patents

Method for inputting password and device thereof Download PDF

Info

Publication number
CN101533539A
CN101533539A CN200910079882A CN200910079882A CN101533539A CN 101533539 A CN101533539 A CN 101533539A CN 200910079882 A CN200910079882 A CN 200910079882A CN 200910079882 A CN200910079882 A CN 200910079882A CN 101533539 A CN101533539 A CN 101533539A
Authority
CN
China
Prior art keywords
password
input
cryptographic check
instruction
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN200910079882A
Other languages
Chinese (zh)
Other versions
CN101533539B (en
Inventor
陆舟
于华章
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Feitian Technologies Co Ltd
Original Assignee
Beijing Feitian Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Feitian Technologies Co Ltd filed Critical Beijing Feitian Technologies Co Ltd
Priority to CN200910079882.4A priority Critical patent/CN101533539B/en
Publication of CN101533539A publication Critical patent/CN101533539A/en
Priority to US12/812,042 priority patent/US8777100B2/en
Priority to PCT/CN2010/071001 priority patent/WO2010102577A1/en
Application granted granted Critical
Publication of CN101533539B publication Critical patent/CN101533539B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Storage Device Security (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

The invention discloses a method for inputting a password and a device thereof, relates to the field of information security and solves the problem that passwords input by users are prone to be intercepted. The method comprises the following steps: receiving operating instructions from a card reader; detecting whether the instructions are cryptographic check instructions or not; if not, sending the operational instructions to a smart card; if yes, receiving the password input by the user; encapsulating the password input by the user in the cryptographic check instructions and sending the cryptographic check instructions which encapsulate input password by the user to the smart card. The invention is mainly used in the process of password inputting to improve safety of the password inputting and facilitates the password not to be easily intercepted in the process of password inputting.

Description

Cipher-code input method and equipment
Technical field
The present invention relates to information security field, relate in particular to cipher-code input method and equipment.
Background technology
In recent years, along with the develop rapidly of ecommerce and going deep into of China's commercialization process, increasing people selects to pay by mails when financial transaction, the so-called E-Payment by mails is meant the litigant who is engaged in e-commerce transaction, comprise consumer, manufacturer and financial institution, by information network, information transmission means safe in utilization, the monetary payoff or the fund flow that adopt digital form to carry out.This kind modes of payments is compared with traditional modes of payments, has convenient, fast, efficient, economic advantage, makes people just can finish payment process in the short period of time.
At present, the modes of payments of the POS machine that uses in the ATM (automatic teller machine) of user's use, the market consumption all belongs to this kind electronic payment mode.When using this kind modes of payments, the password of user's input is general direct to be received by consumption terminal (as: computing machine), and the password of user input is sent to the bank service center by the internet by consumption terminal, by the bank service center password of user's input is carried out verification.Because this consumption terminal is connected in the internet, password is imported in the process of described consumption terminal the user, the password of being inputed is easy to by illegal with monitoring and intercepting and capturing, and send to the password that the user imports in the process at bank service center by the internet at described consumption terminal, the password of described user input is easier to be intercepted and captured by the disabled user, makes the security of the password that the user inputs lower.
Summary of the invention
The invention provides a kind of cipher-code input method and equipment, make password in input process, be difficult for being intercepted and captured, improve the security of password input.
For achieving the above object, the present invention adopts following technical scheme:
A kind of cipher-code input method comprises:
Receive the operational order that card reader sends;
Whether detect described operational order is the cryptographic check instruction;
If described operational order is not described cryptographic check instruction, then described operational order is sent to smart card;
If described operational order is described cryptographic check instruction, then receive the password of user's input;
The password of described user's input is encapsulated in the described cryptographic check instruction;
To be packaged with the cryptographic check instruction that described user inputs password and send to smart card.
A kind of cipher input equipment comprises:
First communication module is used to receive the operational order that card reader sends;
The command detection module, whether be used to detect described operational order is the cryptographic check instruction;
Load module, being used for detecting described operational order is cryptographic check when instruction, receives the password of user's input;
The modifying of order module is used for the password of described user's input is encapsulated into described cryptographic check instruction;
Second communication module is used for sending to smart card with being packaged with the cryptographic check instruction that described user inputs password;
It is not cryptographic check when instruction that described second communication module also is used for detecting described operational order, and described operational order is sent to smart card.
After adopting such scheme, when paying by mails, the password of user's input is directly received by described cipher input equipment, and the password with described user's input sends to smart card then, finishes the authentication that described user inputs password by described smart card.In the process of password input, transmission, the password of described user's input does not all have to contact with the consumption terminal that is connected to the internet (as: computing machine), prevented that the disabled user is by described consumption terminal supervisory user input password, reduced and intercepted and captured the possibility that described user inputs password, improved the security of user cipher input process.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art, to do to introduce simply to the accompanying drawing of required use in embodiment or the description of the Prior Art below, apparently, accompanying drawing in describing below only is some embodiments of the present invention, for those of ordinary skills, under the prerequisite of not paying creative work, can also obtain other accompanying drawing according to these accompanying drawings.
Fig. 1 is the process flow diagram of the embodiment of the invention 1 cipher-code input method;
Fig. 2 is the composition frame chart of the embodiment of the invention 1 cipher input equipment;
Fig. 3 is the process flow diagram of the embodiment of the invention 2 cipher-code input methods;
Fig. 4 is the composition frame chart of the embodiment of the invention 2 cipher input equipments.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the invention, the technical scheme in the embodiment of the invention is clearly and completely described, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills belong to the scope of protection of the invention not making the every other embodiment that is obtained under the creative work prerequisite.
Embodiment 1
The embodiment of the invention provides a kind of cipher-code input method, and as shown in Figure 1, this method comprises:
101, cipher input equipment receives the operational order that card reader sends, and the form of this operational order meets 7816 standards (this standard is international smart card specification), and it comprises following components: CLA, INS, P1, P2, LC, DATA;
Wherein, CLA (ClAss, class) byte, presentation directives's type, its length are a byte; INS (INStructic, order) byte, its length is a byte, an INS field is represented a specific instruction, i.e. instruction name; P1 and P2 (2, two parameters of Parameters 1 and) byte, the length of P1, P2 is respectively a byte, is used to check the INS field, perhaps is used to import data; LC (Lengthof Command parameters, Optional Field order parameter), LC is the byte number of order data field; DATA, data field are director data, and its length is the value of LC; Briefly, CLA, INS, P1, P2 can be called the instruction head, and LC is an order parameter, and DATA partly is a director data;
102, after described cipher input equipment receives the operational order of described card reader transmission, described operational order is detected, judge according to the instruction type in the instruction head of described operational order whether described operational order is the cryptographic check instruction; If described operational order is not the cryptographic check instruction, then execution in step 103; If described operator password is the cryptographic check instruction, then execution in step 104;
103, cipher input equipment sends to smart card with described operational order, so that smart card is operated the execution of end step accordingly according to described operational order;
104, described cipher input equipment receives the password of user's input, the password of described user's input has dual mode, first kind, in the certain hour scope, when the keyboard that the user carries by cipher input equipment was imported password, cipher input equipment received the data of described keyboard input and the password that described data are imported as the user; Second kind, after after a while, by described keyboard input password, then cipher input equipment does not produce a string random number to the user automatically, and with the password of described random number as user's input;
105, after described cipher input equipment is received the password of described user's input, the password that described user is imported is encapsulated in the described cryptographic check instruction;
106, cipher input equipment will be packaged with the cryptographic check instruction that described user inputs password and send to smart card, so that smart card authenticates described input password.
The embodiment of the invention also provides a kind of cipher input equipment, and as shown in Figure 2, this equipment comprises:
First communication module 21, command detection module 22, load module 23, modifying of order module 24, second communication module 25.
Described cipher input equipment receives the operational order that card reader sends by first communication module 21, this operational order comprises instruction head, order parameter and director data, the information that described instruction head carries is instruction type and instruction name etc., and order parameter is the byte number of described director data; After cipher input equipment received the operational order that described card reader sends, whether the instruction type of utilizing command detection module 22 to detect in the instruction head of described operational order was the cryptographic check instruction; If described operational order is not the cryptographic check instruction, then described operational order is sent to smart card by second communication module 25; If described operational order is the cryptographic check instruction, then receive the password of user's input by load module 23; Receive the password of user's input at load module 23 after, utilize modifying of order module 24 that described input password is encapsulated in the described cryptographic check instruction; And send to smart card by the cryptographic check instruction that second communication module 25 will be packaged with described input password.
Wherein, the password of user's input that described load module 24 receives has two kinds of forms, and first kind, in the certain hour scope, when the keyboard that the user carries by cipher input equipment is imported password, cipher input equipment is imported the data of keyboard input as the user password; Second kind, after after a while, by described keyboard input password, then cipher input equipment does not produce a string random number to the user automatically, and with the password of described random number as user's input.
In the embodiment of the invention, the password of user's input is received by described cipher input equipment, rather than by the consumption terminal reception that is connected in the internet, avoided the disabled user to monitor the possibility that described consumption terminal is intercepted and captured the password of user's input, improved the security that the user inputs password by the internet; And cipher input equipment sends to described smart card with the password of user's input after encapsulation, rather than send to described smart card by the described consumption terminal that is connected to the internet, prevented to be intercepted and captured by the disabled user in the process of password transmission of user's input, improved the security that the user inputs password.
Embodiment 2
The embodiment of the invention provides a kind of cipher-code input method, and as shown in Figure 3, this method comprises:
301, described cipher input equipment needed to set up data communication with card reader and smart card respectively and is connected before the operational order that receives the card reader transmission, and the concrete steps of this connection are:
Cipher input equipment receives the reset signal of card reader transmission and described reset signal is sent to described smart card, described reset signal is sent to after the described smart card, cipher input equipment receives the reset answer information of described smart card transmission and described reset answer signal is sent to described card reader, after described cipher input equipment sent to described card reader with described reset answer information, described cipher input equipment receives agreement that described card reader sends and parameter selection instruction and described agreement and parameter selection instruction is sent to described smart card, after executing above-mentioned steps, described cipher input equipment has been set up data communication and has been connected respectively with between card reader and the smart card;
302, set up after data communication is connected respectively with between the described card reader when described cipher input equipment, described cipher input equipment receives the operational order that described card reader sends, the form of this operational order meets 7816 standards (this standard is international smart card specification), and it comprises following components: CLA, INS, P1, P2, LC, DATA;
Wherein, CLA (ClAss, class) byte, presentation directives's type, its length are a byte; INS (INStructic, order) byte, its length is a byte, an INS field is represented a specific instruction, i.e. instruction name; P1 and P2 (2, two parameters of Parameters 1 and) byte, the length of P1, P2 is respectively a byte, is used to check the INS field, perhaps is used to import data; LC (Lengthof Command parameters, Optional Field order parameter), LC is the byte number of order data field; DATA, data field are director data, and its length is the value of LC; Briefly, CLA, INS, P1, P2 can be called the instruction head, and LC is an order parameter, and DATA partly is a director data;
303, after described cipher input equipment receives the operational order of described card reader transmission, whether the instruction type that the instruction head of the described operational order of needs detection carries is the cryptographic check instruction; If the described operational order of fruit is not described cryptographic check instruction, then execution in step 304; If described operational order is described cryptographic check instruction, then execution in step 305;
304, cipher input equipment sends to smart card with described operational order, so that smart card is operated execution in step 309 accordingly according to described operational order;
305, cipher input equipment is play the information of password input, and the prompting user can input password, and this password input prompt information can be that speech play or screen broadcast or speech play and screen are play and combined;
306, after the user receives the password input prompt information of described cipher input equipment broadcast, if in the certain hour scope, pass through the keyboard input password that the input equipment that inputs password carries, then described cipher input equipment receives described user by the data of keyboard input and with the password of described data as user's input, if in the certain hour scope, do not import password by described keyboard, cipher input equipment will produce a string random data automatically, and with the password of described random number as user's input;
307, the password of the cipher input equipment described user input that will receive is encapsulated in the described cryptographic check instruction, cipher input equipment prompts status messages simultaneously, and as present, please wait a moment etc.;
Wherein, the password of user input is encapsulated in process in the described cryptographic check instruction, the operational order that sends with described card reader is 00200000021234 be example explanation: the instruction head of operational order is 00200000, wherein CLA is 00, INS is 20, P1 is 00, P2 is 00, represents that this operational order is the cryptographic check instruction; Order parameter LC is 02, and the director data of representing this operational order is 2 bytes, and 1234 is the director data DATA of this operational order, and concrete encapsulation process is as follows:
Cipher input equipment is deleted the order parameter 02 and the director data 1234 of the cryptographic check instruction of described card reader transmission, cipher input equipment adds to the password of described user's input the director data part of described cryptographic check instruction, with the password of user input is 112233 to be example, after described director data replenishes and finishes, the active user being inputed the corresponding parameters of password adds in the order parameter part of described cryptographic check instruction, realize the renewal of cryptographic check order parameter, the content that the password of user's input is encapsulated into the cryptographic check instruction in the described cryptographic check instruction is 0020000003112233;
Further, before the password with user's input is encapsulated in the cryptographic check instruction, can also carry out algorithmic transformation to the password of user's input, the password with the input of the user after the algorithmic transformation is encapsulated in the cryptographic check instruction then; Can use any cryptographic algorithm of the prior art or hash algorithm can carry out the algorithmic transformation operation to the password of user's input, for example, the password of user's input that cipher input equipment receives is 4321, use SHA1 algorithm (Secure Hash Algorithm 1, Secure Hash Algorithm) carry out computations, obtain operation result abcd5678, then order parameter is 04, director data is abcd5678, and the content of the cryptographic check instruction that then generates is 0020000004abcd5678.
308, finish the encapsulation of password of described user input after, described cipher input equipment will be packaged with the checking command that described user inputs password and send to smart card, be convenient to described smart card the password of user's input is authenticated;
309, described cipher input equipment receives the execution result of the described instruction that described smart card returns, when smart card receive be the cryptographic check instruction time, what return is the authentication result of the password inputed of user, and this result comprises the password bad that password is correct and the user imports that the user inputs; What receive when described smart card is non-cryptographic check instruction, and what return is exactly the execution result of operational order;
310, the execution result of cipher input equipment described instruction that the smart card that receives is sent sends to described card reader, so that the result that described card reader is carried out according to instruction carries out next step operation.
The embodiment of the invention also provides a kind of cipher input equipment, as shown in Figure 4, this equipment comprises: first communication module 41, second communication module 42, command detection module 43, playing module 44, load module 45, modifying of order module 46, algorithmic transformation module 47;
Before described cipher input equipment receives the operational order that card reader sends, described card reader and described smart card need respectively with described cipher input equipment between set up data communication and be connected.First communication module 41 is used to realize that described card reader is connected with data communication between the described cipher input equipment; Second communication module 42 is used to realize that described smart card is connected with data communication between the described cipher input equipment; When described card reader and described smart card are set up after data communication is connected respectively with between the described cipher input equipment, described first communication module 41 also is used to receive the operational order that card reader sends, and described operational order comprises instruction head, order parameter and director data;
Behind the operational order that receives the card reader transmission, whether instruction type entrained in the instruction head of described cipher input equipment by the operational order of the described card reader transmission of command detection module 43 detections is the cryptographic check instruction; When detecting described operational order is cryptographic check when instruction, cipher input equipment is inputed the information of password by playing module 44 play cuing users, and this information can be that speech play or screen display or speech play and screen display combine; Play the encrypted message of prompting user input when playing module 44 after, described cipher input equipment utilizes load module 45 to receive the password of user's input; And the password that load module is received is encapsulated in the described cryptographic check instruction by modifying of order module 46; Described playing module 44 is play the Cipher Processing status informations as present when the password to user input encapsulates, and please wait a moment etc.; After described user inputed password encapsulation and finishes, described cipher input equipment sent to smart card by the cryptographic check instruction that second communication module 42 will be packaged with described input password;
Smart card is inputed password to the user who receives and is authenticated, and institute's authentication result returned to described cipher input equipment, described cipher input equipment utilizes described second communication module 42 to receive the execution result of the described cryptographic check instruction that described smart card returns; And the execution result of described cryptographic check instruction is sent to described card reader by first communication module 41, so that card reader is carried out next step operation according to the result of cipher authentication.
When described operational order did not instruct for cryptographic check, cipher input equipment sent to smart card by described second communication module 42 with described operational order, so that described smart card is operated accordingly according to described operational order; After smart card executes described operational order, to described cipher input equipment send that described operational order carries out as a result the time, described cipher input equipment receives the result of described operational order execution by described second communication module 42; And the result who described operational order is carried out by described first communication module 41 sends to described card reader, so that the result that described card reader is carried out according to described operational order carries out next step operation.
Wherein, the password of described user's input has two kinds of forms, first kind, receive the password input prompt information of described cipher input equipment broadcast as the user after, the keyboard input password that carries by cipher input equipment in the certain hour scope, described load module 45 receive the data of described keyboard input and the password that the data of described keyboard input are imported as the user; Second kind, receive the password input prompt information of described cipher input equipment broadcast as the user after, in the certain hour scope, do not import password by described keyboard, described cipher input equipment will produce a string random number automatically, the password that described load module receives described random number and described random number is imported as the user;
Wherein, realize that described card reader and described smart card set up and comprise when data communication is connected respectively with between the described cipher input equipment: described cipher input equipment utilizes first communication module 41 to receive the reset signal that described card reader sends, and by second communication module 42 described reset signal is sent to described smart card; After the reset signal that described card reader is sent sends to smart card, described cipher input equipment utilizes second communication module 42 to receive the reset answer information that described smart card sends, and by first communication module 41 described reset answer signal is sent to described card reader; After the reset answer information that smart card is sent sends to card reader, described cipher input equipment utilizes first communication module 41 to receive agreement and the parameter selection instruction that described card reader sends, and by second communication module 42 described agreement and parameter selection instruction is sent to described smart card; After described agreement and parameter selection instruction were sent to described smart card, card reader and smart card had been set up data communication and have been connected respectively with between the described cipher input equipment;
Comprise when wherein, described modifying of order module 46 is used for that described input password is encapsulated into described cryptographic check instruction: described cipher input equipment is deleted by the order parameter and the director data of the cryptographic check instruction that described modifying of order module 46 sends described card reader; Behind the order parameter and director data of having deleted described cryptographic check instruction, described modifying of order module 46 also is used for the password of user's input is added to described director data part; After the password of described user's input was added described director data part, described modifying of order module 46 also was used for described order parameter is updated to the password corresponding parameters of described user's input.
Wherein, described user is inputed before password is encapsulated in the described cryptographic check instruction in described modifying of order module 46, can also carry out algorithmic transformation to the password of user's input, shown in Fig. 4 dotted portion, algorithmic transformation module 47, be used for the password of user input is carried out algorithmic transformation, the method that the password of user's input is carried out algorithmic transformation comprises encrypts and Hash; After described algorithmic transformation module 47 was carried out the algorithmic transformation operation with the data of user's input, described modifying of order module 46 was deleted the order parameter and the director data of the cryptographic check instruction that described card reader sends; Behind the order parameter and director data of having deleted described cryptographic check instruction, described modifying of order module 46 also is used for the password of the input of the user after the algorithmic transformation is added to described director data part; After the password of the user after described algorithmic transformation input added to described director data part, described modifying of order module 46 also was used for described order parameter is updated to the password corresponding parameters of the user's input after the described algorithmic transformation.
In the embodiment of the invention, receive at cipher input equipment before the operational order of card reader transmission, realize cipher input equipment respectively with card reader and smart card between data communication is connected, guaranteed that the password of importing can promptly and accurately transmit between card reader and smart card.The password of user's input is directly received by described cipher input equipment, rather than by the described consumption terminal reception that is connected in the internet, avoid the disabled user to monitor the password that described consumption terminal is intercepted and captured described user input, improved the security that the user inputs password; And the password that the user imports is transmitted to described smart card by described cipher input equipment, rather than send to described smart card by the described consumption terminal that is connected in the internet, prevented that the disabled user from intercepting and capturing the password of user's input by the internet, improved the security that the user inputs password; And authenticate by the password of described smart card to user's input, the authentication result of described user being inputed password is transmitted to card reader, communicate according to described execution result and the consumption terminal that is connected to the internet by described card reader, prevented that the disabled user from intercepting and capturing the password of described user's input by monitoring described consumption terminal, improved the security that the user inputs password.
By the description of above embodiment, the those skilled in the art can be well understood to the present invention and can realize by the mode that software adds essential common hardware, can certainly pass through hardware, but the former is better embodiment under a lot of situation.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words can embody with the form of software product, this computer software product is stored in the storage medium that can read, floppy disk as computing machine, hard disk or CD etc., comprise some instructions with so that computer equipment (can be personal computer, server, the perhaps network equipment etc.) carry out the described method of each embodiment of the present invention.
The above; only be the specific embodiment of the present invention, but protection scope of the present invention is not limited thereto, anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; can expect easily changing or replacing, all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection domain of claim.

Claims (12)

1, a kind of cipher-code input method is characterized in that, comprising:
Receive the operational order that card reader sends;
Whether detect described operational order is the cryptographic check instruction;
If described operational order is not the cryptographic check instruction, then described operational order is sent to smart card;
If described operational order is described cryptographic check instruction, then receive the password of user's input;
The password of described user's input is encapsulated in the described cryptographic check instruction;
To be packaged with the cryptographic check instruction that described user inputs password and send to smart card.
2, cipher-code input method according to claim 1 is characterized in that, when described operational order was the cryptographic check instruction, this method also comprised: information or the status information of playing the password input.
3, cipher-code input method according to claim 1 is characterized in that, after the cryptographic check order that will be packaged with described input password sent to described smart card, this method also comprised:
Receive the execution result of the described cryptographic check instruction that described smart card returns;
The execution result of described cryptographic check instruction is sent to described card reader.
According to claim 1 described cipher-code input method, it is characterized in that 4, before the password with described user's input was encapsulated in the described cryptographic check instruction, this method also comprises: the password to user's input carried out algorithmic transformation.
5, according to claim 1 described cipher-code input method, it is characterized in that, described input password is encapsulated in the described cryptographic check instruction comprises:
Delete the order parameter and the director data of described cryptographic check instruction;
Described input password is added to the director data part of described cryptographic check instruction;
The order parameter of described cryptographic check instruction is updated to present instruction data corresponding parameters.
6, cipher-code input method according to claim 1 is characterized in that, before the operational order that receives the card reader transmission, this method also comprises:
Receive the reset signal that described card reader sends;
Described reset signal is sent to described smart card;
Receive the reset answer information that described smart card sends;
Described reset answer signal is sent to described card reader;
Receive agreement and parameter selection instruction that described card reader sends;
Described agreement and parameter selection instruction are sent to described smart card.
7, a kind of cipher input equipment is characterized in that, comprising:
First communication module is used to receive the operational order that card reader sends;
The command detection module, whether be used to detect described operational order is the cryptographic check instruction;
Load module, being used for detecting described operational order is cryptographic check when instruction, receives the password of user's input;
The modifying of order module is used for the password of described user's input is encapsulated into described cryptographic check instruction;
Second communication module is used for sending to smart card with being packaged with the cryptographic check instruction that described user inputs password;
It is not cryptographic check when instruction that described second communication module also is used for detecting described operational order, and described operational order is sent to smart card.
8, cipher input equipment according to claim 7 is characterized in that, also comprises:
Playing module is used for playing the information or the status information of password input when described operational order is the cryptographic check instruction.
9, cipher input equipment according to claim 7 is characterized in that,
Described second communication module also is used to receive the execution result of the described cryptographic check instruction that described smart card returns;
Described first communication module also is used for the execution result of described cryptographic check instruction is sent to described card reader.
10, cipher input equipment according to claim 7 is characterized in that, also comprises:
The algorithmic transformation module is used for being encapsulated into the password of before the described cryptographic check instruction user being imported at the password with described user's input and carries out algorithmic transformation.
11, according to claim 7 described cipher input equipments, it is characterized in that,
Described modifying of order module also is used to delete the order parameter and the director data of described cryptographic check instruction;
Described modifying of order module also is used for described input password is added to the director data part of described cryptographic check instruction;
Described modifying of order module also is used for the order parameter of described cryptographic check instruction is updated to present instruction data corresponding parameters.
12, cipher input equipment according to claim 7 is characterized in that,
Described first communication module also is used to receive the reset signal that described card reader sends;
Described second communication module also is used for described reset signal is sent to described smart card;
Described second communication module also is used to receive the reset answer information that described smart card sends;
Described first communication module also is used for described reset answer signal is sent to described card reader;
Described first communication module also is used to receive agreement and the parameter selection instruction that described card reader sends;
Described second communication module also is used for described agreement and parameter selection instruction are sent to described smart card.
CN200910079882.4A 2009-03-13 2009-03-13 Method for inputting password and device thereof Active CN101533539B (en)

Priority Applications (3)

Application Number Priority Date Filing Date Title
CN200910079882.4A CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof
US12/812,042 US8777100B2 (en) 2009-03-13 2010-03-12 Method for inputting a password and a device therefor
PCT/CN2010/071001 WO2010102577A1 (en) 2009-03-13 2010-03-12 Method and device for password inputting

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200910079882.4A CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof

Publications (2)

Publication Number Publication Date
CN101533539A true CN101533539A (en) 2009-09-16
CN101533539B CN101533539B (en) 2014-04-30

Family

ID=41104113

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200910079882.4A Active CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof

Country Status (1)

Country Link
CN (1) CN101533539B (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010102577A1 (en) * 2009-03-13 2010-09-16 北京飞天诚信科技有限公司 Method and device for password inputting
CN106992858A (en) * 2017-04-06 2017-07-28 四川精工伟达智能技术股份有限公司 Data processing method and device
CN115273428A (en) * 2022-07-29 2022-11-01 广东浦尔顿科技有限公司 Car fills electric pile charge detection alarm system

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1258749C (en) * 2003-07-26 2006-06-07 孙诗瑶 Cipher input method and device for financial transaction by reading card
KR20070069344A (en) * 2005-12-28 2007-07-03 매그나칩 반도체 유한회사 Security method of smart card

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010102577A1 (en) * 2009-03-13 2010-09-16 北京飞天诚信科技有限公司 Method and device for password inputting
CN106992858A (en) * 2017-04-06 2017-07-28 四川精工伟达智能技术股份有限公司 Data processing method and device
CN106992858B (en) * 2017-04-06 2020-05-19 四川科道芯国智能技术股份有限公司 Data processing method and device
CN115273428A (en) * 2022-07-29 2022-11-01 广东浦尔顿科技有限公司 Car fills electric pile charge detection alarm system

Also Published As

Publication number Publication date
CN101533539B (en) 2014-04-30

Similar Documents

Publication Publication Date Title
CN113168747B (en) System and method for password authentication of contactless cards
US9886688B2 (en) System and method for secure transaction process via mobile device
CN113168635A (en) System and method for password authentication of contactless cards
US11557164B2 (en) Contactless card personal identification system
JP2022502888A (en) Systems and methods for cryptographic authentication of non-contact cards
CN101334884B (en) Improve the method and system of account transfer safety
WO2014161468A1 (en) Information processing method and system
CN112602104A (en) System and method for password authentication of contactless cards
CN112889046A (en) System and method for password authentication of contactless cards
CN113168631A (en) System and method for password authentication of contactless cards
CN112639854A (en) System and method for password authentication of contactless card
KR20210066787A (en) Systems and methods for signaling potential attacks on contactless cards
KR20210066798A (en) System and method for cryptographic authentication of contactless card
CN101533539B (en) Method for inputting password and device thereof
CN101425901A (en) Control method and device for customer identity verification in processing terminals
WO2015117323A1 (en) Method and device for achieving remote payment
KR100792163B1 (en) Authentication system for on-line banking, and user terminal for the same
KR20210068391A (en) System and method for cryptographic authentication of contactless card
US8777100B2 (en) Method for inputting a password and a device therefor
CN101515930A (en) Method for expanding password input and device thereof
CN201947283U (en) Security certificate device of Internet banking remote payment based on multi-interface safety smart card
CN105405010A (en) Transaction device, transaction system employing same, and transaction method
Vizzarri et al. Security in mobile payments
CN107993068B (en) Online ordering and offline payment system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant