CN101533539B - Method for inputting password and device thereof - Google Patents

Method for inputting password and device thereof Download PDF

Info

Publication number
CN101533539B
CN101533539B CN200910079882.4A CN200910079882A CN101533539B CN 101533539 B CN101533539 B CN 101533539B CN 200910079882 A CN200910079882 A CN 200910079882A CN 101533539 B CN101533539 B CN 101533539B
Authority
CN
China
Prior art keywords
input
password
cryptographic check
check instruction
cipher
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN200910079882.4A
Other languages
Chinese (zh)
Other versions
CN101533539A (en
Inventor
陆舟
于华章
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Feitian Technologies Co Ltd
Original Assignee
Feitian Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Feitian Technologies Co Ltd filed Critical Feitian Technologies Co Ltd
Priority to CN200910079882.4A priority Critical patent/CN101533539B/en
Publication of CN101533539A publication Critical patent/CN101533539A/en
Priority to US12/812,042 priority patent/US8777100B2/en
Priority to PCT/CN2010/071001 priority patent/WO2010102577A1/en
Application granted granted Critical
Publication of CN101533539B publication Critical patent/CN101533539B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Storage Device Security (AREA)

Abstract

The invention discloses a method for inputting a password and a device thereof, relates to the field of information security and solves the problem that passwords input by users are prone to be intercepted. The method comprises the following steps: receiving operating instructions from a card reader; detecting whether the instructions are cryptographic check instructions or not; if not, sending the operational instructions to a smart card; if yes, receiving the password input by the user; encapsulating the password input by the user in the cryptographic check instructions and sending the cryptographic check instructions which encapsulate input password by the user to the smart card. The invention is mainly used in the process of password inputting to improve safety of the password inputting and facilitates the password not to be easily intercepted in the process of password inputting.

Description

Cipher-code input method and equipment
Technical field
The present invention relates to information security field, relate in particular to cipher-code input method and equipment.
background technology
In recent years, along with the develop rapidly of ecommerce and going deep into of China's commercialization process, increasing people selects to pay by mails when financial transaction, so-called E-Payment by mails refers to the litigant who is engaged in e-commerce transaction, comprise consumer, manufacturer and financial institution, by information network, use safe communication means, the monetary payoff or the fund flow that adopt digital form to carry out.This kind of modes of payments compared with traditional modes of payments, has convenient, fast, efficient, economic advantage, makes people just can complete in the short period of time payment process.
The modes of payments of the POS machine that ATM (automatic teller machine), the market that at present, user uses used in consuming all belongs to this kind of electronic payment mode.While using this kind of modes of payments, the password that user inputs is generally direct to be received by consumption terminal (as: computing machine), and by consumption terminal, the password of user's input is sent to bank service center by internet, by bank service center, the password of user's input is carried out to verification.Because this consumption terminal is connected in internet, user by the process of consumption terminal described in Password Input, the password of inputting is easy to by illegal with monitoring and intercepting and capturing, and at described consumption terminal, the password of user's input is sent to by internet in the process at bank service center, the password of described user input is is more easily intercepted and captured by disabled user, makes the security of the password that user inputs lower.
summary of the invention
The invention provides a kind of cipher-code input method and equipment, make password in input process, be difficult for being intercepted and captured, improve the security of Password Input.
For achieving the above object, the present invention adopts following technical scheme:
A kind of cipher-code input method, comprising:
Receive the operational order that card reader sends;
Whether detect described operational order is cryptographic check instruction;
If described operational order is not described cryptographic check instruction, described operational order is sent to smart card;
If described operational order is described cryptographic check instruction, receive the password of user's input;
The cipher seal of described user's input is installed in described cryptographic check instruction;
The cryptographic check instruction that is packaged with described user and inputs password is sent to smart card;
Receive the execution result of the described cryptographic check instruction that described smart card returns;
The execution result of described cryptographic check instruction is sent to described card reader.
A kind of cipher input equipment, comprising:
First communication module, the operational order sending for receiving card reader, also for sending to described card reader by the execution result of described cryptographic check instruction;
Whether command monitoring module is cryptographic check instruction for detection of described operational order;
Load module, for when detecting that described operational order is cryptographic check instruction, receives the password of user's input;
Modifying of order module, for installing to described cryptographic check instruction by the cipher seal of described user's input;
Second communication module, for sending to smart card by the cryptographic check instruction that is packaged with described user and inputs password, also for receiving the execution result of the described cryptographic check instruction that described smart card returns;
Described second communication module also, for when detecting that described operational order is not cryptographic check instruction, sends to smart card by described operational order.
Adopt after such scheme, when paying by mails, the password of user's input is directly received by described cipher input equipment, then the password of described user's input is sent to smart card, is completed described user and inputted the authentication of password by described smart card.In the process of Password Input, transmission, the password of described user's input does not all have to contact with the consumption terminal that is connected to internet (as: computing machine), prevented that disabled user is by described consumption terminal supervisory user input password, reduced the possibility of intercepting and capturing described user and input password, the security that has improved user cipher input process.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, to the accompanying drawing of required use in embodiment or description of the Prior Art be briefly described below, apparently, accompanying drawing in the following describes is only some embodiments of the present invention, for those of ordinary skills, do not paying under the prerequisite of creative work, can also obtain according to these accompanying drawings other accompanying drawing.
Fig. 1 is the process flow diagram of the embodiment of the present invention 1 cipher-code input method;
Fig. 2 is the composition frame chart of the embodiment of the present invention 1 cipher input equipment;
Fig. 3 is the process flow diagram of the embodiment of the present invention 2 cipher-code input methods;
Fig. 4 is the composition frame chart of the embodiment of the present invention 2 cipher input equipments.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, obviously, described embodiment is only the present invention's part embodiment, rather than whole embodiment.Based on the embodiment in the present invention, those of ordinary skills, not making the every other embodiment obtaining under creative work prerequisite, belong to the scope of protection of the invention.
Embodiment 1
The embodiment of the present invention provides a kind of cipher-code input method, and as shown in Figure 1, the method comprises:
101, cipher input equipment receives the operational order that card reader sends, and the form of this operational order meets 7816 standards (this standard is international smart card specification), and it comprises following components: CLA, INS, P1, P2, LC, DATA;
Wherein, CLA (ClAss, class) byte, presentation directives's type, its length is a byte; INS (INStructic, order) byte, its length is a byte, an INS field represents a specific instruction, i.e. instruction name; P1 and P2 (2, two parameters of Parameters 1 and) byte, the length of P1, P2 is respectively a byte, for checking INS field, or for inputting data; LC (Lengthof Command parameters, Optional Field order parameter), LC is the byte number of order data field; DATA, data field is director data, the value that its length is LC; Briefly, CLA, INS, P1, P2 can be called instruction head, and LC is order parameter, and DATA part is director data;
102, when described cipher input equipment receives after the operational order of described card reader transmission, described operational order is detected, according to the instruction type in the instruction head of described operational order, judge whether described operational order is cryptographic check instruction; If described operational order is not cryptographic check instruction, perform step 103; If described operator password is cryptographic check instruction, perform step 104;
103, cipher input equipment sends to smart card by described operational order, so that smart card operates accordingly according to described operational order, and the execution of end step;
104, described cipher input equipment receives the password of user's input, the password of described user's input has two kinds of modes, the first, within the scope of certain hour, when the keyboard that user carries by cipher input equipment is inputted password, cipher input equipment receives the data of described keyboard input the password of the input using described data as user; The second, through after a period of time, user is not by described keyboard input password, and cipher input equipment produces a string random number automatically, and the password of the input using described random number as user;
105, when described cipher input equipment receives after the password of described user's input, the cipher seal of described user's input is installed in described cryptographic check instruction;
106, cipher input equipment sends to smart card by the cryptographic check instruction that is packaged with described user and inputs password, so that smart card authenticates described input password.
The embodiment of the present invention also provides a kind of cipher input equipment, and as shown in Figure 2, this equipment comprises:
First communication module 21, command detection module 22, load module 23, modifying of order module 24, second communication module 25.
Described cipher input equipment receives by first communication module 21 operational order that card reader sends, this operational order comprises instruction head, order parameter and director data, the information that described instruction head carries is instruction type and instruction name etc., the byte number that order parameter is described director data; When cipher input equipment receives after the operational order that described card reader sends, whether the instruction type of utilizing command detection module 22 to detect in the instruction head of described operational order is cryptographic check instruction; If described operational order is not cryptographic check instruction, described operational order is sent to smart card by second communication module 25; If described operational order is cryptographic check instruction, by load module 23, receive the password of user's input; At load module 23, receive after the password of user's input, utilize modifying of order module 24 that described input cipher seal is installed in described cryptographic check instruction; And by second communication module 25, the cryptographic check instruction that is packaged with described input password is sent to smart card.
Wherein, the password of user's input that described load module 24 receives has two kinds of forms, and the first, within the scope of certain hour, when the keyboard that user carries by cipher input equipment is inputted password, the password of cipher input equipment using the data of keyboard input as user's input; The second, through after a period of time, user is not by described keyboard input password, and cipher input equipment produces a string random number automatically, and the password of the input using described random number as user.
In the embodiment of the present invention, the password of user's input is received by described cipher input equipment, rather than received by the consumption terminal being connected in internet, avoid the disabled user to monitor by internet the possibility that described consumption terminal is intercepted and captured the password of user's input, improved user and input the security of password; And cipher input equipment sends to described smart card by the password of user's input after encapsulation, rather than send to described smart card by the described consumption terminal that is connected to internet, prevented from by disabled user, being intercepted and captured in the process of password transmission of user's input, improved user and input the security of password.
Embodiment 2
The embodiment of the present invention provides a kind of cipher-code input method, and as shown in Figure 3, the method comprises:
301, described cipher input equipment, before receiving the operational order of card reader transmission, needs to set up data communication with card reader and smart card respectively and is connected, and the concrete steps of this connection are:
Cipher input equipment receives the reset signal of card reader transmission and described reset signal is sent to described smart card, after described reset signal is sent to described smart card, cipher input equipment receives the reset answer information of described smart card transmission and described reset answer signal is sent to described card reader, described cipher input equipment is sent to described reset answer information after described card reader, described cipher input equipment receives agreement and the parameter selection instruction of described card reader transmission and described agreement and parameter selection instruction is sent to described smart card, execute after above-mentioned steps, described cipher input equipment has been set up data communication and has been connected respectively with between card reader and smart card,
302, when described cipher input equipment respectively and between described card reader, set up after data communication is connected, described cipher input equipment receives the operational order that described card reader sends, the form of this operational order meets 7816 standards (this standard is international smart card specification), and it comprises following components: CLA, INS, P1, P2, LC, DATA;
Wherein, CLA (ClAss, class) byte, presentation directives's type, its length is a byte; INS (INStructic, order) byte, its length is a byte, an INS field represents a specific instruction, i.e. instruction name; P1 and P2 (2, two parameters of Parameters 1 and) byte, the length of P1, P2 is respectively a byte, for checking INS field, or for inputting data; LC (Lengthof Command parameters, Optional Field order parameter), LC is the byte number of order data field; DATA, data field is director data, the value that its length is LC; Briefly, CLA, INS, P1, P2 can be called instruction head, and LC is order parameter, and DATA part is director data;
303,, when described cipher input equipment receives after the operational order that described card reader sends, need to detect whether the instruction type that the instruction head of described operational order carries is cryptographic check instruction; If the described operational order of fruit is not described cryptographic check instruction, perform step 304; If described operational order is described cryptographic check instruction, perform step 305;
304, cipher input equipment sends to smart card by described operational order, so that smart card operates accordingly according to described operational order, and execution step 309;
305, cipher input equipment is play the information of Password Input, and prompting user can input password, and this Password Input information can be that speech play or screen broadcasting or speech play and screen are play and combined;
306, user receives after the Password Input information of described cipher input equipment broadcasting, if pass through the keyboard input password that input password input equipment carries within the scope of certain hour, described cipher input equipment receives data that described user inputs by keyboard the password of the input using described data as user, if do not input password by described keyboard within the scope of certain hour, cipher input equipment will produce a string random data automatically, and the password of the input using described random number as user;
307, cipher input equipment installs to the cipher seal of the described user's input receiving in described cryptographic check instruction, cipher input equipment prompts status messages simultaneously, and as present, please wait a moment etc.;
Wherein, the cipher seal of user's input is contained in to the process in described cryptographic check instruction, the operational order sending take described card reader illustrates for example as 00200000021234: the instruction head of operational order is as 00200000, wherein CLA is 00, INS is 20, P1 is 00, P2 is 00, represents that this operational order is cryptographic check instruction; Order parameter LC is 02, and the director data that represents this operational order is 2 bytes, the 1234 director data DATA that are this operational order, and concrete encapsulation process is as follows:
Cipher input equipment is deleted order parameter 02 and the director data 1234 of the cryptographic check instruction of described card reader transmission, cipher input equipment adds to the password of described user's input the director data part of described cryptographic check instruction, the password of inputting take user is as 112233 as example, after described director data has supplemented, active user being inputted to the corresponding parameter of password adds in the order parameter part of described cryptographic check instruction, realize the renewal of cryptographic check order parameter, the content that the cipher seal of user's input is installed to the cryptographic check instruction in described cryptographic check instruction is 0020000003112233,
Further, in the cipher seal of user input is installed to cryptographic check instruction before, can also carry out algorithmic transformation to the password of user's input, then the cipher seal of the user's input after algorithmic transformation is installed in cryptographic check instruction; Can use any cryptographic algorithm of the prior art or hash algorithm to carry out algorithmic transformation operation to the password of user's input, for example, the password of user's input that cipher input equipment receives is 4321, use SHA1 algorithm (Secure Hash Algorithm 1, Secure Hash Algorithm) be encrypted calculating, obtain operation result abcd5678, order parameter is 04, director data is abcd5678, and the content of the cryptographic check instruction generating is 0020000004abcd5678.
308, complete after the encapsulation of password of described user input, described cipher input equipment sends to smart card by the checking command that is packaged with described user and inputs password, is convenient to described smart card the password of user's input is authenticated;
309, described cipher input equipment receives the execution result of the described instruction that described smart card returns, when smart card receive be cryptographic check instruction time, what return is the authentication result of the password inputted of user, and this result comprises the password bad that password is correct and user inputs that user inputs; What receive when described smart card is non-cryptographic check instruction, and what return is exactly the execution result of operational order;
The execution result of the described instruction that 310, cipher input equipment sends the smart card receiving sends to described card reader, so that the result that described card reader is carried out according to instruction is carried out next step operation.
The embodiment of the present invention also provides a kind of cipher input equipment, as shown in Figure 4, this equipment comprises: first communication module 41, second communication module 42, command detection module 43, playing module 44, load module 45, modifying of order module 46, algorithmic transformation module 47;
Receive the operational order of card reader transmission at described cipher input equipment before, described card reader and described smart card need respectively and set up data communication between described cipher input equipment to be connected.First communication module 41 is connected for the data communication realizing between described card reader and described cipher input equipment; Second communication module 42 is connected for the data communication realizing between described smart card and described cipher input equipment; When described card reader and described smart card respectively and between described cipher input equipment, set up after data communication is connected, the operational order that described first communication module 41 also sends for receiving card reader, described operational order comprises instruction head, order parameter and director data;
When receiving after the operational order that card reader sends, described cipher input equipment detects by command detection module 43 whether entrained instruction type in the instruction head of the operational order that described card reader sends is cryptographic check instruction; When detecting that described operational order is cryptographic check instruction, cipher input equipment is inputted the information of password by playing module 44 play cuing users, this information can be that speech play or screen display or speech play and screen display combine; When playing module 44 plays after the encrypted message of prompting user input, described cipher input equipment utilizes load module 45 to receive the password of user's input; And the password that load module is received is encapsulated in described cryptographic check instruction by modifying of order module 46; Playing module 44 is play Cipher Processing status information as present described in when the password of user input is encapsulated, and please wait a moment etc.; After described user inputs cipher seal and installs into, described cipher input equipment sends to smart card by second communication module 42 by the cryptographic check instruction that is packaged with described input password;
Smart card is inputted password to the user who receives and is authenticated, and authenticated result is returned to described cipher input equipment, described cipher input equipment utilizes described second communication module 42 to receive the execution result of the described cryptographic check instruction that described smart card returns; And by first communication module 41, the execution result of described cryptographic check instruction is sent to described card reader, so that card reader is carried out next step operation according to the result of cipher authentication.
When described operational order is not cryptographic check instruction, cipher input equipment sends to smart card by described second communication module 42 by described operational order, so that described smart card operates accordingly according to described operational order; At smart card, execute after described operational order, while sending the result of described operational order execution to described cipher input equipment, described cipher input equipment receives by described second communication module 42 result that described operational order is carried out; And by described first communication module 41, the result of described operational order execution is sent to described card reader, so that the result that described card reader is carried out according to described operational order is carried out next step operation.
Wherein, the password of described user's input has two kinds of forms, the first, when user receives after the Password Input information of described cipher input equipment broadcasting, the keyboard input password carrying by cipher input equipment within the scope of certain hour, described load module 45 receives the data of described keyboard input the password using the data of described keyboard input as user's input; The second, when user receives after the Password Input information of described cipher input equipment broadcasting, within the scope of certain hour, by described keyboard, do not input password, described cipher input equipment will produce a string random number automatically, and described load module receives described random number and the password of the input using described random number as user;
Wherein, realize described card reader and described smart card is set up when data communication is connected and comprised respectively and between described cipher input equipment: described cipher input equipment utilizes first communication module 41 to receive the reset signal that described card reader sends, and by second communication module 42, described reset signal is sent to described smart card; When the reset signal that described card reader is sent sends to after smart card, described cipher input equipment utilizes second communication module 42 to receive the reset answer information that described smart card sends, and by first communication module 41, described reset answer signal is sent to described card reader; When the reset answer information that smart card is sent sends to after card reader, described cipher input equipment utilizes first communication module 41 to receive agreement and parameter selection instruction that described card reader sends, and by second communication module 42, described agreement and parameter selection instruction is sent to described smart card; When described agreement and parameter selection instruction are sent to after described smart card, card reader and smart card are respectively and between described cipher input equipment, set up data communication and be connected;
Wherein, described modifying of order module 46 comprises when described input cipher seal is installed to described cryptographic check instruction: the order parameter of the cryptographic check instruction that described cipher input equipment sends described card reader by described modifying of order module 46 and director data are deleted; When having deleted after the order parameter and director data of described cryptographic check instruction, described modifying of order module 46 is also for adding to described director data part by the password of user's input; When the password of described user's input is added after described director data part, described modifying of order module 46 is also for being updated to described order parameter the parameter corresponding to password of described user's input.
Wherein, in described modifying of order module 46, described user is inputted cipher seal install to described cryptographic check instruction in before, can also carry out algorithmic transformation to the password of user's input, as shown in Fig. 4 dotted portion, algorithmic transformation module 47, for the password of user's input is carried out to algorithmic transformation, the method for the password of user's input being carried out to algorithmic transformation comprises encryption and Hash; When described algorithmic transformation module 47, the data of user's input are carried out after algorithmic transformation operation, the order parameter of the cryptographic check instruction that described modifying of order module 46 sends described card reader and director data are deleted; When having deleted after the order parameter and director data of described cryptographic check instruction, described modifying of order module 46 is also for adding to described director data part by the password of the user's input after algorithmic transformation; When the password of the user's input after described algorithmic transformation adds to after described director data part, described modifying of order module 46 is also for being updated to described order parameter the parameter corresponding to password of the user's input after described algorithmic transformation.
In the embodiment of the present invention, receive the operational order of card reader transmission at cipher input equipment before, realize cipher input equipment respectively with card reader and smart card between data communication be connected, guaranteed that the password of input can promptly and accurately transmit between card reader and smart card.The password of user's input is directly received by described cipher input equipment, rather than received by the described consumption terminal being connected in internet, avoid disabled user to monitor described consumption terminal and intercepted and captured the password of described user input, improved user and input the security of password; And by described cipher input equipment, the password of user's input is transmitted to described smart card, rather than send to described smart card by the described consumption terminal being connected in internet, prevented that disabled user from intercepting and capturing the password of user's input by internet, improved user and input the security of password; And by described smart card, the password of user's input is authenticated, the authentication result of described user being inputted to password is transmitted to card reader, by described card reader, according to described execution result and the consumption terminal that is connected to internet, communicated, prevented that disabled user from intercepting and capturing the password of described user's input by monitoring described consumption terminal, improved user and input the security of password.
By the description of above embodiment, those skilled in the art can be well understood to the mode that the present invention can add essential common hardware by software and realize, and can certainly pass through hardware, but in a lot of situation, the former is better embodiment.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words can embody with the form of software product, this computer software product is stored in the storage medium can read, as the floppy disk of computing machine, hard disk or CD etc., comprise that some instructions are in order to make a computer equipment (can be personal computer, server, or the network equipment etc.) carry out the method described in each embodiment of the present invention.
The above; be only the specific embodiment of the present invention, but protection scope of the present invention is not limited to this, any be familiar with those skilled in the art the present invention disclose technical scope in; can expect easily changing or replacing, within all should being encompassed in protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection domain of claim.

Claims (10)

1. a cipher-code input method, is characterized in that, comprising:
Receive the operational order that card reader sends;
Whether detect described operational order is cryptographic check instruction;
If described operational order is not cryptographic check instruction, described operational order is sent to smart card;
If described operational order is described cryptographic check instruction, receive the password of user's input;
The cipher seal of described user's input is installed in described cryptographic check instruction;
The cryptographic check instruction that is packaged with described user and inputs password is sent to smart card;
Receive the execution result of the described cryptographic check instruction that described smart card returns;
The execution result of described cryptographic check instruction is sent to described card reader.
2. cipher-code input method according to claim 1, is characterized in that, when described operational order is cryptographic check instruction, the method also comprises: information or the status information of playing Password Input.
3. according to the cipher-code input method described in claim 1, it is characterized in that, in the cipher seal of described user input is installed to described cryptographic check instruction before, the method also comprises: the password to user's input carries out algorithmic transformation;
4. according to the cipher-code input method described in claim 1, it is characterized in that, described input cipher seal installed to described cryptographic check instruction and comprise:
Delete order parameter and the director data of described cryptographic check instruction;
Described input password is added to the director data part of described cryptographic check instruction;
The order parameter of described cryptographic check instruction is updated to parameter corresponding to present instruction data.
5. cipher-code input method according to claim 1, is characterized in that, before receiving the operational order of card reader transmission, the method also comprises:
Receive the reset signal that described card reader sends;
Described reset signal is sent to described smart card;
Receive the reset answer information that described smart card sends;
Described reset answer signal is sent to described card reader;
Receive agreement and parameter selection instruction that described card reader sends;
Described agreement and parameter selection instruction are sent to described smart card.
6. a cipher input equipment, is characterized in that, comprising:
First communication module, the operational order sending for receiving card reader; Also for the execution result of described cryptographic check instruction is sent to described card reader;
Whether command monitoring module is cryptographic check instruction for detection of described operational order;
Load module, for when detecting that described operational order is cryptographic check instruction, receives the password of user's input;
Modifying of order module, for installing to described cryptographic check instruction by the cipher seal of described user's input;
Second communication module, for sending to smart card by the cryptographic check instruction that is packaged with described user and inputs password; Also for receiving the execution result of the described cryptographic check instruction that described smart card returns;
Described second communication module also, for when detecting that described operational order is not cryptographic check instruction, sends to smart card by described operational order.
7. cipher input equipment according to claim 6, is characterized in that, also comprises:
Playing module, for when described operational order is cryptographic check instruction, plays information or the status information of Password Input.
8. cipher input equipment according to claim 6, is characterized in that, also comprises:
Algorithmic transformation module, for carrying out algorithmic transformation to the password of user's input before the cipher seal of described user's input is installed to described cryptographic check instruction.
9. cipher input equipment according to claim 6, is characterized in that,
Described modifying of order module is also for deleting order parameter and the director data of described cryptographic check instruction;
Described modifying of order module is also for adding to described input password the director data part of described cryptographic check instruction;
Described modifying of order module is also for being updated to the order parameter of described cryptographic check instruction parameter corresponding to present instruction data.
10. cipher input equipment according to claim 6, is characterized in that,
The reset signal that described first communication module also sends for receiving described card reader;
Described second communication module is also for sending to described smart card by described reset signal;
The reset answer information that described second communication module also sends for receiving described smart card;
Described first communication module is also for sending to described card reader by described reset answer signal;
Agreement and parameter selection instruction that described first communication module also sends for receiving described card reader;
Described second communication module is also for sending to described smart card by described agreement and parameter selection instruction.
CN200910079882.4A 2009-03-13 2009-03-13 Method for inputting password and device thereof Active CN101533539B (en)

Priority Applications (3)

Application Number Priority Date Filing Date Title
CN200910079882.4A CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof
US12/812,042 US8777100B2 (en) 2009-03-13 2010-03-12 Method for inputting a password and a device therefor
PCT/CN2010/071001 WO2010102577A1 (en) 2009-03-13 2010-03-12 Method and device for password inputting

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200910079882.4A CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof

Publications (2)

Publication Number Publication Date
CN101533539A CN101533539A (en) 2009-09-16
CN101533539B true CN101533539B (en) 2014-04-30

Family

ID=41104113

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200910079882.4A Active CN101533539B (en) 2009-03-13 2009-03-13 Method for inputting password and device thereof

Country Status (1)

Country Link
CN (1) CN101533539B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010102577A1 (en) * 2009-03-13 2010-09-16 北京飞天诚信科技有限公司 Method and device for password inputting
CN106992858B (en) * 2017-04-06 2020-05-19 四川科道芯国智能技术股份有限公司 Data processing method and device
CN115273428A (en) * 2022-07-29 2022-11-01 广东浦尔顿科技有限公司 Car fills electric pile charge detection alarm system

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1474336A (en) * 2003-07-26 2004-02-11 孙诗瑶 Cipher input method and device for financial transaction by reading card
KR20070069344A (en) * 2005-12-28 2007-07-03 매그나칩 반도체 유한회사 Security method of smart card

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1474336A (en) * 2003-07-26 2004-02-11 孙诗瑶 Cipher input method and device for financial transaction by reading card
KR20070069344A (en) * 2005-12-28 2007-07-03 매그나칩 반도체 유한회사 Security method of smart card

Also Published As

Publication number Publication date
CN101533539A (en) 2009-09-16

Similar Documents

Publication Publication Date Title
CN112805967B (en) System and method for password authentication of contactless card
US9886688B2 (en) System and method for secure transaction process via mobile device
US11341480B2 (en) Systems and methods for phone-based card activation
CN101334884B (en) Improve the method and system of account transfer safety
KR102277060B1 (en) System and method for encryption
US20230368194A1 (en) Encryption method and decryption method for payment key, payment authentication method, and terminal device
CN107784499B (en) Secure payment system and method of near field communication mobile terminal
CN103353973B (en) Banking transaction authentication method and system based on audio authentication
CN113168631A (en) System and method for password authentication of contactless cards
CN105827656A (en) Identity authentication method based on NFC payment and device
CN102611702A (en) System and method for ensuring safety of network payment
CN101533539B (en) Method for inputting password and device thereof
KR20210066787A (en) Systems and methods for signaling potential attacks on contactless cards
KR20210069030A (en) System and method for cryptographic authentication of contactless card
KR20210066798A (en) System and method for cryptographic authentication of contactless card
WO2015117323A1 (en) Method and device for achieving remote payment
CN104077688A (en) Internet payment method based on IC card and relevant device
US8777100B2 (en) Method for inputting a password and a device therefor
KR20210068391A (en) System and method for cryptographic authentication of contactless card
CN102194175A (en) Safety payment method and safety payment terminal
CN107993068B (en) Online ordering and offline payment system
CN113168747B (en) System and method for password authentication of contactless cards
Nezhad et al. Security Analysis of Mobile Point-of-Sale Terminals
TW201928842A (en) Ticket top-up system, method and mobile apparatus

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant