A kind of self-distroyable disposable hardware wallet
Technical field
The present invention relates to digital cash fields, and in particular to a kind of self-distroyable disposable hardware wallet.
Background technique
Digital cash is a kind of sabstitute money of electronic form, such as currently popular bit coin, Lay spy coin and PPCoin
Deng.These digital cash depend on cryptographic technique and calibration technology, and the holder of every currency needs to save at least a pair of of private key
And public key, here it is the proofs of individual digital assets.Private key has been grasped, has been equivalent to have grasped the bank account of a people, one
Private key thievery occurs for denier, is also just lost tous les biens corresponding to private key.In digital cash field, the importance of private key
It is self-evident.
Hardware wallet is a container for saving private key, by private key refrigeration in local, externally provides the signature that private key generates,
To effectively prevent private key exposure in a network environment, prevent from being stolen.Correspondingly, for local hardware wallet is stored in
Corresponding safeguard procedures are needed, to prevent private key to be stolen from local.Hardware wallet generally uses ram as storage private key
Container, this there is a kind of risk, i.e., private key may directly read the content in memory by tearing machine open and obtain, that is, private key
It is stolen from local.In addition, in variation special in face of external environment, such as under the variation such as voltage, temperature, frequency, hardware
Wallet is possible to disturbed or memory is distorted, to cause safety problem.Currently, common hardware wallet has on the market:
Ledger, Trezor, keepKey, library mind etc., these hardware wallets do not have tamper self-destroying function, can not prevent hardware money
Private key in packet is locally stolen.Therefore, it is necessary to for hardware wallet local security protection studied and hardware wallet compel
It is essential and one of asks.
Presently, the main of hardware wallet uses crowd based on professional person, therefore, in the sheet of design hardware wallet
When ground security protection, the attacker faced is likely to be with technical expertise abundant, can obtain advanced analysis
Tool can be carried out deep analysis and attack.And tool of the hardware wallet as financial transaction, need higher reliability with
Safety.Therefore, under such attack, it is desirable that hardware wallet Security mechanism with higher, in safety
It needs to be related to various protection in monitoring.
Summary of the invention
The purpose of the present invention is being directed to the corresponding deficiency of the prior art, a kind of self-distroyable disposable hardware wallet is provided, is improved existing
Have safety, the reliability of hardware wallet, once hardware wallet by external attack, then such as by the sensitive information in hardware wallet
The information erasings such as key information, account information prevent from causing more serious safety problem.
The purpose of the present invention is what is realized using following proposal: the invention discloses a kind of self-distroyable disposable hardware wallets, including
Power module, control module, safety monitoring module, memory module, security module, application module, communication module, the power supply mould
Block for give entire hardware wallet power supply, the memory module, security module, application module, communication module respectively with control mould
Block connection, realizes hardware wallet function;The safety monitoring module is connect with control module, the safety monitoring module for pair
Various types of attacks are monitored, and the signal monitored is passed to control module, and the control module is used for according to peace
The signal that full monitoring module monitors arrive judges whether hardware wallet is under attack, for using the ram not powered off to deposit as private key
The hardware wallet of reservoir, if after confirming that the hardware wallet is under attack, the control module is for controlling memory power-off control
Module disconnects the power supply of ram, controls ram power down, the sensitive information in auto-erasing ram.The sensitive information includes close
Key information, account information are exactly key, account password in fact.Sensitive information in hardware wallet is maintained in ram, is such as used
The private key information etc. at family.Normal condition, ram are that have reserce cell in succession always, are powered to ram.
The safety monitoring module includes tamper thimble, and tamper thimble is by the shell of hardware wallet by the electricity on circuit board
Pressure, clock signal winding connection, variation of the control module for monitoring voltage or/and clock frequency;When shell be destroyed or by
After dismantling, tamper thimble is triggered, original complete loopback path is destroyed, and makes voltage that jump or/and clock signal generation occur
Variation, then unsafe incidents have occurred in control module judgement, and control module controls memory according to the triggering of unsafe incidents
Power-off control module disconnects the power supply of ram, controls ram power down, the sensitive information in auto-erasing ram.
The safety monitoring module includes the temperature detecting module for monitoring hardware wallet temperature, the temperature detection mould
Block is connect with control module, and the temperature detecting module is used to the temperature signal of real-time detection passing to control module, described
Control module is used for the temperature signal according to detection, judges whether temperature jumps, if temperature jumps, triggers control
Molding block controls the power supply that memory power-off control module disconnects ram, controls ram power down, the sensitivity in auto-erasing ram
Information.
Control module, communication module, application module, security module are integrated in MCU module.
The communication module includes coding/decoding module, communication protocol module, message distribution module;The application module includes
Account management module, account recovery module, equipment authentication module, trade confirmation module;The security module includes that key generates
Module, hash function module, signature function module, encryption and decryption function module;The memory module includes cipher key storage block, account
Family backup module, facility information memory module.
The MCU module is integrated with USB interface, communicates to connect for establishing with mobile phone, and installation transaction APP, is used on mobile phone
In in the enterprising line number word moneytary operations of mobile phone.
Self-distroyable disposable hardware wallet of the invention further includes one or more of fingerprint module, key module, display module,
The fingerprint module is connect with control module, and the key module is connect with control module, the display module and control module
Connection.Display module uses OLED module.
Self-distroyable disposable hardware wallet of the invention further includes alarm module, and the alarm module is connect with control module, described
Control module carries out abnormal alarm prompt for controlling alarm module.
Present invention has the advantage that the present invention is protected for hardware wallet memory module, when hardware wallet by
When external attack, such as physically tears machine open and uncap, using the variation of voltage, temperature, frequency distort storage content in the environment
Etc. diversified forms attack, will affect the normal operating of hardware wallet, bring danger to financial transaction process.Therefore, of the invention
Safety monitoring module and memory power-off control module are added, after safety monitoring module detects that unsafe incidents occur, is led to
The power supply that memory power-off control module disconnects ram is crossed, ram power down, the sensitive information in auto-erasing ram, example are controlled
Such as key information, account information etc., to protect the safety of hardware wallet key.Pass through self-destructed mode, it is therefore prevented that hardware money
Packet is read memory content after violence is dismantled and leads to private key exposure or attack by external environment so that hardware wallet
The result that content is tampered.Through the above scheme, can effectively meet the needs of hardware wallet local security protection.
The invention patent is compared with existing hardware wallet, and related monitoring range is wider in terms of safety monitoring, can supervise
Different types of attack is measured, thus improves the safety of system.Tool of the hardware wallet as financial transaction, to safety
Property, the requirement of reliability it is higher than common product, the invention patent be exactly triggered from the characteristic of hardware wallet and use environment, if
The tamper self-destroying function for having counted hardware wallet, improves the safety of existing hardware wallet.
Detailed description of the invention
Fig. 1 is the module connection figure of the embodiment of self-distroyable disposable hardware wallet of the invention;
Fig. 2 is the safety monitoring schematic diagram of self-distroyable disposable hardware wallet of the invention.
Specific embodiment
Embodiment one
Referring to Fig. 1 and Fig. 2, present embodiment discloses a kind of self-distroyable disposable hardware wallet, including battery module, control module,
Safety monitoring module, memory power-off control module, memory module, security module, application module, communication module, the battery
Module for give entire hardware wallet power supply, the memory module, security module, application module, communication module respectively with control
Module connection, realizes hardware wallet function;The safety monitoring module, memory power-off control module connect with control module respectively
It connects, the safety monitoring module is used to be monitored various types of attacks, and the signal monitored is passed to control mould
Block, the control module are used for according to the signal that safety monitoring module monitors judging whether hardware wallet is under attack, for
Use the ram not powered off as the hardware wallet of private key store, if after confirming that the hardware wallet is under attack, the control mould
Block is used to control the power supply that memory power-off control module disconnects ram, controls ram power down, the sensitivity in auto-erasing ram
Information, the sensitive information include key information, account information.
The safety monitoring module includes tamper thimble, and tamper thimble is by the shell of hardware wallet by the electricity on circuit board
Pressure, clock signal winding connection, variation of the control module for monitoring voltage or/and clock frequency;When shell be destroyed or by
After dismantling, tamper thimble is triggered, original complete loopback path is destroyed, and makes voltage that jump or/and clock signal generation occur
Variation, then unsafe incidents have occurred in control module judgement, and control module controls memory according to the triggering of unsafe incidents
Power-off control module disconnects the power supply of ram, controls ram power down, the sensitive information in auto-erasing ram.
The safety monitoring module includes the temperature detecting module for monitoring hardware wallet temperature, the temperature detection mould
Block is connect with control module, and the temperature detecting module is used to the temperature signal of real-time detection passing to control module, described
Control module is used for the temperature signal according to detection, judges whether temperature jumps, if temperature jumps, triggers control
Molding block controls the power supply that memory power-off control module disconnects ram, controls ram power down, the sensitivity in auto-erasing ram
Information.
Control module, communication module, application module, security module are integrated in MCU module.By driving mould built in MCU
Block drives respective modules, realizes the hardware wallet function.Private key is stored in local by the hardware wallet, passes through local computing
Generate signature for trading, externally only transmission signature, thus come prevent private key exposure stolen in a network environment by hacker.
The equipment that the communication module mainly solves between hardware wallet and host computer communicates, communication protocol, encoding and decoding with
And communication security protection.The module includes coding/decoding module, communication protocol module, message distribution module.The coding/decoding module,
Realize cross-platform data exchange.The hardware wallet is connect by USB interface with host computer, will by coding/decoding module
Data pass to cell phone application end from embedded device, realize cross-platform data interaction.The communication protocol module is formulated
The communication protocol of hardware wallet and host computer data interaction;The message distribution module is routed by message and arrives message distribution
It is handled in modules.
The security module provides the related function in relation to access control, key agreement and Password Operations in hardware wallet
Energy.The module includes key production module, hash function module, signature function module, encryption and decryption function module.The key is raw
Randomizer function is mainly realized at module, is the main modular that hardware wallet generates account.The hash function module
Mainly solve the relevant cryptography computing function of hardware wallet.The signature function module is for generating trading signature function.Institute
Stating encryption/decryption module realizes the encryption and decryption functions of data storage, data transmission, ensures the safety of data.
The memory module saves the key message in hardware wallet, including cipher key storage block, account backup module,
Facility information memory module.The cipher key storage block stores the main information of hardware wallet, i.e. account key;The account
Backup module carries out account backup for user, prevents the case where losing other than data;The facility information memory module is deposited
Equipment setting information related to user etc. is stored up.
The application module is hardware wallet user oriented application layer program, including account management module, account restore mould
Block, equipment authentication module, trade confirmation module.The account management, account recovery module realize the basic account of hardware wallet
Family function;The equipment authentication module realizes the equipment identifying procedure in hardware wallet and host computer process of exchange;The friendship
Easy confirmation module is the core difference of hardware wallet and software wallet, which completes the confirmation of transaction offline, thus ensure
Key information is constantly in local off-line device, improves safety.
The MCU module is integrated with USB interface, and the integrated USB interface of the MCU module can be used to establish with mobile phone logical
Letter connection, installs relevant transaction APP, user can be in the enterprising line number word moneytary operations of mobile phone on user mobile phone.
The drive module includes OLED drive module, storage drive module, USB drive module, fingerprint drive module.
Embodiment two
Self-distroyable disposable hardware wallet of the invention further includes alarm module, and the alarm module is connect with control module, described
Control module carries out abnormal alarm prompt for controlling alarm module.The other technical characteristics of the present embodiment and one phase of embodiment
Together.
The invention patent mainly protects memory module, after tearing machine event open such as hardware wallet, the invention patent
Hardware wallet then avoids the generation of this problem by tearing the self-destructed technical solution of machine open, i.e. trigger control module control memory is disconnected
Electric control module disconnects the power supply of ram, ram power down, the encrypted content in auto-erasing ram.
The operation principle of the present invention is that: tamper thimble, tamper thimble are installed between the circuit board and shell of hardware wallet
By shell by the signals winding connection such as voltage, clock on circuit board, the variation of MCU monitoring voltage, clock frequency;Work as shell
After being destroyed or being opened, tamper thimble is triggered, original complete loopback path is destroyed, and jump, clock letter occur for voltage
It number changes, is then judged as and unsafe incidents have occurred, trigger reservoir safety protecting mechanism.And control module can also monitor
The temperature of hardware wallet, when temperature occur jump (as use high temperature shell when), then be judged as and unsafe incidents have occurred,
Trigger reservoir safety protecting mechanism.The temperature-monitoring function that the present embodiment can be carried by MCU.It is not powered off to using
Hardware wallet of the ram as private key store is then disconnected reserce cell after unsafe incidents occur for confirmation by monitoring,
Auto-erasing is realized in ram power down.Sensitive information in memory mainly has key information, account information, account and cipher key backup
Information.Sensitive information is stored in ram, and other information can be stored in other memories in such as flash.In ram power down
After realizing auto-erasing, the original program information of hardware wallet is not destroyed.
Present invention incorporates preferred embodiment, two kinds of different schemes are described, but protection scope of the present invention is not limited to
This.Such as safety monitoring module monitoring range can be adjusted with detection means according to practical type, but still fall within the present invention
Protection scope;Such as memory module deletes information and is not limited to key information, account information, carries out overall memory to hardware wallet
It empties and also belongs to the scope of the present invention;Those skilled in the art, which should be understood that, is not departing from the appended claims institute
In the spirit and scope of the present invention of restriction, the present invention can be made a variety of changes in the form and details, be this hair
Bright protection scope.