EP1044435A1 - Verfahren und vorrichtung zum behandeln vertraulicher kodewörter - Google Patents

Verfahren und vorrichtung zum behandeln vertraulicher kodewörter

Info

Publication number
EP1044435A1
EP1044435A1 EP98964554A EP98964554A EP1044435A1 EP 1044435 A1 EP1044435 A1 EP 1044435A1 EP 98964554 A EP98964554 A EP 98964554A EP 98964554 A EP98964554 A EP 98964554A EP 1044435 A1 EP1044435 A1 EP 1044435A1
Authority
EP
European Patent Office
Prior art keywords
code
function
test
transformation
procedure
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
EP98964554A
Other languages
English (en)
French (fr)
Other versions
EP1044435B1 (de
Inventor
Claude Meggle
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
GROUPEMENT DES CARTES BANCAIRES "CB"
Original Assignee
GROUPEMENT DES CARTES BANCAIRES "CB"
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by GROUPEMENT DES CARTES BANCAIRES "CB" filed Critical GROUPEMENT DES CARTES BANCAIRES "CB"
Publication of EP1044435A1 publication Critical patent/EP1044435A1/de
Application granted granted Critical
Publication of EP1044435B1 publication Critical patent/EP1044435B1/de
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1025Identification of user by a PIN code

Definitions

  • Patent family documents are indicated in the appendix.
  • PCT / ISA 210 form (continuation of second sheet) (July 1992) Information relating to members of patent families
  • PCT / ISA 210 form (appendix patent families) (July 1992) Method and device for processing confidential codes
  • the invention relates to the field of code devices and code processing methods. More specifically, the invention relates to the field of systems with confidential access code, in particular, devices and methods making it possible to secure access to certain operations such as transactions, in particular electronic banking.
  • This numerical code typically 2 to 12 digits, associated with a holder identification profile authorized to hold this code, allows the holder to use certain protected functions, and only knowing the code allows the functions to be unlocked.
  • An object of the invention is to simplify this type of device and process, while minimizing the risks run by the holder of a code, victim of such attacks and while preserving the protection of the functions to be protected.
  • the invention proposes a method for processing confidential codes in a system with secure functions comprising the steps consisting in: - receiving a code;
  • the code in order to check a second authorization, conditioned by a second code distinct from the first code, to trigger at least a second function by not revealing the fact that the code does not allow not get the first clearance; characterized in that the step of verifying the second authorization comprises the operations consisting in obtaining a new code, by a second reverse transformation of a first simple transformation allowing the holder of the first code to obtain the second code from the first code, and execute the first authorization verification step again to test the new code.
  • the victim can reveal a second code to the aggressor; thanks to the method according to the invention, this second code is distinguished from a first code, empowered to access a first function; there is then no access to the first function which remains protected; but this second code can be empowered to trigger a second function which can serve as a decoy, intended to divert the aggressor from the project to access the first function.
  • the attacker diverted from his project will not seek to further threaten his victim for whom the risks incurred are therefore reduced.
  • this process remains simple to implement, since the step of verifying the first authorization is common to the test of the code entered directly in the system with secure functions and to the test of the code obtained after the second transformation.
  • the first function of the method according to the invention is a banking transaction.
  • the steps of the method according to the invention consisting in verifying the first and second authorizations, involve a microprocessor card.
  • said first simple transformation of the method according to the invention is carried out by an elementary shift of one character of the first code.
  • the method according to the invention also comprises an invalidation step, if the step consisting in verifying the first authorization has been tested more than a determined number of times without success.
  • the second function of the method according to the invention, consists in displaying a message chosen randomly from among several messages indicating that access to the first function is not possible, without however specifying that the code is not that allowing to obtain the first authorization.
  • the second simple transformation of the method according to the invention is a function of parameters accessible on the microprocessor card.
  • the invention is a device for controlling access to secure functions, with confidential code.
  • this device comprises:
  • the means for verifying the second authorization allow the operations consisting in obtaining a new code, by a second inverse transformation of a first simple transformation allowing the holder of the first code to obtain the second code at from the first code, and execute the verification step of the first authorization again to test the new code.
  • the device according to the invention is a terminal for a bank card.
  • the device according to the invention is used to secure a bank transaction.
  • the steps consisting in verifying the first and second authorizations involve a digitally registered user profile.
  • the means of the device according to the invention, to verify the first and second authorizations involve a microprocessor card.
  • said simple transformation of the device according to the invention is carried out by an elementary shift of one character of the first code.
  • the device according to the invention further comprises means of invalidation implemented if the first authorization has been tested more than a determined number of times without success.
  • the second function of the device according to the invention is carried out by means which display a message chosen randomly from among several messages indicating that access to the first function is not possible, without however specifying that the code is not DCui allowing to obtain the first authorization.
  • the second simple transformation of the device according to the invention is a function of parameters accessible on the microprocessor card.
  • - Figure 1 is a diagram schematically representing the main units making up a particular device for the implementation of the invention.
  • - Figure 2 is a synopsis of all the steps of an example of implementation of the method according to the invention.
  • the device is an automatic cash dispenser.
  • FIG. 1 it conventionally comprises in itself a central unit 1 which processes and exchanges information with a reader 2 of bank cards 10, and a keyboard 3 (or any other interactive input device), for controlling a mechanism 4 for distributing banknotes, the reader 2. for bank cards 10 and producing messages displayed on a screen 5.
  • the processing of information and the control of the mechanisms composing the device according to the invention by the central unit 1, is based on exchanges with a memory unit 6.
  • a card 10 is provided with a microprocessor.
  • This microprocessor corresponds to a holder profile authorized to hold a first code.
  • the holder also holds a second code which will be used as a backup code as will be explained below.
  • the user therefore has two codes.
  • the first code is its usual confidential code, empowered to access a first function, in this case, for the example described here, an electronic payment transaction of the automatic ticket distribution type.
  • the second code is a backup code. It can be revealed by a user threatened by an attacker instead of his confidential code.
  • This second code is easily memorized and is obtained by a first simple arithmetic transformation starting from the first.
  • the second code differs from the first code only by a digit, which digit is advantageously modified only by plus 1 or minus 1 with respect to the digit of the same rank in the first and second codes.
  • the device according to the invention is implemented according to the following method, described with reference to FIG. 2.
  • a user When a user wishes to obtain a first function 180, in in this case the distribution of tickets on the part of the device according to the invention, he inserts his card 10 into the reader 2 and composes a code on the keyboard 3.
  • the central unit 1 then begins at the start 100 a test procedure, with successive steps as indicated below.
  • a test procedure followed by successive steps as indicated below.
  • An indicator 110 testifying to the fact that the code has not yet been transformed is generated.
  • the code is tested, by a code 120 test to verify a first authorization.
  • test 120 gives a negative result, it is because the code supplied to the device according to the invention does not correspond to the first code held by the user, that is to say his confidential code.
  • a first indicator test 130 is then carried out. If the indicator testifies to the fact that the code has not yet been transformed, the central unit 1 initiates a second authorization test and proceeds to a derivation 140 of a second transformation, opposite of a first simple transformation allowing the holder of a first code to obtain a second code (his backup code) from the first code.
  • An indicator 145 testifying to the fact that the derivation 140 has been carried out is generated.
  • This code obtained by derivation 140 is used to reproduce the verification step of the first authorization, at the level of the code test 120. If after the derivation 140, the code obtained still does not correspond to the first code (usual confidential code) is that the code entered at the beginning 100 was not the second code (backup code). For example, it could be a typing error on the part of the user.

Landscapes

  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Storage Device Security (AREA)
  • Compression, Expansion, Code Conversion, And Decoders (AREA)
  • Communication Control (AREA)
  • Record Information Processing For Printing (AREA)
EP98964554A 1997-12-31 1998-12-30 Verfahren und vorrichtung zum behandeln vertraulicher kodewörter Expired - Lifetime EP1044435B1 (de)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
FR9716786A FR2773250B1 (fr) 1997-12-31 1997-12-31 Procede et dispositif de traitement de codes confidentiels
FR9716786 1997-12-31
PCT/FR1998/002918 WO1999035621A1 (fr) 1997-12-31 1998-12-30 Procede et dispositif de traitement de codes confidentiels

Publications (2)

Publication Number Publication Date
EP1044435A1 true EP1044435A1 (de) 2000-10-18
EP1044435B1 EP1044435B1 (de) 2002-11-06

Family

ID=9515368

Family Applications (1)

Application Number Title Priority Date Filing Date
EP98964554A Expired - Lifetime EP1044435B1 (de) 1997-12-31 1998-12-30 Verfahren und vorrichtung zum behandeln vertraulicher kodewörter

Country Status (9)

Country Link
EP (1) EP1044435B1 (de)
AT (1) ATE227454T1 (de)
CA (1) CA2316818A1 (de)
DE (1) DE69809292T2 (de)
DK (1) DK1044435T3 (de)
ES (1) ES2186249T3 (de)
FR (1) FR2773250B1 (de)
PT (1) PT1044435E (de)
WO (1) WO1999035621A1 (de)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FR2874440B1 (fr) 2004-08-17 2008-04-25 Oberthur Card Syst Sa Procede et dispositif de traitement de donnees

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US3633167A (en) * 1970-05-25 1972-01-04 Phinizy R B Security system
JPS59151261A (ja) * 1983-02-18 1984-08-29 Fujitsu Ltd 取引保障方式
GB2281649B (en) * 1992-05-08 1995-11-29 Wesco Software Ltd Authenticating the identity of an authorised person
US5354974A (en) * 1992-11-24 1994-10-11 Base 10 Systems, Inc. Automatic teller system and method of operating same
NL9202113A (nl) * 1992-12-07 1994-07-01 Nederland Ptt Werkwijze voor het beveiligen van een smart card systeem.

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See references of WO9935621A1 *

Also Published As

Publication number Publication date
PT1044435E (pt) 2003-03-31
FR2773250B1 (fr) 2000-03-10
ATE227454T1 (de) 2002-11-15
ES2186249T3 (es) 2003-05-01
WO1999035621A1 (fr) 1999-07-15
DK1044435T3 (da) 2003-03-03
EP1044435B1 (de) 2002-11-06
DE69809292T2 (de) 2003-07-17
FR2773250A1 (fr) 1999-07-02
DE69809292D1 (de) 2002-12-12
CA2316818A1 (fr) 1999-07-15

Similar Documents

Publication Publication Date Title
EP0628935B1 (de) Verfahren zum Beglaubigen eines tragbaren Objektes mittels eines off-line Terminals, entsprechendes, tragbares Objekt und entsprechendes Terminal
US5534683A (en) System for conducting transactions with a multifunctional card having an electronic purse
CA2281816C (en) Method for authorization check
EP0077238B1 (de) Verfahren und Einrichtung zum Feststellen der Authentizität der Unterschrift einer unterschriebenen Nachricht
CN100349165C (zh) 使用便携终端的电子结算方法
US20040248555A1 (en) User authentication system and method
US20050096124A1 (en) Parimutuel wagering system with opaque transactions
US20050153779A1 (en) Method and system for lottery transactions over an open network
GB2391646A (en) Secure web page authenication method using a telephone number or SMS message
CN107918911A (zh) 用于执行安全网上银行交易的系统和方法
EP1460593A1 (de) Gesichertes Zahlungsterminal
EP1044435A1 (de) Verfahren und vorrichtung zum behandeln vertraulicher kodewörter
EP1600847A1 (de) Universale Vorrichtung zur gesicherten Erfassung vertraulicher Daten
RU2479030C2 (ru) Система и способ контроля электронных финансовых операций
CN1315711A (zh) 在线支付方法
EP1428183B1 (de) Verfahren und system mit einer vom benutzer tragbaren einrichtung zum validieren einer anforderung mit einer entität
EP2724305B1 (de) Verfahren für dematerialisierte transaktionen
CN1952987A (zh) 自动交易装置
FR2710769A1 (fr) Système de traitement des données d'une carte à microcircuit, carte et lecteur pour ce système et procédé de mise en Óoeuvre.
EP1465128A1 (de) Transaktionsvorrichtung zum Verarbeiten von Transaktionen mittels eines Kommunikationsnetzwerke und System mit dieser Transaktionsvorrichtung
EP3091501A1 (de) Verfahren zur teilnahme an einer lotterie, das über ein mobiles endgerät ausgeführt werden kann
WO2002046984A1 (fr) Procede securise de transaction entre un acheteur et un vendeur
Sagar et al. Design concept and network reliability evaluation of ATM system
EP0501888B1 (de) Verfahren und Anordnung zur Zugriffskontrolle eines Anwenders zu einem Datenverarbeitungssystem an einem unter mehreren möglichen Zugriffspunkten
Hernberg Follow the money: tools and tasks of fraud management in online money gaming

Legal Events

Date Code Title Description
PUAI Public reference made under article 153(3) epc to a published international application that has entered the european phase

Free format text: ORIGINAL CODE: 0009012

17P Request for examination filed

Effective date: 20000724

AK Designated contracting states

Kind code of ref document: A1

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE

GRAG Despatch of communication of intention to grant

Free format text: ORIGINAL CODE: EPIDOS AGRA

17Q First examination report despatched

Effective date: 20020204

GRAG Despatch of communication of intention to grant

Free format text: ORIGINAL CODE: EPIDOS AGRA

GRAH Despatch of communication of intention to grant a patent

Free format text: ORIGINAL CODE: EPIDOS IGRA

GRAH Despatch of communication of intention to grant a patent

Free format text: ORIGINAL CODE: EPIDOS IGRA

GRAA (expected) grant

Free format text: ORIGINAL CODE: 0009210

AK Designated contracting states

Kind code of ref document: B1

Designated state(s): AT BE CH CY DE DK ES FI FR GB GR IE IT LI LU MC NL PT SE

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: IE

Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT

Effective date: 20021106

Ref country code: AT

Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT

Effective date: 20021106

REF Corresponds to:

Ref document number: 227454

Country of ref document: AT

Date of ref document: 20021115

Kind code of ref document: T

REG Reference to a national code

Ref country code: GB

Ref legal event code: FG4D

Free format text: NOT ENGLISH

REG Reference to a national code

Ref country code: CH

Ref legal event code: EP

REG Reference to a national code

Ref country code: IE

Ref legal event code: FG4D

Free format text: FRENCH

REF Corresponds to:

Ref document number: 69809292

Country of ref document: DE

Date of ref document: 20021212

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: LI

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20021231

Ref country code: CY

Free format text: LAPSE BECAUSE OF FAILURE TO SUBMIT A TRANSLATION OF THE DESCRIPTION OR TO PAY THE FEE WITHIN THE PRESCRIBED TIME-LIMIT

Effective date: 20021231

Ref country code: CH

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20021231

REG Reference to a national code

Ref country code: GR

Ref legal event code: EP

Ref document number: 20030400355

Country of ref document: GR

REG Reference to a national code

Ref country code: DK

Ref legal event code: T3

REG Reference to a national code

Ref country code: PT

Ref legal event code: SC4A

Free format text: AVAILABILITY OF NATIONAL TRANSLATION

Effective date: 20030128

GBT Gb: translation of ep patent filed (gb section 77(6)(a)/1977)

Effective date: 20030320

REG Reference to a national code

Ref country code: ES

Ref legal event code: FG2A

Ref document number: 2186249

Country of ref document: ES

Kind code of ref document: T3

REG Reference to a national code

Ref country code: IE

Ref legal event code: FD4D

Ref document number: 1044435E

Country of ref document: IE

REG Reference to a national code

Ref country code: CH

Ref legal event code: PL

PLBE No opposition filed within time limit

Free format text: ORIGINAL CODE: 0009261

STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: NO OPPOSITION FILED WITHIN TIME LIMIT

26N No opposition filed

Effective date: 20030807

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: GR

Payment date: 20031219

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: SE

Payment date: 20031222

Year of fee payment: 6

Ref country code: MC

Payment date: 20031222

Year of fee payment: 6

Ref country code: FI

Payment date: 20031222

Year of fee payment: 6

Ref country code: DK

Payment date: 20031222

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: GB

Payment date: 20031224

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: PT

Payment date: 20031226

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: ES

Payment date: 20031230

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: NL

Payment date: 20031231

Year of fee payment: 6

Ref country code: DE

Payment date: 20031231

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: LU

Payment date: 20040106

Year of fee payment: 6

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: BE

Payment date: 20040217

Year of fee payment: 6

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: FI

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041204

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: LU

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041230

Ref country code: GB

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041230

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: SE

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041231

Ref country code: MC

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041231

Ref country code: ES

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041231

Ref country code: BE

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20041231

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: DK

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20050103

BERE Be: lapsed

Owner name: GROUPEMENT DES CARTES BANCAIRES *CB

Effective date: 20041231

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: PT

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20050630

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: NL

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20050701

Ref country code: DE

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20050701

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: GR

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20050704

REG Reference to a national code

Ref country code: DK

Ref legal event code: EBP

EUG Se: european patent has lapsed
GBPC Gb: european patent ceased through non-payment of renewal fee

Effective date: 20041230

REG Reference to a national code

Ref country code: PT

Ref legal event code: MM4A

Effective date: 20050630

NLV4 Nl: lapsed or anulled due to non-payment of the annual fee

Effective date: 20050701

PG25 Lapsed in a contracting state [announced via postgrant information from national office to epo]

Ref country code: IT

Free format text: LAPSE BECAUSE OF NON-PAYMENT OF DUE FEES

Effective date: 20051230

REG Reference to a national code

Ref country code: ES

Ref legal event code: FD2A

Effective date: 20041231

BERE Be: lapsed

Owner name: GROUPEMENT DES CARTES BANCAIRES *CB

Effective date: 20041231

REG Reference to a national code

Ref country code: FR

Ref legal event code: CA

REG Reference to a national code

Ref country code: FR

Ref legal event code: PLFP

Year of fee payment: 18

REG Reference to a national code

Ref country code: FR

Ref legal event code: PLFP

Year of fee payment: 19

REG Reference to a national code

Ref country code: FR

Ref legal event code: PLFP

Year of fee payment: 20

PGFP Annual fee paid to national office [announced via postgrant information from national office to epo]

Ref country code: FR

Payment date: 20171027

Year of fee payment: 20