Abstract: The present invention relates to a web server having a web application using published API of one or more cloud storage providers, said web application being dedicated to secure and economical sharing of encrypted files residing at the cloud storage providers, said files being managed under a virtual folder which is shared by a group of different entities.
Abstract: The present invention relates to a method to manage a One Time Password key, referenced OTP key, used in an OTP algorithm in a user device having access to an unsafe storage including the steps of retrieving a Personal Identification Number, named PIN, of a user of the user device, deriving a symmetric key from the PIN, encrypting the OTP key using the derived symmetric key, storing the encrypted OTP key in the unsafe storage, decrypting the OTP key using the derived symmetric key, and generating a next OTP key using an incremental parameter, wherein the start value of the incremental parameter of the OTP key generation is random.
Type:
Application
Filed:
March 25, 2015
Publication date:
April 13, 2017
Applicant:
GEMALTO SA
Inventors:
Martin LANSLER, Sébastien PETIT, Guillaume PIERQUIN
Abstract: The invention is a method for loading data into a portable secure token comprising a plurality of security domains. A first security domain comprises a first administration agent and a second security domain comprises a second administration agent. A remote application server comprises a first data to be provided to the second administration agent. A syndication server, which is distinct from the remote application server, contains a list which comprises a reference to the first data. The list is sent in response to a polling request that is sent by the first administration agent. This list is comprised in a polling response which is sent by the syndication server.
Type:
Grant
Filed:
October 28, 2011
Date of Patent:
April 11, 2017
Assignee:
GEMALTO SA
Inventors:
Patrice Amiel, Xavier Berard, Eric Preulier, Frederic Gallas
Abstract: A base station in a cellular radio network and user equipment assigned to a cell are linked by an air interface for communication on a respective communication channel in a communication band. The same communication band is common to at least one of the cells and to the user equipment on the respective communication channel of a cell. A jamming transmitter is detected by decoding a cell, by way of successful reading of control information of the cell, detecting a wideband power parameter representative of the communication band, and detecting a channel power parameter representative for a part of the communication band that is a communication channel. A narrowband jamming transmitter is indicated in the case that decoding of the cell failed, the wideband power parameter is not above a first threshold, and the channel power parameter is above a second threshold.
Type:
Grant
Filed:
November 18, 2013
Date of Patent:
April 4, 2017
Assignee:
GEMALTO M2M GMBH
Inventors:
Volker Breuer, Lars Wehmeier, Bernd Rohl
Abstract: A first device stores a subscription manager and at least two subscriptions. A first subscription is active and a second subscription is non-active. A second device sends a request for switching to the second subscription. The subscription manager sets a first variable relating to a next active subscription to the second subscription. The subscription manager sends to the first device a message requesting the first device to re-launch an execution of the subscription manager and to read data. The first device sends to the subscription manager a message including a command for re-launching an execution of the subscription manager. The subscription manager de-activates, based upon the first variable value, the first subscription. The subscription manager activates, based upon the first variable value, the second subscription, and sends to the first device operating system data relating to the second subscription, as a current active subscription.
Type:
Grant
Filed:
December 17, 2014
Date of Patent:
April 4, 2017
Assignee:
GEMALTO SA
Inventors:
Nicolas Roussel, Nicolas Joubert, Florent Labourie, Jérôme Duprez, Frédéric Faure
Abstract: The invention relates to a wireless communication device (UE) configured to be operating in a wireless cellular network supporting a wireless technology standard. For solving the problem of blockage of the UE in regards with one cellular network the UE makes a comparison of communication conditions in downlink and in uplink in order to detect unbalanced communication conditions between downlink and uplink channels and, in case downlink communication conditions are acceptable, but uplink communication conditions show a degradation, initiate an inter-RAT reselection.
Abstract: The present invention relates to a method for providing data during an Application Selection process from a processing device to an interface device, wherein it comprises a step of modifying dynamically at least a part of said data from transaction to transaction, said at least part of data being a dynamic data.
Abstract: The invention relates to a method of communicating data with an electronic device, comprising the step of receiving signals conveyed by an electrical lead. The method is distinguished in that it comprises the following steps: fitting an RF radiofrequency interface with electrical contacts in the device, extracting signals from the electrical lead, and injecting signals resulting from the extracted signals, in the form of frames of radiofrequency signals in the RF interface with electrical contacts. The invention also relates to a radiofrequency communication device, a system comprising the device and a machine using the device.
Abstract: The invention relates to a method for switching a subscription of a user from a first MNO (1) to a second MNO (2), characterized in that it comprises requesting to a remoter server switching from the first MNO to the second MNO and temporary storing data updates related to the second MNO in a dedicated file.
Abstract: A method for deploying credentials in a server and a client system including three devices. The second device has primary credentials including a public key, a private key and a primary certificate. After successful authentication of a user, the first device generates a new private key/public key pair and wraps the new private key. After successful authentication of the user, the second device derives a new certificate comprising the new public key, the new certificate having the same usage specified in the primary certificate. The second device signs the new certificate using the private key of the primary credentials. The third device forwards to the server the primary certificate and the new credentials combining the new public key, the wrapped private key and the new certificate. The server verifies the chain of trust of the new credentials and, in case of successful verification, associates the new credentials to the user.
Abstract: The invention relates to a method 30 for managing at least one processing relating to an application supported or to be supported by a token. The token comprises means for processing data, means for storing data and means for communicating with outside. According to the invention, the method comprises steps in which at least one token user is required to give or not to give her/his authorization 38 before executing the at least one processing relating to an application supported or to be supported by the token; and the token verifies 316 whether the at least one token user gives or does not give her/his authorization. The invention relates also to a corresponding token likely to cooperate with a terminal.
Abstract: The invention relates to a secured element (9) including: —a communication interface (91); —an integrated circuit comprising a security module (93) comprising encryption based security features and configured to process authentication requests received on the communication interface. The secured element further. includes a MEMS microphone (94), said microphone being configured to capture a sound sequence and to provide the captured sound sequence to the security module.
Type:
Grant
Filed:
May 24, 2012
Date of Patent:
February 28, 2017
Assignee:
GEMALTO SA
Inventors:
Yvon Gressus, Benoit Arnal, Bernard Deniau
Abstract: The present invention relates to a method to provide a dynamic change of security configurations in an integrated circuit product adapted to execute at least a given critical process and susceptible to be attacked. The method comprises the steps of tracking successive executions of the given critical process, and after a given number of such executions, triggering a change of the security configuration.
Abstract: The invention relates to a communication system comprising a terminal (10), a first device (1) adapted to exchange data with said terminal (10), a second device (2) adapted to exchange data with said terminal (10), characterized in that it comprises means for pairing said first (1) and second (2) devices so as said second device (2) exchanges data with said terminal (10) through said first device (1).
Abstract: The invention is a method of communicating between a caller device and an executor device wherein the executor device comprises a memory having a layout which defines formats and addresses used for storing data in the memory. The executor device comprises an application including a service and the method comprises the steps of: providing the caller device with the layout and an indicator reflecting the service during the handshake phase, sending to the executor device a data block corresponding to a command targeting the service, wherein the data block complies with the layout and is devoid of metadata, sending to the caller device a response block which complies with the layout and which corresponds to a result generated by execution of the command.
Abstract: The invention relates to a data carrier having a see-through portion (24) that allows revealing security features (36) with a different appearance on each of its sides (S1, S2) under special lighting conditions, and a method for making such a data carrier. The see-through portion has an improved security, which is more difficult to reproduce by infringers.
Abstract: The invention relates to a method for fabricating an electronic device comprising an electronic/electrical circuit, wherein it comprises the following steps: formation of a support-body comprising a battery inside; making of a cavity emerging on the surface of the support-body, said cavity revealing connection terminals of the battery; connection of an electronic/electrical circuit to the battery via the terminals situated in said cavity; exchanging of data in the electronic/electrical circuit by electrical contact. The invention also relates to the corresponding electronic device.
Abstract: The invention relates to a method for informing on the presence of a remote devices holder, said remote devices holder carrying a remote device (10,11), characterized in that it detects when the remote devices holder (1) enters under coverage of a femto-cell (2,20) or leaves the coverage of the femto-cell (2,20).
Abstract: To authorize a data transaction, a terminal reads user account information from a device. The terminal sends, through a payment network, to a first server a request for authorizing a transaction accompanied with the account information. The first server sends to a device a request for a user approval relating to a transaction. The device requests whether the user approves a requested transaction authorization. Only if the user approves the requested transaction authorization, the device sends to the first server a request for authorizing a transaction and an identifier relating to the device. The first server retrieves, based upon the at identifier relating to the device, the account information. The first server sends to a second server a request for authorizing a transaction and the account information. The second server sends, through the first server and the payment network, to the terminal, either a transaction authorization or a transaction refusal.
Abstract: The invention relates to a smartcard receiving device, comprising a contact interface (11) for communicating with the received smartcard (2); a remote communication interface (13) for communicating with a first remote device (3); a protocol bridge (12) designed to establish a transaction with the received smartcard (2) through the contact interface (11). The smartcard receiving device further comprises a communicating device detector (14, 15) adapted to detect a second remote device (5) communicating according to a remote communication protocol different from the communication protocol used by said remote communication interface (13). The protocol bridge (12) interrupts the transaction with the received smartcard (2) when the second remote device (5) communicating according to said different remote communication protocol is detected.