Patents by Inventor Philippe Smadja

Philippe Smadja has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 9935954
    Abstract: This invention concerns the implementation of end-to-end security for the communication between objects in the domain of the Internet of Things (or Internet of Objects). The purpose of the patent is dealing with the setup of secure authorized information channel between data source (M2M device) and data consumers (consumer entity). According to the present invention, the access to a M2M device by a consumer entity (consumer application) is controlled by a M2M authorization server. The M2M authorization server is the entity in charge of managing access rights for the M2M device and makes the decision regarding the access to the resource by the consumer entity (consumer application). The M2M server is an entity that enforces the decision and enables the access to the M2M device.
    Type: Grant
    Filed: November 28, 2014
    Date of Patent: April 3, 2018
    Assignee: GEMALTO SA
    Inventors: Philippe Smadja, Julien Delsuc, Herve Ganem, Francois Ennesser
  • Patent number: 9825917
    Abstract: Method and System for enhanced privacy in privacy-preserving identity solutions. The technology provides for a redirect of a request to generate a proof of an attribute from a service provider to a separator. The separator removes source identification from the attribute-proof request and redirects the attribute-proof request, free of original source identification, to a credential issuer which issues the credential. A security device of the user generates a presentation token from the privacy-preserving credential and presents the presentation token to the service provider as proof of the attribute. Other systems and methods are disclosed.
    Type: Grant
    Filed: December 20, 2013
    Date of Patent: November 21, 2017
    Assignee: GEMALTO SA
    Inventors: HongQian Karen Lu, Laurent Castillo, Philippe Smadja
  • Publication number: 20160337354
    Abstract: This invention concerns the implementation of end-to-end security for the communication between objects in the domain of the Internet of Things (or Internet of Objects). The purpose of the patent is dealing with the setup of secure authorized information channel between data source (M2M device) and data consumers (consumer entity). According to the present invention, the access to a M2M device by a consumer entity (consumer application) is controlled by a M2M authorization server. The M2M authorization server is the entity in charge of managing access rights for the M2M device and makes the decision regarding the access to the resource by the consumer entity (consumer application). The M2M server is an entity that enforces the decision and enables the access to the M2M device.
    Type: Application
    Filed: November 28, 2014
    Publication date: November 17, 2016
    Applicant: GEMALTO SA
    Inventors: Philippe SMADJA, Julien DELSUC, Herve GANEM
  • Publication number: 20160295404
    Abstract: The present invention concerns the implementation of end-to-end security for the communication between a low cost card reader and the remote server. The purpose of the present invention is the establishment of a secure channel between the card reader and the remote server through an un-trusted communication device (e.g. a smart phone or a tablet) that is intrinsically resistant to some basic differential side-channel analysis in a context where there is no secure random number generator and no source of entropy in the card reader, while providing the following characteristics:—Mutual authentication between the card reader and the server—Secure channel based on session keys such that the keys of the secure channel related to a past transaction cannot be re-played, or the session keys of a future transaction cannot be pre-computed by the card reader and later re-use by the card reader in a legitimate transaction.
    Type: Application
    Filed: October 24, 2014
    Publication date: October 6, 2016
    Applicant: GEMALTO SA
    Inventors: Aline GOUGET, Peter GULLBERG, Philippe SMADJA
  • Publication number: 20150341340
    Abstract: Method and System for enhanced privacy in privacy-preserving identity solutions. The technology provides for a redirect of a request to generate a proof of an attribute from a service provider to a separator. The separator removes source identification from the attribute-proof request and redirects the attribute-proof request, free of original source identification, to a credential issuer which issues the credential. A security device of the user generates a presentation token from the privacy-preserving credential and presents the presentation token to the service provider as proof of the attribute. Other systems and methods are disclosed.
    Type: Application
    Filed: December 20, 2013
    Publication date: November 26, 2015
    Applicant: GEMALTO SA
    Inventors: HongQian Karen LU, Laurent CASTILLO, Philippe SMADJA
  • Patent number: 8555366
    Abstract: The invention is a method of managing communication between an electronic token and a remote web server. The token and the server are connected to a same host machine. The token comprises first and second token servers and a memory comprising HTML data. The host machine has an Internet web browser. Said method comprises the steps of: sending a first request from the Internet web browser to the first token server, returning a first answer to the Internet browser, said first answer comprising HTML data including a connection information associated to a script, on the Internet web browser, executing the script associated to the connection information. Script execution establishes a connection to the remote server allowing a two-way communication between the second token server and the remote server through the Internet browser acting as a gateway.
    Type: Grant
    Filed: May 27, 2008
    Date of Patent: October 8, 2013
    Assignee: Gemalto SA
    Inventors: Olivier Joffray, Philippe Smadja
  • Patent number: 8307413
    Abstract: The invention relates to a personal token (10) for authentication in a network comprising a piece of software for initiating an SSL connection by generating a message authenticating said token to a remote server (30) characterized in that the piece of software controls the processing of the message so as to use of a data (12) which is prestored in the token (10) and which is specifically associated with the remote server (30) so that the message can be interpreted only by the specific remote server (30).
    Type: Grant
    Filed: August 24, 2005
    Date of Patent: November 6, 2012
    Assignee: Gemalto SA
    Inventors: Philippe Smadja, Jean-Daniel Aussel
  • Publication number: 20100257232
    Abstract: The invention is a method of managing communication between an electronic token and a remote web server. The token and the server are connected to a same host machine. The token comprises first and second token servers and a memory comprising HTML data. The host machine has an Internet web browser. Said method comprises the steps of: sending a first request from the Internet web browser to the first token server, returning a first answer to the Internet browser, said first answer comprising HTML data including a connection information associated to a script, on the Internet web browser, executing the script associated to the connection information. Script execution establishes a connection to the remote server allowing a two-way communication between the second token server and the remote server through the Internet browser acting as a gateway.
    Type: Application
    Filed: May 27, 2008
    Publication date: October 7, 2010
    Applicant: GEMALTO SA
    Inventors: Olivier Joffray, Philippe Smadja
  • Publication number: 20080263649
    Abstract: The invention relates to a personal token (10) for authentication in a network comprising a piece of software for initiating an SSL connection by generating a message authenticating said token to a remote server (30) characterized in that the piece of software controls the processing of the message so as to use of a data (12) which is prestored in the token (10) and which is specifically associated with the remote server (30) so that the message can be interpreted only by the specific remote server (30).
    Type: Application
    Filed: August 24, 2005
    Publication date: October 23, 2008
    Applicant: AXALTO SA
    Inventors: Philippe Smadja, Jean-Daniel Aussel