Redesigning secure element access control for NFC enabled android smartphones using mobile trusted computing

Waqar Anwar, Dale Lindskog, Pavol Zavarsky, Ron Ruhl · International Conference on Information Society · 2013

For mobile payments using Near Field Communication (NFC), a Secure Element (SE) is the preferred place to securely store cardholder data. This paper summarizes shortcomings in Global Platform's (GP) SE access control specifications and weaknesses in its implementation by the Android Operating System (OS). Moreover, a coherent model for an alternate and secure SE access control is proposed using SE and Mobile Trusted Module (MTM) specifications. This new model is secured by design and can be implemented using existing specifications, technologies and hardware.

Read the paper · More papers on PaperTik