Host-based Card Emulation: development, security, and ecosystem impact analysis

被引:8
作者
Alattar, Mouhannad [1 ]
Achemlal, Mohammed [1 ]
机构
[1] Orange Labs, 42 Rue Coutures, Caen, France
来源
2014 IEEE INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS, 2014 IEEE 6TH INTL SYMP ON CYBERSPACE SAFETY AND SECURITY, 2014 IEEE 11TH INTL CONF ON EMBEDDED SOFTWARE AND SYST (HPCC,CSS,ICESS) | 2014年
关键词
HCE; NFC; mobile payments; security;
D O I
10.1109/HPCC.2014.85
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Equipping a smartphone with NFC (Near Field Communication) capacity adds new functions to it. One of these functions is the emulation of a contactless card, which enables the smartphone to realize commercial transactions (e.g. payment, loyalty and ticketing) through NFC enabled Point of Sale (POS). Initially, the card emulation related services were uniquely hosted on a secure element, e.g., SIM, and thus, their protection against security threats is ensured. Recently, Android proposed the Host-based Card Emulation (HCE) that enables an ordinary application to emulate a contactless card. Hence, the complexity and outlay of emulating a contactless card are reduced. In this paper, we clarify the concept of HCE, and present its history and current utilizations. We further compare HCE with SE-based card emulation in terms of security and development issues. Finally, we discuss the impact of HCE on the ecosystem of the NFC-enabled services.
引用
收藏
页码:506 / 509
页数:4
相关论文
共 13 条
  • [1] [Anonymous], 2004, 18092 ISOIEC
  • [2] [Anonymous], 2010, LUNAR BASES SPACE AC
  • [3] Badawy W., 2003, KLUWER INT SERIES EN, V711
  • [4] Cheong S.-N., 2014, EXPERT SYSTEMS APPL, V41
  • [5] Secure Mobile Payment Service Using Vibration Cues on Near Field Communication Smartphone
    Choi, Okkyung
    Han, Seolhwa
    Moon, Seungbin
    Kim, Kangseok
    Yeh, Hongjin
    Shon, Taesik
    [J]. SENSOR LETTERS, 2013, 11 (09) : 1750 - 1754
  • [6] Curran K., 2012, INT J ELECT COMPUTER, V2
  • [7] Derawi M. O., 2012, BIOM ICB 2012 5 IAPR
  • [8] GlobalPlatform, 2011, GPCSPE034 GLOBALPLAT
  • [9] Haselsteiner E., 2006, WORKSH RFID SEC
  • [10] Hypponen K., 2008, TRUSTED COMPUTING CH