{"title":"Practical Attack Scenarios on Secure Element-Enabled Mobile Devices","authors":"Michael Roland, J. Langer, J. Scharinger","doi":"10.1109/NFC.2012.10","DOIUrl":"https://doi.org/10.1109/NFC.2012.10","url":null,"abstract":"Near Field Communication's card emulation mode is a way to put virtual smart cards into mobile phones. A recently launched application is Google Wallet. Google Wallet turns a phone into a credit card, a prepaid card and a tool to collect gift certificates and discounts. Card emulation mode uses dedicated smart card chips, which are considered to fulfill high security standards. Therefore, card emulation mode is also considered to be safe and secure. However, an NFC-enabled mobile phone introduces a significantly different threat vector. Especially a mobile phone's permanent connectivity to a global network and the possibility to install arbitrary applications onto smart phones open up for several new attack scenarios. This paper gives an overview of the new risks imposed by mobile connectivity and untrusted mobile phone applications. The various APIs for secure element access on different mobile phone platforms and their access control mechanisms are analyzed. The security aspects of mobile phones are explained. Finally, two practical attack scenarios, a method to perform a denial of service (DoS) attack against a secure element and a method to remotely use the applications on a victims secure element without the victim's knowledge, are highlighted.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"16 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"126562727","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"OPEN-NPP: An Open Source Library to Enable P2P over NFC","authors":"A. Lotito, D. Mazzocchi","doi":"10.1109/NFC.2012.16","DOIUrl":"https://doi.org/10.1109/NFC.2012.16","url":null,"abstract":"Near Field Communication (NFC) technology enables devices to communicate wire lessly within proximity distance and is one of the most important trends nowadays. Even though one of the most awaited applications is foreseen to be mobile payments, in NFC there are also many other interesting perspectives looking at other functionalities included in the NFC specification namely the P2P communication protocol. This paper analyses the possible peer-to-peer modes and presents OPEN-NPP, the first open source solution able to implement the NPP protocol in order to establish a peer-to-peer bi-directional communication link between an Android NFC capable device and an NFC reader. The technical details together with a concrete use case and some possible next steps will be provided in this paper.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"60 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"125945036","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
Rainer Widmann, Stefan Grunberger, B. Stadlmann, Josef Langer
{"title":"System Integration of NFC Ticketing into an Existing Public Transport Infrastructure","authors":"Rainer Widmann, Stefan Grunberger, B. Stadlmann, Josef Langer","doi":"10.1109/NFC.2012.14","DOIUrl":"https://doi.org/10.1109/NFC.2012.14","url":null,"abstract":"A key application of Near Field Communication (NFC) can be found in the field of Electronic Fare Management. It can radically change existing systems of isolated applications in public transport by providing new approaches for a national or international inter operable fare management. In this paper a scenario for the integration of an electronic ticketing system into an existing public transport system based on NFC is introduced. The main focus is its realisation in accordance with the VDV Core Application. Electronic fare management systems consist of sophisticated structures and processes. Therefore, at the current stage of development only a selected subset of features which is essential for prototypical implementation is presented in this paper. First, the technology, electronic ticketing and previous field trials in this application area are introduced. Next, a set of relevant use cases is outlined and the existing system architecture is presented as basis for the description of the chosen system integration scenario. Finally the adopted and newly implemented system components and their interfaces are described in detail before concluding with faced challenges and some future prospects.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"114896825","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
E. Strommer, M. Jurvansuu, T. Tuikka, A. Ylisaukko-oja, H. Rapakko, J. Vesterinen
{"title":"NFC-Enabled Wireless Charging","authors":"E. Strommer, M. Jurvansuu, T. Tuikka, A. Ylisaukko-oja, H. Rapakko, J. Vesterinen","doi":"10.1109/NFC.2012.17","DOIUrl":"https://doi.org/10.1109/NFC.2012.17","url":null,"abstract":"This paper summarizes the results of our concept development for NFC-enabled wireless charging - i.e., an add-on to the existing NFC operating modes that implements charging power transmission and charging power reception with associated control functionality. When compared to dedicated wireless charging solutions, integration of NFC and wireless charging into the same implementation will entail more compact and cost-efficient charging interfaces for portable devices, a more pervasive charger infrastructure in future with reduced costs, and the possibility of integrating NFC-based services into charging applications. We propose to the NFC community a closer investigation of use cases, the business potential, and technical implementation of NFC-enabled charging. This should lead to a road map for its wider adoption, pave the way to its standardization, technology development, and commercial application, and also support enhancement of power transfer capability in other NFC applications alongside wireless charging.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"113 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"126640446","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"NFC-Based User Interfaces","authors":"J. Riekki, I. Sánchez, M. Pyykkonen","doi":"10.1109/NFC.2012.19","DOIUrl":"https://doi.org/10.1109/NFC.2012.19","url":null,"abstract":"Here, we discuss the potential of user interfaces built from NFC phones and NFC tags. We present these NFC-based user interfaces as components of interactive spaces, environments equipped with rich user interfaces and offering a large variety of services for users. Moreover, we specify an interaction model for NFC-based user interfaces and a graphical language for advertising NFC tags. In the model, interaction is decomposed into discovery, composition and usage stages and described using users, tokens, resources, and services. The language provides graphical elements for advertising a large set of different services and commands in a uniform manner. Attention, interaction, technology, and action elements are the most important ones and additional information can be given with context and instruction elements.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"237 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"133484152","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
U. Ceipidor, C. Medaglia, A. Opromolla, V. Volpi, A. Moroni, S. Sposato
{"title":"A Survey about User Experience Improvement in Mobile Proximity Payment","authors":"U. Ceipidor, C. Medaglia, A. Opromolla, V. Volpi, A. Moroni, S. Sposato","doi":"10.1109/NFC.2012.18","DOIUrl":"https://doi.org/10.1109/NFC.2012.18","url":null,"abstract":"In this paper we intend to investigate the problem of the mass adoption of new payment instruments, such as Near Field Communication enabled mobile phones, by analyzing the results of the survey on Mobile Payment in Italy conducted by the \"Center of Expertise on Technological Innovation\" of CATTID (Centre for Application of Tele services and Technologies for Innovation in Digital world), Sapienza University of Rome. By working at CATTID as specialized researchers on the NFC technology, now that NFC is getting increasingly attention from a commercial point of view, we want to deepen the matters of the users wants and needs about mobile payment, with a view to its wide mass adoption. The method of investigation we chose has been both qualitative and quantitative. From our study, focused on Italian users, we have found that, although users are ready to adopt mobile payment instruments, the market scenario is not growing so fast and the difference will be made by the level of confidence in the financial transaction perceived by consumers. On this, NFC technology is on the good way and we can imagine possible evolution in the security and marketing fields.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"13 6 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"125762398","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
D. Volland, K. Noyen, O. Kayikci, L. Ackermann, F. Michahelles
{"title":"Switching the Role of NFC Tag and Reader for the Implementation of Smart Posters","authors":"D. Volland, K. Noyen, O. Kayikci, L. Ackermann, F. Michahelles","doi":"10.1109/NFC.2012.11","DOIUrl":"https://doi.org/10.1109/NFC.2012.11","url":null,"abstract":"Benefits and opportunities of NFC technology have been discussed for many years. Continuous promises of handset manufacturers to embed this technology into their series of devices anytime soon have been fulfilled only partly so far. Contrasting with that, research and practice have outlined a number of applications that yield great attention among users. Among these applications are Smart Posters. However, the prevailing low market penetration of NFC-equipped smart phones poses a barrier for the implementation of many Smart Poster scenarios. Accordingly, for certain scenarios this paper proposes to switch the role between fixed tags and mobile phones by affixing mobile phones to posters and hand out the much cheaper tags to the users instead. The paper describes the approach and shows its feasibility by reporting lessons learned of a case study.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"14 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"124445005","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"Implementing Open Authentication for Web Services with a Secure Memory Card","authors":"A. Leinonen, T. Tuikka, E. Siira","doi":"10.1109/NFC.2012.15","DOIUrl":"https://doi.org/10.1109/NFC.2012.15","url":null,"abstract":"Open authentication protocols have become a standard solution to allow interfacing of third-party applications and websites. This paper presents a rationale for the use of secure memory cards with NFC-enabled service. A software application prototype is presented to show how a secure memory card can provide a portable authentication module to access web services. The prototype shows that it is possible to implement secure credential storage on a user-configurable secure memory card that supports an open authentication protocol. It provides protection against copying of the credentials and effectively frees the user from typing the passwords into the mobile device. Although the smart memory card is still a very new platform in mobile devices and not standardized in all aspects, we show that it provides a promising platform that is not bound to a specific operator or manufacturer.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"5 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"124454978","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
Juan J. S´nchez-Silos, Francisco J. Velasco-Arjona, I. L. Ruiz, M. Gómez-Nieto
{"title":"An NFC-Based Solution for Discount and Loyalty Mobile Coupons","authors":"Juan J. S´nchez-Silos, Francisco J. Velasco-Arjona, I. L. Ruiz, M. Gómez-Nieto","doi":"10.1109/NFC.2012.12","DOIUrl":"https://doi.org/10.1109/NFC.2012.12","url":null,"abstract":"Today, the success of the business model \"deal-of-the-day\" it's not a secret, in fact, it is manifested by the large amount of economically stable companies that operate nowadays, always trying to bypass the traditional media through promoting the use of smart phones. In this paper, we describe a complete ecosystem with similar purposes that makes completely expendable the paper support. The system is called Wing Bonus and it is responsible for dissemination, distribution, supply, validation, and managing of vouchers, loyalty point card and all kind of coupons using NFC. Wing Bonus is also a platform for advertising all kind of products and a great system for making market research. The system is accessible through its Website and a mobile application for managing coupons. The mobile application uses NFC technology to supply and exchange m-coupons. The Website allows the user to manage his/her account movements, providing a complete way of system data maintenance.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"2 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"134416225","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
{"title":"An Ontology-Based Framework to Model a GlobalPlatform Secure Element","authors":"V. Alimi","doi":"10.1109/NFC.2012.13","DOIUrl":"https://doi.org/10.1109/NFC.2012.13","url":null,"abstract":"The role of Trusted Service Manager (TSM) is essential in the Near Field Communication (NFC) ecosystem. One of its responsibilities is to manage all or part of a secure chip hosting sensible data and applications named Secure Element (SE). The management of this SE is often based on a prior knowledge of its characteristics and on business and technical agreements with the chip provider and the Issuer. In this paper, we propose a framework to ease the management and the deployment of mobile contact less services on the SE by TSMs. The proposed solution consists in a three-layer framework. At the bottom, one encounters an OWL ontology-based model of the Global Platform Card Specification. The framework allows characterizing a given SE by injecting into the reference model the SE configuration data consisting in some management rules and a description of the card content. We propose to store the SE configuration data on-card. When retrieved by the TSM, it allows having a comprehensive description of the SE and querying the model to determine the way to perform card content management operations. Finally, the framework allows exchanging the SE configuration data and, thus, facilitates the management by multiple TSMs.","PeriodicalId":439924,"journal":{"name":"2012 4th International Workshop on Near Field Communication","volume":"18 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2012-03-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"132537442","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}