Invention Grant
- Patent Title: Payment smart cards with hierarchical session key derivation providing security against differential power analysis and other attacks
-
Application No.: US11977392Application Date: 2007-10-24
-
Publication No.: US09940772B2Publication Date: 2018-04-10
- Inventor: Paul C. Kocher
- Applicant: Paul C. Kocher
- Applicant Address: US CA San Francisco
- Assignee: CRYPTOGRAPHY RESEARCH, INC.
- Current Assignee: CRYPTOGRAPHY RESEARCH, INC.
- Current Assignee Address: US CA San Francisco
- Agency: Finnegan, Henderson, Farabow, Garrett & Dunner, L.L.P.
- Main IPC: G07F7/10
- IPC: G07F7/10 ; G06Q20/34 ; G06Q20/40 ; H04L9/00 ; H04L9/06 ; H04L9/08

Abstract:
Chip cards are used to secure credit and debit payment transactions. To prevent fraudulent transactions, the card must protect cryptographic keys used to authenticate transactions. In particular, cards should resist differential power analysis and/or other attacks. To address security risks posed by leakage of partial information about keys during cryptographic transactions, cards may be configured to perform periodic cryptographic key update operations. The key update transformation prevents adversaries from exploiting partial information that may have been leaked about the card's keys. Update operations based on a hierarchical structure can enable efficient transaction verification by allowing a verifying party (e.g., an issuer) to derive a card's current state from a transaction counter and its initial state by performing one operation per level in the hierarchy, instead of progressing through all update operations performed by the card.
Public/Granted literature
Information query