loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Serge Chaumette and Damien Sauveron

Affiliation: LaBRI, Laboratoire Bordelais de Recherche en Informatique, UMR 5800 – Universite Bordeaux 1, France

Abstract: Till recently it was impossible to have more than one single application running on a smart card. Multiapplication cards, and especially Java Cards, now make it possible to have several applications sharing the same physical piece of plastic. Today, these cards accept to load code only after an authentication. But in the future, the cards will be open an everybody should be authorized to upload an application. This raises new security problems by creating additional ways to attack Java Cards. These problems and the method to test them are the topic of this paper. The attacks will be illustrated with code samples. The method presented here can be applied right now by authorised people (e.g. Information Technology Evaluation Facility – ITSEF) to test the security of Java Cards since they have the authentication keys and tomorrow a hacker may also be able to use this method to attack cards without needing the keys.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.225.235.89

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Chaumette, S. and Sauveron, D. (2005). An Efficient and Simple Way to Test the Security of Java CardsTM. In Proceedings of the 3rd International Workshop on Security in Information Systems (ICEIS 2005) - WOSIS; ISBN 972-8865-25-2, SciTePress, pages 331-342. DOI: 10.5220/0002574803310342

@conference{wosis05,
author={Serge Chaumette. and Damien Sauveron.},
title={An Efficient and Simple Way to Test the Security of Java CardsTM},
booktitle={Proceedings of the 3rd International Workshop on Security in Information Systems (ICEIS 2005) - WOSIS},
year={2005},
pages={331-342},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0002574803310342},
isbn={972-8865-25-2},
}

TY - CONF

JO - Proceedings of the 3rd International Workshop on Security in Information Systems (ICEIS 2005) - WOSIS
TI - An Efficient and Simple Way to Test the Security of Java CardsTM
SN - 972-8865-25-2
AU - Chaumette, S.
AU - Sauveron, D.
PY - 2005
SP - 331
EP - 342
DO - 10.5220/0002574803310342
PB - SciTePress