SlideShare ist ein Scribd-Unternehmen logo
1 von 17
Downloaden Sie, um offline zu lesen
SIM Cards Overview
  C. Enrique Ortiz | August 2009
 http://weblog.cenriqueortiz.com




                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
What is a SIM Card?

• SIM or Subscriber Identification Module is a smart card
 that is included in every cell phone of the GSM family of
 networks
     6 or 8-pin flat connector embedded on the top of the card
     A fully fledge microcomputer with an OS
• UICC stands for Universal Integrated Circuit Card is a
 new generation SIM




  Source:3, Java Card 3: Classic Functionality Gets a Connectivity Boost   © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
More on SIM and SIM Cards

• SIM cards hold subscriber information and memory, for
 example for personal directory of numbers
   SIM identifies a subscriber via unique International Mobile
   Subscriber Identity (IMSI)
   >The first 3 digits represent the Mobile Country Code (MCC)
   >The next 2 digits represent the Mobile Network Code (MNC)
   >The next 10 digits represent the mobile station identification number
• SIM is the application that runs on a SIM Card
   SIM is to GSM, what USIM is to UMTS & RUIM/CSIM is to
   CDMA
• Today most SIM cards are based on Java Card


                                                © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
SIM and Smartcard Standards                                                   Standards for:
                                                                              •Toolkit
                                                                              •File & Auth
                                                                              •APIs
                                                                              •OTA
                                                                              •Smartcards


                                                             ISO/IEC 14443 is the international standard for
                                                             contactless smart chips and cards that operate
                                                             (i.e., can be read from or written to) at a
                                                             distance of less than 10 centimeters (4 inches).
                                                             This standard operates at 13.56 MHz and
                                                             includes specifications for the physical
                                                             characteristics, radio frequency power and
                                                             signal interface, initialization and anti-collision
                                                             protocols and transmission protocol.

                                                             ISO/IEC 7816 is the international standard for
                                                             contact smart cards. ISO/IEC 7816 Parts 4 and
                                           Source: Gemalto
                                                             above are used by both contact and contactless
•ETSI -- Specifications in blue                              smart card applications for security operations
•3GPP -- Specifications in green and red                     and commands for interchange.
                                                                                        Source: Smart Card Alliance


  Java Card (classic or 3.0) Applets are built using Java and run in a JCRE
                                                             © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Industry: Interesting Numbers for 2008

• Global SIM card shipments exceeded 2.9 billion units
 during 2008
     Strong demand from the emerging markets of India, China,
     Asia Pacific and Latin America contributing to a 29 per cent
     increase on shipments over the previous year
• On average, memory size increased by 11 per cent on
  2007 figures
• Number of cards shipped with a S@T (SIMalliance
  Toolkit) browser had a growth rate of 22 per cent
• 3G enabled SIM cards represented 14 per cent of total
  shipments in 2008
  Source:SIMalliance


                                           © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Next Generation SIM Cards

• Next gen SIM Cards integrate with new functionality…
• Mobile Near Field Communication (NFC)
• More advanced Applications
   Address book, calendar back-up, messaging, teleconferencing
   and file transfers, banking and access control, Web!
• Smart Card Web Server
   Web apps running right on SIM Cards! And TCP stacks
• High-capacity SIM cards
   More and more memory/capacity
• Multi-Media support (in conjunction w/ browser)

                                       © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Overview: Programming SIM Cards

• SIM Toolkit

                                                          Toolkit
                                                          “conversation”
                                                          between phone
                                                          and Smartcard


                                   Source: Gemalto




A SIM Toolkit is a data management application (applet) for SIM
cards, part of which is resident in the SIM card
   •Icon, application, settings and help management
   •User (simple menus), mobile, network and card interactions

                                              © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Overview: Java Card Classic




import javacard.framework.*
...
public class MyApplet extends Applet {
    // Definitions of APDU-related instruction codes
    ...
    MyApplet() {...} // Constructor
    // Life-cycle methods
    install() {...}                                    Source: Introduction to Java Card Technology by C. Enrique Ortiz
    select() {...}
    deselect() {...}
    process() {...}
    // Private methods
    ...
}
                                                                   © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
SIM / Smart Card Application Communication

                     Application Communication Architecture




                                      Response APDU Structure

                                       Source: SIM Protocols by Mobile Forensics
 Command APDU Structure

                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Classical Java Card Development




                                                                                                IDEs can
                                                                                                simplify
                                                                                                these steps!




    Source: Introduction to Java Card Technology by C. Enrique Ortiz
                                                                       © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Java Card 3.0

• Extends (and simplifies) the programming model
• Classic Applets (Java Card 2 limitations apply for these
 applications)
   Communication using APDU protocol
   Backward compatibility
• Extended Applets
   Communication using APDU protocol
   Similar to Classic Applets, and can use all the new APIs, like
   Threads, Strings, and GCF (Generic Connection Framework)
• Web Enabled!
   Based on Servlet 2.4 API
   Communication using standard HTTP/ HTTPS protocol
   HTML, JavaScript, etc. (much richer UIs than prior)
                                           © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Java Card 3 Architecture




                                 Source -- Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach


       •All data types except float and double
       •Multiple threads
  NEW! •Extensive API support (java.lang, java.util, GCF, and so on)
       •Direct handling of class files, with all loading and linking on card
       •All new Java language syntax constructs (enums, generics, …)
       •Automatic garbage collection
                                                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Smartcard Web Server
• Very exciting and powerful SIM card evolution in my opinion!
    It took more than 10 years but we finally have it! Very powerful.
• Leverages the browser already present in the handset to run local
  web applications preloaded into the SIM
• Local web-based applications are securely stored in the SIM card
  and can be updated remotely
                                           Best of both worlds
• Servlets framework on SIM Cards!         Mobile SIM + Web




                                   Source: Gemalto
     Potential Apps:
     •Rich SIM card apps
     •On-Device Self-Service
     •Application Management
     •Mobile Payments                                            Source: Gemalto
     •Mobile NFC
                                                     © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Benefits of Smartcard Web Server
  • Rich UI and Advanced Capabilities
     Access to location, SMS, servers on the web, secure local-storage,
     personalized experience
     Call-intercepts to perform actions on-device, for example help
     troubleshoot issues before calling the support representative
  • Manageable
     Secure, remote application management
  • SIM-card based /On-Device
     Works Connected and Disconnected
     Secure connections and environment
     Uses no wireless resources when doing on-device web apps
     Access to information such as location that can help personalize the
     experience
  • Easy to deploy
     Highly customizable application; can be modified as needed and push to
     handsets in real-time
     Based on OMA and Web standards - xHTML, CSS, JavaScript
                                               © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Some Challenges

• SIM Card Applications still a niche, controlled by
 operators
   But if you have the relationships, it is a good niche ($)
• Applet development is not trivial with few experts
   This can translate to opportunities for you!
• Smartcard Web Server requires new generation SIM
 cards
   Thus conversion process will make adoption slow & expensive
   Expect emerging markets adopting first




                                            © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Gemalto Toolkit & UpTeq Multimedia SIM Card




  Toolkit



                 Download from: http://developer.gemalto.com/



               See http://www.gemalto.com/telecom/upteq/multimedia.html


            Smartcard Web Server
                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Resources

• Gemalto Developer Website
• Sun Java Card Website
• SIMalliance Website
• Smart Card Alliance Website
• SIM Card Protocols Paper by Mobile Forensics
• Mobile Forensics Blog
• Introduction to Java Card Technology, part 1 by C.
  Enrique Ortiz
• Article Java Card 3: Classic Functionality Gets a
  Connectivity Boost by Peter Allenbach

                                      © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com

Weitere ähnliche Inhalte

Was ist angesagt?

e-Sim Sharing (extract)
e-Sim Sharing (extract)e-Sim Sharing (extract)
e-Sim Sharing (extract)BearingPoint
 
Presentation on security feature of atm (2)
Presentation on security feature of atm (2)Presentation on security feature of atm (2)
Presentation on security feature of atm (2)Siya Agarwal
 
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTS
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTSGestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTS
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTSMkMk Kachallah
 
Gsm security and encryption
Gsm security and encryptionGsm security and encryption
Gsm security and encryptionRK Nayak
 
Gsm security algorithms A3 , A5 , A8
Gsm security algorithms A3 , A5 , A8Gsm security algorithms A3 , A5 , A8
Gsm security algorithms A3 , A5 , A8RUpaliLohar
 
Embedded system in Smart Cards
Embedded system in Smart CardsEmbedded system in Smart Cards
Embedded system in Smart CardsRebecca D'souza
 
Mac protocols
Mac protocolsMac protocols
Mac protocolsjuno susi
 
Embedded Systems (18EC62) – Embedded System Components (Module 3)
Embedded Systems (18EC62) – Embedded System Components (Module 3)Embedded Systems (18EC62) – Embedded System Components (Module 3)
Embedded Systems (18EC62) – Embedded System Components (Module 3)Shrishail Bhat
 
C08 wireless atm[1]
C08 wireless atm[1]C08 wireless atm[1]
C08 wireless atm[1]Rio Nguyen
 
Gsm and Gprs Ppt
Gsm and Gprs PptGsm and Gprs Ppt
Gsm and Gprs PptDev Goel
 

Was ist angesagt? (20)

esim
esimesim
esim
 
e-Sim Sharing (extract)
e-Sim Sharing (extract)e-Sim Sharing (extract)
e-Sim Sharing (extract)
 
eSIM Overview
eSIM OvervieweSIM Overview
eSIM Overview
 
Introduction to SIM and USIM
Introduction to SIM and USIMIntroduction to SIM and USIM
Introduction to SIM and USIM
 
eSIM
eSIMeSIM
eSIM
 
Mobile phone-cloning
Mobile phone-cloningMobile phone-cloning
Mobile phone-cloning
 
IIJmio meeting 22 eSIMの動向と未来
IIJmio meeting 22 eSIMの動向と未来IIJmio meeting 22 eSIMの動向と未来
IIJmio meeting 22 eSIMの動向と未来
 
Mobile phone cloning
Mobile phone cloningMobile phone cloning
Mobile phone cloning
 
Presentation on security feature of atm (2)
Presentation on security feature of atm (2)Presentation on security feature of atm (2)
Presentation on security feature of atm (2)
 
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTS
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTSGestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTS
Gestion de la mobilité et de la Qos chez un opérateur de téléphonie mobile:UMTS
 
Gsm security and encryption
Gsm security and encryptionGsm security and encryption
Gsm security and encryption
 
Mobile cloning
Mobile cloningMobile cloning
Mobile cloning
 
TDMA Time Division Multiple Access
TDMA Time Division Multiple AccessTDMA Time Division Multiple Access
TDMA Time Division Multiple Access
 
Gsm security algorithms A3 , A5 , A8
Gsm security algorithms A3 , A5 , A8Gsm security algorithms A3 , A5 , A8
Gsm security algorithms A3 , A5 , A8
 
Embedded system in Smart Cards
Embedded system in Smart CardsEmbedded system in Smart Cards
Embedded system in Smart Cards
 
Gsm architecture
Gsm architectureGsm architecture
Gsm architecture
 
Mac protocols
Mac protocolsMac protocols
Mac protocols
 
Embedded Systems (18EC62) – Embedded System Components (Module 3)
Embedded Systems (18EC62) – Embedded System Components (Module 3)Embedded Systems (18EC62) – Embedded System Components (Module 3)
Embedded Systems (18EC62) – Embedded System Components (Module 3)
 
C08 wireless atm[1]
C08 wireless atm[1]C08 wireless atm[1]
C08 wireless atm[1]
 
Gsm and Gprs Ppt
Gsm and Gprs PptGsm and Gprs Ppt
Gsm and Gprs Ppt
 

Andere mochten auch

Mobile Phone and SIM card cloning
Mobile Phone and SIM card cloningMobile Phone and SIM card cloning
Mobile Phone and SIM card cloningAnkur Kumar
 
Lost Report of SIM Card
Lost Report of SIM CardLost Report of SIM Card
Lost Report of SIM CardGokke Kone
 
USAT : USIM Application Toolkit
USAT : USIM Application ToolkitUSAT : USIM Application Toolkit
USAT : USIM Application ToolkitByeongweon Moon
 
Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Grant Barker
 
Science intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISScience intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISarjeanmedel
 
Architecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsArchitecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsThomas de Lazzari
 
Spelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySpelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySau Sheong Chang
 
Technology life cycle of java
Technology life cycle of javaTechnology life cycle of java
Technology life cycle of javaSanjeev Gupta
 
Government Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformGovernment Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformRamesh Nagappan
 
EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection Damir Delija
 
Unit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenUnit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenKathryn Brown
 

Andere mochten auch (16)

Mobile Phone and SIM card cloning
Mobile Phone and SIM card cloningMobile Phone and SIM card cloning
Mobile Phone and SIM card cloning
 
SIM Initialization
SIM InitializationSIM Initialization
SIM Initialization
 
Lost Report of SIM Card
Lost Report of SIM CardLost Report of SIM Card
Lost Report of SIM Card
 
USAT : USIM Application Toolkit
USAT : USIM Application ToolkitUSAT : USIM Application Toolkit
USAT : USIM Application Toolkit
 
Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Cyber security for ia and risk 150601
Cyber security for ia and risk 150601
 
SIM: Matter
SIM: MatterSIM: Matter
SIM: Matter
 
Science intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISScience intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESIS
 
Architecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsArchitecture and Development of NFC Applications
Architecture and Development of NFC Applications
 
Spelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySpelunking Credit Cards with Ruby
Spelunking Credit Cards with Ruby
 
Technology life cycle of java
Technology life cycle of javaTechnology life cycle of java
Technology life cycle of java
 
Atoms
AtomsAtoms
Atoms
 
Subscriber Identity Module
Subscriber Identity ModuleSubscriber Identity Module
Subscriber Identity Module
 
Government Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformGovernment Citizen ID using Java Card Platform
Government Citizen ID using Java Card Platform
 
EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection
 
Unit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenUnit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X Men
 
Most usefull at commands
Most usefull at commandsMost usefull at commands
Most usefull at commands
 

Ähnlich wie SIM Card Overview

Access control basics-3
Access control basics-3Access control basics-3
Access control basics-3grantlerc
 
Smart Card Presentation
Smart Card Presentation Smart Card Presentation
Smart Card Presentation ppriteshs
 
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...IJRTEMJOURNAL
 
Study of Java Card and its Application
Study of Java Card and its ApplicationStudy of Java Card and its Application
Study of Java Card and its Applicationeditor1knowledgecuddle
 
Security applications with Java Card
Security applications with Java CardSecurity applications with Java Card
Security applications with Java CardJulien SIMON
 
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET Journal
 
IRJET- Fingerprient based Vehicle Starter
IRJET-  	  Fingerprient based Vehicle StarterIRJET-  	  Fingerprient based Vehicle Starter
IRJET- Fingerprient based Vehicle StarterIRJET Journal
 
smartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfsmartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfssuser5b47c8
 
Paperless ticket system
Paperless ticket systemPaperless ticket system
Paperless ticket systemHardik Shah
 
Virtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadVirtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadBrain IoT Project
 
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET Journal
 

Ähnlich wie SIM Card Overview (20)

Smart card
Smart cardSmart card
Smart card
 
Smart id's
Smart id'sSmart id's
Smart id's
 
Access control basics-3
Access control basics-3Access control basics-3
Access control basics-3
 
Smart Card Presentation
Smart Card Presentation Smart Card Presentation
Smart Card Presentation
 
Smart cards
Smart cards Smart cards
Smart cards
 
Smart cards
Smart cardsSmart cards
Smart cards
 
Smart card
Smart cardSmart card
Smart card
 
Smart card ppt
Smart card pptSmart card ppt
Smart card ppt
 
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
 
Study of Java Card and its Application
Study of Java Card and its ApplicationStudy of Java Card and its Application
Study of Java Card and its Application
 
Security applications with Java Card
Security applications with Java CardSecurity applications with Java Card
Security applications with Java Card
 
A1103040106
A1103040106A1103040106
A1103040106
 
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
 
IRJET- Fingerprient based Vehicle Starter
IRJET-  	  Fingerprient based Vehicle StarterIRJET-  	  Fingerprient based Vehicle Starter
IRJET- Fingerprient based Vehicle Starter
 
smartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfsmartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdf
 
Paperless ticket system
Paperless ticket systemPaperless ticket system
Paperless ticket system
 
Smart Card based Robust Security System
Smart Card based Robust Security SystemSmart Card based Robust Security System
Smart Card based Robust Security System
 
M Commerce
M CommerceM Commerce
M Commerce
 
Virtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadVirtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges Ahead
 
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
 

Mehr von Carlos Enrique Ortiz

Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Carlos Enrique Ortiz
 
Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Carlos Enrique Ortiz
 
Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Carlos Enrique Ortiz
 
Mobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsMobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsCarlos Enrique Ortiz
 
The Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingThe Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingCarlos Enrique Ortiz
 
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Carlos Enrique Ortiz
 
Mobility, Context, Interactions and Data
Mobility, Context, Interactions and DataMobility, Context, Interactions and Data
Mobility, Context, Interactions and DataCarlos Enrique Ortiz
 

Mehr von Carlos Enrique Ortiz (8)

Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...
 
Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)
 
Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)
 
Mobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsMobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web Interactions
 
The Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingThe Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile Computing
 
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
 
NFC In Mobile Commerce
NFC In Mobile CommerceNFC In Mobile Commerce
NFC In Mobile Commerce
 
Mobility, Context, Interactions and Data
Mobility, Context, Interactions and DataMobility, Context, Interactions and Data
Mobility, Context, Interactions and Data
 

Kürzlich hochgeladen

2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilV3cube
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...gurkirankumar98700
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...Neo4j
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Paola De la Torre
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024The Digital Insurer
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Allon Mureinik
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 

Kürzlich hochgeladen (20)

2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
Kalyanpur ) Call Girls in Lucknow Finest Escorts Service 🍸 8923113531 🎰 Avail...
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 

SIM Card Overview

  • 1. SIM Cards Overview C. Enrique Ortiz | August 2009 http://weblog.cenriqueortiz.com © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 2. What is a SIM Card? • SIM or Subscriber Identification Module is a smart card that is included in every cell phone of the GSM family of networks 6 or 8-pin flat connector embedded on the top of the card A fully fledge microcomputer with an OS • UICC stands for Universal Integrated Circuit Card is a new generation SIM Source:3, Java Card 3: Classic Functionality Gets a Connectivity Boost © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 3. More on SIM and SIM Cards • SIM cards hold subscriber information and memory, for example for personal directory of numbers SIM identifies a subscriber via unique International Mobile Subscriber Identity (IMSI) >The first 3 digits represent the Mobile Country Code (MCC) >The next 2 digits represent the Mobile Network Code (MNC) >The next 10 digits represent the mobile station identification number • SIM is the application that runs on a SIM Card SIM is to GSM, what USIM is to UMTS & RUIM/CSIM is to CDMA • Today most SIM cards are based on Java Card © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 4. SIM and Smartcard Standards Standards for: •Toolkit •File & Auth •APIs •OTA •Smartcards ISO/IEC 14443 is the international standard for contactless smart chips and cards that operate (i.e., can be read from or written to) at a distance of less than 10 centimeters (4 inches). This standard operates at 13.56 MHz and includes specifications for the physical characteristics, radio frequency power and signal interface, initialization and anti-collision protocols and transmission protocol. ISO/IEC 7816 is the international standard for contact smart cards. ISO/IEC 7816 Parts 4 and Source: Gemalto above are used by both contact and contactless •ETSI -- Specifications in blue smart card applications for security operations •3GPP -- Specifications in green and red and commands for interchange. Source: Smart Card Alliance Java Card (classic or 3.0) Applets are built using Java and run in a JCRE © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 5. Industry: Interesting Numbers for 2008 • Global SIM card shipments exceeded 2.9 billion units during 2008 Strong demand from the emerging markets of India, China, Asia Pacific and Latin America contributing to a 29 per cent increase on shipments over the previous year • On average, memory size increased by 11 per cent on 2007 figures • Number of cards shipped with a S@T (SIMalliance Toolkit) browser had a growth rate of 22 per cent • 3G enabled SIM cards represented 14 per cent of total shipments in 2008 Source:SIMalliance © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 6. Next Generation SIM Cards • Next gen SIM Cards integrate with new functionality… • Mobile Near Field Communication (NFC) • More advanced Applications Address book, calendar back-up, messaging, teleconferencing and file transfers, banking and access control, Web! • Smart Card Web Server Web apps running right on SIM Cards! And TCP stacks • High-capacity SIM cards More and more memory/capacity • Multi-Media support (in conjunction w/ browser) © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 7. Overview: Programming SIM Cards • SIM Toolkit Toolkit “conversation” between phone and Smartcard Source: Gemalto A SIM Toolkit is a data management application (applet) for SIM cards, part of which is resident in the SIM card •Icon, application, settings and help management •User (simple menus), mobile, network and card interactions © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 8. Overview: Java Card Classic import javacard.framework.* ... public class MyApplet extends Applet { // Definitions of APDU-related instruction codes ... MyApplet() {...} // Constructor // Life-cycle methods install() {...} Source: Introduction to Java Card Technology by C. Enrique Ortiz select() {...} deselect() {...} process() {...} // Private methods ... } © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 9. SIM / Smart Card Application Communication Application Communication Architecture Response APDU Structure Source: SIM Protocols by Mobile Forensics Command APDU Structure © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 10. Classical Java Card Development IDEs can simplify these steps! Source: Introduction to Java Card Technology by C. Enrique Ortiz © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 11. Java Card 3.0 • Extends (and simplifies) the programming model • Classic Applets (Java Card 2 limitations apply for these applications) Communication using APDU protocol Backward compatibility • Extended Applets Communication using APDU protocol Similar to Classic Applets, and can use all the new APIs, like Threads, Strings, and GCF (Generic Connection Framework) • Web Enabled! Based on Servlet 2.4 API Communication using standard HTTP/ HTTPS protocol HTML, JavaScript, etc. (much richer UIs than prior) © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 12. Java Card 3 Architecture Source -- Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach •All data types except float and double •Multiple threads NEW! •Extensive API support (java.lang, java.util, GCF, and so on) •Direct handling of class files, with all loading and linking on card •All new Java language syntax constructs (enums, generics, …) •Automatic garbage collection © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 13. Smartcard Web Server • Very exciting and powerful SIM card evolution in my opinion! It took more than 10 years but we finally have it! Very powerful. • Leverages the browser already present in the handset to run local web applications preloaded into the SIM • Local web-based applications are securely stored in the SIM card and can be updated remotely Best of both worlds • Servlets framework on SIM Cards! Mobile SIM + Web Source: Gemalto Potential Apps: •Rich SIM card apps •On-Device Self-Service •Application Management •Mobile Payments Source: Gemalto •Mobile NFC © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 14. Benefits of Smartcard Web Server • Rich UI and Advanced Capabilities Access to location, SMS, servers on the web, secure local-storage, personalized experience Call-intercepts to perform actions on-device, for example help troubleshoot issues before calling the support representative • Manageable Secure, remote application management • SIM-card based /On-Device Works Connected and Disconnected Secure connections and environment Uses no wireless resources when doing on-device web apps Access to information such as location that can help personalize the experience • Easy to deploy Highly customizable application; can be modified as needed and push to handsets in real-time Based on OMA and Web standards - xHTML, CSS, JavaScript © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 15. Some Challenges • SIM Card Applications still a niche, controlled by operators But if you have the relationships, it is a good niche ($) • Applet development is not trivial with few experts This can translate to opportunities for you! • Smartcard Web Server requires new generation SIM cards Thus conversion process will make adoption slow & expensive Expect emerging markets adopting first © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 16. Gemalto Toolkit & UpTeq Multimedia SIM Card Toolkit Download from: http://developer.gemalto.com/ See http://www.gemalto.com/telecom/upteq/multimedia.html Smartcard Web Server © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 17. Resources • Gemalto Developer Website • Sun Java Card Website • SIMalliance Website • Smart Card Alliance Website • SIM Card Protocols Paper by Mobile Forensics • Mobile Forensics Blog • Introduction to Java Card Technology, part 1 by C. Enrique Ortiz • Article Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com