IP Library Granted Patent US 8,386,791
Granted Patent B2
US 8,386,791 · App. 10/592,070 · Granted Feb 26, 2013

Secure data processing method based particularly on a cryptographic algorithm

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,386,791
App. No.
10/592,070
Granted
Feb 26, 2013
Kind
B2
Abstract

The invention relates to a secure data processing method comprising the steps of generating (E 204 ; E 304 ) a first random value (A 1 ); executing (E 206 ; E 306 ) a first cryptographic algorithm (F K ) using the first random value (A 1 ); generating (E 208 ; E 308 ) a second random value (A 2 ); executing (E 210 ; E 310 ) a second cryptographic algorithm (F K ; G K ) using the second random value (A 2 ); and generating a result (V) to verify that the first algorithm (F K ) was properly executed.

Claims (37)

1. A secure data processing method executable by a microprocessor, comprising:

the microprocessor programmed to execute the steps of the method, the method comprising:

generating a first random value;

executing a first cryptographic algorithm using the first random value;

generating a second random value;

executing a second cryptographic algorithm using the second random value and generating a result permitting the verification of the correct execution of the first cryptographic algorithm, said second cryptographic algorithm being the inverse algorithm of the first cryptographic algorithm.

2. The secure data processing method according to claim 1 , wherein the first cryptographic algorithm generates an output datum from an input datum, said result being a verification datum, comprising:

comparing the verification datum to the input datum for verification of the correct execution of the first cryptographic algorithm.

3. The secure data processing method according to claim 2 , wherein the second algorithm is identical to the first cryptographic algorithm and is applied to the input datum and in that a first datum is the output datum.

4. The data processing method according to claim 2 , wherein the first cryptographic algorithm is a cryptographic algorithm with a symmetrical key.

5. The data processing method according to claim 2 , wherein the first cryptographic algorithm is an algorithm of the DES type or of the AES type.

6. The data processing method according to claim 2 , wherein the first cryptographic algorithm is an algorithm of the DES type or of the AES type masked by means of the first random value.

7. The data processing method according to claim 2 , wherein the first cryptographic algorithm is an algorithm of the masked DES type with masked key derivation of an algorithm of the masked AES type and with masked key derivation.

8. The data processing method according to claim 2 , wherein the first cryptographic algorithm is a mobile telephony authentication algorithm.

9. The data processing method according to claim 1 , wherein the first cryptographic algorithm is masked by the first random value and in that the second cryptographic algorithm is masked by the second random value.

10. The data processing method according to claim 2 , wherein it is implemented in a microcircuit card.

11. A data processing device comprising

means for generating a first random value;

means for executing a first cryptographic algorithm using the first random value, involving in at least one calculation a first datum and generating an output datum from an input datum, the first datum being different from the input datum;

means for generating a second random value;

means for executing a second cryptographic algorithm using the second random value and generating a verification datum, such that executing said second cryptographic algorithm differs from executing said first cryptographic algorithm;

means for comparing the verification datum to the first datum for verification of the correct execution of the first cryptographic algorithm.

12. The data processing device according to claim 11 , wherein the device is a microcircuit card.

13. A non-transitory computer readable storage medium with a computer program stored thereon comprising instructions adapted to implement the method according to claim 1 , when said instructions are executed by a microprocessor.

14. The processing method according to claim 3 , wherein the first cryptographic algorithm is a cryptographic algorithm with a symmetrical key.

15. The data processing method according to claim 3 , wherein the first cryptographic algorithm is an algorithm of the DES type or of the AES type.

16. The data processing method according to claim 3 , wherein the first cryptographic algorithm is an algorithm of the DES type or of the AES type with key derivation masked by means of the first random value.

17. The data processing method according to claim 3 , wherein the first cryptographic algorithm is an algorithm of the DES type or of the AES type masked by means of the first random value.

18. The data processing method according to claim 3 , wherein the first cryptographic algorithm is an algorithm of the masked DES type with masked key derivation of an algorithm of the masked AES type and with masked key derivation.

19. A secure data processing method executable by a microprocessor, the microprocessor programmed to execute the steps of the method, the method comprising:

generating via the microprocessor a first random value;

executing a first cryptographic algorithm using the first random value;

generating a second random value;

executing a second cryptographic algorithm using the second random value such that executing said second cryptographic algorithm differs from executing said first cryptographic algorithm, wherein said second cryptographic algorithm generates a result permitting the verification of the correct execution of the first cryptographic algorithm.

20. The secure data processing method according to claim 19 , wherein executing the first cryptographic algorithm involves in at least one calculation a first datum and generates an output datum from an input datum, wherein said result is a verification datum, and comprising:

comparing the verification datum to the first datum for verification of the correct execution of the first cryptographic algorithm.

21. The data processing method according to claim 19 , wherein the first cryptographic algorithm is masked by the first random value and in that the second cryptographic algorithm is masked by the second random value.

Assignments (3)
CHANGE OF NAME Recorded Dec 16, 2022
From: OBERTHUR TECHNOLOGIES
To: IDEMIA FRANCE
Reel/Frame 062140/0907 →
CHANGE OF NAME Recorded May 29, 2012
From: OBERTHUR CARD SYSTEMS SA
To: OBERTHUR TECHNOLOGIES
Reel/Frame 028277/0763 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 30, 2006
From: BEVAN, REGIS; GIRAUD, CHRISTOPHE; THIEBEAULD DE LA CROUEE, HUGUES
To: OBERTHUR CARD SYSTEMS SA
Reel/Frame 018587/0674 →