SlideShare une entreprise Scribd logo
1  sur  17
Télécharger pour lire hors ligne
SIM Cards Overview
  C. Enrique Ortiz | August 2009
 http://weblog.cenriqueortiz.com




                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
What is a SIM Card?

• SIM or Subscriber Identification Module is a smart card
 that is included in every cell phone of the GSM family of
 networks
     6 or 8-pin flat connector embedded on the top of the card
     A fully fledge microcomputer with an OS
• UICC stands for Universal Integrated Circuit Card is a
 new generation SIM




  Source:3, Java Card 3: Classic Functionality Gets a Connectivity Boost   © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
More on SIM and SIM Cards

• SIM cards hold subscriber information and memory, for
 example for personal directory of numbers
   SIM identifies a subscriber via unique International Mobile
   Subscriber Identity (IMSI)
   >The first 3 digits represent the Mobile Country Code (MCC)
   >The next 2 digits represent the Mobile Network Code (MNC)
   >The next 10 digits represent the mobile station identification number
• SIM is the application that runs on a SIM Card
   SIM is to GSM, what USIM is to UMTS & RUIM/CSIM is to
   CDMA
• Today most SIM cards are based on Java Card


                                                © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
SIM and Smartcard Standards                                                   Standards for:
                                                                              •Toolkit
                                                                              •File & Auth
                                                                              •APIs
                                                                              •OTA
                                                                              •Smartcards


                                                             ISO/IEC 14443 is the international standard for
                                                             contactless smart chips and cards that operate
                                                             (i.e., can be read from or written to) at a
                                                             distance of less than 10 centimeters (4 inches).
                                                             This standard operates at 13.56 MHz and
                                                             includes specifications for the physical
                                                             characteristics, radio frequency power and
                                                             signal interface, initialization and anti-collision
                                                             protocols and transmission protocol.

                                                             ISO/IEC 7816 is the international standard for
                                                             contact smart cards. ISO/IEC 7816 Parts 4 and
                                           Source: Gemalto
                                                             above are used by both contact and contactless
•ETSI -- Specifications in blue                              smart card applications for security operations
•3GPP -- Specifications in green and red                     and commands for interchange.
                                                                                        Source: Smart Card Alliance


  Java Card (classic or 3.0) Applets are built using Java and run in a JCRE
                                                             © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Industry: Interesting Numbers for 2008

• Global SIM card shipments exceeded 2.9 billion units
 during 2008
     Strong demand from the emerging markets of India, China,
     Asia Pacific and Latin America contributing to a 29 per cent
     increase on shipments over the previous year
• On average, memory size increased by 11 per cent on
  2007 figures
• Number of cards shipped with a S@T (SIMalliance
  Toolkit) browser had a growth rate of 22 per cent
• 3G enabled SIM cards represented 14 per cent of total
  shipments in 2008
  Source:SIMalliance


                                           © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Next Generation SIM Cards

• Next gen SIM Cards integrate with new functionality…
• Mobile Near Field Communication (NFC)
• More advanced Applications
   Address book, calendar back-up, messaging, teleconferencing
   and file transfers, banking and access control, Web!
• Smart Card Web Server
   Web apps running right on SIM Cards! And TCP stacks
• High-capacity SIM cards
   More and more memory/capacity
• Multi-Media support (in conjunction w/ browser)

                                       © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Overview: Programming SIM Cards

• SIM Toolkit

                                                          Toolkit
                                                          “conversation”
                                                          between phone
                                                          and Smartcard


                                   Source: Gemalto




A SIM Toolkit is a data management application (applet) for SIM
cards, part of which is resident in the SIM card
   •Icon, application, settings and help management
   •User (simple menus), mobile, network and card interactions

                                              © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Overview: Java Card Classic




import javacard.framework.*
...
public class MyApplet extends Applet {
    // Definitions of APDU-related instruction codes
    ...
    MyApplet() {...} // Constructor
    // Life-cycle methods
    install() {...}                                    Source: Introduction to Java Card Technology by C. Enrique Ortiz
    select() {...}
    deselect() {...}
    process() {...}
    // Private methods
    ...
}
                                                                   © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
SIM / Smart Card Application Communication

                     Application Communication Architecture




                                      Response APDU Structure

                                       Source: SIM Protocols by Mobile Forensics
 Command APDU Structure

                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Classical Java Card Development




                                                                                                IDEs can
                                                                                                simplify
                                                                                                these steps!




    Source: Introduction to Java Card Technology by C. Enrique Ortiz
                                                                       © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Java Card 3.0

• Extends (and simplifies) the programming model
• Classic Applets (Java Card 2 limitations apply for these
 applications)
   Communication using APDU protocol
   Backward compatibility
• Extended Applets
   Communication using APDU protocol
   Similar to Classic Applets, and can use all the new APIs, like
   Threads, Strings, and GCF (Generic Connection Framework)
• Web Enabled!
   Based on Servlet 2.4 API
   Communication using standard HTTP/ HTTPS protocol
   HTML, JavaScript, etc. (much richer UIs than prior)
                                           © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Java Card 3 Architecture




                                 Source -- Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach


       •All data types except float and double
       •Multiple threads
  NEW! •Extensive API support (java.lang, java.util, GCF, and so on)
       •Direct handling of class files, with all loading and linking on card
       •All new Java language syntax constructs (enums, generics, …)
       •Automatic garbage collection
                                                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Smartcard Web Server
• Very exciting and powerful SIM card evolution in my opinion!
    It took more than 10 years but we finally have it! Very powerful.
• Leverages the browser already present in the handset to run local
  web applications preloaded into the SIM
• Local web-based applications are securely stored in the SIM card
  and can be updated remotely
                                           Best of both worlds
• Servlets framework on SIM Cards!         Mobile SIM + Web




                                   Source: Gemalto
     Potential Apps:
     •Rich SIM card apps
     •On-Device Self-Service
     •Application Management
     •Mobile Payments                                            Source: Gemalto
     •Mobile NFC
                                                     © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Benefits of Smartcard Web Server
  • Rich UI and Advanced Capabilities
     Access to location, SMS, servers on the web, secure local-storage,
     personalized experience
     Call-intercepts to perform actions on-device, for example help
     troubleshoot issues before calling the support representative
  • Manageable
     Secure, remote application management
  • SIM-card based /On-Device
     Works Connected and Disconnected
     Secure connections and environment
     Uses no wireless resources when doing on-device web apps
     Access to information such as location that can help personalize the
     experience
  • Easy to deploy
     Highly customizable application; can be modified as needed and push to
     handsets in real-time
     Based on OMA and Web standards - xHTML, CSS, JavaScript
                                               © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Some Challenges

• SIM Card Applications still a niche, controlled by
 operators
   But if you have the relationships, it is a good niche ($)
• Applet development is not trivial with few experts
   This can translate to opportunities for you!
• Smartcard Web Server requires new generation SIM
 cards
   Thus conversion process will make adoption slow & expensive
   Expect emerging markets adopting first




                                            © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Gemalto Toolkit & UpTeq Multimedia SIM Card




  Toolkit



                 Download from: http://developer.gemalto.com/



               See http://www.gemalto.com/telecom/upteq/multimedia.html


            Smartcard Web Server
                                          © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
Resources

• Gemalto Developer Website
• Sun Java Card Website
• SIMalliance Website
• Smart Card Alliance Website
• SIM Card Protocols Paper by Mobile Forensics
• Mobile Forensics Blog
• Introduction to Java Card Technology, part 1 by C.
  Enrique Ortiz
• Article Java Card 3: Classic Functionality Gets a
  Connectivity Boost by Peter Allenbach

                                      © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com

Contenu connexe

Tendances (20)

CELLULAR COMMUNICATION SYSTEM
CELLULAR COMMUNICATION SYSTEMCELLULAR COMMUNICATION SYSTEM
CELLULAR COMMUNICATION SYSTEM
 
Gsm.....ppt
Gsm.....pptGsm.....ppt
Gsm.....ppt
 
Smart card technology
Smart card technologySmart card technology
Smart card technology
 
Security Issues for Cellular Telephony
Security Issues for Cellular TelephonySecurity Issues for Cellular Telephony
Security Issues for Cellular Telephony
 
Mobile communication
Mobile communicationMobile communication
Mobile communication
 
4g mobile-communication-system-1219761984973028-8
4g mobile-communication-system-1219761984973028-84g mobile-communication-system-1219761984973028-8
4g mobile-communication-system-1219761984973028-8
 
Cellular network
Cellular networkCellular network
Cellular network
 
eSIM Overview
eSIM OvervieweSIM Overview
eSIM Overview
 
Cell phone jammer ppt
Cell phone jammer pptCell phone jammer ppt
Cell phone jammer ppt
 
Generations of Mobile Communications
Generations of Mobile CommunicationsGenerations of Mobile Communications
Generations of Mobile Communications
 
e-SIM
e-SIMe-SIM
e-SIM
 
Gsm – global system for mobile communication
Gsm – global system for mobile communicationGsm – global system for mobile communication
Gsm – global system for mobile communication
 
GSM ARCHITECTURE
GSM ARCHITECTUREGSM ARCHITECTURE
GSM ARCHITECTURE
 
eSIM
eSIMeSIM
eSIM
 
eSIM Deep Dive
eSIM Deep DiveeSIM Deep Dive
eSIM Deep Dive
 
Phone cloning
Phone cloning Phone cloning
Phone cloning
 
Smart card
Smart cardSmart card
Smart card
 
Presentation on Jamming
Presentation on JammingPresentation on Jamming
Presentation on Jamming
 
GSM Presentation
GSM PresentationGSM Presentation
GSM Presentation
 
Cellular communication
Cellular communicationCellular communication
Cellular communication
 

En vedette

Mobile Phone and SIM card cloning
Mobile Phone and SIM card cloningMobile Phone and SIM card cloning
Mobile Phone and SIM card cloningAnkur Kumar
 
Lost Report of SIM Card
Lost Report of SIM CardLost Report of SIM Card
Lost Report of SIM CardGokke Kone
 
USAT : USIM Application Toolkit
USAT : USIM Application ToolkitUSAT : USIM Application Toolkit
USAT : USIM Application ToolkitByeongweon Moon
 
Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Grant Barker
 
Science intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISScience intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISarjeanmedel
 
Architecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsArchitecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsThomas de Lazzari
 
Spelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySpelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySau Sheong Chang
 
Technology life cycle of java
Technology life cycle of javaTechnology life cycle of java
Technology life cycle of javaSanjeev Gupta
 
Government Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformGovernment Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformRamesh Nagappan
 
EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection Damir Delija
 
Unit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenUnit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenKathryn Brown
 

En vedette (17)

Mobile Phone and SIM card cloning
Mobile Phone and SIM card cloningMobile Phone and SIM card cloning
Mobile Phone and SIM card cloning
 
SIM Initialization
SIM InitializationSIM Initialization
SIM Initialization
 
Lost Report of SIM Card
Lost Report of SIM CardLost Report of SIM Card
Lost Report of SIM Card
 
USAT : USIM Application Toolkit
USAT : USIM Application ToolkitUSAT : USIM Application Toolkit
USAT : USIM Application Toolkit
 
Cyber security for ia and risk 150601
Cyber security for ia and risk 150601Cyber security for ia and risk 150601
Cyber security for ia and risk 150601
 
SIM: Matter
SIM: MatterSIM: Matter
SIM: Matter
 
Mobile phone-cloning
Mobile phone-cloningMobile phone-cloning
Mobile phone-cloning
 
Science intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESISScience intervention material SCIENCE PHOTOSYNTHESIS
Science intervention material SCIENCE PHOTOSYNTHESIS
 
Architecture and Development of NFC Applications
Architecture and Development of NFC ApplicationsArchitecture and Development of NFC Applications
Architecture and Development of NFC Applications
 
Spelunking Credit Cards with Ruby
Spelunking Credit Cards with RubySpelunking Credit Cards with Ruby
Spelunking Credit Cards with Ruby
 
Technology life cycle of java
Technology life cycle of javaTechnology life cycle of java
Technology life cycle of java
 
Atoms
AtomsAtoms
Atoms
 
Subscriber Identity Module
Subscriber Identity ModuleSubscriber Identity Module
Subscriber Identity Module
 
Government Citizen ID using Java Card Platform
Government Citizen ID using Java Card PlatformGovernment Citizen ID using Java Card Platform
Government Citizen ID using Java Card Platform
 
EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection EnCase Enterprise Basic File Collection
EnCase Enterprise Basic File Collection
 
Unit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X MenUnit Planner Greek Roman Myths and Marvels X Men
Unit Planner Greek Roman Myths and Marvels X Men
 
Most usefull at commands
Most usefull at commandsMost usefull at commands
Most usefull at commands
 

Similaire à SIM Card Overview

Access control basics-3
Access control basics-3Access control basics-3
Access control basics-3grantlerc
 
Smart Card Presentation
Smart Card Presentation Smart Card Presentation
Smart Card Presentation ppriteshs
 
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...IJRTEMJOURNAL
 
Study of Java Card and its Application
Study of Java Card and its ApplicationStudy of Java Card and its Application
Study of Java Card and its Applicationeditor1knowledgecuddle
 
Security applications with Java Card
Security applications with Java CardSecurity applications with Java Card
Security applications with Java CardJulien SIMON
 
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET Journal
 
IRJET- Fingerprient based Vehicle Starter
IRJET-  	  Fingerprient based Vehicle StarterIRJET-  	  Fingerprient based Vehicle Starter
IRJET- Fingerprient based Vehicle StarterIRJET Journal
 
smartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfsmartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfssuser5b47c8
 
Paperless ticket system
Paperless ticket systemPaperless ticket system
Paperless ticket systemHardik Shah
 
Virtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadVirtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadBrain IoT Project
 
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET Journal
 

Similaire à SIM Card Overview (20)

Smart id's
Smart id'sSmart id's
Smart id's
 
Access control basics-3
Access control basics-3Access control basics-3
Access control basics-3
 
Smart Card Presentation
Smart Card Presentation Smart Card Presentation
Smart Card Presentation
 
Smart cards
Smart cards Smart cards
Smart cards
 
Smart cards
Smart cardsSmart cards
Smart cards
 
Smart card
Smart cardSmart card
Smart card
 
Smart card ppt
Smart card pptSmart card ppt
Smart card ppt
 
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
Improvement of a PIN-Entry Method Resilient to ShoulderSurfing and Recording ...
 
Study of Java Card and its Application
Study of Java Card and its ApplicationStudy of Java Card and its Application
Study of Java Card and its Application
 
Security applications with Java Card
Security applications with Java CardSecurity applications with Java Card
Security applications with Java Card
 
A1103040106
A1103040106A1103040106
A1103040106
 
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)IRJET- A Survey on Cardless Automated Teller Machine(ATM)
IRJET- A Survey on Cardless Automated Teller Machine(ATM)
 
IRJET- Fingerprient based Vehicle Starter
IRJET-  	  Fingerprient based Vehicle StarterIRJET-  	  Fingerprient based Vehicle Starter
IRJET- Fingerprient based Vehicle Starter
 
smartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdfsmartcard-121018150432-phpapp01.pdf
smartcard-121018150432-phpapp01.pdf
 
Paperless ticket system
Paperless ticket systemPaperless ticket system
Paperless ticket system
 
Smart Card based Robust Security System
Smart Card based Robust Security SystemSmart Card based Robust Security System
Smart Card based Robust Security System
 
M Commerce
M CommerceM Commerce
M Commerce
 
Virtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges AheadVirtual Twins: Modeling Trends and Challenges Ahead
Virtual Twins: Modeling Trends and Challenges Ahead
 
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
IRJET- Design and Implementation of Fingerprint based Bank Locker System usin...
 
Card reader
Card readerCard reader
Card reader
 

Plus de Carlos Enrique Ortiz

Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Carlos Enrique Ortiz
 
Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Carlos Enrique Ortiz
 
Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Carlos Enrique Ortiz
 
Mobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsMobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsCarlos Enrique Ortiz
 
The Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingThe Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingCarlos Enrique Ortiz
 
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Carlos Enrique Ortiz
 
Mobility, Context, Interactions and Data
Mobility, Context, Interactions and DataMobility, Context, Interactions and Data
Mobility, Context, Interactions and DataCarlos Enrique Ortiz
 

Plus de Carlos Enrique Ortiz (8)

Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...Building and running a Data and AI-driven news-media organization(c enrique-o...
Building and running a Data and AI-driven news-media organization(c enrique-o...
 
Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)Media publishing transformation in the digital era (digitalworks.ai nov2018)
Media publishing transformation in the digital era (digitalworks.ai nov2018)
 
Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)Contextual Voice/Communications as an App or App Feature (on Android)
Contextual Voice/Communications as an App or App Feature (on Android)
 
Mobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web InteractionsMobile Real-time Physical and Web Interactions
Mobile Real-time Physical and Web Interactions
 
The Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile ComputingThe Mobile Context and People-centric Mobile Computing
The Mobile Context and People-centric Mobile Computing
 
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
Concepts And Technologies Behind Real-Time Demand Data - A Consumer, Mobile, ...
 
NFC In Mobile Commerce
NFC In Mobile CommerceNFC In Mobile Commerce
NFC In Mobile Commerce
 
Mobility, Context, Interactions and Data
Mobility, Context, Interactions and DataMobility, Context, Interactions and Data
Mobility, Context, Interactions and Data
 

Dernier

How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024The Digital Insurer
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...apidays
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamUiPathCommunity
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWERMadyBayot
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfOverkill Security
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsNanddeep Nachan
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...DianaGray10
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
Cyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdfCyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdfOverkill Security
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusZilliz
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...apidays
 

Dernier (20)

How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdf
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Cyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdfCyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdf
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 

SIM Card Overview

  • 1. SIM Cards Overview C. Enrique Ortiz | August 2009 http://weblog.cenriqueortiz.com © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 2. What is a SIM Card? • SIM or Subscriber Identification Module is a smart card that is included in every cell phone of the GSM family of networks 6 or 8-pin flat connector embedded on the top of the card A fully fledge microcomputer with an OS • UICC stands for Universal Integrated Circuit Card is a new generation SIM Source:3, Java Card 3: Classic Functionality Gets a Connectivity Boost © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 3. More on SIM and SIM Cards • SIM cards hold subscriber information and memory, for example for personal directory of numbers SIM identifies a subscriber via unique International Mobile Subscriber Identity (IMSI) >The first 3 digits represent the Mobile Country Code (MCC) >The next 2 digits represent the Mobile Network Code (MNC) >The next 10 digits represent the mobile station identification number • SIM is the application that runs on a SIM Card SIM is to GSM, what USIM is to UMTS & RUIM/CSIM is to CDMA • Today most SIM cards are based on Java Card © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 4. SIM and Smartcard Standards Standards for: •Toolkit •File & Auth •APIs •OTA •Smartcards ISO/IEC 14443 is the international standard for contactless smart chips and cards that operate (i.e., can be read from or written to) at a distance of less than 10 centimeters (4 inches). This standard operates at 13.56 MHz and includes specifications for the physical characteristics, radio frequency power and signal interface, initialization and anti-collision protocols and transmission protocol. ISO/IEC 7816 is the international standard for contact smart cards. ISO/IEC 7816 Parts 4 and Source: Gemalto above are used by both contact and contactless •ETSI -- Specifications in blue smart card applications for security operations •3GPP -- Specifications in green and red and commands for interchange. Source: Smart Card Alliance Java Card (classic or 3.0) Applets are built using Java and run in a JCRE © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 5. Industry: Interesting Numbers for 2008 • Global SIM card shipments exceeded 2.9 billion units during 2008 Strong demand from the emerging markets of India, China, Asia Pacific and Latin America contributing to a 29 per cent increase on shipments over the previous year • On average, memory size increased by 11 per cent on 2007 figures • Number of cards shipped with a S@T (SIMalliance Toolkit) browser had a growth rate of 22 per cent • 3G enabled SIM cards represented 14 per cent of total shipments in 2008 Source:SIMalliance © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 6. Next Generation SIM Cards • Next gen SIM Cards integrate with new functionality… • Mobile Near Field Communication (NFC) • More advanced Applications Address book, calendar back-up, messaging, teleconferencing and file transfers, banking and access control, Web! • Smart Card Web Server Web apps running right on SIM Cards! And TCP stacks • High-capacity SIM cards More and more memory/capacity • Multi-Media support (in conjunction w/ browser) © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 7. Overview: Programming SIM Cards • SIM Toolkit Toolkit “conversation” between phone and Smartcard Source: Gemalto A SIM Toolkit is a data management application (applet) for SIM cards, part of which is resident in the SIM card •Icon, application, settings and help management •User (simple menus), mobile, network and card interactions © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 8. Overview: Java Card Classic import javacard.framework.* ... public class MyApplet extends Applet { // Definitions of APDU-related instruction codes ... MyApplet() {...} // Constructor // Life-cycle methods install() {...} Source: Introduction to Java Card Technology by C. Enrique Ortiz select() {...} deselect() {...} process() {...} // Private methods ... } © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 9. SIM / Smart Card Application Communication Application Communication Architecture Response APDU Structure Source: SIM Protocols by Mobile Forensics Command APDU Structure © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 10. Classical Java Card Development IDEs can simplify these steps! Source: Introduction to Java Card Technology by C. Enrique Ortiz © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 11. Java Card 3.0 • Extends (and simplifies) the programming model • Classic Applets (Java Card 2 limitations apply for these applications) Communication using APDU protocol Backward compatibility • Extended Applets Communication using APDU protocol Similar to Classic Applets, and can use all the new APIs, like Threads, Strings, and GCF (Generic Connection Framework) • Web Enabled! Based on Servlet 2.4 API Communication using standard HTTP/ HTTPS protocol HTML, JavaScript, etc. (much richer UIs than prior) © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 12. Java Card 3 Architecture Source -- Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach •All data types except float and double •Multiple threads NEW! •Extensive API support (java.lang, java.util, GCF, and so on) •Direct handling of class files, with all loading and linking on card •All new Java language syntax constructs (enums, generics, …) •Automatic garbage collection © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 13. Smartcard Web Server • Very exciting and powerful SIM card evolution in my opinion! It took more than 10 years but we finally have it! Very powerful. • Leverages the browser already present in the handset to run local web applications preloaded into the SIM • Local web-based applications are securely stored in the SIM card and can be updated remotely Best of both worlds • Servlets framework on SIM Cards! Mobile SIM + Web Source: Gemalto Potential Apps: •Rich SIM card apps •On-Device Self-Service •Application Management •Mobile Payments Source: Gemalto •Mobile NFC © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 14. Benefits of Smartcard Web Server • Rich UI and Advanced Capabilities Access to location, SMS, servers on the web, secure local-storage, personalized experience Call-intercepts to perform actions on-device, for example help troubleshoot issues before calling the support representative • Manageable Secure, remote application management • SIM-card based /On-Device Works Connected and Disconnected Secure connections and environment Uses no wireless resources when doing on-device web apps Access to information such as location that can help personalize the experience • Easy to deploy Highly customizable application; can be modified as needed and push to handsets in real-time Based on OMA and Web standards - xHTML, CSS, JavaScript © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 15. Some Challenges • SIM Card Applications still a niche, controlled by operators But if you have the relationships, it is a good niche ($) • Applet development is not trivial with few experts This can translate to opportunities for you! • Smartcard Web Server requires new generation SIM cards Thus conversion process will make adoption slow & expensive Expect emerging markets adopting first © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 16. Gemalto Toolkit & UpTeq Multimedia SIM Card Toolkit Download from: http://developer.gemalto.com/ See http://www.gemalto.com/telecom/upteq/multimedia.html Smartcard Web Server © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com
  • 17. Resources • Gemalto Developer Website • Sun Java Card Website • SIMalliance Website • Smart Card Alliance Website • SIM Card Protocols Paper by Mobile Forensics • Mobile Forensics Blog • Introduction to Java Card Technology, part 1 by C. Enrique Ortiz • Article Java Card 3: Classic Functionality Gets a Connectivity Boost by Peter Allenbach © 2009 C. Enrique Ortiz – http://CEnriqueOrtiz.com