Title :
A Framework for Privacy-Preserving Mobile Payment on Security Enhanced ARM TrustZone Platforms
Author :
Pirker, Martin ; Slamanig, Daniel
Author_Institution :
Inst. for Appl. Inf. Process. & Commun. (IAIK), Graz Univ. of Technol. (TUG), Graz, Austria
Abstract :
Modern smartphones with the capability to be always online and equipped with data transfer interfaces such as NFC allow to take advantage of a wide variety of services and pave the way for new classes of services. Naturally, not every service will be available for free, some providers will charge money for the services provided. Usually, users are uniquely identified by the provider of a service for billing purposes and providers therefore maintain user profiles. This allows to personalize services with respect to user´s interests and preferences. However, it is problematic regarding user´s privacy since users disclose lots of sensitive information to the service provider. Different mobile payment solutions have been proposed to date, but privacy aspects are usually not considered at all. In this paper, we demonstrate how privacy friendly payment can be realized using a recent payment mechanisms in combination with an ARM processor platform with TrustZone enhancements. We discuss the public transport ticket domain as an example. Then we propose a platform framework that can be used for arbitrary applications requiring a privacy preserving online remote prepaid payment system suitable for micro as well as macro payments.
Keywords :
data privacy; electronic commerce; microprocessor chips; mobile computing; security of data; smart phones; traffic engineering computing; transportation; ARM processor platform; billing purposes; data transfer interfaces; macro payments; micro payments; privacy friendly payment; privacy preserving online remote prepaid payment system; privacy-preserving mobile payment; public transport ticket domain; security enhanced ARM TrustZone platforms; smartphones; Internet; Mobile communication; Privacy; Security; Smart phones; Software; ARM TrustZone; Mobile privacy-preserving payment; Public transport tickets; Smartphone;
Conference_Titel :
Trust, Security and Privacy in Computing and Communications (TrustCom), 2012 IEEE 11th International Conference on
Conference_Location :
Liverpool
Print_ISBN :
978-1-4673-2172-3
DOI :
10.1109/TrustCom.2012.28