Title :
Secure Display and Secure Transactions Using a Handset
Author :
Ghotra, Sandeep Singh ; Mandhan, Baldev Kumar ; Wei, Sam Shang Chun ; Song, Yi ; Steketee, Chris
Author_Institution :
Univ. of South Australia, Adelaide
Abstract :
The security risks of using standard personal computers and operating systems for confidential transactions such as Internet banking are well-known. This is one reason for the interest in the mobile phone/ handset as a Personal Trusted Device (PTD). However, mobile phones have other shortcomings, for example the constraints of working with a small screen. This paper explores the use of a dedicated device - a Secure Display Device (SDD) - which, when used together with a mobile phone, combines the security of the phone as PTD with the characteristics, such as large display size, that can be offered by non-portable hardware. We describe three prototype SDD systems which we built in order to test these ideas. Two of them use a simulated SDD implemented entirely in software on a personal computer: a Mobile Banking system in which the SDD is used for its display capability, and a Payment System in which the SDD is an Automatic Teller Machine. In addition, we describe our work on a prototype hardware-based implementation of the Mobile Banking system that can be plugged into a standard computer monitor or TV. We conclude by analysing the lessons learnt and canvassing further use cases for SDD systems.
Keywords :
Internet; banking; data privacy; mobile computing; mobile handsets; security of data; transaction processing; Internet banking; automatic teller machine; confidential transactions; mobile banking system; mobile handset; mobile phone; operating systems; payment system; personal computers; personal trusted device; phone security; secure display device; secure transaction; security risk; Banking; Computer displays; Computer security; Large screen displays; Microcomputers; Mobile computing; Mobile handsets; Prototypes; Software prototyping; Telephone sets;
Conference_Titel :
Management of Mobile Business, 2007. ICMB 2007. International Conference on the
Conference_Location :
Toronto, Ont.
Print_ISBN :
0-7695-2803-1
Electronic_ISBN :
0-7695-2803-1
DOI :
10.1109/ICMB.2007.56