SIM卡应用与安全缺陷分析.docx
《SIM卡应用与安全缺陷分析.docx》由会员分享,可在线阅读,更多相关《SIM卡应用与安全缺陷分析.docx(28页珍藏版)》请在冰豆网上搜索。
SIM卡应用与安全缺陷分析
SIM卡应用与安全缺陷分析
detectionandrecord,consistentwithrequirementstolowerproduction;Excavationpileconstructionofexcavationprocessmusthavespecialcare;Intervalstheexcavationholepileontherequireddistancetodig,digdeepeach500-1000mmwallonce;Sectiononewallhigherthanhole250mm,requiredopeningprotectionfacilities;Lightingholejobsafetyminer'slamporthesafetyvoltageof12volts;Lowerpersonnelmustwearhelmets,seatbelts,bytherigidladder,intotheholeafterworkorjob,youmustset1.2mhighfencearoundtheholeandgaikongkou;Diggingwhenpumping,operatingpersonnelmustbeonthegroundbeforetheycanbecarriedoutafterthepumppowersupplymustbedisconnected;10,acceptancemaybehomework,notqualifiedforacceptanceoracceptancenotmadethenextprocesseswork.Sitespecificsecuritydisclosuredisclosuresignatures;11,targetedtheconstructionsitesafetydisclosure;12,theother.DisclosuresignaturestoacceptcardsdeliverthesignaturetimeJapanforminduplicate,teamsfromthedepositofaninstrument,andfiledareport.Earthworkconstructiontechnologytogivethelow-down(referencetables)4-2-2constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Manualexcavationshouldbefromthetopdown,layer-by-layerexcavationdiggodsEarthisstrictlyprohibited,thereshouldbeadequatelightingatnight;DeepFoundationpitwhensoilwallchangesatanytime,ifthereareanylargecrackshadtostopconstruction,reportingtotheprojectmanagerforprocessing;Inthepitordeepinwork,mustwearahelmet,nodirtandotherobjectsabovefallheadinjury,intheeventofgroundwaterseepage,waterwellshouldbeexcluded;Attheside,ifthereareanyunidentifiablegoodsorpriordidnotforeseethecomingofcables,pipesandsoon,shouldstopoperations,reportingtothesuperior,noknockingorplaywith;Artificialliftdirt,youshouldreviewthetools,ropes,hookissolid,liftingverticalandnotsomeone,wheel,shouldbetheformationofwalkways,toremovebarriers;Underwateroperationstostrictlychecktheelectricalzeroconnectionandleakageprotectionswitch,cableshouldbeingoodconditionandwearPPE;Slope,tobecarriedoutinaccordancewiththerequirements,andcannotconcentratetoomuch,suchaswhenthesoilispoor,shallassignapersonincustody;Acceptancecanbecarriedoutoperations,acceptanceorunqualifiedacceptancenotmadethenextprocesseswork;10,theconstructionsite...4-2-1constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Diggingholes,hoisting,Dado,residueusedintransportationofallequipment,facilities,safety
SIM卡应用与安全缺陷分析
一、概述
移动电话机与SIM卡共同构成移动通信终端设备。
无论是GSM系统还是CDMA系统,数字移动电话机用户在“入网”时会得到一张SIM卡(SubscriberIdentityModule)或UIM卡(UserIdentityModule)。
SIM卡是一张符合GSM规范的“智慧卡”,可以插入任何一部符合GSM规范的移动电话中,实现“电话号码随卡不随机的功能”,而且通话费用自动计入持卡用户的账单上,与手机无关。
二、SIM卡硬件特性
1、外部特征
在实际使用中有两种功能相同而形式不同的SIM卡:
卡片式(俗称大卡)SIM卡,这种形式的SIM卡符合有关IC卡的ISO7816标准,类似IC卡。
嵌入式(俗称小卡)SIM卡,其大小只有25mm×15mm,是半永久性地装入到移动台设备中的卡。
“大卡”上真正起作用的是它上面的那张“小卡”,而“小卡”上起作用的部分则是卡面上的铜制接口及其内部胶封的卡内逻辑电路。
目前国内流行样式是“小卡”,小卡也可以换成“大卡”(需加装一卡托)。
“大卡”和“小卡”分别适用于不同类型的GSM移动电话,早期机型如摩托罗拉GC87C、308C等手机用的是“大卡”,而目前新出的机型基本上都使用“小卡”。
2、SIM卡接口
SIM卡是通过卡面上铜制接口来连接卡内逻辑电路与移动终端的,SIM卡芯片有八个触点,通常与移动设备连接需要六个触点,具体接口定义如下图所示:
3、内部结构
SIM卡是一个装有微处理器的芯片卡,它的内部有5个模块,并且每个模块都对应一个功能:
微处理器CPU(8位)、程序存储器ROM(3--8kbit)、工作存储器RAM(6--16kbit)数据存储器EEPROM(128--256kbit)和串行通信单元。
这5个模块被胶封在SIM卡铜制接口后与普通IC卡封装方式相同。
这五个模块必须集成在一块集成电路中,否则其安全性会受到威胁。
因为,芯片间的连线可能成为非法存取和盗用SIM卡的重要线索。
detectionandrecord,consistentwithrequirementstolowerproduction;Excavationpileconstructionofexcavationprocessmusthavespecialcare;Intervalstheexcavationholepileontherequireddistancetodig,digdeepeach500-1000mmwallonce;Sectiononewallhigherthanhole250mm,requiredopeningprotectionfacilities;Lightingholejobsafetyminer'slamporthesafetyvoltageof12volts;Lowerpersonnelmustwearhelmets,seatbelts,bytherigidladder,intotheholeafterworkorjob,youmustset1.2mhighfencearoundtheholeandgaikongkou;Diggingwhenpumping,operatingpersonnelmustbeonthegroundbeforetheycanbecarriedoutafterthepumppowersupplymustbedisconnected;10,acceptancemaybehomework,notqualifiedforacceptanceoracceptancenotmadethenextprocesseswork.Sitespecificsecuritydisclosuredisclosuresignatures;11,targetedtheconstructionsitesafetydisclosure;12,theother.DisclosuresignaturestoacceptcardsdeliverthesignaturetimeJapanforminduplicate,teamsfromthedepositofaninstrument,andfiledareport.Earthworkconstructiontechnologytogivethelow-down(referencetables)4-2-2constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Manualexcavationshouldbefromthetopdown,layer-by-layerexcavationdiggodsEarthisstrictlyprohibited,thereshouldbeadequatelightingatnight;DeepFoundationpitwhensoilwallchangesatanytime,ifthereareanylargecrackshadtostopconstruction,reportingtotheprojectmanagerforprocessing;Inthepitordeepinwork,mustwearahelmet,nodirtandotherobjectsabovefallheadinjury,intheeventofgroundwaterseepage,waterwellshouldbeexcluded;Attheside,ifthereareanyunidentifiablegoodsorpriordidnotforeseethecomingofcables,pipesandsoon,shouldstopoperations,reportingtothesuperior,noknockingorplaywith;Artificialliftdirt,youshouldreviewthetools,ropes,hookissolid,liftingverticalandnotsomeone,wheel,shouldbetheformationofwalkways,toremovebarriers;Underwateroperationstostrictlychecktheelectricalzeroconnectionandleakageprotectionswitch,cableshouldbeingoodconditionandwearPPE;Slope,tobecarriedoutinaccordancewiththerequirements,andcannotconcentratetoomuch,suchaswhenthesoilispoor,shallassignapersonincustody;Acceptancecanbecarriedoutoperations,acceptanceorunqualifiedacceptancenotmadethenextprocesseswork;10,theconstructionsite...4-2-1constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Diggingholes,hoisting,Dado,residueusedintransportationofallequipment,facilities,safety
detectionandrecord,consistentwithrequirementstolowerproduction;Excavationpileconstructionofexcavationprocessmusthavespecialcare;Intervalstheexcavationholepileontherequireddistancetodig,digdeepeach500-1000mmwallonce;Sectiononewallhigherthanhole250mm,requiredopeningprotectionfacilities;Lightingholejobsafetyminer'slamporthesafetyvoltageof12volts;Lowerpersonnelmustwearhelmets,seatbelts,bytherigidladder,intotheholeafterworkorjob,youmustset1.2mhighfencearoundtheholeandgaikongkou;Diggingwhenpumping,operatingpersonnelmustbeonthegroundbeforetheycanbecarriedoutafterthepumppowersupplymustbedisconnected;10,acceptancemaybehomework,notqualifiedforacceptanceoracceptancenotmadethenextprocesseswork.Sitespecificsecuritydisclosuredisclosuresignatures;11,targetedtheconstructionsitesafetydisclosure;12,theother.DisclosuresignaturestoacceptcardsdeliverthesignaturetimeJapanforminduplicate,teamsfromthedepositofaninstrument,andfiledareport.Earthworkconstructiontechnologytogivethelow-down(referencetables)4-2-2constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Manualexcavationshouldbefromthetopdown,layer-by-layerexcavationdiggodsEarthisstrictlyprohibited,thereshouldbeadequatelightingatnight;DeepFoundationpitwhensoilwallchangesatanytime,ifthereareanylargecrackshadtostopconstruction,reportingtotheprojectmanagerforprocessing;Inthepitordeepinwork,mustwearahelmet,nodirtandotherobjectsabovefallheadinjury,intheeventofgroundwaterseepage,waterwellshouldbeexcluded;Attheside,ifthereareanyunidentifiablegoodsorpriordidnotforeseethecomingofcables,pipesandsoon,shouldstopoperations,reportingtothesuperior,noknockingorplaywith;Artificialliftdirt,youshouldreviewthetools,ropes,hookissolid,liftingverticalandnotsomeone,wheel,shouldbetheformationofwalkways,toremovebarriers;Underwateroperationstostrictlychecktheelectricalzeroconnectionandleakageprotectionswitch,cableshouldbeingoodconditionandwearPPE;Slope,tobecarriedoutinaccordancewiththerequirements,andcannotconcentratetoomuch,suchaswhenthesoilispoor,shallassignapersonincustody;Acceptancecanbecarriedoutoperations,acceptanceorunqualifiedacceptancenotmadethenextprocesseswork;10,theconstructionsite...4-2-1constructionorganizationnameprojectnametheconstructionsiteconstructionrequirementsofsecuritytechnicalcardsonthetableinaccordancewiththeconstructionplanoperations;Diggingholes,hoisting,Dado,residueusedintransportationofallequipment,facilities,safety
SIM卡同手机连接时至少需要5条连接线(通常编程口未定义)
数据I/O口(Data)
复位(RST)
接地端(GND)
电源(Vcc)
时钟(CLK)如上图所示。
SIM卡的供电分为5V(1998年前发行)、5V与3V兼容、3V、1.8V等,当然这些卡必须与相应的移动电话机配合使用,即移动电话机产生的SIM卡供电电压与该SIM卡所需的电压相匹配。
卡电路中的电源VCC、地GND是卡电路工作的必要条件。
卡电源用万用表就可以检测到。
SIM卡插入移动电