US2018309750A1PendingUtilityA1

In-circuit security system and methods for controlling access to and use of sensitive data

Assignee: APPLE INCPriority: May 30, 2003Filed: Feb 6, 2018Published: Oct 25, 2018
Est. expiryMay 30, 2023(expired)· nominal 20-yr term from priority
G06F 18/22G06V 40/13H04N 21/4415G06K 9/00013G06F 21/32G06F 21/85H04L 9/3231H04L 63/0861G06F 21/6209H04L 63/0823G06F 21/31G06F 21/75H04L 63/06G06F 21/72G06K 9/6201H04N 21/25875G06F 21/10G06F 2221/0771G06F 17/3028G06K 9/00087H04L 63/102G06V 40/1365G06F 16/51G06F 21/1076
65
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

A first electronic device comprises a transmitter, a secure processor, a secure memory, and one or more biometric sensors. The first electronic device is configured to communicate securely via the transmitter with a second electronic device that is separate from the first electronic device. The first electronic device receives first biometric information of a user via the one or more biometric sensors. In response to receiving the first biometric information, the first electronic device compares, via the secure processor, the first biometric information to second biometric information stored in the secure memory; and determines, based on the comparison, whether the user meets authentication criteria. In accordance with a determination that the user meets authentication criteria, the first electronic device generates a verification signal that, when received by the second electronic device, grants access to operate the second electronic device, and transmits the verification signal to the second electronic device. In accordance with a determination that the user does not meet the authentication criteria, the first electronic device forgoes generating the verification signal and transmitting the verification signal to the second electronic device.

Claims

exact text as granted — not AI-modified
1 . (canceled) 
     
     
         2 . A method comprising:
 at a first electronic device comprising a transmitter, a secure processor, a secure memory, and one or more biometric sensors, wherein the first electronic device is configured to communicate securely via the transmitter with a second electronic device that is separate from the first electronic device:
 receiving first biometric information of a user via the one or more biometric sensors; 
 in response to receiving the first biometric information, comparing, via the secure processor, the first biometric information to second biometric information stored in the secure memory; 
 determining, based on the comparison, whether the user meets authentication criteria; 
 in accordance with a determination that the user meets authentication criteria:
 generating a verification signal that, when received by the second electronic device, grants access to operate the second electronic device, and 
 transmitting the verification signal to the second electronic device; and 
 
 in accordance with a determination that the user does not meet the authentication criteria, forgoing generating the verification signal and transmitting the verification signal to the second electronic device. 
   
     
     
         3 . The method of  claim 2 , wherein the second biometric information cannot be removed from the first electronic device. 
     
     
         4 . The method of  claim 2 , wherein the secure memory comprises a tamper-resistant memory, and the second biometric information is zeroed-out upon unauthorized attempted access. 
     
     
         5 . The method of  claim 2 , wherein the second biometric information comprises a biometric template, and the user meets authentication criteria when the first biometric information is consistent with the biometric template. 
     
     
         6 . The method of  claim 2 , further comprising:
 in accordance with a determination that the user meets authentication criteria, providing access to a resource of the second electronic device to the user.   
     
     
         7 . The method of  claim 2 , wherein the second electronic device is an interface device and the access provided to the user in accordance with the determination that the user meets authentication criteria includes access to a service and an application on the interface device. 
     
     
         8 . The method of  claim 2 , further comprising:
 receiving a signal from the second electronic device after providing the verification signal to the second electronic device.   
     
     
         9 . The method of  claim 2 , wherein granting access to operate the second electronic device comprises granting access to media content via the second device. 
     
     
         10 . The method of  claim 9 , wherein the access to media content comprises access to a premium subscription service. 
     
     
         11 . The method of  claim 2 , wherein granting access to operate the second electronic device comprises granting access to educational content via the second device. 
     
     
         12 . The method of  claim 11 , wherein the educational content comprises one or more of a remote learning application, a testing service, and a testing application. 
     
     
         13 . The method of  claim 2 , wherein the second electronic device is locked by an electronic lock mechanism, and granting access to operate the second electronic device comprises unlocking the second electronic device. 
     
     
         14 . The method of  claim 2 , wherein the verification signal, when received by the second electronic device, permits pre-enrolling a third electronic device with access to operate the second electronic device. 
     
     
         15 . The method of  claim 14 , wherein pre-enrolling the third electronic device creates a master-slave relationship between the first electronic device and the third electronic device. 
     
     
         16 . A method comprising:
 at a first electronic device comprising a transmitter, a secure processor, a secure memory, and one or more biometric sensors, wherein the first electronic device is configured to communicate securely via the transmitter with a second electronic device that is separate from the first electronic device:
 receiving, at the first electronic device, a request to purchase an item via a shopping service; 
 receiving, at the first electronic device, a selection of a purchasing account; 
 receiving first biometric information of a user via the one or more biometric sensors; 
 in response to receiving the first biometric information, comparing, via the secure processor, the first biometric information to second biometric information stored in the secure memory; 
 determining, based on the comparison, whether the user meets authentication criteria; 
 in accordance with a determination that the user meets authentication criteria:
 transmitting to the second electronic device credentials that, when received by the second electronic device, causes a seller of the item to be paid via the purchasing account; and 
 
 in accordance with a determination that the user does not meet the authentication criteria, forgoing transmitting the credentials to the second electronic device. 
   
     
     
         17 . The method of  claim 16 , wherein the shopping service is accessible via the second electronic device. 
     
     
         18 . A first electronic device comprising:
 a transmitter;   one or more processors, the one or more processors comprising a secure processor;   one or more memories, the one or more memories comprising a secure memory;   one or more biometric sensors; and   one or more programs, wherein the one or more programs are stored in the one or more memories and are configured to be executed by the one or more processors, the one or more programs including instructions, which when executed by the one or more processors, cause the first electronic device to:
 receive first biometric information of a user via the one or more biometric sensors; 
 in response to receiving the first biometric information, compare, via the secure processor, the first biometric information to second biometric information stored in the secure memory; 
 determine, based on the comparison, whether the user meets authentication criteria; 
 in accordance with a determination that the user meets authentication criteria:
 generate a verification signal that, when received by a second electronic device separate from the first electronic device, grants access to operate the second electronic device, and 
 transmit the verification signal to the second electronic device; and 
 
 in accordance with a determination that the user does not meet the authentication criteria, forgo generating the verification signal and transmitting the verification signal to the second electronic device, 
   
       wherein the first electronic device is configured to communicate securely via the transmitter with the second electronic device. 
     
     
         19 . A non-transitory computer readable storage medium storing one or more programs, the one or more programs comprising instructions, which when executed by a first electronic device comprising a transmitter, a secure processor, a secure memory, and one or more biometric sensors, the first electronic device configured to communicate securely via the transmitter with a second electronic device that is separate from the first electronic device, cause the first electronic device to:
 receive first biometric information of a user via the one or more biometric sensors;   in response to receiving the first biometric information, compare, via the secure processor, the first biometric information to second biometric information stored in the secure memory;   determine, based on the comparison, whether the user meets authentication criteria;   in accordance with a determination that the user meets authentication criteria:
 generate a verification signal that, when received by the second electronic device, grants access to operate the second electronic device, and 
 transmit the verification signal to the second electronic device; and 
   in accordance with a determination that the user does not meet the authentication criteria, forgo generating the verification signal and transmitting the verification signal to the second electronic device.

Join the waitlist — get patent alerts

Track US2018309750A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.