For inquiries about GlobalPlatform or website assistance, contact secretariat@globalplatform.org.

December 2018 Newsletter

Letter from GlobalPlatform’s Executive Director

November was another busy month for GlobalPlatform members.

We welcomed members to our Fall Meetings in Lisbon, where we received updates on current Committee and Task Force activities and listened to presentation contributions from members and invited guests, including John Devlin, Principal Analyst at PA.I.D Strategies. For those unable to join us, all presentations have now been posted to the meeting notice.

In addition, we released data on the global deployment of GlobalPlatform standardized TEEs, published an expanded Card/SE Specification, and issued our call for papers for our annual seminar ‘Security in Our Connected World 2019’. Find out how you can get involved in next year’s seminar below.

GlobalPlatform TEE Deployment to Reach 10 Billion

GlobalPlatform has identified a 25% increase in the number of Trusted Execution Environment (TEE)-enabled processors being shipped quarterly, year-on-year. At this rate, it is expected some 10 billion devices will feature TEE-enabled processors by the end of 2018.

“The TEE is not a new concept, and standardization of the technology has been driven by our organization to support mass market deployment,” explains GlobalPlatform’s Technical Director, Gil Bernabeu.

Read More

GlobalPlatform Expands Card/SE Spec Following Widespread Consumer & M2M Deployments

Version 2.3.1 includes amendments that enable important changes to the deployment of applications and digital services to SEs.

They also simplify and streamline the process of updating personalized applets on a SE.

Read More

Discussing Security in Our Connected World

Following our Security in Our Connected World seminar in China, the largest GlobalPlatform seminar to date, we have explored the key learnings on our blog.

Read More

Security in Our Connected World 2019

Learn more about the commercial opportunities and advantages of sponsoring ‘Security in our Connected World’: download our 2019 sponsorship kit.

Download
Technical Documents

New Document Releases

This document presents a Java Language API binding for the GlobalPlatform Open Mobile API Transport Layer that specifically targets the Android Platform from Android P onwards: https://developer.android.com/preview/. This document is intended to be read in conjunction with GlobalPlatform Open Mobile API v3.3, which contains detailed descriptions of expected API behavior. An Open Source implementation of this API forms part of the Android Platform from API Level 28 (Android P). The source code is available from https://android.googlesource.com.

Download Here

This maintenance release of the three VPP fast track specifications contains errata and precisions regarding concepts and interfaces, network protocols, and firmware formats. To provide the full specification set, the ZIP file also contains the VPP – Network Protocol Extension for the OFL v1.0, which was not updated.

Download Here

This specification defines a set of C APIs for the development of Trusted Applications (TAs) running inside a Trusted Execution Environment (TEE). For the purposes of this document a TEE is expected to meet the requirements defined in the GlobalPlatform TEE System Architecture specification, i.e. it is accessible from a Rich Execution Environment (REE) through the GlobalPlatform TEE Client API (described in the GlobalPlatform TEE Client API Specification) but is specifically protected against malicious attacks and only runs code trusted in integrity and authenticity.

Download Here

While the TEE Internal Core API enables the execution of sensitive operations within a Trusted Application (TA) running in the Trusted Execution Environment (TEE), certain applications need to expose sensitive information to the user for validation or need to get sensitive information from the user. Entering a PIN and signing a document are examples of operations that need to be handled inside the TEE for the Trusted Application and not to rely on facilities in the Rich Execution Environment (REE).

As had been previously road mapped, this version of the specification passes ownership of the specification of the generic events and peripheral system over to the TEE Internal Core API v1.2 and will be published alongside or slightly after TEE Internal Core API 1.2.

Download Here

Specifications Under Review

This document specifies the GlobalPlatform TEE compatible realization of the OTPA v1.0 Open Trust Protocol (OTrP) and JSON encoding for OTrP messages.

This has been made available in order to solicit public comments. Please provide your comments to the specification by completing the comment form by Friday, 11 January 2019. Please send your comments to: tmf-otrp-review@globalplatform.org

Download Form

This new version of the amendment, which comes with an updated API, adds the support for Privacy Sensitive Applications.

This document has been made available in order to solicit comments from the membership of GlobalPlatform. Please note that we expect all comments by Thursday, 27 December 2018.

Member Login

This new specification defines interfaces for a Secure Element different from ISO/IEC 7816-3. It specifies how to transfer APDUs between a hosting device and a Secure Element using serial physical interfaces required by new use cases for the Internet of Things (IoT), and in the mobile and wearable industries.

This document has been made available in order to solicit comments from the membership of GlobalPlatform. Please note that we expect all comments by Friday, 18 January 2019.

Member Login

This document assists service providers with the development of applications supporting interaction with third-party Broker Applications. A framework and an API are defined and the document provides suitable details on the usage of this framework in the context of the Consumer Device Cardholder Verification Method (CDCVM) use case.

This document has been made available in order to solicit comments from the membership of GlobalPlatform. Please note that we expect all comments by Wednesday, 2 January 2019.

Member Login
Speaking Engagements

Embedded World

Technical Director Gil Bernabeu will discuss how GlobalPlatform is solving edge, fog and cloud security challenges in ‘Building Security into Today’s Digital World’ at 15:00 CET on February 27 2019.

Link

Emerging Trends and Technologies in Financial Services

Gil Bernabeu joined a panel of industry experts for BrightTalk’s virtual summit to discuss the evolution of cash, payments and mobile technologies. Listen on-demand here:

Link

An exploration of TEE – Security for Mobile Payments, DRM, IoT & FIDO Authentication

In this webcast we explain how the Trusted Execution Environment (TEE) protects connected devices and sensitive information, as well as providing insight into key use-cases in mobile payments, the IoT and more.

Watch
Membership Offers

For archived newsletters

GlobalPlatform
Hey There!

It seems you are using an outdated browser, unfortunately this means that our website will not render properly for you. Update your browser to view this website correctly.

GOOGLE CHROME
FIREFOX
MICROSOFT EDGE