Methods and systems for authentication for high-risk communications
US-12137102-B2 · Nov 5, 2024 · US
US11748741B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11748741-B2 |
| Application number | US-202016939514-A |
| Country | US |
| Kind code | B2 |
| Filing date | Jul 27, 2020 |
| Priority date | Mar 12, 2015 |
| Publication date | Sep 5, 2023 |
| Grant date | Sep 5, 2023 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Provided are a payment card, system and method for storing and reading tokenized payment account information from a payment card. In an exemplary embodiment, a payment card may include a substrate forming a body of the payment card, and an electronic chip attached to or included in the substrate. According to various exemplary embodiments, the electronic chip may include a storage storing tokenized payment account information corresponding to a payment account linked to the payment card. The electronic chip may be read by a payment terminal and may provide the tokenized payment information to the payment terminal during reading.
Opening claim text (preview).
What is claimed is: 1. A computing system comprising: a network interface configured to receive, via a computing network, a token validation request from an integrated circuit card comprising a primary account number (PAN) on a face thereof, the token validation request comprising a tokenized PAN corresponding to the PAN on the face of the integrated circuit card, a transaction entry mode value comprising a value indicating that the tokenized PAN was read from a chip of the integrated circuit card via a chip reader, and a chip cryptogram of the chip of the integrated circuit card from which the tokenized PAN was read; and a processor configured to token validation request based on the chip cryptogram of the chip from which the tokenized PAN was read and transaction entry mode value that indicates that the tokenized PAN was read from the chip of the integrated circuit card via the chip reader, wherein the processor is further configured to control the network interface to transmit, via the computing network, an authorization response to a computing system associated with the token validation request in response to the validation, the authorization response authorizing the tokenized PAN for use in a payment transaction. 2. The computing system of claim 1 , wherein the tokenized PAN includes domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions, and the processor is configured to validate the tokenized PAN based on the domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions. 3. The computing system of claim 1 , wherein the transaction entry mode value comprises a Point-of-Sale (POS) entry mode value representing that the tokenized PAN was read by a contact chip reader. 4. The computing system of claim 1 , wherein the processor is further configured to receive a PIN of a user for verifying that the user is a cardholder of the integrated circuit card, and determine to validate the tokenized PAN based on the PIN. 5. The computing system of claim 1 , wherein the network interface is further configured to receive a second token validation request from a second integrated circuit card which comprises a second tokenized PAN and a second transaction entry mode value identifying a domain in which the second tokenized PAN was entered. 6. The computing system of claim 5 , wherein the processor is further configured to decline the second token validation request when the second transaction entry mode value identifies that the domain in which the second tokenized PAN was entered is any of a magnetic stripe mode, an e-commerce mode, and a card not present mode. 7. A method comprising: receiving, via a computing network, a token validation request from an integrated circuit card comprising a primary account number (PAN) on a face thereof, the token validation request comprising a tokenized PAN corresponding to the PAN on the face of the integrated circuit card, a transaction entry mode value comprising a value indicating that the tokenized PAN was read from a chip of the integrated circuit card via a chip reader, and a chip cryptogram of the chip of the integrated circuit card from which the tokenized PAN was read; validating the token validation request based on the chip cryptogram of the chip from which the tokenized PAN was read and transaction entry mode value that indicates that the tokenized PAN was read from the chip of the integrated circuit card via the chip reader; and transmitting, via the computing network, an authorization response to a computing system associated with the token validation request in response to the validation, the authorization response authorizing the tokenized PAN for use in a payment transaction. 8. The method of claim 7 , wherein the tokenized PAN includes domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions, and the validating comprises validating the tokenized PAN based on the domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions. 9. The method of claim 7 , wherein the transaction entry mode value comprises a Point-of-Sale (POS) entry mode value representing that the tokenized PAN was read by a contact chip reader. 10. The method of claim 7 , further comprising receiving a PIN of a user for verifying that the user is a cardholder of the integrated circuit card, and the determining further comprises determining to validate the tokenized PAN based on the PIN. 11. The method of claim 7 , further comprising receiving a second token validation request from a second integrated circuit card which comprises second tokenized PAN and a second transaction entry mode value identifying a domain in which the second tokenized PAN was entered. 12. The method of claim 11 , further comprising determining to decline the second token validation request when the second transaction entry mode value identifies that the domain in which the second tokenized PAN was entered is any of a magnetic stripe mode, an e-commerce mode, and a card not present mode. 13. A non-transitory computer-readable medium comprising instructions which when executed by a processor cause a computer to perform a method comprising: receiving, via a computing network, a token validation request from an integrated circuit card comprising a primary account number (PAN) on a face thereof, the token validation request comprising a tokenized PAN corresponding to the PAN on the face of the integrated circuit card, a transaction entry mode value comprising a value indicating that the tokenized PAN was read from a chip of the integrated circuit card via a chip reader, and a chip cryptogram of the chip of the integrated circuit card from which the tokenized PAN was read; validating the token validation request based on the chip cryptogram of the chip from which the tokenized PAN was read and transaction entry mode value that indicates that the tokenized PAN was read from the chip of the integrated circuit card via the chip reader; and transmitting, via the computing network, an authorization response to a computing system associated with the token validation request in response to the validation, the authorization response authorizing the tokenized PAN for use in a payment transaction. 14. The non-transitory computer-readable medium of claim 13 , wherein the tokenized PAN includes domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions, and the validating comprises validating the tokenized PAN based on the domain restrictions that only permit the tokenized PAN to be used with chip card reading transactions. 15. The non-transitory computer-readable medium of claim 13 , wherein the transaction entry mode value comprises a Point-of-Sale (POS) entry mode value representing that the tokenized PAN was read by a contact chip reader. 16. The non-transitory computer-readable medium of claim 13 , wherein the method further comprises receiving a PIN of a user for verifying that the user is a cardholder of the integrated circuit card, and the validating comprises validating the tokenized PAN based on the PIN. 17. The non-transitory computer-readable medium of claim 13 , further comprising receiving a second token validation request from a second integrated circuit card which comprises second tokenized PAN and a second transaction entry mode value identifying a domain in which the second tokenized PAN was entered. 18. The non-transitory computer-readable medium of claim 17 , further compr
Active cards, i.e. cards including their own processing means, e.g. including an IC or chip · CPC title
Protecting personal data, e.g. for financial or medical purposes · CPC title
by anonymising data, e.g. decorrelating personal data from the owner's identification · CPC title
using an alias or single-use codes · CPC title
by active credit-cards adapted therefor (G07F7/1008 takes precedence) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.