Secure remote payment transaction processing using a secure element

US11847643B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11847643-B2
Application numberUS-202117516189-A
CountryUS
Kind codeB2
Filing dateNov 1, 2021
Priority dateAug 15, 2013
Publication dateDec 19, 2023
Grant dateDec 19, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Embodiments of the present invention are directed to methods, apparatuses, computer readable media and systems for securely processing remote transactions. One embodiment of the invention is directed to a method of processing a remote transaction initiated by a mobile device. The method comprises receiving, by a mobile payment application on a secure memory of the mobile device, transaction data from a transaction processor application on the mobile device. The method further comprises validating that the transaction processor application is authentic and in response to validating the transaction processor application, providing encrypted payment credentials to the transaction processor application. The transaction processor application further initiates a payment transaction with a transaction processor server computer using the encrypted payment credentials.

First claim

Opening claim text (preview).

What is claimed is: 1. A method comprising: receiving, by a certificate authority computer from a remote transaction application on a mobile device comprising a secure element comprising a payment credential, a merchant certificate status request of a merchant certificate for a transaction conducted between a merchant associated with the merchant certificate and a user operating the mobile device; determining, by the certificate authority computer, a status of the merchant certificate; generating, by the certificate authority computer, a merchant certificate status response; transmitting, by the certificate authority computer, the merchant certificate status response to the remote transaction application on the mobile device; after the remote transaction application on the mobile device receives the merchant certificate status response, receiving, by a processing network computer, an authorization request message for the transaction and comprising the payment credential from a merchant computer operated by the merchant after the merchant computer receives the payment credential from the secure element on the mobile device; transmitting, by the processing network computer, the authorization request message to an issuer computer; receiving, by the processing network computer, an authorization response message from the issuer computer; and transmitting, by the processing network computer, the authorization response message to the merchant computer. 2. The method of claim 1 , wherein the remote transaction application is a digital wallet application. 3. The method of claim 1 , wherein the remote transaction application is in communication with the merchant computer via a merchant application, the merchant application and the remote transaction application being on the mobile device. 4. The method of claim 1 , wherein the remote transaction application is in communication with the merchant computer via a merchant application. 5. The method of claim 1 , wherein the status of the merchant certificate is determined using a certificate identifier associated with the merchant certificate. 6. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application. 7. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application, and provides the signed transaction data and the merchant certificate to a mobile payment application, which validates the signed transaction data and uses a public key of the merchant certificate to encrypt the payment credential used in the transaction. 8. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application, and provides the signed transaction data and the merchant certificate to a mobile payment application, which validates the signed transaction data and uses a public key of the merchant certificate to encrypt the payment credential used in the transaction and provides the encrypted payment credential to the merchant computer. 9. The method of claim 8 , wherein the merchant computer decrypts the encrypted payment credential and includes the payment credential in the authorization request message. 10. The method of claim 1 , wherein the authorization request message comprises a transaction amount for the transaction. 11. The method of claim 1 , wherein the authorization request message is received via an acquirer computer. 12. The method of claim 1 , wherein the authorization request message comprises a transaction amount and is received via an acquirer computer. 13. A system comprising: a mobile device comprising a remote transaction application and a secure element comprising a payment credential; a certificate authority computer comprising a first processor, and a first computer readable medium comprising code, executable by the first processor to perform operations including: receiving, from the remote transaction application on the mobile device, a merchant certificate status request of a merchant certificate for a transaction conducted between a merchant associated with the merchant certificate and a user operating the mobile device, determining a status of the merchant certificate, generating a merchant certificate status response, and transmitting the merchant certificate status response to the remote transaction application on the mobile device; and a processing network computer comprising a second processor, and a second computer readable medium, the second computer readable medium comprising code, executable by the second processor, for implementing operations including: after the remote transaction application on the mobile device receives the merchant certificate status response, receiving an authorization request message for the transaction and comprising the payment credential from a merchant computer operated by the merchant after the merchant computer receives the payment credential from the secure element on the mobile device, transmitting the authorization request message to an issuer computer, receiving an authorization response message from the issuer computer, and transmitting the authorization response message to the merchant computer. 14. The system of claim 13 , wherein the processing network computer is in a payment processing network. 15. The system of claim 13 , wherein the mobile device is a mobile phone. 16. The system of claim 13 , further comprising: the merchant computer. 17. The system of claim 13 , further comprising: the mobile device, wherein the mobile device is a mobile phone. 18. The system of claim 13 , further comprising: the mobile device, wherein the mobile device comprises the remote transaction application. 19. The system of claim 13 , wherein the status of the merchant certificate is determined using a certificate identifier associated with the merchant certificate. 20. The system of claim 13 , wherein the certificate authority computer and the processing network computer are operated by a same entity.

Assignees

Inventors

Classifications

  • involving key management · CPC title

  • using secure elements embedded in M-devices · CPC title

  • RFID or NFC payments by means of M-devices · CPC title

  • Use of certificates or encrypted proofs of transaction rights · CPC title

  • Transaction verification · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11847643B2 cover?
Embodiments of the present invention are directed to methods, apparatuses, computer readable media and systems for securely processing remote transactions. One embodiment of the invention is directed to a method of processing a remote transaction initiated by a mobile device. The method comprises receiving, by a mobile payment application on a secure memory of the mobile device, transaction dat…
Who is the assignee on this patent?
Visa Int Service Ass
What technology area does this patent fall under?
Primary CPC classification G06Q20/3829. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Dec 19 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).