Secure remote payment transaction processing using a secure element
US-11188901-B2 · Nov 30, 2021 · US
US11847643B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11847643-B2 |
| Application number | US-202117516189-A |
| Country | US |
| Kind code | B2 |
| Filing date | Nov 1, 2021 |
| Priority date | Aug 15, 2013 |
| Publication date | Dec 19, 2023 |
| Grant date | Dec 19, 2023 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Embodiments of the present invention are directed to methods, apparatuses, computer readable media and systems for securely processing remote transactions. One embodiment of the invention is directed to a method of processing a remote transaction initiated by a mobile device. The method comprises receiving, by a mobile payment application on a secure memory of the mobile device, transaction data from a transaction processor application on the mobile device. The method further comprises validating that the transaction processor application is authentic and in response to validating the transaction processor application, providing encrypted payment credentials to the transaction processor application. The transaction processor application further initiates a payment transaction with a transaction processor server computer using the encrypted payment credentials.
Opening claim text (preview).
What is claimed is: 1. A method comprising: receiving, by a certificate authority computer from a remote transaction application on a mobile device comprising a secure element comprising a payment credential, a merchant certificate status request of a merchant certificate for a transaction conducted between a merchant associated with the merchant certificate and a user operating the mobile device; determining, by the certificate authority computer, a status of the merchant certificate; generating, by the certificate authority computer, a merchant certificate status response; transmitting, by the certificate authority computer, the merchant certificate status response to the remote transaction application on the mobile device; after the remote transaction application on the mobile device receives the merchant certificate status response, receiving, by a processing network computer, an authorization request message for the transaction and comprising the payment credential from a merchant computer operated by the merchant after the merchant computer receives the payment credential from the secure element on the mobile device; transmitting, by the processing network computer, the authorization request message to an issuer computer; receiving, by the processing network computer, an authorization response message from the issuer computer; and transmitting, by the processing network computer, the authorization response message to the merchant computer. 2. The method of claim 1 , wherein the remote transaction application is a digital wallet application. 3. The method of claim 1 , wherein the remote transaction application is in communication with the merchant computer via a merchant application, the merchant application and the remote transaction application being on the mobile device. 4. The method of claim 1 , wherein the remote transaction application is in communication with the merchant computer via a merchant application. 5. The method of claim 1 , wherein the status of the merchant certificate is determined using a certificate identifier associated with the merchant certificate. 6. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application. 7. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application, and provides the signed transaction data and the merchant certificate to a mobile payment application, which validates the signed transaction data and uses a public key of the merchant certificate to encrypt the payment credential used in the transaction. 8. The method of claim 1 , wherein the remote transaction application signs transaction data for the transaction after the merchant certificate status response is received by the remote transaction application, and provides the signed transaction data and the merchant certificate to a mobile payment application, which validates the signed transaction data and uses a public key of the merchant certificate to encrypt the payment credential used in the transaction and provides the encrypted payment credential to the merchant computer. 9. The method of claim 8 , wherein the merchant computer decrypts the encrypted payment credential and includes the payment credential in the authorization request message. 10. The method of claim 1 , wherein the authorization request message comprises a transaction amount for the transaction. 11. The method of claim 1 , wherein the authorization request message is received via an acquirer computer. 12. The method of claim 1 , wherein the authorization request message comprises a transaction amount and is received via an acquirer computer. 13. A system comprising: a mobile device comprising a remote transaction application and a secure element comprising a payment credential; a certificate authority computer comprising a first processor, and a first computer readable medium comprising code, executable by the first processor to perform operations including: receiving, from the remote transaction application on the mobile device, a merchant certificate status request of a merchant certificate for a transaction conducted between a merchant associated with the merchant certificate and a user operating the mobile device, determining a status of the merchant certificate, generating a merchant certificate status response, and transmitting the merchant certificate status response to the remote transaction application on the mobile device; and a processing network computer comprising a second processor, and a second computer readable medium, the second computer readable medium comprising code, executable by the second processor, for implementing operations including: after the remote transaction application on the mobile device receives the merchant certificate status response, receiving an authorization request message for the transaction and comprising the payment credential from a merchant computer operated by the merchant after the merchant computer receives the payment credential from the secure element on the mobile device, transmitting the authorization request message to an issuer computer, receiving an authorization response message from the issuer computer, and transmitting the authorization response message to the merchant computer. 14. The system of claim 13 , wherein the processing network computer is in a payment processing network. 15. The system of claim 13 , wherein the mobile device is a mobile phone. 16. The system of claim 13 , further comprising: the merchant computer. 17. The system of claim 13 , further comprising: the mobile device, wherein the mobile device is a mobile phone. 18. The system of claim 13 , further comprising: the mobile device, wherein the mobile device comprises the remote transaction application. 19. The system of claim 13 , wherein the status of the merchant certificate is determined using a certificate identifier associated with the merchant certificate. 20. The system of claim 13 , wherein the certificate authority computer and the processing network computer are operated by a same entity.
involving key management · CPC title
using secure elements embedded in M-devices · CPC title
RFID or NFC payments by means of M-devices · CPC title
Use of certificates or encrypted proofs of transaction rights · CPC title
Transaction verification · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.