Method and system for securing operations and associated user station

US12267318B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-12267318-B2
Application numberUS-201917416114-A
CountryUS
Kind codeB2
Filing dateDec 4, 2019
Priority dateDec 21, 2018
Publication dateApr 1, 2025
Grant dateApr 1, 2025

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for securing operations is described. In this method a user requests that a service provider device perform an operation, the service provider device transmitting to a certification device a request to validate the requested operation while indicating a key associated with the user. The certification device identifies the user associated with the key and transmits a dynamic code request to the user. A device that generates dynamic codes assigned to the user generates a first version of the dynamic code and transmits it to the certification device, which compares it with a second version of the code in order to decide whether it would or would not be appropriate to inform the service provider device that the requested operation has been validated.

First claim

Opening claim text (preview).

The invention claimed is: 1. A method for securing operations, the method comprising: formulating a request, by a user associated with a key generated by a certification body, to implement an operation with a service provider apparatus, the generated key comprising a component allowing identification of the certification body, the request including the key; receiving, by a user station, a request for a dynamic code, the request for a dynamic code intended for the user associated with the key, the request for a dynamic code transmitted directly to the user from an apparatus of the certification body; generating, by a dynamic code generator device associated with the key of the user, a first version of the dynamic code; transmitting the first version of the dynamic code to the apparatus of the certification body; and receiving, from the service provider apparatus, a message confirming the achievement of the requested operation, provided that the first version of the code corresponds to a second version of the dynamic code generated at the certification body when the apparatus of the certification body compares the first and second versions of the dynamic code. 2. The method of claim 1 , wherein the generation of the first version of the dynamic code by the dynamic code generator device is triggered by an action of the user. 3. The method of claim 2 , wherein biometric data of the user are detected during the action of the user that triggers the generation of a code, and wherein the first version of the dynamic code to the apparatus of the certification body is transmitted only upon validation of the detected biometric data. 4. The method of claim 1 , wherein the dynamic code includes a sub-code and evolution of the dynamic code includes a progressive change of each character of the sub-code according to a respective rule. 5. The method of claim 4 , wherein the characters of the sub-code are distributed among the other characters of the dynamic code. 6. A user station comprising a processor and a user interface configured to allow a user associated with a key generated by a certification body to formulate a request to implement an operation with a service provider apparatus, the generated key comprising a component allowing identification of the certification body, the request to implement an operation with a service provider apparatus including the key, the user station configured to; receive a request for a dynamic code, the request for a dynamic code intended for the user associated with the key, the request for a dynamic code transmitted directly to the user from an apparatus of the certification body; transmit to the certification apparatus a first version of the dynamic code generated by a dynamic code generator device associated with the key of the user; and receive, from the service provider apparatus, a message confirming the achievement of the requested operation provided that the first version of the dynamic code corresponds to a second version of the dynamic code generated on the certification body side when the certification apparatus compares the first and second versions of the dynamic code. 7. The user station of claim 6 , further comprising a biometric data sensor, wherein the user station is further configured to: upon activation by the user, trigger the generation of a code by the dynamic code generator device obtain biometric data of the user upon activation by the user, and transmit the first version of the code to the certification apparatus only if the biometric data detected by the biometric data sensor during activation by the user are valid. 8. A system for securing operations, the system comprising a service provider apparatus and a certification apparatus of a certification body, wherein: the service provider apparatus is configured to: receive a request, from a user, to implement an operation, the request including a key associated with the user, the key generated by the certification body, the generated key comprising a component allowing identification of the certification body; issue to the certification apparatus a request to validate the requested operation, the request indicating the key associated with the user, and implement the requested operation following receipt of a validation signal from the certification apparatus; and the certification apparatus is configured to: issue a dynamic code request, intended for the user associated with the key, the dynamic code request transmitted directly to the user from the certification apparatus, receive a first version of the dynamic code generated by a dynamic code generator device assigned to the user associated with the key, acquire a second version of the dynamic code, compare the first and second versions of the dynamic code, and transmit a signal indicating the validation of the operation when the first and second versions of the dynamic code match. 9. A method for securing operations, wherein the method comprises: sending a request, by a user associated with a key generated by a certification body, to implement an operation with a service provider apparatus, the generated key comprising a component allowing identification of the certification body, the request including the key; issuing, by the service provider apparatus to a certification apparatus of a certification body, a request to validate the requested operation, the request indicating the key; issuing a request for a dynamic code, intended for the user associated with the key, the request for a dynamic code transmitted directly to the user from the certification apparatus; generating, by a dynamic code generator device assigned to the user associated with the key, a first version of the dynamic code; transmitting the first version of the dynamic code to the certification apparatus; acquiring a second version of the dynamic code and comparing the first and second versions of the dynamic code by the certification apparatus; and upon confirmation that the first and second versions of the dynamic code match when the certification apparatus compares the first and second versions of the dynamic code, transmitting by the certification apparatus to the service provider apparatus, a signal indicating the validation of the operation requested from the user. 10. The method of claim 9 , wherein issuing the request to validate the operation comprises issuing a request including information on the requested operation, the method further comprising retrieving data of the user associated with the key, this data retrieval comprising: retrieving verification data that indicates at least one restriction in relation to the permitted operations, and analyzing the received information on the requested operation in order to determine whether this operation is permitted or not in relation to the verification data. 11. The method of claim 10 , wherein: retrieving verification data comprises retrieving data defining at least one restriction chosen from the group consisting of: the type of permitted operation, the time period during which operations are permitted, the geographical area where, or from which, operations are permitted, the service provider with which operations are permitted, and the price associated with the achievement of the operation. 12. The method of claim 11 , further comprising parameterizing, by the user, restrictions defined by the verification data. 13. The method of claim 9 , wherein the method further comprises, if the first and second versions of the dynamic code do not correspond, implementing an iterative process comprising: acquiring a new version of the dynamic cod

Assignees

Inventors

Classifications

  • using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title

  • for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title

  • using an alias or single-use codes · CPC title

  • using time-dependent-passwords, e.g. periodically changing passwords · CPC title

  • using the card verification value [CVV] associated with the card · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US12267318B2 cover?
A method for securing operations is described. In this method a user requests that a service provider device perform an operation, the service provider device transmitting to a certification device a request to validate the requested operation while indicating a key associated with the user. The certification device identifies the user associated with the key and transmits a dynamic code reques…
Who is the assignee on this patent?
Orange
What technology area does this patent fall under?
Primary CPC classification H04L63/0838. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Apr 01 2025 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 10 related publications on this page (citations in our corpus or others sharing the same primary CPC).