Multi-Factor User Authentication
US-2024394695-A1 · Nov 28, 2024 · US
US12423709B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-12423709-B2 |
| Application number | US-38471809-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 8, 2009 |
| Priority date | Mar 5, 2009 |
| Publication date | Sep 23, 2025 |
| Grant date | Sep 23, 2025 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A system of security that prevents misuse of identity data of an identity data owner in an identity data driven transaction in a global commerce network, that has in the system, a transaction processing entity that after it receives a identity data driven transaction from a transaction initiating entity, puts on hold the processing of the transaction for a period of time and via the identity data owner's wireless mobile communication device, contacts the identity data owner for authorization of the transaction before the transaction processing is completed. The system of security for identity data may be used in the identity data driven transaction is one from a group of (i) credit card payment, (ii) bank account payment, (iii) release of credit profile, (iv) release of financial data, and (v) release of medical data.
Opening claim text (preview).
What is claimed is: 1. A system of security for an identity data owner in an identity data driven transaction at financial institutions in a global commerce network, the system of security comprising: a mobile authorization system (MAS), wherein the MAS comprises a MAS processor, a logic, and a database server, wherein the logic is stored and executed in the MAS processor, wherein the database server has a database, wherein the database comprises mobile identities that maintains mapping of mobile contact information with identity data of identity data owners, including a unique identifier for the identity data owner utilized for the identity data driven transaction, wherein the MAS processor has wireless network interfaces with wireless mobile devices of the identity data owners; wherein the MAS processor comprises interfaces with the financial institutions, wherein, in response to receiving a request for fund transfer at a financial institution via the identity data driven transaction, the identity data driven transaction comprising a credit card payment, a debit card payment, or a bank account payment, the MAS processor is configured to: receive, from the financial institution, over one or more interfaces, records of the request for fund transfer received at the financial institution; determine that a status of a stored authorization service flag is set to enable; wirelessly forward notifications, via a short messaging system (SMS) message, to a wireless mobile device of the identity data owner, using the mobile contact information stored in the database and including in the SMS message an embedded pre-placed security code recognizable by the identity data owner, seeking an authorization of the transaction, and the notifications include at least names of payees; and wait an amount of time to receive the authorization from the wireless mobile device of the identity owner; and communicate the authorization to the financial institution to allow the transaction to be processed upon receiving the authorization from the identity data owner without receiving any of the other identity data, wherein the transaction is based on the identity data corresponding to the unique identifier, stored in the database. 2. The system of security as in claim 1 , wherein: the MAS processor is configured to authorize the identity data driven transaction by the identity data owner without a password. 3. The system of security as in claim 1 , wherein: the amount of time is configured to be a time period between 5 seconds and 18 hours, dependent on a type of transaction. 4. The system of security as in claim 1 , wherein: the MAS processor has the database of the mobile contact information including mobile wireless telephone numbers and the corresponding mapping of identity data and is configured to provide to the financial institutions mobile authorization contact with the identity data owner for the transaction authorizations. 5. The system of security as in claim 1 , wherein: the MAS processor is configured to send to the identity data owner on the mobile wireless device, date and time, and an amount for a payment transaction via the SMS message. 6. The system of security as in claim 1 , wherein: the MAS processor is configured to receive a mobile authorization response from the id data owner's mobile wireless device to include one of, an accept, a reject or a time out due to lack of response, where the time out is set based on the type of the transaction. 7. The system of security as in claim 1 , wherein: the stored authorization service flag is an enable/disable flag, wherein the MAS processor sends an advisory message to the id data owner on the mobile wireless device for the transaction when the flag is disabled. 8. The system of security as in claim 1 , wherein: the MAS processor is configured to log an authorization event in an event log database for use as an authorization record of the transaction. 9. A system of security for an identity data owner in an identity data driven transaction at data aggregators in a global commerce network, the system of security comprising: a mobile authorization system (MAS), wherein the MAS comprises a MAS processor, a logic, and a database server, wherein the logic is stored in and executing in the MAS processor, wherein the database server has a database, wherein the database comprises mobile identities that maintains mapping of mobile contact information with identity data of identity data owners, including a unique identifier for the identity data owner utilized for the identity data driven transaction wherein the MAS processor has wireless network interfaces with wireless mobile devices of the identity data owners; wherein the MAS processor comprises interfaces with the data aggregators, wherein, in response to receiving a request for data access at a data aggregator via the identity data driven transaction, the MAS processor is configured to: receive, from the data aggregator, over one or more interfaces, records of the request for data access received at the data aggregator, determine that a status of a stored authorization service flag is set to enable; wirelessly forward notifications, via a short messaging system (SMS) message, to a wireless mobile device of the identity data owner, using the mobile contact information stored in the database and including in the SMS message an embedded pre-placed security code recognizable by the identity data owner, seeking an authorization of the transaction, the notifications include at least names of requestors of data access transaction requests; and wait an amount of time to receive the authorization from the wireless mobile device of the identity owner; and communicate the authorization to the financial institution to allow the transaction to be processed upon receiving the authorization from the identity data owner without receiving any of the other identity data, wherein the transaction is based on the identity data corresponding to the unique identifier, stored in the database. 10. The system of security as in claim 9 , wherein: the identity data driven transaction is one of release of credit profile, release of financial data, release of medical data, and release of any private data that is governed by privacy rules. 11. The system of security as in claim 9 , wherein: the MAS processor is configured to authorize the identity data driven transaction by the identity data owners without a password. 12. The system of security as in claim 9 , wherein: the amount of time is configured to be a time period between 5 seconds and 18 hours, dependent on a type of transaction. 13. The system of security as in claim 9 , wherein: the MAS processor has the database of the mobile contact information including mobile wireless telephone numbers and the corresponding mapping of identity data and is configured to provide to the data aggregators the mobile authorization contact with the identity data owner for the transaction authorizations. 14. The system of security as in claim 9 , wherein: a mobile authorization request SMS message by the MAS processor is configured to send to the identity data owner on the mobile wireless device, name of data requestors, date and time of the request. 15. The system of security as in claim 9 , wherein: the MAS processor is configured to receive a mobile authorization response from the id data owner's mobile wireless device to include one of, an accept, a reject or a time out due to lack of response, where the time out is set based on the type of the transaction. 16. The sy
Authentication · CPC title
using passwords (cryptographic mechanisms or cryptographic arrangements for entity authentication using a predetermined code H04L9/3226) · CPC title
Entity profiles · CPC title
Short messaging services, e.g. short message services [SMS] or unstructured supplementary service data [USSD] · CPC title
Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.