Secure communication of payment information to merchants using a verification token
US-2015134537-A1 · May 14, 2015 · US
US9317848B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9317848-B2 |
| Application number | US-201313963538-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 9, 2013 |
| Priority date | May 15, 2009 |
| Publication date | Apr 19, 2016 |
| Grant date | Apr 19, 2016 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Apparatuses, methods, and systems pertaining to the verification of portable consumer devices are disclosed. In one implementation, a verification token is communicatively coupled to a computer by a USB connection so as to use the computer's networking facilities. The verification token reads identification information from a user's portable consumer device (e.g., credit card) and sends the information to a validation entry over a communications network using the computer's networking facilities. The validation entity applies one or more validation tests to the information that it receives from the verification token. If a selected number of tests are passed, the validation entity sends a device verification value to the verification token, and optionally to a payment processing network. The verification token may enter the device verification value into a CVV field of a web page appearing on the computer's display, or may display the value to the user using the computer's display.
Opening claim text (preview).
What is claimed is: 1. A mobile communication device comprising: a housing; and a verification token disposed within the housing, the verification token comprising a computer-readable medium; a data processor electrically coupled to the verification token and the computer-readable medium; code embodied on the computer-readable medium that directs the data processor to obtain identification information; code embodied on the computer-readable medium that directs the data processor to transmit the identification information to an entity; and code embodied on the computer-readable medium that directs the data processor to receive, after transmitting the identification information, a dynamic PAN from the entity; and code embodied on the computer-readable medium that directs the data processor to locate a browser web page on the mobile communication device that has a form field for an account number and a form field for a verification value, and to enter the dynamic PAN received from the entity in the form field for the account number. 2. The mobile communication device of claim 1 further comprising code embodied on the computer readable medium for encrypting the identification information that is transmitted to the entity. 3. The mobile communication device of claim 1 wherein the verification token comprises a first processor, and the mobile communication device comprises a second processor, separate from the first processor. 4. The mobile communication device of claim 1 further comprising code embodied on the computer readable medium that directs the data processor to receive, after transmitting the identification information, a shipping address and a billing address, wherein the shipping address and the billing address are entered into other form fields on the browser web page or another browser web page. 5. The mobile communication device of claim 1 further comprising code embodied on the computer readable medium that directs the data processor to transmit an identifier for the verification token to the entity. 6. The mobile communication device of claim 1 wherein the entity is a gateway. 7. A system comprising the mobile communication device of claim 6 and the gateway in communication with the mobile communication device. 8. A system comprising: the mobile communication device of claim 1 ; and the entity, wherein the entity is a validation entity computer in communication with the mobile communication device, wherein the validation entity computer is configured to receive the dynamic PAN, wherein an account number associated with the dynamic PAN is thereafter determined and a transaction conducted using the dynamic PAN is authorized by an issuer of the account number. 9. The system of claim 8 further comprising: a merchant computer adapted to receive the dynamic PAN from the mobile communication device before the dynamic PAN is received by the validation entity computer; and an issuer computer, wherein the issuer computer is operated by the issuer and receives the dynamic PAN after the dynamic PAN is received by the validation entity computer. 10. A method comprising: obtaining, by a data processor in a verification token in a mobile communication device, identification information; transmitting, by the mobile communication device, the identification information to an entity; receiving, by the mobile communication device, after transmitting said identification information, a dynamic PAN from the entity; locating, by the mobile communication device, a browser web page on the mobile communication device that has a form field for an account number and a form field for a verification value; and entering, using the mobile communication device, the dynamic PAN received from the entity in the form field for the account number. 11. The method of claim 10 further comprising: encrypting the identification information that is transmitted to the entity. 12. The method of claim 10 wherein the verification token comprises a first processor and the mobile communication device comprises a second processor, separate from the first processor. 13. The method of claim 10 further comprising: receiving, after transmitting the identification information, a shipping address and a billing address at the mobile communication device, wherein the shipping address and the billing address are entered into other form fields on the browser web page or another browser web page. 14. The method of claim 10 further comprising: transmitting an identifier for the verification token to the entity. 15. The method of claim 10 wherein the entity is a gateway. 16. A method comprising: receiving, by an entity computer, identification information from a mobile communication device comprising a verification token; and transmitting, by the entity computer, a dynamic PAN to the mobile communication device, wherein the mobile communication device locates a browser web page on the mobile communication device that has a form field for an account number and a form field for a verification value and enters the dynamic PAN in the form field for the account number. 17. The method of claim 16 wherein the entity computer is a gateway computer. 18. The method of claim 16 wherein the identification information is encrypted, and wherein the method further comprises: decrypting the identification information. 19. The method of claim 18 wherein the entity computer is a gateway computer. 20. An entity computer comprising: a processor; and a computer readable medium, the computer readable medium comprising code, executable by the processor for implementing a method comprising receiving identification information from a mobile communication device comprising a verification token, and transmitting a dynamic PAN to the mobile communication device, wherein the mobile communication device locates a browser web page on the mobile communication device that has a form field for an account number and a form field for a verification value and enters the dynamic PAN in the form field for the account number. 21. The entity computer of claim 20 , wherein the method further comprises: receiving, by the entity computer, the dynamic PAN from the mobile communication device, wherein an account number associated with the dynamic PAN is thereafter determined and a transaction conducted using the dynamic PAN is authorized by an issuer of the account number.
Active cards, i.e. cards including their own processing means, e.g. including an IC or chip · CPC title
the source of the received data · CPC title
using the card verification value [CVV] associated with the card · CPC title
involving the use of external additional devices, e.g. dongles or smart cards · CPC title
using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.