Systems, devices, and methods for securely transmitting a security parameter to a computing device
    101.
    发明授权
    Systems, devices, and methods for securely transmitting a security parameter to a computing device 有权
    用于将安全参数安全地传送到计算设备的系统,设备和方法

    公开(公告)号:US08972731B2

    公开(公告)日:2015-03-03

    申请号:US13491769

    申请日:2012-06-08

    摘要: Embodiments of the systems, devices, and methods described herein generally facilitate the secure transmittal of security parameters. In accordance with at least one embodiment, a representation of first data comprising a password is generated at the first computing device as an image or audio signal. The image or audio signal is transmitted from the first computing device to the second computing device. The password is determined from the image or audio signal at the second computing device. A key exchange is performed between the first computing device and the second computing device wherein a key is derived at each of the first and second computing devices. In at least one embodiment, one or more security parameters (e.g. one or more public keys) are exchanged between the first and second computing devices, and techniques for securing the exchange of security parameters or authenticating exchanged security parameters are generally disclosed herein.

    摘要翻译: 本文描述的系统,设备和方法的实施例通常有助于安全传输安全参数。 根据至少一个实施例,在第一计算设备处生成包括密码的第一数据的表示作为图像或音频信号。 图像或音频信号从第一计算设备发送到第二计算设备。 从第二计算设备的图像或音频信号确定密码。 在第一计算设备和第二计算设备之间执行密钥交换,其中在第一和第二计算设备的每一个处导出密钥。 在至少一个实施例中,在第一和第二计算设备之间交换一个或多个安全参数(例如一个或多个公共密钥),并且本文公开了用于确保安全参数交换或认证交换的安全参数的技术。

    System and method for handling secure messages
    102.
    发明授权
    System and method for handling secure messages 有权
    用于处理安全消息的系统和方法

    公开(公告)号:US08832445B2

    公开(公告)日:2014-09-09

    申请号:US11065958

    申请日:2005-02-25

    申请人: Michael S. Brown

    发明人: Michael S. Brown

    摘要: Systems and methods are provided for handling electronic messages. An electronic message is examined as to whether the message contains one or more encoding properties. A visual indication is generated for use in a display to a user wherein the visual indication is displayed to the extent to which the encoding property applies to a displayed portion of the message.

    摘要翻译: 提供系统和方法来处理电子信息。 检查消息是否包含一个或多个编码属性的电子消息。 生成用于向用户显示的视觉指示,其中视觉指示被显示到编码属性适用于消息的显示部分的程度。

    Message filter program for a communication device
    103.
    发明授权
    Message filter program for a communication device 有权
    用于通信设备的消息过滤器程序

    公开(公告)号:US08805426B2

    公开(公告)日:2014-08-12

    申请号:US13371156

    申请日:2012-02-10

    IPC分类号: H04W4/00

    摘要: A communication device is configured to receive messages. The communication device may comprise a display screen upon which messages are displayed. A microprocessor configured to execute at least one message management program on the communication device, filters incoming messages. The message management program comprising a message filter application filters received messages based on a comparison of sender identification data associated with a received message to approved sender identification data.

    摘要翻译: 通信设备被配置为接收消息。 通信设备可以包括显示消息的显示屏幕。 被配置为在通信设备上执行至少一个消息管理程序的微处理器,对输入消息进行过滤。 包括消息过滤器应用的消息管理程序基于与接收到的消息相关联的发送者标识数据与批准的发送者标识数据的比较来过滤接收到的消息。

    Systems and methods to securely generate shared keys
    105.
    发明授权
    Systems and methods to securely generate shared keys 有权
    安全生成共享密钥的系统和方法

    公开(公告)号:US08693695B2

    公开(公告)日:2014-04-08

    申请号:US13530593

    申请日:2012-06-22

    IPC分类号: H04L9/08

    摘要: A method for secure bidirectional communication between two systems is described. A first key pair and a second key pair are generated, the latter including a second public key that is generated based upon a shared secret. First and second public keys are sent to a second system, and third and fourth public keys are received from the second system. The fourth public key is generated based upon the shared secret. A master key for encrypting messages is calculated based upon a first private key, a second private key, the third public key and the fourth public key. For re-keying, a new second key pair having a new second public key and a new second private key is generated, and a new fourth public key is received. A new master key is calculated using elliptic curve calculations using the new second private key and the new fourth public key.

    摘要翻译: 描述了两个系统之间的安全双向通信的方法。 产生第一密钥对和第二密钥对,后者包括基于共享秘密生成的第二公钥。 第一和第二公钥被发送到第二系统,并且从第二系统接收第三和第四公钥。 第四个公钥是基于共享的秘密生成的。 基于第一私钥,第二私钥,第三公钥和第四公钥来计算用于加密消息的主密钥。 为了重新键入,生成具有新的第二公钥和新的第二私钥的新的第二密钥对,并接收新的第四公钥。 使用新的第二私钥和新的第四公钥,使用椭圆曲线计算来计算新的主密钥。

    Method and apparatus for contactless payment authentication
    106.
    发明授权
    Method and apparatus for contactless payment authentication 有权
    用于非接触式支付认证的方法和装置

    公开(公告)号:US08640950B2

    公开(公告)日:2014-02-04

    申请号:US13584096

    申请日:2012-08-13

    IPC分类号: G06K5/00

    摘要: The present disclosure relates generally to the authentication of contactless payments attempted by a device having embedded contactless payment functionality. In particular, the disclosure is directed to systems and methods that utilize authentication schemes that already exist on a device in which the contactless payment functionality is embedded. One example of such authentication schemes is the use of password protection to lock or unlock the device in which the contactless payment functionality is embedded. Using the password protection functionality may provide varying levels of authentication protection based on the desires of the user. A number of exemplary uses of such a method and apparatus are disclosed herein.

    摘要翻译: 本公开一般涉及具有嵌入式非接触式支付功能的设备尝试的非接触支付的认证。 具体地,本公开涉及利用已经存在于其中嵌入非接触式支付功能的设备的认证方案的系统和方法。 这种认证方案的一个示例是使用密码保护来锁定或解锁嵌入非接触式支付功能的设备。 使用密码保护功能可以基于用户的期望来提供不同级别的认证保护。 这里公开了这种方法和装置的许多示例性用途。

    Systems and methods for server aided processing of a signed receipt
    108.
    发明授权
    Systems and methods for server aided processing of a signed receipt 有权
    服务器辅助处理签收收据的系统和方法

    公开(公告)号:US08429413B2

    公开(公告)日:2013-04-23

    申请号:US13118513

    申请日:2011-05-30

    IPC分类号: H04L9/32 G06F7/04

    摘要: A method for processing security communication protocol compliant signed receipts at a mobile communication device linked to a host system is provided. The host system receives an email message linked to a digital signature, and a signed receipt. The host system redirects the signed receipt to the mobile communication device. The host system determines if the email message is available at the mobile communication device, and if not, the host system retrieves the email message and redirects the email message to the mobile communication device. The mobile communication device can then verify the signed receipt based on the email message. Optionally, rather than the email message, the host system retrieves and/or recalculates data elements associated with the email message and required to verify the signed receipt, and redirects these data elements to the mobile communication device. A related system is provided, as well as server computer program for the host system, and device computer program for the mobile communication device.

    摘要翻译: 提供了一种在与主机系统连接的移动通信设备处理与安全通信协议兼容的签名收据的方法。 主机系统接收与数字签名相关联的电子邮件消息和签名收据。 主机系统将签名的收据重定向到移动通信设备。 主机系统确定电子邮件消息在移动通信设备上是否可用,如果不是,则主机系统检索电子邮件消息并将该电子邮件消息重定向到移动通信设备。 然后,移动通信设备可以基于电子邮件消息来验证签名的收据。 可选择地,主机系统而不是电子邮件消息检索和/或重新计算与电子邮件消息相关联的数据元素,并且需要验证签名的收据,并将这些数据元素重定向到移动通信设备。 提供了相关系统,以及用于主机系统的服务器计算机程序,以及用于移动通信设备的设备计算机程序。

    Transmission of status updates responsive to status of recipient application
    109.
    发明授权
    Transmission of status updates responsive to status of recipient application 有权
    响应于收件人应用程序的状态传输状态更新

    公开(公告)号:US08429236B2

    公开(公告)日:2013-04-23

    申请号:US12645873

    申请日:2009-12-23

    IPC分类号: G06F15/16 G06F12/00

    摘要: Selecting and modifying the transmission rates and sizes of status update messages transmitted by a mobile communications device to a recipient application based on use of the updates by the recipient application improves resource utilization or accuracy. During one mode of operation, a mobile communications device transmits status messages using a conservative message transmission mode. This allows the mobile communications device to transmit a greater number of status updates for future processing by the recipient application while conserving resources. When the recipient application is actively processing status updates from the mobile communications device, the mobile communications device transmits the status messages using an accelerated message transmission mode with a different number of status updates in each status message and different delay between status messages, which may reduce delay or improve accuracy. Similarly, the mobile communications device may reduce the number of status updates transmitted by applying algorithm-based filters described herein based on the expected usage by the recipient application.

    摘要翻译: 基于使用接收方应用的更新,选择和修改由移动通信设备发送到接收方应用的状态更新消息的传输速率和大小可提高资源利用率或准确性。 在一种操作模式中,移动通信设备使用保守消息传输模式发送状态消息。 这允许移动通信设备发送更多数量的状态更新,以供接收应用程序的将来处理同时节省资源。 当接收者应用程序正在主动地处理来自移动通信设备的状态更新时,移动通信设备使用每个状态消息中具有不同数量的状态更新的加速消息传输模式来发送状态消息,并且可以减少状态消息之间的不同延迟 延迟或提高准确性。 类似地,移动通信设备可以基于接收者应用的预期使用来减少通过应用基于算法的过滤器发送的状态更新的数量。

    System and method for associating message addresses with certificates
    110.
    发明授权
    System and method for associating message addresses with certificates 有权
    将消息地址与证书相关联的系统和方法

    公开(公告)号:US08402523B2

    公开(公告)日:2013-03-19

    申请号:US12788709

    申请日:2010-05-27

    IPC分类号: H04L29/00

    摘要: A system and method for associating message addresses with certificates, in which one or more secondary message addresses are identified and associated with a user-selected certificate that does not contain any e-mail addresses. In certain situations, a message may be encrypted using a certificate that does not contain an e-mail address that matches the e-mail address of the individual to which the message is to be sent, so long as the address to which the message is to be sent matches any of the message addresses associated with the certificate. The message addresses are saved in a data structure that resides in a secure data store on a computing device, such as a mobile device.

    摘要翻译: 用于将消息地址与证书相关联的系统和方法,其中识别一个或多个辅助消息地址并与不包含任何电子邮件地址的用户选择的证书相关联。 在某些情况下,可以使用不包含与要发送消息的个人的电子邮件地址匹配的电子邮件地址的证书来加密消息,只要该消息的地址 要发送匹配与证书相关联的任何消息地址。 消息地址被保存在位于诸如移动设备的计算设备上的安全数据存储中的数据结构中。