-
公开(公告)号:US11777733B2
公开(公告)日:2023-10-03
申请号:US17267688
申请日:2019-08-13
发明人: Jalpesh Chitalia , Eduardo Lopez , Christian Flurscheim , Sayeed Mohammed , Christian Aabye , Christoffel Jacobs , Phillip Lavender
CPC分类号: H04L9/3213 , H04L9/083 , H04L9/0861 , H04L9/0897 , H04L9/14
摘要: Techniques are described for managing master keys for token requestors to use in generating cryptograms such as TAVVs. A processor computer generates a first master key for a token requestor, the first master key being generated based on (a) a second master key managed by the processor computer and (b) an identifier of the token requestor. The processor computer transmits, to a token requestor computer corresponding to the token requestor, the first master key. The processor computer receives, from the token requestor computer, a request for a token. Responsive to receiving the request for the token, the processor computer transmits the token to the token requestor computer; and receives, from the token requestor computer, an authorization request message comprising the token and a cryptogram generated by the token requestor computer using the first master key and the token.
-
公开(公告)号:US20230022797A1
公开(公告)日:2023-01-26
申请号:US17764123
申请日:2020-11-12
发明人: Jalpesh Chitalia , Gavin Shenker , Manoj Kannembath , Amit Gupta
IPC分类号: H04L9/40
摘要: A method includes receiving, by a universal authentication application from a resource provider computer, a user credential verification request message comprising a user identifier, server computer data, and interaction data for an interaction. The universal authentication application transmits the user credential verification request message to a browser that invokes the authenticator to verify biometric information of a user. The universal authentication application receives a user credential verification response message from the authenticator. The user credential verification response message includes signed interaction data. The universal authentication application sends the user credential verification response message to the resource provider computer. The resource provider computer provides at least the signed interaction data to a plurality of server computers to retrieve a plurality of portable device credentials respectively associated with the plurality of server computers.
-
公开(公告)号:US20220012765A1
公开(公告)日:2022-01-13
申请号:US17370848
申请日:2021-07-08
发明人: Manoj Kannembath , Aaron Stark , Jalpesh Chitalia
摘要: During a transaction, a user may wish to determine if there are benefits available to the user, which may be applicable to the transaction with a resource provider. An application on the user device receives and transmits a resource provider identifier of the resource provider to a server computer. The server computer may identify a remote processor associated with the resource provider, and communicate with the remote processor to identify one or more benefits applicable to the transaction. The server computer may send the applicable benefit(s) to the application on the user device. The user may select one or more of the applicable benefits, and transmit the selection to the server computer, which may initiate processing of the transaction in view of the selected benefits.
-
公开(公告)号:US20190392431A1
公开(公告)日:2019-12-26
申请号:US16448777
申请日:2019-06-21
摘要: Embodiments of the invention are directed to systems and methods of providing secure remote transaction (SRT) transactions. In some embodiments, a resource provider is able to embed a checkout element into a webpage that it hosts. The checkout element enables interaction between a user that has accessed the webpage and an initiator application server located remotely in order to complete a transaction while preventing the resource provider from gaining access to sensitive information. In some embodiments, the user's information may be determined by an initiator server and populated into the checkout element.
-
公开(公告)号:US20220318799A1
公开(公告)日:2022-10-06
申请号:US17847610
申请日:2022-06-23
发明人: Jalpesh Chitalia , Ansar Ansari , Samuel Shrauger
IPC分类号: G06Q20/38
摘要: Embodiments of the invention are directed to systems and methods of securely transmitting account credentials, such as a token. A user device and application can initially select an account, and then obtain a transaction identifier associated with the account. The user device can provide the transaction identifier to a resource provider, which can then directly exchange the transaction identifier for the account credentials.
-
公开(公告)号:US20220237592A1
公开(公告)日:2022-07-28
申请号:US17707751
申请日:2022-03-29
发明人: Jalpesh Chitalia , Thomas Purves , Ansar Ansari , Vishwanath Shastry , Otto Williams , Kevin Carvalho , Madhuri Chandoor , Amit Gupta , Manoj Kannembath , Samuel Blake Shrauger
摘要: Embodiments of the invention are directed to systems and methods that enable authentication of a user via an authentication application that is different than a wallet application that is being used to process a transaction. The wallet application may contain payment devices and/additional wallet applications.
-
公开(公告)号:US20220207527A1
公开(公告)日:2022-06-30
申请号:US17626358
申请日:2020-07-20
发明人: Anjana Surin , Alan Johnson , Ansar Ansari , Jalpesh Chitalia , Ramesh Shankar , Manjush Menon , Mark Cline , Sanjeev Sharma , Sayeed Mohammed
摘要: Embodiments of the invention are directed to systems and methods for authenticating a user device using an authenticating device that has previously been associated with a user and/or a credential. The user may initiate a transaction at the user device. An authenticating device associated with the transaction may be sent an authentication request corresponding to the user device. The user may indicate whether or not the user device is authenticated utilizing the authenticating device. If the user device is authenticated, the transaction may proceed. If the user device is not authenticated the transaction may be rejected.
-
公开(公告)号:US11321707B2
公开(公告)日:2022-05-03
申请号:US15466815
申请日:2017-03-22
发明人: Jalpesh Chitalia , Thomas Purves , Ansar Ansari , Vishwanath Shastry , Otto Williams , Kevin Carvalho , Madhuri Chandoor , Amit Gupta , Manoj Kannembath , Samuel Blake Shrauger
摘要: Embodiments of the invention are directed to systems and methods that enable authentication of a user via an authentication application that is different than a wallet application that is being used to process a transaction. The wallet application may contain payment devices and/additional wallet applications.
-
公开(公告)号:US20210312433A1
公开(公告)日:2021-10-07
申请号:US17349708
申请日:2021-06-16
摘要: Embodiments of the present invention relate to systems and methods that allow users to use their communication devices to perform transactions (e.g., payment transactions, access transactions, etc.). To complete a transaction, a resource provider electronically generates a code representing transaction data and displays it on an access device. The user scans the code with his or her communication device using a camera associated with the communication device, for example. The code is interpreted by an application on the communication device. The user may request and receive a token at the communication device corresponding to sensitive information selected to perform the transaction (e.g., a primary account number). The user may then provide the token and the transaction data via the communication device to a server computer, which may facilitate completion of the transaction between the user and the resource provider using the transaction data and the token.
-
公开(公告)号:US20210176062A1
公开(公告)日:2021-06-10
申请号:US17267688
申请日:2019-08-13
发明人: Jalpesh Chitalia , Eduardo Lopez , Christian Flurscheim , Sayeed Mohammed , Christian Aabye , Christoffel Jacobs , Phillip Lavender
摘要: Techniques are described for managing master keys for token requestors to use in generating cryptograms such as TAVVs. A processor computer generates a first master key for a token requestor, the first master key being generated based on (a) a second master key managed by the processor computer and (b) an identifier of the token requestor. The processor computer transmits, to a token requestor computer corresponding to the token requestor, the first master key. The processor computer receives, from the token requestor computer, a request for a token. Responsive to receiving the request for the token, the processor computer transmits the token to the token requestor computer; and receives, from the token requestor computer, an authorization request message comprising the token and a cryptogram generated by the token requestor computer using the first master key and the token.
-
-
-
-
-
-
-
-
-