IP Library Granted Patent US 7,740,173
Granted Patent B2
US 7,740,173 · App. 11/958,327 · Granted Jun 22, 2010

Transparently securing transactional data

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,740,173
App. No.
11/958,327
Granted
Jun 22, 2010
Kind
B2
Abstract

A secure magnetic stripe card stripe reader (MSR) module and software system capable of encrypting the magnetic stripe data to CPI, SDP and CISP standards for use in point of sale (POS) and other applications requiring data security using non secure networks and computing devices. Additionally, when incorporated within an attachment for conventional personal digital assistant (PDA) or cell phone or stationary terminal, provides encrypted data from the magnetic head assembly providing compliance with Federal Information Processing Standards Publication Series FIPS 140 covering security and tampering standards. Moreover, this module and software system includes the capability of providing secure POS transactions to legacy transaction processing systems and POS terminals transparently to the existing infrastructure. Furthermore, this module and software system includes the capability of transparently providing detection of fraudulently copied magnetic stripe cards.

Claims (41)

1. A card stripe read head, comprising:

a housing;

a detector with a portion thereof encapsulated within the housing, the detector configured to detect magnetic card data and generate a first signal-representing the card data; and

an encryption engine encapsulated within the housing and in communicative contact with the detector, the encryption engine configured to encrypt a portion of the card data of the first signal and generate a second signal that includes the encrypted card data, wherein first and second signals have a same data format and wherein the portion of the card data encrypted comprises a subset of a personal account number on a track of the magnetic card and the second signal further comprises an unencrypted second subset of the personal account number.

2. The card stripe read head of claim 1 , wherein the data format of the second signal is in a same format as an output signal of a conventional card stripe read head.

3. The card stripe read head of claim 1 , wherein the data format of the second signal is in a format readable by a processor in a non-encrypting card swipe terminal.

4. The card stripe read head of claim 1 , wherein the data format of the second signal comprises encrypted and unencrypted card data in a same data layout as unencrypted card data on a data track of the magnetic card.

5. The card stripe read head of claim 1 , wherein the second signal comprises a format readable by legacy point of sale equipment.

6. The card stripe read head of claim 1 , wherein the encryption engine comprises software, hardware or a combination thereof.

7. The card stripe read head of claim 1 , wherein the detector and the encryption engine are encased in epoxy.

8. The card stripe read head of claim 1 , further comprising interface output pins, wherein the encryption engine outputs the encrypted signal to the interface output pins.

9. A method for securing card data on a magnetic stripe card using a read head, comprising:

detecting a plurality of transitions on a stripe of a card proximate to the read head;

generating within the read head a signal representing the transitions;

encrypting a portion of the signal within the read head; and

formatting the encrypted signal in a same format as the signal generated by the read head;

wherein the portion of the signal encrypted comprises a subset of a personal account number on a track of the magnetic stripe card and the formatted encrypted signal comprises encrypted and unencrypted personal account number data of the magnetic stripe card.

10. A card stripe read apparatus, comprising:

a housing;

a detector with a portion thereof encapsulated within the housing, the detector configured to detect magnetic card data and generate a first signal representing the card data; and

an encryption engine encapsulated within the housing and in communicative contact with the detector, the encryption engine configured to encrypt a portion of the card data and to generate a second signal including the encrypted card data, wherein the first and second signal have same format;

wherein the second signal contains a serial number along with the card data.

11. A card stripe read apparatus, comprising:

a housing;

a detector with a portion thereof encapsulated within the housing, the detector configured to detect magnetic card data and generate a first signal representing the card data;

an encryption engine encapsulated within the housing and in communicative contact with the detector, the encryption engine configured to encrypt a portion of the card data and to generate a second signal including the encrypted card data, wherein the first and second signal have same format; and

a serial number stored within the housing.

12. A method for encrypting data for transmission on an unsecured public network, comprising the steps of:

a) acquiring magnetic stripe card track data using a magnetic stripe card reader head;

b) selecting a portion of the acquired card track data;

c) encrypting the selected portion within the magnetic stripe card reader head;

d) assembling an encrypted data package by replacing the selected portion of the acquired card track data with the encrypted data; and

e) outputting the encrypted data package into an unsecured POS device for the purpose of completing a financial transaction;

whereby the system maintains message format compatibility with the original magnetic stripe card data infrastructure system.

13. The method of claim 12 , further comprising: adding unique identifier to the encrypted data.

14. The method of claim 12 , wherein the magnetic stripe data consists of financial transaction data as specified in ISO/IEC 7813:2001(E): whereby the system maintains message format compatibility with legacy credit card payment infrastructure system, and does not adversely effect legacy POS equipment used to process transactions.

15. A card stripe read apparatus, comprising:

a housing;

a detector with a portion thereof encapsulated within the housing, the detector configured to detect magnetic card data and generate a first signal representing the card data; and

an encryption engine encapsulated within the housing and in communicative contact with the detector, the encryption engine configured to encrypt a portion of the card data and to generate a second signal including the encrypted card data, wherein the first and second signal have same format, wherein the second signal contains a serial number along with the card data.

16. The method of claim 12 , wherein the selected portion of the acquired card track data that is encrypted comprises a subset of a personal account number of the magnetic stripe card track data.

Assignments (12)
ASSIGNMENT OF SECURITY INTEREST IN PATENT COLLATERAL RECORDED AT R/F 046920-0784 Recorded Apr 28, 2025
From: UBS AG, STAMFORD BRANCH, AS SUCCESSOR TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS ASSIGNOR
To: BARCLAYS BANK PLC, AS ASSIGNEE
Reel/Frame 071095/0667 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 46920/0817 Recorded May 10, 2019
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: VERIFONE SYSTEMS, INC.; VERIFONE, INC.; HYPERCOM CORPORATION
Reel/Frame 049150/0190 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 23, 2018
From: VERIFONE, INC.; HYPERCOM CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH AS COLLATERAL AGENT
Reel/Frame 046920/0784 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Aug 23, 2018
From: VERIFONE, INC.; HYPERCOM CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH AS COLLATERAL AGENT
Reel/Frame 046920/0817 →
RELEASE (R033282F0757) Recorded Aug 21, 2018
From: JPMORGAN CHASE BANK, N.A.
To: VERIFONE, INC.; HYPERCOM CORPORATION; GLOBAL BAY MOBILE TECHNOLOGIES, INC.
Reel/Frame 046864/0909 →
RELEASE (R027472F0851) Recorded Aug 21, 2018
From: JPMORGAN CHASE BANK, N.A.
To: VERIFONE, INC.
Reel/Frame 046866/0016 →
SECURITY INTEREST Recorded Jul 9, 2014
From: VERIFONE, INC.; HYPERCOM CORPORATION; GLOBAL BAY MOBILE TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 033282/0757 →
CORRECTIVE ASSIGNMENT TO CORRECT THE INCORRECT PATENT AND APPLICATION NUMBERS 12/188114,7162636,7171560,7543151,7725726 PREVIOUSLY RECORDED ON REEL 027472 FRAME 0851. ASSIGNOR(S) HEREBY CONFIRMS THE GRANT OF A SECURITY INTEREST TO JPMORGAN CHASE BANK, N.A. Recorded Apr 18, 2012
From: VERIFONE, INC.; HYPERCOM CORPORATION; VERIFONE MEDIA, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 028068/0570 →
SECURITY INTEREST Recorded Jan 4, 2012
From: VERIFONE, INC., A DELAWARE CORPORATION
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 027472/0851 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 5, 2010
From: VERIFONE SYSTEMS, INC.
To: VERIFONE, INC.
Reel/Frame 025328/0286 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 21, 2010
From: SEMTEK INNOVATIVE SOLUTIONS CORPORATION
To: VERIFONE SYSTEMS, INC.
Reel/Frame 025177/0121 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 4, 2008
From: VON MUELLER, CLAY W.; MOS, ROBERT J.; MOS, BOB
To: SEMTEK INNOVATIVE SOLUTIONS, INC.
Reel/Frame 021045/0370 →