IP Library Granted Patent US 8,260,723
Granted Patent B2
US 8,260,723 · App. 12/202,524 · Granted Sep 4, 2012

Transactional security over a network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,260,723
App. No.
12/202,524
Granted
Sep 4, 2012
Kind
B2
Abstract

A system and method facilitating purchase transactions over a computer network, including the purchase of electronically storable items. The embodiments herein encrypt “customer identifier string” in an encryption stream and cause the encryption stream to be transferred from the customer to a merchant in the purchase transaction. A verification entity receives the encryption stream which is sent by the merchant for identity verification and payment authorization. Then, the verification entity verifies the identifiers contained in the encryption stream and transfers an identity verification and payment authorization from the verification entity to the merchant.

Claims (57)

1. A method comprising:

receiving a password from a customer operating an electronic device into a graphic user interface of said electronic device;

determining whether said password is valid by a processor of said electronic device;

based on said determining whether said password is valid, reading a plurality of hardware identifiers from hardware of said electronic device, by said processor, said plurality of hardware identifiers comprising at least a portion of a serial number of at least one hardware component of said electronic device;

determining whether said plurality of hardware identifiers are valid, by said processor by comparing said read hardware identifiers with a list of permitted hardware identifiers;

based on said determining of whether said plurality of hardware identifiers are valid, retrieving a customer identifier string from a storage media of said electronic device, by said processor;

updating a count value by said processor, by incrementing a sequencer maintained by said electronic device;

creating an encrypted customer code by encrypting said customer identifier string, said plurality of hardware identifiers, and said count value, by said processor; and

transmitting said encrypted customer code to a merchant in a purchase transaction over a computer network, instead of customer credit card information, by an input and output device of said electronic device,

receiving an authorization for said purchase transaction from said merchant by said electronic device.

2. The method according to claim 1 , further comprising encrypting a time and date stamp in said encrypted customer code, by said processor.

3. The method according to claim 1 , further comprising, after said encrypting, adding routing information to said customer code in non-encrypted form to cause said customer code to be routed to a financial institution, by said processor.

4. The method according to claim 1 , said customer identifier string comprising at least one of a customer age identifier and an agreement identifier.

5. The method according to claim 1 , said authorization comprising one of a purchase authorization, a protected network access authorization, a voting authorization, and a transaction authorization.

6. The method according to claim 1 , further comprising transmitting a customer shipping address for said customer with said authorization, by said processor.

7. A non-transitory computer storage medium, readable by computer, storing instructions executable by said computer to perform a method of securing purchase transactions over a computer network, said method comprising:

receiving a password from a customer operating an electronic device;

determining if said password is valid;

based on said determining whether said password is valid, reading a plurality of hardware identifiers from hardware of said electronic device, said plurality of hardware identifiers comprising at least a portion of a serial number of at least one hardware component of said electronic device:

determining whether said plurality of hardware identifiers are valid by comparing said read hardware identifiers with a list of permitted hardware identifiers;

based on said determining of whether said plurality of hardware identifiers are valid, retrieving a customer identifier string from a storage media of said electronic device;

updating a count value, by incrementing a sequencer maintained by said electronic device;

creating an encrypted customer code by encrypting said customer identifier string, said plurality of hardware identifiers, and said count value;

transmitting said encrypted customer code to a merchant in a purchase transaction instead of customer credit card information;

receiving an authorization for said purchase transaction from said merchant by said electronic device.

8. The non-transitory computer storage medium according to claim 7 , said method further comprising encrypting a time and date stamp in said encrypted customer code.

9. The non-transitory computer storage medium according to claim 7 , said method further comprising, after said encrypting, adding routing information to said customer code in non-encrypted form to cause said customer code to be routed to a financial institution.

10. The non-transitory computer storage medium according to claim 7 , said customer identifier string comprising at least one of a customer age identifier and an agreement identifier.

11. The non-transitory computer storage medium according to claim 7 , said authorization comprising one of a purchase authorization, a protected network access authorization, a voting authorization, and a transaction authorization.

12. A method comprising:

receiving a password from a customer operating an electronic device into a graphic user interface of said electronic device;

determining whether said password is valid by a processor of said electronic device;

based on said determining whether said password is valid, reading a plurality of hardware identifiers from hardware of said electronic device, by said processor, said plurality of hardware identifiers comprising at least a portion of a serial number of at least one of a motherboard, a hard drive, and said processor of said electronic device;

determining whether said plurality of hardware identifiers are valid, by said processor by comparing said read hardware identifiers with a list of permitted hardware identifiers;

based on said determining of whether said plurality of hardware identifiers are valid, retrieving a customer identifier string from a storage media of said electronic device, by said processor;

updating a count value by said processor, by incrementing a sequencer maintained by said electronic device;

creating an encrypted customer code by encrypting said customer identifier string, said plurality of hardware identifiers, and said count value, by said processor; and

transmitting said encrypted customer code to a merchant in a purchase transaction over a computer network, instead of customer credit card information, by an input and output device of said electronic device,

receiving an authorization for said purchase transaction from said merchant by said electronic device.

13. The method according to claim 12 , further comprising encrypting a time and date stamp in said encrypted customer code, by said processor.

14. The method according to claim 12 , further comprising, after said encrypting, adding routing information to said customer code in non-encrypted form to cause said customer code to be routed to a financial institution, by said processor.

15. The method according to claim 12 , said customer identifier string comprising at least one of a customer age identifier and an agreement identifier.

16. The method according to claim 12 , said authorization comprising one of a purchase authorization, a protected network access authorization, a voting authorization, and a transaction authorization.

17. A method comprising:

receiving a password from a customer operating an electronic device into a graphic user interface of said electronic device;

determining whether said password is valid by a processor of said electronic device;

based on said determining whether said password is valid, reading a plurality of hardware identifiers from hardware of said electronic device, by said processor, said plurality of hardware identifiers comprising at least a portion of a serial number of at least one of a motherboard, a hard drive, and said processor of said electronic device;

determining whether said plurality of hardware identifiers are valid, by said processor by comparing said read hardware identifiers with a list of permitted hardware identifiers;

based on said determining of whether said plurality of hardware identifiers are valid, retrieving a customer identifier string from a storage media of said electronic device, by said processor;

updating a count value by said processor, by incrementing a sequencer maintained by said electronic device;

creating an encrypted customer code by encrypting only said customer identifier string, said plurality of hardware identifiers, and said count value, by said processor; and

transmitting said encrypted customer code to a merchant in a purchase transaction over a computer network, instead of customer credit card information, by an input and output device of said electronic device,

receiving an authorization for said purchase transaction from said merchant by said electronic device.

18. The method according to claim 17 , further comprising encrypting a time and date stamp in said encrypted customer code, by said processor.

19. The method according to claim 17 , further comprising, after said encrypting, adding routing information to said customer code in non-encrypted form to cause said customer code to be routed to a financial institution, by said processor.

20. The method according to claim 17 , said customer identifier string comprising at least one of a customer age identifier and an agreement identifier.

21. The method according to claim 17 , said authorization comprising one of a purchase authorization, a protected network access authorization, a voting authorization, and a transaction authorization.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 7, 2025
From: BENEDOR LLC
To: BENEDORTSE, LLC
Reel/Frame 071616/0352 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 8, 2013
From: CARROTT, RICHARD F.
To: BENEDOR LLC
Reel/Frame 031363/0664 →
Continuity (5)
Continuation In Part 11844408 · Aug 24, 2007
Continuation In Part 10970051 · Oct 21, 2004
Continuation 09726304 · Dec 1, 2000
Provisional Application 61039532 · Mar 26, 2008
Related Publication 20080319914A1 · Dec 25, 2008