IP Library Granted Patent US 9,195,981
Granted Patent B2
US 9,195,981 · App. 12/604,019 · Granted Nov 24, 2015

System and method for authorizing transactions via mobile devices

Inventor: David Annan (Oakville, CA)
Assignee: IMS HEALTH INCORPORATED
G06Q20/322G06Q20/32G06Q20/3674
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,195,981
App. No.
12/604,019
Granted
Nov 24, 2015
Kind
B2
Abstract

A system and method for authorizing transactions via mobile devices is provided. The system includes a mobile device executing a transaction authorization application. The transaction authorization application generates a transaction code for a transaction upon request by a user. The transaction authorization application includes a presentation module for presentation of the transaction code on the mobile device, and a communication module for communicating at least a part of the transaction code over a first channel. A server is in communication with the mobile device over the first channel for receiving the at least partial transaction code. The server is also in communication with a merchant system over a second channel for receiving a transaction request for the transaction. The transaction request includes the transaction code. The server executes transaction processing software for validating the transaction code received via the second channel by determining if the transaction code received via the second channel matches the at least partial transaction code received via the first channel. The server then communicates a transaction response to the merchant system.

Claims (39)

1. A system for authorizing transactions via mobile devices, comprising:

a mobile device executing a transaction authorization application, said transaction authorization application generating a transaction code for a transaction upon request by a user, said transaction authorization application including:

a presentation module configured to present to the user said transaction code on said mobile device, the transaction code to be entered by the user into a merchant system; and

a communication module configured to communicate at least a predetermined portion of said transaction code over a first channel; and

a server in communication with said mobile device over said first channel configured to receive said predetermined portion of said transaction code, said server being in communication with said merchant system over a second channel configured to receive a transaction request for said transaction, said transaction request including said transaction code entered by the user into the merchant system, said server executing transaction processing software configured to validate said transaction code received via said second channel by determining if said transaction code received via said second channel matches said predetermined portion of said transaction code received via said first channel, said server communicating a transaction response to said merchant system,

wherein said transaction authorization application encrypts said predetermined portion of said transaction code before communication to said server.

2. The system of claim 1 , wherein said first channel comprises a wireless mobile communications network.

3. The system of claim 1 , wherein said server compares said transaction code received from said merchant system to said predetermined portions of transaction codes received from a plurality of said mobile devices to determine if said transaction code is valid.

4. The system of claim 1 , wherein said transaction authorization application modifies said transaction code before presentation of said transaction code on said mobile device.

5. The system of claim 4 , wherein said transaction authorization application reversibly modifies said transaction code before presentation of said transaction code on said mobile device.

6. The system of claim 4 , wherein said transaction authorization application timestamps said transaction code before presentation of said transaction code on said mobile device.

7. The system of claim 6 , wherein said server removes said timestamp from said timestamped transaction code received from said merchant system to recover said transaction code.

8. The system of claim 7 , wherein said server iteratively attempts to recover said transaction code from said timestamped transaction code by modifying the time used to reverse the timestamp.

9. The system of claim 1 , wherein said transaction code comprises a one-time password.

10. The system of claim 9 , wherein said server validates said one-time password to validate said transaction code.

11. The system of claim 1 , wherein said transaction authorization application sends said predetermined portion of said transaction code to said server for validation prior to presentation on said mobile device.

12. The system of claim 11 , wherein said server invalidates said predetermined portion of said transaction code received via said first channel if said predetermined portion of said transaction code received via said first channel matches another of said predetermined portions of transaction codes previously received via said first channel, wherein said previously received predetermined portions of transaction codes represent respective transactions different than a current transaction.

13. The system of claim 1 , wherein said transaction code is deemed invalid after a period of time.

14. A method for authorizing transactions, comprising:

receiving, via a first channel, a predetermined portion of a transaction code generated by a mobile device for a transaction in response to a request by a user of said mobile device;

storing said predetermined portion of the transaction code received from said mobile device in a memory of a server, wherein said predetermined portions of transaction codes from said mobile devices are encrypted;

receiving, via a second channel, a transaction request from a merchant system, said transaction request including said transaction code displayed to said user and manually entered by said user at the merchant system;

determining if said transaction code received via said second channel matches said predetermined portion of said transaction code received via said first channel; and

transferring resources associated with said user for said transaction if said transaction code received via said second channel matches said predetermined portion of said transaction code received via said first channel.

15. The method of claim 14 , further comprising:

comparing said predetermined portion of said transaction code received from said mobile device to other said predetermined portions of transaction codes received from a plurality of other said mobile devices to detect and reject transaction code collisions of codes representing respective separate transactions and the predetermined portion of said transaction code for a present transaction.

16. The method of claim 14 , further comprising:

comparing said transaction code from said merchant system to said predetermined portions of transaction codes received from a plurality of said mobile devices to determine if said transaction code is valid.

17. The method of claim 14 , further comprising:

reversing a modification on said transaction code received from said merchant system.

18. The method of claim 17 , wherein reversing comprises removing a timestamp from said transaction server.

19. The method of claim 18 , further comprising:

determining if said transaction code has expired.

20. The method of claim 18 , wherein said removing a timestamp comprises:

generating a predetermined portion of said transaction code candidate from said timestamped transaction code by reversing said timestamp on said timestamped transaction code;

matching said predetermined portion of said transaction code candidate against said predetermined portions of transaction codes stored in said memory of said server; and

adjusting the time used to reverse said timestamp if said predetermined portion of said transaction code candidate does not match one of said predetermined portions of transaction codes stored in said memory of said server.

21. The method of claim 14 , wherein said transaction code comprises a one-time password, the method further comprising:

validating said one-time password.

Assignments (10)
SECURITY INTEREST Recorded Mar 12, 2026
From: IMS SOFTWARE SERVICES LTD.; IQVIA INC.; IQVIA RDS INC.; RULES-BASED MEDICINE, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 075047/0061 →
CORRECTIVE ASSIGNMENT TO CORRECT THE CONVEYING PARTIES INADVERTENTLY NOT INCLUDED IN FILING PREVIOUSLY RECORDED AT REEL: 065709 FRAME: 618. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT. Recorded Dec 6, 2023
From: IQVIA INC.; IQVIA RDS INC.; IMS SOFTWARE SERVICES LTD.; Q SQUARED SOLUTIONS HOLDINGS LLC
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION
Reel/Frame 065790/0781 →
SECURITY INTEREST Recorded Nov 29, 2023
From: IQVIA INC.
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION
Reel/Frame 065709/0618 →
SECURITY INTEREST Recorded Nov 29, 2023
From: IQVIA INC.; IQVIA RDS INC.; IMS SOFTWARE SERVICES LTD.; Q SQUARED SOLUTIONS HOLDINGS LLC
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION
Reel/Frame 065710/0253 →
SECURITY INTEREST Recorded May 24, 2023
From: IQVIA INC.; IQVIA RDS INC.; IMS SOFTWARE SERVICES LTD.; Q SQUARED SOLUTIONS HOLDINGS LLC
To: U.S. BANK TRUST COMPANY, NATIONAL ASSOCIATION
Reel/Frame 063745/0279 →
CHANGE OF NAME Recorded Oct 9, 2018
From: QUINTILES IMS INCORPORATED
To: IQVIA INC.
Reel/Frame 047207/0276 →
CHANGE OF NAME Recorded Sep 7, 2018
From: IMS HEALTH INCORPORATED
To: QUINTILES IMS INCORPORATED
Reel/Frame 047029/0637 →
SECURITY AGREEMENT Recorded Nov 6, 2013
From: IMS HEALTH INCORPORATED
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 031592/0179 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 24, 2013
From: DIVERSINET CORP.
To: IMS HEALTH INC.
Reel/Frame 031268/0020 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 22, 2009
From: ANNAN, DAVID
To: DIVERSINER CORP.
Reel/Frame 023411/0020 →
Priority Claims (1)
CA 2673030 · Jun 11, 2009 · national
Continuity (2)
Provisional Application 61107939 · Oct 23, 2008
Related Publication 20100106649A1 · Apr 29, 2010