IP Library Patent Application 12751952
Patent Application
App. No. 12/751,952

Secure Transaction Systems and Methods

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
12/751,952
Abstract

A user request to implement a secure transaction is received and communicated to a web server. Transaction details signed with a secret key are received from the web server and displayed to the user. The user is requested to confirm the secure transaction by providing biometric data. If the user's biometric data is validated, an authentication token is received from a biometric device and the authentication token is communicated to the web server. The web server processes the secure transaction if the authentication token is confirmed as a valid authentication token.

Claims (42)

1 . A method comprising:

receiving a user request for a secure transaction;

communicating the user request to a web server;

receiving transaction details from the web server, wherein the transaction details are signed with a secret key;

displaying transaction details to the user;

requesting the user to confirm the secure transaction by providing biometric data;

receiving an authentication token from a biometric device if the user's biometric data is validated; and

communicating the authentication token to the web server, wherein the web server is configured to process the secure transaction if the authentication token is confirmed as a valid authentication token.

2 . The method of claim 1 , wherein communicating the authentication token to the web server is performed by a biometric service.

3 . The method of claim 1 , wherein communicating the authentication token to the web server is performed by a web browser application.

4 . The method of claim 1 , wherein communicating the authentication token to the web server is performed by a biometric browser extension.

5 . The method of claim 1 , wherein the biometric data includes user fingerprint characteristics.

6 . The method of claim 1 , further comprising communicating a unique identifier associated with the biometric device to the web server.

7 . The method of claim 1 , further comprising receiving a random challenge from the web server.

8 . The method of claim 1 , wherein displaying transaction details to the user is performed by a biometric service.

9 . The method of claim 1 , wherein displaying transaction details to the user is performed by a web browser plug-in application.

10 . The method of claim 1 , further comprising monitoring the displayed transaction details to ensure that the displayed transaction details are not modified.

11 . The method of claim 1 , wherein displaying transaction details to the user includes:

validating a digital signature associated with an agent application configured to display the transaction details; and

launching the agent application if the digital signature is validated.

12 . The method of claim 11 , wherein a biometric service validates the digital signature.

13 . The method of claim 1 , further comprising establishing a secure connection with the web service using an address received from the remote device.

14 . The method of claim 1 , wherein the authentication token is a one time password.

15 . The method of claim 1 , wherein the authentication token is a secret key.

16 . The method of claim 1 , wherein the authentication token is a response to a challenge received from the web server.

17 . A method comprising:

receiving a request for a secure transaction from a user, wherein the secure transaction has associated secure transaction details;

authenticating the user requesting the secure transaction with a biometric device;

if the user is authenticated:

verifying integrity of the secure transaction details;

receiving an authentication token from a biometric device; and

sending the authentication token to a remote device, wherein the remote device initiates the secure transaction.

18 . The method of claim 17 , wherein verifying integrity of the secure transaction details is performed by a biometric service.

19 . The method of claim 17 , wherein authenticating the user includes requesting the user to interact with the biometric device.

20 . The method of claim 17 , further comprising displaying secure transaction details to the user.

21 . The method of claim 20 , wherein displaying secure transaction details to the user includes:

validating a digital signature associated with an agent application configured to display the transaction details; and

launching the agent application if the digital signature is validated.

22 . The method of claim 17 , wherein verifying the integrity of the secure transaction details includes identifying any changes to the secure transaction details.

23 . The method of claim 17 , further comprising terminating the secure transaction if changes to the secure transaction details are detected.

24 . The method of claim 17 , wherein verifying the integrity of the secure transaction details includes identifying any changes to the secure transaction details at predetermined time intervals.

25 . The method of claim 17 , wherein verifying the integrity of the secure transaction details includes identifying any changes to the secure transaction details at random time intervals.

Assignments (6)
SECURITY INTEREST Recorded Oct 3, 2014
From: SYNAPTICS INCORPORATED
To: WELLS FARGO BANK, NATIONAL ASSOCIATION
Reel/Frame 033888/0851 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 19, 2014
From: VALIDITY SENSORS, LLC
To: SYNAPTICS INCORPORATED
Reel/Frame 032285/0272 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 20, 2013
From: VALIDITY SENSORS, LLC
To: SYNAPTICS INCORPORATED
Reel/Frame 031866/0585 →
MERGER Recorded Nov 21, 2013
From: VALIDITY SENSORS, INC.
To: VALIDITY SENSORS, LLC
Reel/Frame 031693/0882 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 17, 2013
From: KESANUPALLI, RAMESH; BAGHDASARYAN, DAVIT; SCHWAB, FRANK; CHAN, PHILIP YIU KWONG; HATTERY, LARRY
To: VALIDITY SENSORS, INC.
Reel/Frame 031219/0359 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 28, 2010
From: BAGHDASARYAN, DAVIT; KESANUPALLI, RAMESH; SCHWAB, FRANK; CHAN, PHILIP YIU KWONG; HATTERY, LARRY
To: VALIDITY SENSORS, INC.
Reel/Frame 024602/0539 →