IP Library Granted Patent US 10,748,146
Granted Patent B2
US 10,748,146 · App. 12/816,356 · Granted Aug 18, 2020

Tamper-resistant secure methods, systems and apparatuses for credit and debit transactions

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,748,146
App. No.
12/816,356
Granted
Aug 18, 2020
Kind
B2
Abstract

An electronic payment transaction involves operating a gateway device in an electronic payment system to receive first encrypted transaction data from a merchant device, wherein the first encrypted transaction data is encrypted by means of a merchant device-specific encrypting key. Decrypted transaction data is produced by using a merchant device-specific decrypting key to decrypt the first encrypted transaction data. Second encrypted transaction data is derived from the decrypted transaction data, wherein the second encrypted transaction data is encrypted by means of a gateway device-specific encrypting key. The gateway device communicates the second encrypted transaction data to another electronic payment system server. A key transmission block received from the merchant device includes information that enables the gateway device to derive the merchant device-specific decryption key.

Claims (20)

1. A method of securely communicating data in a communication network, the method comprising:

a gateway device receiving a key transmission block from a first device, wherein the key transmission block includes an encrypted copy of a first device-specific decrypting key and one or more key-related parameters;

the gateway device using the one or more key-related parameters to derive a decrypting key that is associated with the gateway device;

the gateway device using the decrypting key that is associated with the gateway device to decrypt the encrypted copy of the first device-specific decrypting key;

the gateway device receiving first encrypted transaction data from the first device, wherein the first encrypted transaction data is encrypted by means of a first device-specific encrypting key;

the gateway device producing decrypted transaction data by using the first device-specific decrypting key to decrypt the first encrypted transaction data;

the gateway device deriving second encrypted transaction data from at least a portion of the decrypted transaction data, wherein the second encrypted transaction data is encrypted by means of a host-specific encrypting key; and

the gateway device communicating the second encrypted transaction data to another host device.

2. The method of claim 1 , wherein the decrypting key associated with the gateway device is an asymmetric private key of the gateway device.

3. The method of claim 1 , wherein the first device-specific encrypting key is the same as the first device-specific decrypting key.

4. A gateway server for securely communicating data in a communication network, the gateway server comprising:

circuitry configured to receive a key transmission block from a first device, wherein the key transmission block includes an encrypted copy of a first device-specific decrypting key and one or more key-related parameters;

circuitry configured to use the one or more key-related parameters to derive a decrypting key that is associated with the gateway server;

circuitry configured to use the decrypting key that is associated with the gateway server to decrypt the encrypted copy of the first device-specific decrypting key;

circuitry configured to receive first encrypted transaction data from the first device, wherein the first encrypted transaction data is encrypted by means of a first device-specific encrypting key;

circuitry configured to produce decrypted transaction data by using the first device-specific decrypting key to decrypt the first encrypted transaction data;

circuitry configured to derive second encrypted transaction data from at least a portion of the decrypted transaction data, wherein the second encrypted transaction data is encrypted by means of a host-specific encrypting key; and

circuitry configured to communicate the second encrypted transaction data to another server of the communication network.

5. The gateway server of claim 4 , wherein the decrypting key associated with the gateway server is an asymmetric private key of the gateway server.

6. The gateway server of claim 4 , wherein the first device-specific encrypting key is the same as the first device-specific decrypting key.

Assignments (8)
RELEASE OF SECURITY INTEREST Recorded Sep 17, 2019
From: BANK OF AMERICA, N.A.
To: GLOBAL PAYMENTS INC.; ACTIVE NETWORK, LLC; ADVANCEDMD, INC.; DEBITEK, INC.; XENIAL, INC. (F/K/A HEARTLAND COMMERCE, INC.); HEARTLAND PAYMENT SYSTEMS, LLC; NEXTEP SYSTEMS INC.; NUEIP, LLC; NUESOFT TECHNOLOGIES INC.; TOUCHNET INFORMATION SYSTEMS, INC.
Reel/Frame 050406/0851 →
MERGER AND CHANGE OF NAME Recorded Dec 7, 2017
From: HEARTLAND PAYMENT SYSTEMS, INC.; DATA MERGER SUB TWO, LLC; HEARTLAND PAYMENT SYSTEMS, LLC
To: HEARTLAND PAYMENT SYSTEMS, LLC
Reel/Frame 044329/0373 →
MERGER AND CHANGE OF NAME Recorded May 3, 2016
From: HEARTLAND PAYMENT SYSTEMS, INC.; DATA MERGER SUB TWO, LLC
To: HEARTLAND PAYMENT SYSTEMS, LLC
Reel/Frame 038447/0873 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Apr 26, 2016
From: HEARTLAND PAYMENT SYSTEMS, LLC
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 038522/0861 →
RELEASE OF PATENT SECURITY INTEREST Recorded Apr 25, 2016
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: HEARTLAND PAYMENT SYSTEMS, INC.
Reel/Frame 038507/0110 →
TERMINATION OF PATENT SECURITY AGREEMENT Recorded Oct 23, 2013
From: JPMORGAN CHASE BANK, N.A., ADMINISTRATIVE AGENT
To: HEARTLAND PAYMENT SYSTEMS INC.
Reel/Frame 031483/0865 →
SECURITY AGREEMENT Recorded Oct 23, 2013
From: HEARTLAND PAYMENT SYSTEMS, INC., AS GRANTOR
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 031484/0974 →
SECURITY AGREEMENT Recorded Jul 8, 2013
From: HEARTLAND PAYMENT SYSTEMS, INC.
To: JPMORGAN CHASE BANK N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 030763/0743 →