IP Library Granted Patent US 8,738,532
Granted Patent B2
US 8,738,532 · App. 13/181,883 · Granted May 27, 2014

System and method for securing data through a PDA portal

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,738,532
App. No.
13/181,883
Granted
May 27, 2014
Kind
B2
Abstract

Consumers may utilize computing devices to assist in the purchase and/or loyalty process, and in particular, the consumer may utilize a PDA to facilitate the purchase and/or loyalty process. During the purchase and/or loyalty process, the consumer may need to insure that any content downloaded or used in association with the PDA is secure in how it is collected, assembled, and delivered to the PDA device. This system and method secures the data from its source to when it is actually viewed or used by the authorized user. The exemplary system and method may establish a PDA portal link to the web site for collecting specified information for a user and transmitting the information to the remote device. To receive the information, the PDA contacts the portal and establishes a connection, authenticates itself to the network and allows the user to complete secured transactions or transmissions over the network.

Claims (38)

1. A hardware portal, comprising:

at least one processor; and

memory having program instructions stored thereon that, responsive to execution by the at least one processor, cause the hardware portal to:

receive, from a mobile computing device, a request for content, wherein the request includes an original version of session information identifying a user of the mobile computing device;

transmit an encrypted version, but not the original version, of the session information to a content server;

receive, based at least in part on the encrypted version of the session information, the requested content from the content server; and

transmit the received content to the mobile computing device.

2. The hardware portal of claim 1 , wherein the request further includes an embedded link, wherein the embedded link includes navigational information for retrieving the requested content.

3. The hardware portal of claim 1 , wherein the content server is operable to receive the requested content from a remote content source.

4. The hardware portal of claim 1 , wherein the received content is encrypted, and wherein the instructions further cause the hardware portal to decrypt the received content before transmitting the received content to the mobile computing device.

5. The hardware portal of claim 1 , wherein the content includes content which is refreshed and downloaded to the mobile computing device.

6. The hardware portal of claim 1 , wherein the instructions further cause the hardware portal to transmit the encrypted version of the session information to the mobile computing device.

7. The hardware portal of claim 6 , wherein the instructions further cause the hardware portal to retrieve an embedded link prior to transmitting the encrypted version of the session information to the mobile computing device.

8. The hardware portal of claim 7 , wherein the instructions further cause the hardware portal to transmit the embedded link to the mobile computing device.

9. The hardware portal of claim 6 , wherein the instructions further cause the hardware portal to encrypt the received content prior to transmitting the received content to the mobile computing device.

10. The hardware portal of claim 9 , wherein the requested content is encrypted using ECC (elliptic curve cryptography).

11. The hardware portal of claim 1 , wherein the instructions further cause the hardware portal to connect to an encryption device to establish a secure connection to the content server using a negotiated encryption key.

12. A method, comprising:

receiving, by a content server, a request for content, wherein the request includes an encrypted version, but not an original version, of session information, the original version of session information usable by a hardware portal to identify a user of a mobile computing device; and

sending, by the content server, the requested content to the mobile computing device via the hardware portal.

13. The method of claim 12 , wherein the original version, but not the encrypted version, of the session information is stored by the hardware portal.

14. The method of claim 12 , further comprising:

encrypting the requested content, using the encrypted version of session information.

15. The method of claim 12 , further comprising:

receiving, by the content server, user information including a user account number corresponding to an account for a content provider, wherein the user information is usable by the content server to access the requested content.

16. The method of claim 12 , further comprising:

participating in a security key exchange with the hardware portal.

17. The method of claim 12 , further comprising:

sending an encrypted session cookie, via the hardware portal, to the mobile computing device, wherein the encrypted session cookie is usable by the mobile computing device to establish a secure session with the content server.

18. The method of claim 17 , wherein the encrypted session cookie is based at least in part on a received user ID and a received user password, wherein the user ID and password correspond to a user account.

19. A non-transitory computer-readable medium having program instructions stored thereon, wherein the program instructions are executable by a hardware portal to cause the hardware portal to perform operations comprising:

receiving, from a mobile computing device, a request for content at a content server, wherein the request includes an original version of session information associated with a user of the mobile computing device;

transmitting an encrypted version, but not the original version, of the session information to the content server;

receiving the content from the content server; and

transmitting, based at least in part on the original version of the session information, the received content to the mobile computing device.

20. The non-transitory computer-readable medium of claim 19 , wherein the transmitting includes:

receiving, from the mobile computing device, a password; and

comparing the password to the original version of the session information, wherein the original version, but not the encrypted version, of the session information is stored by the hardware portal.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 16, 2018
From: INTELLECTUAL VENTURES ASSETS 66 LLC
To: LIBERTY PEAK VENTURES, LLC
Reel/Frame 045610/0409 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 22, 2018
From: GULA CONSULTING LIMITED LIABILITY COMPANY
To: INTELLECTUAL VENTURES ASSETS 66 LLC
Reel/Frame 045417/0042 →
MERGER Recorded Nov 24, 2015
From: PROPULSION REMOTE HOLDINGS, LLC
To: GULA CONSULTING LIMITED LIABILITY COMPANY
Reel/Frame 037136/0047 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 6, 2012
From: AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.
To: PROPULSION REMOTE HOLDINGS, LLC
Reel/Frame 027656/0527 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 13, 2011
From: BISHOP, FRED; NEEMANN, TREY; VOLTMER, THEODORE S.; ARIFF, FAUZIAH B.
To: AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.
Reel/Frame 026584/0484 →