IP Library Granted Patent US 10,185,949
Granted Patent B2
US 10,185,949 · App. 14/639,666 · Granted Jan 22, 2019

System and method for authentication of a mobile device configured with payment capabilities

Inventor: Alan Clark (Brighton, GB)
Assignee: AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.
G06Q20/3227G06F21/44G06Q20/3821G06Q20/401G06Q20/4016H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,185,949
App. No.
14/639,666
Granted
Jan 22, 2019
Kind
B2
Abstract

In various embodiments, a system, method, and computer readable medium (collectively, the “System”) for authenticating a mobile device configured to initiate payments is provided. The System may be configured to perform operations and/or steps comprising receiving, by the processor and in a secure environment, a secret element. The secret element may be transmitted to the processor (e.g., the issuer system) via a payment terminal. The System may further comprise comparing, by the processor and in the secured environment, the secret element to an issuer element. The issuer element may be linked with a flag that is associated with the transaction account. Moreover, the issuer element may be a data module that corresponds to be is not equal to the secret element. The System may also comprise authorizing, by the processor, a transaction initiated by the mobile device in response to the comparing being a satisfactory comparison.

Claims (34)

1. A mobile device comprising:

a processor;

a secure element having a secure element processor and secure element memory; and

a tangible, non-transitory memory, configured to communicate with the processor, the tangible, non-transitory memory having thereon an owner verification module, and a mobile device credential database storing a first secret element, and the owner verification module in response to execution by the processor, causes the processor to perform operations comprising:

receiving, by the owner verification module and from a user via a user interface, credential information;

authenticating, by the owner verification module in communication with the processor, that the credential information conforms with mobile device verification information associated with the mobile device that includes the mobile device credential database;

releasing, by the owner verification module and in response to the authenticating, the first secret element to a secure element, wherein the first secret element is associated with a first transaction account, wherein the first secret element is one of a plurality of secret elements;

the secure element memory storing a verification module, that in response to execution by the secure element processor causes the secure element processor to perform operations comprising:

confirming, by the verification module, that the user is an authorized user of the first transaction account, wherein confirming comprises verifying that the first secret element corresponds to an issuer element;

associating, by the verification module, the issuer element with the first transaction account; and

the owner verification module, in response to execution by the processor, causes the processor to perform further operations comprising:

activating, by the owner verification module and based on the associating, the first transaction account for a transaction on the mobile device.

2. The mobile device of claim 1 , wherein a fraud risk for the transaction is based at least in part on the first secret element being compared with the issuer element.

3. The mobile device of claim 2 , further comprising transmitting, by the processor and to an issuer system, an indication that the first transaction account is associated with the mobile device.

4. The mobile device of claim 3 , further comprising creating, by the verification module and for the secure element, a comparison protocol for the issuer element and the first secret element to determine whether the first secret element satisfies the issuer element.

5. The mobile device of claim 4 , wherein the credential information is at least one of a bio-metric input, pattern or a pin.

6. The mobile device of claim 5 , wherein the first secret element is stored on the mobile device outside the secure element.

7. The mobile device of claim 6 , wherein the issuer element is stored in an issuer credential database on the mobile device in the secure element, and wherein the associating between the issuer element and the first transaction account is stored in a table in the mobile device.

8. The mobile device of claim 7 , wherein the issuer element is a data module that is not equal to the first secret element.

9. A method comprising:

receiving, by a processor of a mobile device and from a user via a user interface, credential information;

authenticating, by an owner verification module executed by the processor of the mobile device, that the credential information conforms with mobile device verification information associated with the mobile device that includes a mobile device credential database, wherein the mobile device credential database stores a first secret element;

releasing, by the owner verification module and in response to the authenticating, the first secret element to a secure element of the mobile device, wherein the first secret element is associated with a first transaction account, wherein the first secret element is one of a plurality of secret elements;

verifying, by a verification module executed by the secure element, that the first secret element corresponds to an issuer element;

confirming, by the verification module, that the user is an authorized user of the first transaction account, wherein confirming comprises verifying that the first secret element corresponds to the issuer element;

associating, by the verification module, the issuer element with the first transaction account; and

activating, by the owner verification module and based on the associating, the first transaction account for a transaction on the mobile device.

10. The method of claim 9 , wherein a fraud risk for the transaction based at least in part on the first secret element being compared with the issuer element.

11. The mobile device of claim 1 , further comprising confirming, by the owner verification module and based on the authenticating, that the user is the authorized user of the first transaction account.

12. The method of claim 9 , wherein the first secret element is defined by an issuer system, wherein the issuer system associates the first secret element with the first transaction account and wherein the first secret element is associated with the secure element of the mobile device.

13. The method of claim 9 , further comprising,

creating, by the verification module and for the secure element, a comparison protocol for the issuer element and the first secret element to determine whether the first secret element satisfies the issuer element.

14. The mobile device of claim 1 , further comprising releasing, by the owner verification module and in response to the authenticating, a second secret element to the secure element, wherein the second secret element is associated with a second transaction account.

15. The mobile device of claim 1 , wherein the first secret element is associated with the first transaction account to link the first transaction account and the mobile device.

Assignments (2)
CORRECTION TO THE ASSIGNEE NAME ON THE COVERSHEET PREVIOUSLY RECORDED AT REEL: 035096 FRAME: 0386 ON MARCH 5, 2015 Recorded Apr 1, 2015
From: CLARK, ALAN
To: AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.
Reel/Frame 035353/0525 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 5, 2015
From: CLARK, ALAN
To: AMERICAN EXPRESS TRAVEL RELATED SERVICES, INC.
Reel/Frame 035096/0386 →
Continuity (1)
Related Publication 20160260083A1 · Sep 8, 2016