IP Library Granted Patent US 9,836,745
Granted Patent B2
US 9,836,745 · App. 15/346,232 · Granted Dec 5, 2017

Secure payment card transactions

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,836,745
App. No.
15/346,232
Granted
Dec 5, 2017
Kind
B2
Abstract

Payment card transactions at a point of sale (POS) are secured in certain embodiments by intercepting, with a POS security layer installed on a POS terminal, payment data from the POS terminal, transmitting the payment data from the POS security layer to a server security application installed on a POS server, and providing false payment data from the POS security layer to a POS terminal application installed on the POS terminal. The false payment data in various embodiments is processed as if it were the payment data, such that the POS terminal transmits an authorization request to the POS server using the false payment data. In addition, the authorization request may be transmitted from the POS server to a payment gateway.

Claims (20)

1. An encryption system comprising:

electronic circuitry programmed to execute instructions of a first application so as to:

obtain electronic chip data associated with a card in response to the card being read by an electronic chip reader, by intercepting the electronic chip data and thereby preventing the electronic chip data from being sent to a second application;

create encrypted data based on the electronic chip data;

provide the encrypted data to a gateway server over a network;

receive, from the gateway server over the network, replacement data formatted to be processed as a substitute for at least a portion of the electronic chip data; and

provide the replacement data to the second application as a substitute for at least a portion of the electronic chip data to enable the second application to request an authorization based on the replacement data.

2. The encryption system of claim 1 , wherein a first portion of the replacement data comprises false data and a second portion of the replacement data comprises a second portion of the electronic chip data.

3. The encryption system of claim 1 , wherein the first application is further configured to obtain the electronic chip data by reading an input buffer of the electronic chip reader.

4. The encryption system of claim 1 , wherein the first application is further configured to create the encrypted data by creating a version of the encrypted data that is decryptable only at the gateway server and a version of the encrypted data that is decryptable at the electronic chip reader.

5. An encryption method comprising:

under control of electronic circuitry programmed to execute instructions of a first application:

obtaining electronic chip data associated with a card in response to the card being read by an electronic chip reader, by intercepting the electronic chip data and thereby preventing the electronic chip data from being sent to a second application;

creating encrypted data based on the electronic chip data;

providing the encrypted data to a server;

receiving, from the server, replacement data formatted to be processed as a substitute for at least a portion of the electronic chip data; and

providing the replacement data to the second application as a substitute for at least a portion of the electronic chip data to enable the second application to request authorization based on the replacement data.

6. The encryption method of claim 5 , wherein a first portion of the replacement data comprises false data and a second portion of the replacement data comprises a second portion of the electronic chip data.

7. The encryption method of claim 5 , further comprising obtaining the electronic chip data by reading an input buffer of the electronic chip reader.

8. The encryption method of claim 5 , wherein said creating the encrypted data comprises creating a version of the encrypted data that is decryptable only at the gateway server and a version of the encrypted data that is decryptable at the electronic chip reader.

Assignments (4)
ASSIGNMENT OF SECURITY INTEREST IN IP COLLATERAL (REEL/FRAME 044591/0445) Recorded Sep 10, 2024
From: UBS AG CAYMAN ISLANDS BRANCH (AS SUCCESSOR ADMINISTRATIVE AGENT AND COLLATERAL AGENT TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH)
To: GOLDMAN SACHS BANK USA
Reel/Frame 068920/0306 →
RELEASE OF SECOND LIEN SECURITY INTEREST Recorded Jul 14, 2020
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: SHIFT4 CORPORATION; MERCHANT-LINK, LLC
Reel/Frame 053201/0235 →
SECOND LIEN SECURITY AGREEMENT Recorded Dec 4, 2017
From: SHIFT4 CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS ADMINISTRATIVE AGENT
Reel/Frame 044666/0780 →
FIRST LIEN SECURITY AGREEMENT Recorded Dec 1, 2017
From: SHIFT4 CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS ADMINISTRATIVE AGENT
Reel/Frame 044591/0445 →