IP Library Granted Patent US 9,842,338
Granted Patent B1
US 9,842,338 · App. 15/357,655 · Granted Dec 12, 2017

System to identify vulnerable card readers

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,842,338
App. No.
15/357,655
Granted
Dec 12, 2017
Kind
B1
Abstract

Example embodiments relate to a network-based vulnerability detection system configured to access a database of customer transaction data corresponding to a set of card readers that includes transaction codes, receive an identification of a set of compromised card readers among the set of card readers, identify common transaction codes within the transaction data of the set of compromised card readers, and correlate the common transaction codes to one or more instances of fraud associated with the compromised set of card readers. In some example embodiments, the vulnerability detection system may be applied to monitor one or more card readers, receive transaction data corresponding to transaction conducted through the card readers, identify the common transaction codes correlated to the instances of fraud, and cause display of a notification that includes an indication of the instance of fraud at a client device.

Claims (67)

1. A method comprising:

accessing a database of customer transaction data that includes card reader identifiers and transaction codes, the card reader identifiers and the transaction codes corresponding to a set of transactions conducted through a set of card readers identified by the card reader identifiers;

receiving an identification of a set of card reader identifiers from among the card reader identifiers, the set of card reader identifiers identifying a set of compromised card readers from among the set of card readers, and the customer transaction data further including compromised transaction data corresponding to the set of compromised card readers;

identifying a common transaction code from the compromised transaction data of the set of compromised card readers;

correlating the common transaction code to an instance of fraud associated with the compromised set of card readers;

monitoring a first card reader, the first card reader having a first card reader identifier;

receiving first transaction data from the first card reader, the first transaction data corresponding to a transaction conducted through the first card reader, and including the common transaction code;

identifying the common transaction code within the first transaction data; and

causing display of a notification at a client device in response to the identifying the common transaction code, the notification including an indication of the first card reader identifier.

2. The method of claim 1 , wherein the first transaction data includes a card number, and transaction details, and the method further comprises:

generating a report that includes the card number and the transaction details.

3. The method of claim 1 , wherein the method further comprises:

causing an interruption of the transaction associated with the first transaction data in response to the identifying the common transaction code within the first transaction data.

4. The method of claim 1 , wherein the method further comprises:

collecting first transaction data from a first card reader over a time period;

determining a rate in which the common transaction code appears within the first transaction data over the time period;

calculating a vulnerability score based on the rate and the time period; and

assigning the vulnerability score to the first card reader.

5. The method of claim 4 , wherein the method further comprises:

determining that the vulnerability score transgresses a threshold value, the threshold value indicating that the first card reader has been compromised; and

causing display of a notification at a client device in response to the determining that the badness score transgresses the threshold value, the notification including a display of the vulnerability score and a first identifier of the first card reader.

6. The method of claim 4 , wherein the time period is defined by a number of transactions conducted through the first card reader.

7. The method of claim 4 , wherein the time period is defined by a duration of time.

8. The method of claim 1 , wherein the transaction codes include time stamps, and the method further comprises:

collecting first transaction data from a first card reader over a time period;

determining a number of instances in which the common transaction code appears within the first transaction data over the time period, based on the time stamps of the transaction codes;

calculating a vulnerability score based on the frequency and the time period; and

assigning the vulnerability score to the first card reader.

9. The method of claim 1 , wherein the method further comprises:

monitoring a first card reader, the first card reader having a first card reader identifier;

receiving first transaction data from the first card reader, the first transaction data corresponding to a transaction conducted through the first card reader, and including the common transaction code;

identifying the common transaction code within the first transaction data; and

disabling the first card reader in response to the identifying the common transaction code.

10. The method of claim 1 , wherein the transaction codes include error codes.

11. The method of claim 1 , wherein the instance of fraud includes a skimmer installed on a card reader.

12. The system of claim 11 , wherein the instructions cause the system to perform operations further comprising:

collecting first transaction data from a first card reader over a time period;

determining a number of instances in which the common transaction code appears within the first transaction data over the time period;

calculating a vulnerability score based on the rate and the time period; and

assigning the vulnerability score to the first card reader.

13. The system of claim 12 , wherein the instructions cause the system to perform operations further comprising:

determining that the vulnerability score transgresses a threshold value, the threshold value indicating that the first card reader has been compromised; and

causing display of a notification at a client device in response to the determining that the badness score transgresses the threshold value, the notification including a display of the vulnerability score and a first identifier of the first card reader.

14. A system comprising:

one or more processors of a machine; and

a memory storing instructions that, when executed by at least one processor among the one or more processors, causes the machine to perform operations comprising:

accessing a database of customer transaction data that includes card reader identifiers and transaction codes, the card reader identifiers and the transaction codes corresponding to a set of transactions conducted through a set of card readers identified by the card reader identifiers;

receiving an identification of a set of card reader identifiers from among the card reader identifiers, the set of card reader identifiers identifying a set of compromised card readers from among the set of card readers, and the customer transaction data further including compromised transaction data corresponding to the set of compromised card readers;

identifying a common transaction code from the compromised transaction data of the set of compromised card readers;

correlating the common transaction code to an instance of fraud associated with the compromised set of card readers;

monitoring a first card reader, the first card reader having a first card reader identifier;

receiving first transaction data from the first card reader, the first transaction data corresponding to a transaction conducted through the first card reader, and including the common transaction code;

identifying the common transaction code within the first transaction data; and

causing display of a notification at a client device in response to the identifying the common transaction code, the notification including an indication of the first card reader identifier.

15. The system of claim 14 , wherein the first transaction data includes a card number, and transaction details, and the instructions cause the system to perform operations further comprising:

generating a report that includes the card number and the transaction details.

16. The system of claim 14 , wherein the instructions cause the system to perform operations further comprising:

causing an interruption of the transaction associated with the first transaction data in response to the identifying the common transaction code within the first transaction data.

17. A non-transitory machine-readable storage medium comprising instructions that, when executed by one or more processors of a machine, cause the machine to perform operations comprising:

accessing a database of customer transaction data that includes card reader identifiers and transaction codes, the card reader identifiers and the transaction codes corresponding to a set of transactions conducted through a set of card readers identified by the card reader identifiers;

receiving an identification of a set of card reader identifiers from among the card reader identifiers, the set of card reader identifiers identifying a set of compromised card readers from among the set of card readers, and the customer transaction data further including compromised transaction data corresponding to the set of compromised card readers;

identifying a common transaction code from the compromised transaction data of the set of compromised card readers;

correlating the common transaction code to an instance of fraud associated with the compromised set of card readers;

monitoring a first card reader, the first card reader having a first card reader identifier;

receiving first transaction data from the first card reader, the first transaction data corresponding to a transaction conducted through the first card reader, and including the common transaction code;

identifying the common transaction code within the first transaction data; and

causing display of a notification at a client device in response to the identifying the common transaction code, the notification including an indication of the first card reader identifier.

Assignments (8)
SECURITY INTEREST Recorded Jul 3, 2022
From: PALANTIR TECHNOLOGIES INC.
To: WELLS FARGO BANK, N.A.
Reel/Frame 060572/0506 →
ASSIGNMENT OF INTELLECTUAL PROPERTY SECURITY AGREEMENTS Recorded Jul 3, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: WELLS FARGO BANK, N.A.
Reel/Frame 060572/0640 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ERRONEOUSLY LISTED PATENT BY REMOVING APPLICATION NO. 16/832267 FROM THE RELEASE OF SECURITY INTEREST PREVIOUSLY RECORDED ON REEL 052856 FRAME 0382. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Aug 26, 2021
From: ROYAL BANK OF CANADA
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 057335/0753 →
RELEASE OF SECURITY INTEREST Recorded Jun 4, 2020
From: ROYAL BANK OF CANADA
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 052856/0382 →
SECURITY INTEREST Recorded Jun 4, 2020
From: PALANTIR TECHNOLOGIES INC.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 052856/0817 →
SECURITY INTEREST Recorded Jan 27, 2020
From: PALANTIR TECHNOLOGIES INC.
To: ROYAL BANK OF CANADA, AS ADMINISTRATIVE AGENT
Reel/Frame 051709/0471 →
SECURITY INTEREST Recorded Jan 27, 2020
From: PALANTIR TECHNOLOGIES INC.
To: MORGAN STANLEY SENIOR FUNDING, INC., AS ADMINISTRATIVE AGENT
Reel/Frame 051713/0149 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 31, 2017
From: SHUKLA, ANANYA; NORRIS, DANIEL
To: PALANTIR TECHNOLOGIES INC.
Reel/Frame 043990/0038 →