IP Library Granted Patent US 10,185,956
Granted Patent B2
US 10,185,956 · App. 15/801,716 · Granted Jan 22, 2019

Secure payment card transactions

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,185,956
App. No.
15/801,716
Granted
Jan 22, 2019
Kind
B2
Abstract

Payment card transactions at a point of sale (POS) are secured in certain embodiments by intercepting, with a POS security layer installed on a POS terminal, payment data from the POS terminal, transmitting the payment data from the POS security layer to a server security application installed on a POS server, and providing false payment data from the POS security layer to a POS terminal application installed on the POS terminal. The false payment data in various embodiments is processed as if it were the payment data, such that the POS terminal transmits an authorization request to the POS server using the false payment data. In addition, the authorization request may be transmitted from the POS server to a payment gateway.

Claims (45)

1. An encryption system comprising:

first electronic circuitry programmed to execute instructions of a first application; and

second electronic circuitry programmed to execute instructions of a second application,

wherein the first application is configured to:

obtain payment data associated with a payment instrument in response to the payment instrument being read by a payment instrument reader, by intercepting the payment data and thereby preventing the payment data from being sent to a third application;

encrypt the payment data to obtain encrypted payment data; and

provide the encrypted payment data to the second application at the second electronic circuitry;

wherein the second application is configured to:

receive the encrypted payment data;

decrypt the encrypted payment data to obtain the payment data;

create replacement data formatted to be processed as a substitute for at least a portion of the payment data;

discard the payment data; and

provide the replacement data to the first application at the first electronic circuitry; and

wherein the first application is further configured to provide the replacement data to the third application as a substitute for at least a portion of the payment data to enable the third application to request a transaction authorization based at least in part on the replacement data.

2. The encryption system of claim 1 , wherein the payment instrument comprises a wireless device.

3. The encryption system of claim 1 , wherein the payment instrument comprises a radio frequency identification (RFID) enabled device.

4. The encryption system of claim 1 , wherein the second application is further configured to re-encrypt the payment data prior to discarding the payment data, and wherein discarding the payment data comprises discarding the decrypted payment data.

5. The encryption system of claim 4 , wherein the second application is further configured to re-encrypt the payment data by creating a first version of the encrypted payment data that is decryptable only at a gateway server and a second version of the encrypted data that is decryptable by at least one of the first electronic circuitry or the second electronic circuitry.

6. The encryption system of claim 1 , wherein a first portion of the replacement data comprises false data and a second portion of the replacement data comprises a second portion of the payment data.

7. The encryption system of claim 1 , wherein the encrypted payment data is decryptable by the second application, and wherein the first application is further configured to encrypt the payment data to obtain a second encrypted payment data that is not decryptable by the second application.

8. The encryption system of claim 1 , wherein the second application is further configured to combine the replacement data with the encrypted payment data to obtain combined payment data and to provide the combined payment data to a gateway server.

9. The encryption system of claim 1 , wherein the second application is further configured to combine the replacement data with a second encrypted payment data that is decryptable only at a gateway server to obtain combined payment data and to provide the combined payment data to the gateway server.

10. An encryption method comprising:

under control of electronic circuitry programmed to execute instructions of a first application:

obtaining payment data associated with a payment instrument in response to the payment instrument being read by a payment instrument reader, by intercepting the payment data and thereby preventing the payment data from being sent to a third application;

encrypting the payment data to obtain encrypted payment data;

providing the encrypted payment data to a second application at second electronic circuitry;

receiving, from the second electronic circuitry, replacement data formatted to be processed as a substitute for at least a portion of the payment data; and

providing the replacement data to the third application as a substitute for at least a portion of the payment data to enable the third application to request a transaction authorization based at least in part on the replacement data.

11. The encryption method of claim 10 , wherein the payment instrument comprises a wireless device.

12. The encryption method of claim 10 , wherein the payment instrument comprises a radio frequency identification (RFID) enabled device.

13. The encryption method of claim 10 , wherein the encrypted payment data is decryptable by the second application.

14. The encryption method of claim 13 , further comprising encrypting the payment data to obtain a second encrypted payment data that is not decryptable by the second application.

15. The encryption method of claim 10 , wherein the second electronic circuitry comprises a point of sale server.

16. The encryption method of claim 10 , wherein the second electronic circuitry comprises a gateway.

17. An encryption method comprising:

under control of electronic circuitry programmed to execute instructions of a first application:

obtaining encrypted payment data associated with a payment instrument in response to the payment instrument being read by a payment instrument reader;

decrypting the encrypted payment data to obtain the payment data;

creating replacement data formatted to be processed as a substitute for at least a portion of the payment data;

discarding the payment data; and

providing the replacement data to a second application at a second electronic circuitry enabling the second application to provide the replacement data to a third application as a substitute for at least a portion of the payment data to enable the third application to request a transaction authorization based at least in part on the replacement data.

18. The encryption method of claim 17 , wherein the payment instrument comprises a wireless device.

19. The encryption method of claim 17 , wherein the payment instrument comprises a radio frequency identification (RFID) enabled device.

20. The encryption method of claim 17 , wherein the electronic circuitry comprises a point of sale server.

Assignments (1)
FIRST LIEN INTELLECTUAL PROPERTY SECURITY AGREEMENT SUPPLEMENT Recorded Sep 10, 2024
From: SHIFT4 CORPORATION
To: GOLDMAN SACHS BANK USA
Reel/Frame 068924/0498 →