IP Library Granted Patent US 11,397,936
Granted Patent B2
US 11,397,936 · App. 16/883,358 · Granted Jul 26, 2022

Method, device and secure element for conducting a secured financial transaction on a device

Inventors: Sebastien Fontaine (Montreal, CA); Luc Dolcino (Laval, CA); Benjamin Du Hays (Hampstead, CA); Maxime De Nanclas (Montreal, CA); Xavier Alberti (Montreal, CA)
Assignee: Apple Inc.
G06Q20/3227G06Q20/20G06Q20/32G06Q20/322G06Q20/327G06Q20/3229G06Q20/3278G06Q20/34G06Q20/353G06Q20/388G06Q20/3825G06Q20/3829G06Q20/409G06Q20/4012
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,397,936
App. No.
16/883,358
Granted
Jul 26, 2022
Kind
B2
Abstract

A method of and system for operating a mobile device used as a payment terminal are disclosed. The mobile device is configured to run a point of sale (POS) application for receiving a payment from a customer. User input comprising an amount corresponding to the payment is received. A contactless interface of the mobile device is activated. An indication of one or more payment applications supported by a payment apparatus is received via the contactless interface. One of the payment applications is selected. Data associated with the payment apparatus is acquired. The data associated with the payment apparatus identifies a financial account of the customer. At least a portion of the data associated with the payment apparatus is encrypted. The encrypted data and an identifier corresponding to the merchant are sent to a remote server.

Claims (51)

1. A method of operating a mobile device used as a payment terminal by a merchant, the mobile device being distinct from a dedicated payment terminal, the mobile device being configured to run a point of sale (POS) application for receiving a payment from a customer and to operate a secure element, the mobile device comprising a central processing unit, a contactless interface and a communication interface, the secure element being characterized by software components operating a secured environment, the POS application comprising a payment control application configured to interact with the secure element, the method comprising:

receiving user input comprising an amount corresponding to the payment;

activating the contactless interface of the mobile device;

receiving, via the contactless interface of the mobile device and from a payment apparatus of the customer, an indication of one or more payment applications supported by the payment apparatus, the indication being received by the secure element independently of the central processing unit of the mobile device;

selecting, by the secure element, a payment application of the one or more payment applications supported by the payment apparatus;

acquiring, via the contactless interface of the mobile device, data associated with the payment apparatus, wherein the data associated with the payment apparatus identifies a financial account of the customer;

encrypting, by the secure element, at least a portion of the data associated with the payment apparatus, thereby generating encrypted data; and

sending, over a secured communication channel and to a remote server, the encrypted data and an identifier corresponding to the merchant.

2. The method of claim 1 , wherein the contactless interface comprises a Contactless Front End, wherein the payment apparatus comprises a Proximity Integrated Circuit Card (PICC), wherein the data associated with the payment apparatus comprises payment credentials, and wherein acquiring, via the contactless interface of the mobile device, the data associated with the payment apparatus comprises:

sending a request to enable a reader mode of the Contactless Front End;

reading, by the Contactless Front End, the payment credentials associated with the PICC; and

sending a request to deactivate the reader mode of the Contactless Front End.

3. The method of claim 1 , wherein acquiring, via the contactless interface of the mobile device, the data associated with the payment apparatus comprises:

a sending of a Select Proximity Payment System Environment (PPSE) request to the payment apparatus, and wherein the receiving the indication of the one or more payment applications supported by the payment apparatus is in response to the PPSE request.

4. The method of claim 1 , wherein the at least a portion of the data associated with the payment apparatus comprises payment credentials.

5. The method of claim 1 , further comprising:

receiving, over the secured communication channel, from the remote server, a response to a transaction authorization request; and

processing the response to the transaction authorization request to generate a status of a financial transaction.

6. The method of claim 1 , wherein the payment apparatus is a payment card.

7. The method of claim 1 , wherein the payment apparatus is another mobile device.

8. The method of claim 1 , wherein the user input comprising the amount corresponding to the payment is received from the POS application being run by the mobile device, and wherein the indication is received separate from the POS application.

9. A method of processing a payment by a mobile device operating as a payment terminal, the mobile device executing a point of sale (POS) application for receiving a payment from a customer, the mobile device comprising a secure element, the method comprising:

receiving input comprising an amount corresponding to the payment;

activating a contactless interface of the mobile device;

receiving, via the contactless interface of the mobile device and from a payment apparatus of the customer, an indication of one or more payment applications supported by the payment apparatus, the indication being received by the secure element independently of a central processing unit of the mobile device;

selecting, by the secure element, a payment application of the one or more payment applications supported by the payment apparatus;

acquiring, via the contactless interface of the mobile device, data associated with the payment apparatus, wherein the data associated with the payment apparatus identifies a financial account associated with the customer;

encrypting, by the secure element, at least a portion of the data associated with the payment apparatus, thereby generating encrypted data; and

sending, over a secured communication channel and to a remote server, the encrypted data and an identifier corresponding to a merchant associated with the mobile device.

10. The method of claim 9 , wherein the secure element comprises one or more certificates.

11. The method of claim 10 , wherein encrypting the at least the portion of the data comprises encrypting, based on the one or more certificates, the at least the portion of the data.

12. The method of claim 9 , wherein the secure element comprises one or more encryption keys.

13. The method of claim 12 , wherein encrypting the at least the portion of the data comprises encrypting, based on the one or more encryption keys, the at least the portion of the data.

14. The method of claim 12 , wherein the payment apparatus is a payment card.

15. The method of claim 14 , wherein the data associated with the payment apparatus is a card number of the payment card.

16. The method of claim 15 , wherein the at least the portion of the data comprises the card number.

17. The method of claim 12 , wherein the payment apparatus is another mobile device.

18. A mobile device operating as a payment terminal, the mobile device being distinct from a dedicated payment terminal, the mobile device comprising:

a secure element,

a contactless interface,

at least one processor, and

memory storing a plurality of executable instructions which, when executed by the at least one processor, cause the mobile device to:

receive input comprising an amount corresponding to a payment;

activate the contactless interface;

receive, via the contactless interface and from a payment apparatus of a customer, an indication of one or more payment applications supported by the payment apparatus, the indication being received by the secure element independently of a central processing unit of the mobile device;

select, via the secure element, a payment application of the one or more payment applications supported by the payment apparatus;

acquire, via the contactless interface, data associated with the payment apparatus, wherein the data associated with the payment apparatus identifies a financial account associated with the customer;

encrypt, by the secure element, at least a portion of the data associated with the payment apparatus, thereby generating encrypted data; and

send, over a secured communication channel and to a remote server, the encrypted data and an identifier corresponding to a merchant associated with the mobile device.

19. The mobile device of claim 18 , wherein the instructions that cause the mobile device to encrypt the at least the portion of the data comprise instructions that cause the mobile device to encrypt, by the secure element and based on one or more certificates, the at least the portion of the data.

20. The mobile device of claim 18 , wherein the instructions that cause the mobile device to encrypt the at least the portion of the data comprise instructions that cause the mobile device to encrypt, by the secure element and based on one or more encryption keys, the at least the portion of the data.

Assignments (6)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 2, 2021
From: MOBEEWAVE SYSTEMS ULC
To: APPLE INC.
Reel/Frame 055813/0031 →
CHANGE OF NAME Recorded Jul 22, 2020
From: 1251008 B.C. UNLIMITED LIABILITY COMPANY
To: MOBEEWAVE SYSTEMS ULC
Reel/Frame 053280/0732 →
MERGER AND CHANGE OF NAME Recorded Jul 21, 2020
From: MOBEEWAVE SYSTEMS ULC; 1251008 B.C. UNLIMITED LIABILITY COMPANY
To: 1251008 B.C. UNLIMITED LIABILITY COMPANY
Reel/Frame 053265/0272 →
CHANGE OF NAME Recorded Jul 20, 2020
From: MOBEEWAVE SYSTEMS INC.
To: MOBEEWAVE SYSTEMS ULC
Reel/Frame 053251/0488 →
CHANGE OF NAME Recorded Jul 15, 2020
From: MOBEEWAVE INC.
To: MOBEEWAVE SYSTEMS INC.
Reel/Frame 053223/0012 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 26, 2020
From: FONTAINE, SEBASTIEN; DOLCINO, LUC; DU HAYS, BENJAMIN; DE NANCLAS, MAXIME; ALBERTI, XAVIER
To: MOBEEWAVE INC.
Reel/Frame 052751/0531 →
Continuity (5)
Continuation 16253798 · Jan 22, 2019
Continuation 15861963 · Jan 4, 2018
Continuation 14371828
Provisional Application 61604613 · Feb 29, 2012
Related Publication 20200286068A1 · Sep 10, 2020
Cited By (1)
US 12,367,478