IP Library › Granted Patent US 11,288,559
Granted Patent B2
US 11,288,559 · App. 17/108,865 · Granted Mar 29, 2022

Generating barcodes utilizing cryptographic techniques

Inventors: Jeffrey Rule (Chevy Chase, MD); Kevin Osborn (Newton, MA); Srinivasa Chigurupati (Long Grove, IL)
Assignee: Capital One Services, LLC
G06K19/06028G06F21/602G06K7/1413G06Q20/322G06Q20/38215
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,288,559
App. No.
17/108,865
Granted
Mar 29, 2022
Kind
B2
Abstract

Various embodiments are generally directed to secure generation of barcodes using cryptographic techniques. A processor of a contactless card may generate a cryptogram based on a cryptographic algorithm and a diversified key stored in a memory of the contactless card. The processor may receive an encrypted authorization token based on verification of the cryptogram by a server. The processor may generate a barcode utilizing the encrypted authorization token.

Claims (44)

1. A contactless card, comprising:

a communications interface;

a memory storing instructions; and

a processor operable to execute the instructions to cause the processor to:

generate a cryptogram based on a cryptographic algorithm and a diversified key stored in the memory;

receive, via the communications interface based on verification of the cryptogram, an encrypted authorization token; and

generate a barcode utilizing the encrypted authorization token.

2. The contactless card of claim 1 , further comprising a display, the processor operable to execute the instructions to cause the processor to:

display the barcode on the display.

3. The contactless card of claim 1 , the processor operable to execute the instructions to cause the processor to:

generate the diversified key based on a master key and a counter value stored in the memory.

4. The contactless card of claim 1 , wherein the barcode is pre-configured by the authorization token to authorize a single transaction.

5. The contactless card of claim 4 , wherein the barcode and the authorization token are configured to expire after the authorization of the single transaction.

6. The contactless card of claim 5 , wherein the single transaction is a payment transaction and the authorization token is a payment token.

7. The contactless card of claim 1 , the processor operable to execute the instructions to cause the processor to:

generate a digital signature based on a private key stored in the memory; and

transmit the cryptogram and the digital signature to a computing device via the communications interface.

8. A non-transitory computer-readable storage medium storing instructions that when executed by a processor circuit of a contactless card cause the processor circuit to:

generate a cryptogram based on a cryptographic algorithm and a diversified key stored in the medium;

receive, via a communications interface of the contactless card based on verification of the cryptogram, an encrypted authorization token; and

generate a barcode utilizing the encrypted authorization token.

9. The medium of claim 8 , storing instructions that when executed by the processor circuit of the contactless card cause the processor circuit to:

display the barcode on a display of the contactless card.

10. The medium of claim 8 , storing instructions that when executed by the processor circuit of the contactless card cause the processor circuit to:

generate the diversified key based on a master key and a counter value stored in the medium.

11. The medium of claim 8 , wherein the barcode is pre-configured by the authorization token to authorize a single transaction.

12. The medium of claim 11 , wherein the barcode and the authorization token are configured to expire after the authorization of the single transaction.

13. The medium of claim 12 , wherein the single transaction is a payment transaction and the authorization token is a payment token.

14. The medium of claim 8 , storing instructions that when executed by the processor circuit of the contactless card cause the processor circuit to:

generate a digital signature based on a private key stored in the medium; and

transmit the cryptogram and the digital signature to a computing device via the communications interface of the contactless card.

15. A method, comprising:

generating, by a processor of a contactless card, a cryptogram based on a cryptographic algorithm and a diversified key stored in a memory of the contactless card;

receiving, by the processor based on verification of the cryptogram by a server, an encrypted authorization token; and

generating, by the processor, a barcode utilizing the encrypted authorization token.

16. The method of claim 15 , further comprising:

displaying the barcode on a display of the contactless card.

17. The method of claim 15 , further comprising:

generating, by the processor, the diversified key based on a master key and a counter value stored in the memory.

18. The method of claim 15 , wherein the barcode is pre-configured by the authorization token to authorize a single transaction.

19. The method of claim 18 , wherein the barcode and the authorization token are configured to expire after the authorization of the single transaction, wherein the single transaction is a payment transaction and the authorization token is a payment token.

20. The method of claim 15 , further comprising:

generating, by the processor, a digital signature based on a private key stored in the memory; and

transmitting, by the processor, the cryptogram and the digital signature to a computing device via a communications interface of the contactless card, wherein the computing device verifies the digital signature based on a public key corresponding to the private key, wherein the server decrypts the cryptogram received from the computing device to verify the cryptogram.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 4, 2020
From: RULE, JEFFREY; OSBORN, KEVIN; CHIGURUPATI, SRINIVASA
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 054542/0329 →
Continuity (2)
Division 16725843 · Dec 23, 2019
Related Publication 20210192300A1 · Jun 24, 2021