IP Library › Granted Patent US 11,675,888
Granted Patent B2
US 11,675,888 · App. 17/395,862 · Granted Jun 13, 2023

Systems and methods for authenticating a user at a public terminal

Inventors: Jeremy Goodsitt (Champaign, IL); Fardin Abdi Taghi Abad (Champaign, IL); Austin Walters (Savoy, IL)
Assignee: Capital One Services, LLC
G06F21/36G06F21/32G06F21/35G06F21/42G06K7/12G06K7/1417G06K19/06037H04L9/3242H04L63/083H04L63/0853H04L63/18H04L2463/082
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,675,888
App. No.
17/395,862
Granted
Jun 13, 2023
Kind
B2
Abstract

Systems and methods for authenticating a user to access a public terminal are described. Disclosed embodiments may include reading, using the physical credential reader, a user identifier from the physical credential device. Disclosed embodiments may also include transmitting the public terminal identifier and the user identifier to a secure server. Further, disclosed embodiments may include receiving, after completing the transmission, a unique code from the secure server. Disclose embodiments may additionally include displaying the unique code on the display device. Disclosed embodiments may include receiving, after displaying the unique code, an authentication message from the secure server. Disclosed embodiments may further include, responsive to receiving the authentication message, authorizing the user to use a terminal command at the public terminal.

Claims (54)

1. A secure server for authenticating a user to access a public terminal, comprising:

at least one memory storing instructions and account information associated with an account; and

at least one processor configured to execute the stored instructions to perform operations comprising:

receiving a user identifier of a physical credential device;

generating a unique code based on the user identifier and a terminal identifier associated with the public terminal;

receiving a request from a mobile device, the request comprising a code representation;

verifying, based on the request, that the mobile device is a trusted device;

responsive to determining that the code representation corresponds to the unique code and the mobile device is a trusted device, providing a user profile to the mobile device, the user profile being based on the user identifier and comprising a password;

receiving password input data from the mobile device;

determining that the password input data matches the password of the user profile; and

responsive to a determination that the password input data matches the password of the user profile, transmitting to at least one of the mobile device or the terminal, an indication that the user is authenticated for access to the public terminal.

2. The secure server of claim 1 , wherein the code representation comprises a photograph of a quick response (QR) code.

3. The secure server of claim 1 , wherein the code representation comprises an infrared signal captured by a sensor of the mobile device.

4. The secure server of claim 1 , wherein generating the unique code comprises generating a unique code based on a cryptographic hash of the terminal identifier and the user identifier.

5. The secure server of claim 1 , wherein the public terminal comprises an automatic teller machine.

6. The secure server of claim 1 , wherein:

the physical credential device comprises a transaction card having at least one of a magnetic strip or an electronic circuit; and

the user identifier comprises an identifier generated from data contained in the at least one magnetic strip or electronic circuit.

7. The secure server of claim 1 , wherein:

the physical credential device comprises a transaction card having a magnetic strip; and

the magnetic strip comprises an encoded user identifier.

8. The secure server of claim 1 , wherein:

generating the unique code comprises generating the unique code in response to determining that the user identifier is not associated with a suspicious activity designation.

9. The secure server of claim 1 , further comprising transmitting the unique code for display at the public terminal.

10. The secure server of claim 1 , wherein transmitting the indication comprises transmitting authentication data instructing the terminal to provide access to one or more programs or data via the public terminal.

11. The secure server of claim 1 , wherein transmitting the indication comprises transmitting an instruction for the terminal to dispense an amount of currency.

12. The secure server of claim 1 , wherein transmitting the indication comprises transmitting an instruction enabling the mobile device to control an operation of the terminal, based on a user-entered command entered via the mobile device.

13. The secure server of claim 1 , wherein transmitting the indication comprises transmitting an instruction for the terminal to display an interface to operate the public terminal.

14. The secure server of claim 1 , wherein verifying that the mobile device is a trusted device comprises:

receiving a security key from the mobile device;

decrypting the received security key; and

verifying that the mobile device is a trusted source based on the decryption.

15. The secure server of claim 14 , wherein receiving the security key comprises receiving the security key in conjunction with receiving the code representation.

16. The secure server of claim 1 , wherein receiving the code representation comprises receiving the code representation via an application of the mobile device, the application being associated with a least one of the terminal or the secure server.

17. The secure server of claim 16 , wherein receiving password input data comprises receiving an indication that the password input data was input via the application of the mobile device.

18. The secure server of claim 1 , wherein the operations further comprise receiving an indication the mobile device has been unlocked.

19. A method for authenticating a user to access a public terminal by a security server, the method comprising:

receiving a user identifier of a physical credential device;

generating a unique code based on the user identifier and a terminal identifier associated with the public terminal;

receiving a request from a mobile device, the request comprising a code representation;

verifying, based on the request, that the mobile device is a trusted device;

responsive to determining that the code representation corresponds to the unique code and the mobile device is a trusted device, providing a user profile to the mobile device, the user profile being based on the user identifier and comprising a password;

receiving password input data from the mobile device;

determining that the password input data matches the password of the user profile; and

responsive to a determination that the password input data matches the password of the user profile, transmitting to at least one of the mobile device or the terminal, an indication that the user is authenticated for access to the public terminal.

20. A non-transitory computer readable medium containing instructions that when executed by at least one processor, cause the at least one processor to perform a method for authenticating a user to access a public terminal by a security server, the method comprising:

receiving a user identifier of a physical credential device;

generating a unique code based on the user identifier and a terminal identifier associated with the public terminal;

receiving a request from a mobile device, the request comprising a code representation;

verifying, based on the request, that the mobile device is a trusted device;

responsive to determining that the code representation corresponds to the unique code and the mobile device is a trusted device, providing a user profile to the mobile device, the user profile being based on the user identifier and comprising a password;

receiving password input data from the mobile device;

determining that the password input data matches the password of the user profile; and

responsive to a determination that the password input data matches the password of the user profile, transmitting to at least one of the mobile device or the terminal, an indication that the user is authenticated for access to the public terminal.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 6, 2021
From: GOODSITT, JEREMY; ABDI TAGHI ABAD, FARDIN; WALTERS, AUSTIN
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 057103/0414 →
Continuity (3)
Continuation 16400639 · May 1, 2019
Division 16030814 · Jul 9, 2018
Related Publication 20210365538A1 · Nov 25, 2021