IP Library Granted Patent US 10,839,397
Granted Patent B2
US 10,839,397 · App. 16/123,460 · Granted Nov 17, 2020

Method and system for contextual device authentication via blockchain

Inventors: Ankur Arora (New Delhi, IN); Amit Gupta (New Delhi, IN); Shreya Mittal (Delhi, IN)
Assignee: MASTERCARD INTERNATIONAL INCORPORATED
G06Q20/405G06Q20/3224G06Q20/382H04L9/0637H04L9/3297H04L67/306H04L2209/38H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,839,397
App. No.
16/123,460
Granted
Nov 17, 2020
Kind
B2
Abstract

A method for contextual authentication based on computing devices includes: storing an account profile related to a transaction account including an account identifier and a timestamp and a device geolocation for at least two computing devices; receiving an authorization request for a payment transaction including the account identifier, a transaction geographic location, and a transaction time; identifying an authentication score for the payment transaction based on a comparison of the transaction time and transaction geographic location to the timestamp and device geographic location for each of the at least two computing devices; and transmitting the identified authentication score and received authorization request to a financial institution associated with the transaction account.

Claims (63)

1. A method for contextual authentication based on computing devices, comprising:

storing, in an account database of a processing server, an account profile, wherein the account profile includes data related to a transaction account including at least an account identifier and, for at least two mobile computing devices associated with the related transaction account, at least a timestamp and a device geographic location of the respective mobile computing device at the timestamp;

receiving, by a receiver of the processing server, an authorization request for a payment transaction, wherein the authorization request is formatted according to one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier, a second data element configured to store a transaction geographic location, and a third data element configured to store a transaction time;

receiving periodically, by the receiver of the processing server, a current timestamp and a current device geographic location of each mobile computing device in the at least two mobile computing devices of a related account profile;

updating, in the account database of the processing server, the timestamp and the device geographic location of the respective mobile computing device of the related account profile with the current timestamp and current device geographic location received in association with each mobile computing device in the at least two mobile computing devices of the related account profile;

identifying, by the processing server, an authentication score for the payment transaction based on at least a comparison of the transaction time and transaction geographic location to the timestamp and device geographic location included in the account profile for each mobile computing device of the at least two mobile computing devices; and

electronically transmitting, by a transmitter of the processing server, the identified authentication score and received authorization request to a financial institution associated with the transaction account.

2. The method of claim 1 , wherein

the account profile is a blockchain comprised of a plurality of blocks, each block including at least a block header and one or more data values, where each block header includes at least a block timestamp, a block reference value, and a data reference value,

the device geographic location for each of the at least two mobile computing devices is included in one of the one or more data values included in one of the plurality of blocks, and

the timestamp for each of the at least two mobile computing devices is the block timestamp included in the block header of the one of the plurality of blocks that includes the one of the one or more data values.

3. The method of claim 1 , wherein the identified authentication score is stored in a fourth data element of the authorization request prior to the electronic transmission.

4. The method of claim 1 , further comprising:

determining, by the processing server, if the payment transaction should be approved or declined based on comparison of the identified authentication score to a threshold value, wherein

the determination is stored in a fourth data element of the authorization request prior to the electronic transmission.

5. A method for contextual authentication based on computing devices, comprising:

storing, in an account database of a processing server, an account profile, wherein the account profile includes data related to a transaction account including at least an account identifier and, for at least two mobile computing devices associated with the related transaction account, at least a timestamp and a device geographic location of the respective mobile computing device at the timestamp;

receiving, by a receiver of the processing server, an authorization request for a payment transaction, wherein the authorization request is formatted according to one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier, a second data element configured to store a transaction geographic location, and a third data element configured to store a transaction time;

receiving periodically, by the receiver of the processing server, a current timestamp and a current device geographic location of each mobile computing device in the at least two mobile computing devices of a related account profile;

updating, in the account database of the processing server, the timestamp and the device geographic location of the respective mobile computing device of the related account profile with the current timestamp and current device geographic location received in association with each mobile computing device in the at least two mobile computing devices of the related account profile;

identifying, by the processing server, an authentication score for the payment transaction based on at least a comparison of the transaction time and transaction geographic location to the timestamp and device geographic location included in the account profile for each mobile computing device of the at least two mobile computing devices;

determining, by the processing server, if the payment transaction should be declined based on a comparison of the identified authentication score to a threshold level; and

if the determination is successful, electronically transmitting, by a transmitter of the processing server, an authorization response for the payment transaction to a third party, wherein the authorization response is formatted according to the one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier and a second data element configured to store a response code indicating decline of the payment transaction, or

if the determination is unsuccessful, electronically transmitting, by the transmitter of the processing server, the identified authentication score and received authorization request to a financial institution associated with the transaction account.

6. The method of claim 5 , wherein

the account profile is a blockchain comprised of a plurality of blocks, each block including at least a block header and one or more data values, where each block header includes at least a block timestamp, a block reference value, and a data reference value,

the device geographic location for each of the at least two mobile computing devices is included in one of the one or more data values included in one of the plurality of blocks, and

the timestamp for each of the at least two mobile computing devices is the block timestamp included in the block header of the one of the plurality of blocks that includes the one of the one or more data values.

7. The method of claim 5 , wherein, if the determination is unsuccessful, the identified authentication score is stored in a fourth data element of the authorization request prior to the electronic transmission.

8. The method of claim 5 , wherein the authentication score is further based on a number of the at least two mobile computing devices.

9. A system for contextual authentication based on computing devices, comprising:

an account database of a processing server configured to store an account profile, wherein the account profile includes data related to a transaction account including at least an account identifier and, for at least two mobile computing devices associated with the related transaction account, at least a timestamp and a device geographic location of the respective mobile computing device at the timestamp;

a receiver of the processing server configured to receive an authorization request for a payment transaction, wherein the authorization request is formatted according to one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier, a second data element configured to store a transaction geographic location, and a third data element configured to store a transaction time;

the receiver being configured to receive periodically, a current timestamp and a current device geographic location of each mobile computing device in the at least two mobile computing devices of a related account profile,

the processing server being configured to update in the account database, the timestamp and the device geographic location of each mobile computing device of a related account profile with the current timestamp and current device geographic location received in association with each mobile computing device in the at least two mobile computing devices of the related account profile,

the processing server configured to identify an authentication score for the payment transaction based on at least a comparison of the transaction time and transaction geographic location to the timestamp and device geographic location included in the account profile for each mobile computing device of the at least two mobile computing devices; and

a transmitter of the processing server configured to electronically transmit the identified authentication score and received authorization request to a financial institution associated with the transaction account.

10. The system of claim 9 , wherein

the account profile is a blockchain comprised of a plurality of blocks, each block including at least a block header and one or more data values, where each block header includes at least a block timestamp, a block reference value, and a data reference value,

the device geographic location for each of the at least two mobile computing devices is included in one of the one or more data values included in one of the plurality of blocks, and

the timestamp for each of the at least two mobile computing devices is the block timestamp included in the block header of the one of the plurality of blocks that includes the one of the one or more data values.

11. The system of claim 9 , wherein the identified authentication score is stored in a fourth data element of the authorization request prior to the electronic transmission.

12. The system of claim 9 , wherein

the processing server is further configured to determine if the payment transaction should be approved or declined based on comparison of the identified authentication score to a threshold value, and

the determination is stored in a fourth data element of the authorization request prior to the electronic transmission.

13. A system for contextual authentication based on computing devices, comprising:

an account database of a processing server configured to store an account profile, wherein the account profile includes data related to a transaction account including at least an account identifier and, for at least two mobile computing devices associated with the related transaction account, at least a timestamp and a device geographic location of the respective mobile computing device at the timestamp;

a receiver of the processing server configured to:

receive an authorization request for a payment transaction, wherein the authorization request is formatted according to one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier, a second data element configured to store a transaction geographic location, and a third data element configured to store a transaction time; and

receive periodically, a current timestamp and a current device geographic location of each mobile computing device in the at least two mobile computing devices of a related account profile;

the processing server configured to:

update, in the account database, the timestamp and the device geographic location of each mobile computing device in the related account profile with the current timestamp and current device geographic location received in association with each mobile computing device in the at least two mobile computing devices of the related account profile,

identify an authentication score for the payment transaction based on at least a comparison of the transaction time and transaction geographic location to the timestamp and device geographic location included in the account profile for each mobile computing device of the at least two mobile computing devices, and

determine if the payment transaction should be declined based on a comparison of the identified authentication score to a threshold level; and

a transmitter of the processing server configured to:

if the determination is successful, electronically transmit an authorization response for the payment transaction to a third party, wherein the authorization response is formatted according to the one or more standards and includes a plurality of data elements including at least a first data element configured to store the account identifier and a second data element configured to store a response code indicating decline of the payment transaction, or

if the determination is unsuccessful, electronically transmit the identified authentication score and received authorization request to a financial institution associated with the transaction account.

14. The system of claim 13 , wherein

the account profile is a blockchain comprised of a plurality of blocks, each block including at least a block header and one or more data values, where each block header includes at least a block timestamp, a block reference value, and a data reference value,

the device geographic location for each of the at least two mobile computing devices is included in one of the one or more data values included in one of the plurality of blocks, and

the timestamp for each of the at least two computing devices is the block timestamp included in the block header of the one of the plurality of blocks that includes the one of the one or more data values.

15. The system of claim 13 , wherein, if the determination is unsuccessful, the identified authentication score is stored in a fourth data element of the authorization request prior to the electronic transmission.

16. The system of claim 13 , wherein the authentication score is further based on a number of the at least two mobile computing devices.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 6, 2018
From: ARORA, ANKUR; GUPTA, AMIT; MITTAL, SHREYA
To: MASTERCARD INTERNATIONAL INCORPORATED
Reel/Frame 047025/0285 →
Continuity (1)
Related Publication 20200082401A1 · Mar 12, 2020
Cited By (1)
US 12,425,384