IP Library Granted Patent US 11,521,203
Granted Patent B2
US 11,521,203 · App. 15/203,722 · Granted Dec 6, 2022

Generating a cryptographic key based on transaction data of mobile payments

Inventors: Ambuj Kumar (Sunnyvale, CA); Philippe Martineau (Saint Paul Lez Durance, FR); William Craig Rawlings (Saratoga, CA); Helena Handschuh (Palo Alto, CA)
Assignee: CRYPTOGRAPHY RESEARCH, INC.
G06Q20/3829G06Q20/3227G06Q20/401G06Q2220/00H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,521,203
App. No.
15/203,722
Granted
Dec 6, 2022
Kind
B2
Abstract

A base key that is stored at a mobile device may be received. A first dynamic key that is based on the base key may be generated. First transaction data corresponding to a first transaction associated with the mobile device may be received. Furthermore, the first dynamic key may be updated to generate a second dynamic key based on a combination of the first dynamic key and the first transaction data corresponding to the first transaction. Authentication of a second transaction associated with the mobile device may be requested based on the second dynamic key.

Claims (59)

1. A method comprising:

generating, by a processing device of a mobile device, a first dynamic key based on a base key stored in memory of the mobile device, wherein the mobile device is communicatively coupled to a server comprising a payment processor;

receiving, by the processing device, first transaction data corresponding to a first transaction associated with the mobile device;

responsive to generating the first dynamic key, sending a first request associated with the first transaction data to the server to perform a first authentication of the first transaction, wherein requesting the first authentication is based on the first dynamic key;

generating, by the processing device, a second dynamic key based on a combination of the first dynamic key and the first transaction data;

responsive to generating the second dynamic key, generating a cryptogram, by the processing device, using the second dynamic key and second transaction data corresponding to a second transaction; and

sending a second request to the server to perform a second authentication of the second transaction associated with the mobile device by sending the cryptogram to the payment processor.

2. The method of claim 1 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to create a decrypted ephemeral key based on the base key that is stored at the mobile device, wherein the generating of the first dynamic key is further based on the decrypted ephemeral key.

3. The method of claim 1 , wherein the generating of the second dynamic key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to form a decrypted ephemeral key based on the first dynamic key and the first transaction data, wherein the generating of the second dynamic key is further based on the decrypted ephemeral key.

4. The method of claim 1 , wherein the first and second transactions are mobile payments, and wherein the second transaction is conducted by the mobile device after conducting of the first transaction.

5. The method of claim 1 , further comprising:

in response to the second transaction, updating the second dynamic key to generate a third dynamic key based on a combination of the second dynamic key and the second transaction data corresponding to the second transaction; and

sending a third request to the server to perform a third authentication of a third transaction occurring after the second transaction based on the third dynamic key.

6. The method of claim 1 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an ephemeral key from the server, wherein the generating of the first dynamic key is further based on a combination of the ephemeral key with the base key.

7. A system comprising:

a processing device; and

a memory storing instructions that, when executed by the processing device, cause the processing device to:

generate a first dynamic key based on a base key stored in the memory;

receive first transaction data corresponding to a first transaction associated with the processing device, wherein the processing device is communicatively coupled to a server comprising a payment processor;

responsive to generating the first dynamic key, send a first request associated with the first transaction data to the server to perform a first authentication of the first transaction, wherein requesting the first authentication is based on the first dynamic key;

generate a second dynamic key based on a combination of the first dynamic key and the first transaction data;

responsive to generating the second dynamic key, generate a cryptogram using the second dynamic key and second transaction data corresponding to a second transaction; and

send a second request to the server to perform a second authentication of the second transaction associated with the processing device by sending the cryptogram to the payment processor.

8. The system of claim 7 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to form a decrypted ephemeral key based on the base key that is stored at the processing device, wherein the generating of the first dynamic key is further based on the decrypted ephemeral key.

9. The system of claim 7 , wherein the generating of the second dynamic key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to form a decrypted ephemeral key based on the first dynamic key and the first transaction data, wherein the generating of the second dynamic key is further based on the decrypted ephemeral key.

10. The system of claim 7 , wherein the processing device is a mobile device; wherein the first and second transactions are mobile payments, and wherein the second transaction is conducted by the mobile device after conducting of the first transaction.

11. The system of claim 7 , wherein the processing device is further to:

in response to the second transaction, update the second dynamic key to generate a third dynamic key based on a combination of the second dynamic key and the second transaction data corresponding to the second transaction; and

send a third request to the server to perform a third authentication of a third transaction occurring after the second transaction based on the third dynamic key.

12. The system of claim 7 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an ephemeral key from the server, wherein the generating of the first dynamic key is further based on a combination of the ephemeral key with the base key.

13. A non-transitory computer readable medium including data that, when executed by a processing device communicatively coupled to a server comprising a payment processor, cause the processing device to perform operations comprising:

generating a first dynamic key based on a base key stored in memory;

receiving first transaction data corresponding to a first transaction associated with the processing device;

responsive to generating the first dynamic key, sending a first request associated with the first transaction data to the server to perform a first authentication of the first transaction, wherein requesting the first authentication is based on the first dynamic key;

generating a second dynamic key based on a combination of the first dynamic key and the first transaction data;

responsive to generating the second dynamic key, generating a cryptogram using the second dynamic key and second transaction data corresponding to a second transaction; and

sending a second request to the server to perform a second authentication of the second transaction associated with the processing device by sending the cryptogram to the payment processor.

14. The non-transitory computer readable medium of claim 13 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to form a decrypted ephemeral key based on the base key that is stored at the processing device, wherein the generating of the first dynamic key is further based on the decrypted ephemeral key.

15. The non-transitory computer readable medium of claim 13 , wherein the generating of the second dynamic key comprises:

receiving an encrypted ephemeral key from the server; and

decrypting the encrypted ephemeral key to form a decrypted ephemeral key based on the first dynamic key and the first transaction data, wherein the generating of the second dynamic key is further based on the decrypted ephemeral key.

16. The non-transitory computer readable medium of claim 13 , wherein the processing device is a mobile device, wherein the first and second transactions are mobile payments, and wherein the second transaction is conducted by the mobile device after conducting of the first transaction.

17. The non-transitory computer readable medium of claim 13 , the operations further comprising:

in response to the second transaction, updating the second dynamic key to generate a third dynamic key based on a combination of the second dynamic key and the second transaction data corresponding to the second transaction; and

sending a third request to the server to perform a third authentication of a third transaction occurring after the second transaction based on the third dynamic key.

18. The non-transitory computer readable medium of claim 13 , wherein the generating of the first dynamic key based on the base key comprises:

receiving an ephemeral key from the server, wherein the generating of the first dynamic key is further based on a combination of the ephemeral key with the base key.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 14, 2016
From: KUMAR, AMBUJ; MARTINEAU, PHILIPPE; RAWLINGS, WILLIAM CRAIG; HANDSCHUH, HELENA
To: CRYPTOGRAPHY RESEARCH, INC.
Reel/Frame 039159/0937 →
Continuity (2)
Provisional Application 62190536 · Jul 9, 2015
Related Publication 20170011394A1 · Jan 12, 2017