IP Library › Granted Patent US 11,621,849
Granted Patent B2
US 11,621,849 · App. 17/489,210 · Granted Apr 4, 2023

Call center web-based authentication using a contactless card

Inventors: Jeffrey Rule (Chevy Chase, MD); Rajko Ilincic (Annandale, VA)
Assignee: Capital One Services, LLC
H04L9/3234G06F16/9566G06K7/10297H04L9/0877H04L67/02H04M1/724H04M3/42042
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,621,849
App. No.
17/489,210
Granted
Apr 4, 2023
Kind
B2
Abstract

Systems, methods, articles of manufacture, and computer-readable media. A server may receive a phone call and generate a uniform resource locator (URL) comprising a session identifier for an account. The server may transmit the URL to a client device. The server may receive, from a web browser, a request comprising the URL. The server may determine that the session identifier in the URL of the request matches the session identifier for the account, and transmit, to the web browser, a web page at the URL. The server may receive, from the web browser, a cryptogram read by the web page via a card reader of the client device and decrypt the cryptogram. The server may authenticate the identity of the caller for the call based on decrypting the cryptogram and the session identifier of the URL matching the session identifier of the account.

Claims (67)

1. A method, comprising:

receiving, by a server from a web browser on a client device, a hypertext transfer protocol (HTTP) request comprising a cookie;

verifying, by the server, the cookie;

receiving, by the server from the web browser, a cryptogram read by the web browser via a card reader of the client device;

decrypting, by the server based on the verification of the cookie, the cryptogram;

generating, by the server, a session identifier associated with an account;

transmitting, by the server, an authenticated phone number including the session identifier to the web browser;

receiving, by the server, a phone call specifying the authenticated phone number;

receiving, by the server during the phone call, input specifying the session identifier;

determining, by the server, that the session identifier received as input matches the session identifier associated with the account; and

providing, by the server based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, one or more attributes of the account to a graphical user interface displayed on an agent system assigned to the phone call.

2. The method of claim 1 , further comprising:

determining, by the server, that the phone call is received on a pre-authenticated phone number.

3. The method of claim 1 , further comprising:

assigning, by the server, a time threshold to the session identifier; and

determining, by the server, that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

4. The method of claim 3 , wherein the one or more attributes are provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

5. The method of claim 1 , further comprising:

authenticating the account by the server based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the one or more attributes are provided based on the authentication of the account.

6. The method of claim 1 , further comprising:

automatically connecting, by the server, the phone call to an agent associated with the agent system based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account.

7. The method of claim 1 , wherein the web browser reads the cryptogram from a contactless card associated with the account.

8. A non-transitory computer-readable storage medium, the computer-readable storage medium including instructions that when executed by a computer, cause the computer to:

receive, from a web browser on a client device, a hypertext transfer protocol (HTTP) request comprising a cookie;

verify the cookie;

receive, from the web browser, a cryptogram read by the web browser via a card reader of the client device;

decrypt, based on the verification of the cookie, the cryptogram;

generate a session identifier associated with an account;

transmit an authenticated phone number including the session identifier to the web browser;

receive a phone call specifying the authenticated phone number;

receive, during the phone call, input specifying the session identifier;

determine that the session identifier received as input matches the session identifier associated with the account; and

provide, based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, one or more attributes of the account to a graphical user interface displayed on an agent system assigned to the phone call.

9. The computer-readable storage medium of claim 8 , wherein the instructions further configure the computer to:

determine that the phone call is received on a pre-authenticated phone number.

10. The computer-readable storage medium of claim 8 , wherein the instructions further configure the computer to:

assign a time threshold to the session identifier; and

determine that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

11. The computer-readable storage medium of claim 10 , wherein the one or more attributes are provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

12. The computer-readable storage medium of claim 8 , wherein the instructions further configure the computer to:

authenticate the account based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the one or more attributes are provided based on the authentication of the account.

13. The computer-readable storage medium of claim 8 , wherein the instructions further configure the computer to:

automatically connect the phone call to an agent associated with the agent system based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account.

14. The computer-readable storage medium of claim 8 , wherein the web browser reads the cryptogram from a contactless card associated with the account.

15. A computing apparatus comprising:

a processor; and

a memory storing instructions that, when executed by the processor, configure the apparatus to:

receive, from a web browser on a client device, a hypertext transfer protocol (HTTP) request comprising a cookie;

verify the cookie;

receive, from the web browser, a cryptogram read by the web browser via a card reader of the client device;

decrypt, based on the verification of the cookie, the cryptogram;

generate a session identifier associated with an account;

transmit an authenticated phone number including the session identifier to the web browser;

receive a phone call specifying the authenticated phone number;

receive, during the phone call, input specifying the session identifier;

determine that the session identifier received as input matches the session identifier associated with the account; and

provide, based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, one or more attributes of the account to a graphical user interface displayed on an agent system assigned to the phone call.

16. The computing apparatus of claim 15 , wherein the instructions further configure the apparatus to:

determine that the phone call is received on a pre-authenticated phone number.

17. The computing apparatus of claim 15 , wherein the instructions further configure the apparatus to:

assign a time threshold to the session identifier; and

determine that an elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

18. The computing apparatus of claim 17 , wherein the one or more attributes are provided based on the determination that the elapsed amount of time between the generation of the session identifier and the receipt of the phone call does not exceed the time threshold.

19. The computing apparatus of claim 15 , wherein the instructions further configure the apparatus to:

authenticate the account based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account, wherein the one or more attributes are provided based on the authentication of the account.

20. The computing apparatus of claim 15 , wherein the instructions further configure the apparatus to:

automatically connect the phone call to an agent associated with the agent system based on the verification of the cookie, the decryption of the cryptogram, and the determination that the session identifier received as input matches the session identifier associated with the account.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 29, 2021
From: RULE, JEFFREY; ILINCIC, RAJKO
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 057643/0855 →
Continuity (2)
Continuation 17085768 · Oct 30, 2020
Related Publication 20220141024A1 · May 5, 2022