IP Library Granted Patent US 12,299,685
Granted Patent B2
US 12,299,685 · App. 17/665,690 · Granted May 13, 2025

Hosting account linking services to enable dynamic authentication and device selection

Inventors: Udaya Kumar Raju Ratnakaram (Telangana, IN); Srilaxmi Sreepalli (Hyderabad, IN); Mallidi Bhagya Lakshmi Sudha Lavanya (Hyderabad, IN)
Assignee: Bank of America Corporation
G06Q20/4014G06Q20/30G06Q20/3821
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,299,685
App. No.
17/665,690
Filed
Feb 7, 2022
Granted
May 13, 2025
Kind
B2
Art Unit
3692
USPC
705/44
Abstract

Arrangements for account linking and dynamic device selection are provided. Registration data including one or more user accounts and/or payment devices may be received. A request to process a transaction may be received via a first device. User data may be retrieved to identify other devices. One or more external entities may provide user profile data including raw customer data and encrypted authentication data. A hash of the encrypted authentication data may be generated and stored. The system may dynamically generate a rendering displaying one or more payment devices available for selection. A second payment device may be selected and authentication data associated with the second payment device received. A hash of the authentication data may be generated and compared to the stored hash of the encrypted authentication data. If the hashes match, the transaction may be processed. If there is not a match, the transaction may be denied.

Claims (42)

1. An account linking and control computing platform, comprising: at least one processor; an encrypted authentication hash database; a communication interface communicatively coupled to the at least one processor; and a memory storing computer-readable instructions that, when executed by the at least one processor, cause the at least one processor to perform steps including:

receiving, from a mobile device of a user, registration data, the registration data includes an identification of each of a plurality of payment devices of the user, and for each payment device of the plurality of payment devices, an identification of a corresponding financial institution computer system;

receiving, from a vendor point-of-sale computing device, via a first payment device of the plurality of payment devices, a request to process a transaction, wherein the request includes a customer identifier and the first payment device is a physical credit or debit card;

retrieving, based on the customer identifier, the identification of the financial institution computer systems corresponding to the first payment device;

transmitting, according to the retrieved identification, a request for user profile data to the financial institution computer systems;

receiving, from at least a portion of the financial institution computer systems, user profile data, the user profile data of a payment device of the plurality of payment devices, wherein the user profile data includes authentication data of the payment device;

generating an encrypted authenticated hash from the authentication data of the payment device of each of the received user profile data and storing each of the generated encrypted hash or hashes in the encrypted authentication hash database;

generating, for each received user profile data, an image of the payment device;

displaying, on a display of the vendor point-of-sale computing device, the generated image or images;

receiving, from the vendor point-of-sale computing device, a selection of one of the displayed image or images;

displaying, on the vendor point-of-sale computing device, a request for user authentication data for the selected image;

receiving, from the mobile device, via the vendor point-of-sale computing device, the requested user authentication data;

generating an encrypted authentication hash from the received user authentication data;

determining if the encrypted authentication hash matches one of the generated encrypted authentication hashes stored in the encrypted authentication hash database;

responsive to determining that the encrypted authentication hash matches one of the generated encrypted authentication hashes stored in the encrypted authentication hash database, processing the transaction; and

responsive to determining that the encrypted authentication hash does not match one of the generated encrypted authentication hashes stored in the encrypted authentication hash database, denying the transaction.

2. The account linking and control computing platform of claim 1 , wherein the vendor point-of-sale computing device is associated with a first entity different from an entity associated with the first payment device.

3. The account linking and control computing platform of claim 1 , further including instructions that, when executed by the at least one processor, cause the at least one processor to perform steps including:

generating an account ledger update instruction; and

transmitting the account ledger update instruction to a financial institution computing system associated with the first payment device.

4. One or more non-transitory computer-readable media storing instructions that, when executed by at least one processor of an account linking and control computing platform cause the at least one processor to perform steps including:

receiving, from a mobile device of a user, registration data, the registration data includes an identification of each of a plurality of payment devices of the user, and for each payment device of the plurality of payment devices, an identification of a corresponding financial institution computing system;

receiving, from a vendor point-of-sale computing device, via a first payment device of the plurality of payment devices, a request to process a transaction, wherein the request includes a customer identifier and the first payment device is a physical credit card or debit card;

retrieving, based on the customer identifier, the identification of the financial institution computer systems corresponding to the first payment device;

transmitting, according to the retrieved identification, a request for user profile data to the financial institution computer systems;

receiving, from at least a portion of the financial institution computer systems, user profile data, the user profile data of a payment device of the plurality of payment devices, wherein the user profile data includes authentication data of the payment device;

generating an encrypted authentication hash from the authentication data of the payment device of each of the received user profile data and storing each of the generated encrypted hash or hashes in an encrypted authentication hash database;

generating, for each received user profile data, an image of the payment device;

displaying, on a display of the vendor point-of-sale computing device, the generated image or images;

receiving, from the vendor point-of-sale computing device, a selection of one of the displayed image or images;

displaying, on the vendor point-of-sale computing device, a request for user authentication data for the selected image;

receiving, from the mobile device, via the vendor point-of-sale computing device, the requested user authentication data;

generating an encrypted authentication hash from the received user authentication data;

determining if the encrypted authentication hash matches one of the generated encrypted authentication hashes stored in the encrypted authentication hash database;

responsive to determining that the encrypted authentication hash matches one of the generated encrypted authentication hashes stored in the encrypted authentication hash database, processing the transaction; and

responsive to determining that the encrypted authentication hash does not match one of the generated encrypted authentication hashes stored in the encrypted authentication hash database, denying the transaction.

5. The one or more non-transitory computer-readable media of claim 4 , wherein the vendor point-of-sale computing device is associated with a first entity different from an entity associated with the first payment device.

6. The one or more non-transitory computer-readable media of claim 4 , further including instructions that, when executed by the at least one processor, cause the at least one processor to perform steps including:

generating an account ledger update instruction; and

transmitting the account ledger update instruction to a financial institution computing system associated with the first payment device.

7. The account linking and control computing platform of claim 1 , further including instructions that, when executed by the at least one processor, cause the at least one processor to perform the step of storing the user profile for a predetermined time period.

8. The one or more non-transitory computer-readable media of claim 4 , further including instructions that, when executed by the at least one processor, cause the at least one processor to perform the step of storing the user profile for a predetermined time period.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 7, 2022
From: RATNAKARAM, UDAYA KUMAR RAJU; SREEPALLI, SRILAXMI; BHAGYA LAKSHMI SUDHA LAVANYA, MALLIDI
To: BANK OF AMERICA CORPORATION
Reel/Frame 058907/0700 →
Continuity (1)
Related Publication 20230252472A1 · Aug 10, 2023
References Cited (20)
US 9692747B2 · Bailey et al. · 2017 [cited by applicant]
US 10354240B2 · Purves et al. · 2019 [cited by applicant]
US 10917694B2 · Cronk et al. · 2021 [cited by applicant]
US 11101041B2 · Ivanoff et al. · 2021 [cited by applicant]
US 11677730B2 · Chen · 2023 [cited by examiner]
US 11823089B2 · Gunther · 2023 [cited by examiner]
US 20060122931A1 · Walker · 2006 [cited by examiner]
US 20060177061A1 · Orsini et al. · 2006 [cited by applicant]
US 20120310826A1 · Chatterjee · 2012 [cited by examiner]
US 20150287017A1 · Iqbal et al. · 2015 [cited by applicant]
US 20150310431A1 · Lakshmanan · 2015 [cited by examiner]
US 20180005238A1 · Hammad · 2018 [cited by examiner]
US 20180101847A1 · Pisut, IV · 2018 [cited by applicant]
US 20180108008A1 · Chumbley · 2018 [cited by examiner]
US 20180336754A1 · Giobbi · 2018 [cited by applicant]
US 20190156313A1 · Persaud et al. · 2019 [cited by applicant]
US 20210398114A1 · Mossoba et al. · 2021 [cited by applicant]
Y. Huang, S. Wang, F. Leu, J. Liu and C. Ko, “A Secure Mobile Shopping System Based on Credit Card Transaction,” 2014 International Conference on Intelligent Networking and Collaborative Systems, 2014, pp. 336-341, doi:… [cited by examiner]
N. Sharma and B. Bohra, “Enhancing online banking authentication using hybrid cryptographic method,” 2017 3rd International Conference on Computational Intelligence & Communication Technology (CICT), Ghaziabad, India, 2… [cited by examiner]
Dec. 20, 2023—(US) Notice of Allowance—U.S. Appl. No. 17/665,696. [cited by applicant]
Cited By (1)
US 12,561,675