IP Library Granted Patent US 12,316,645
Granted Patent B2
US 12,316,645 · App. 17/388,316 · Granted May 27, 2025

System and methods for secure processing of real-time resource transfers

Inventors: Milos Dunjic (Oakville, CA); David Samuel Tax (Toronto, CA); Jonathan Joseph Prendergast (West Chester, PA); Kushank Rastogi (Toronto, CA); Vipul Kishore Lalka (Oakville, CA); Asad Joheb (Toronto, CA)
Assignee: The Toronto-Dominion Bank
H04L63/126H04L9/3247
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,316,645
App. No.
17/388,316
Filed
Jul 29, 2021
Granted
May 27, 2025
Kind
B2
Art Unit
2433
USPC
713/180
Abstract

A computer-implemented method is disclosed. The method includes: receiving a first request to initiate a first resource transfer for transferring a first defined quantity of resources from a transferor data record to a transferee data record; determining that the first resource transfer is of a first type; in response to determining that the first resource transfer is of a first type, performing verification of the transferee data record by: transmitting, to a first server associated with the transferee data record, a second request to initiate a second resource transfer for transferring a second defined quantity of resources from the transferee data record to the transferor data record; receiving, from the first server, a response message associated with the second request, the response message authorizing the second resource transfer; and verifying the transferee data record based on the response message, and after verifying the transferee data record, initiating a third resource transfer for transferring a third defined quantity from the transferor data record to the transferee data record.

Claims (41)

1. A computing system, comprising:

a processor;

and

a memory coupled to the processor, the memory storing computer-executable instructions that, when executed, configure the processor to:

receive a first request to initiate a first resource transfer for transferring a first defined quantity of resources from a transferor data record to a transferee data record;

determine that the first resource transfer is of a first type;

in response to determining that the first resource transfer is of the first type, verify that the transferee data record is associated with an intended recipient of the first resource transfer by:

transmitting, to a first server associated with the transferee data record, a transfer solicitation request for requesting a second resource transfer of a second defined quantity of resources to be initiated from the transferee data record to the transferor data record;

receiving, from the first server, a response message authorizing the second resource transfer, the response message including an indication of approval of the second resource transfer by the intended recipient and including ownership information for the transferee data record; and

verifying ownership of the transferee data record based on the response message, and

after verifying that the transferee data record is associated with the intended recipient, initiate a third resource transfer for transferring a third defined quantity from the transferor data record to the transferee data record.

2. The computing system of claim 1 , wherein determining that the first resource transfer is of a first type comprises determining that there have not been any previous resource transfers from the transferor data record to the transferee data record.

3. The computing system of claim 1 , wherein determining that the first resource transfer is of a first type comprises determining that the first defined quantity of resources is requested to be transferred in real-time or substantially in real-time.

4. The computing system of claim 1 , wherein request data of the transfer solicitation request includes an indication that the transfer solicitation request is for verifying the transferee data record.

5. The computing system of claim 1 , wherein message data of the response message includes ownership certifying data associated with the transferee data record and wherein verifying ownership of the transferee data record based on the response message comprises validating the ownership certifying data.

6. The computing system of claim 5 , wherein the ownership certifying data includes at least one of: an account identifier associated with the transferee data record; a nonce challenge included in the transfer solicitation request; an indication of the first defined quantity or the second defined quantity; or an indication of historical activity data associated with the transferee data record.

7. The computing system of claim 5 , wherein the instructions, when executed, further configure the processor to generate a first code and wherein verifying ownership of the transferee data record based on the response message comprises confirming that the first code is included in the message data of the response message.

8. The computing system of claim 5 , wherein validating the ownership certifying data comprises:

obtaining transferee information associated with an intended transferee of the first resource transfer; and

performing comparison between the ownership certifying data and the transferee information.

9. The computing system of claim 1 , wherein the third defined quantity is equal to a sum of the first defined quantity and the second defined quantity.

10. The computing system of claim 1 , wherein message data of the response message is digitally signed using a private key associated with the first server.

11. A computer-implemented method, comprising:

receiving a first request to initiate a first resource transfer for transferring a first defined quantity of resources from a transferor data record to a transferee data record;

determining that the first resource transfer is of a first type;

in response to determining that the first resource transfer is of the first type, verifying that the transferee data record is associated with an intended recipient of the first resource transfer by:

transmitting, to a first server associated with the transferee data record, a transfer solicitation request for requesting a second resource transfer of a second defined quantity of resources to be initiated from the transferee data record to the transferor data record;

receiving, from the first server, a response message authorizing the second resource transfer, the response message including an indication of approval of the second resource transfer by the intended recipient and including ownership information for the transferee data record; and

verifying ownership of the transferee data record based on the response message, and

after verifying that the transferee data record is associated with the intended recipient, initiating a third resource transfer for transferring a third defined quantity from the transferor data record to the transferee data record.

12. The method of claim 11 , wherein determining that the first resource transfer is of a first type comprises determining that there have not been any previous resource transfers from the transferor data record to the transferee data record.

13. The method of claim 11 , wherein determining that the first resource transfer is of a first type comprises determining that the first defined quantity of resources is requested to be transferred in real-time or substantially in real-time.

14. The method of claim 11 , wherein request data of the transfer solicitation request includes an indication that the transfer solicitation request is for verifying the transferee data record.

15. The method of claim 11 , wherein message data of the response message includes ownership certifying data associated with the transferee data record and wherein verifying ownership of the transferee data record based on the response message comprises validating the ownership certifying data.

16. The method of claim 15 , wherein the ownership certifying data includes at least one of: an account identifier associated with the transferee data record; a nonce challenge included in the transfer solicitation request; an indication of the first defined quantity or the second defined quantity; or an indication of historical activity data associated with the transferee data record.

17. The method of claim 15 , further comprising generating a first code and wherein verifying ownership of the transferee data record based on the response message comprises confirming that the first code is included in the message data of the response message.

18. The method of claim 15 , wherein validating the ownership certifying data comprises:

obtaining transferee information associated with an intended transferee of the first resource transfer; and

performing comparison between the ownership certifying data and the transferee information.

19. The method of claim 11 , wherein the third defined quantity is equal to a sum of the first defined quantity and the second defined quantity.

20. The method of claim 11 , wherein message data of the response message is digitally signed using a private key associated with the first server.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 6, 2025
From: DUNJIC, MILOS; TAX, DAVID SAMUEL; PRENDERGAST, JONATHAN JOSEPH; RASTOGI, KUSHANK; LALKA, VIPUL KISHORE; JOHEB, ASAD
To: THE TORONTO-DOMINION BANK
Reel/Frame 070427/0314 →
Continuity (1)
Related Publication 20230029815A1 · Feb 2, 2023
References Cited (14)
US 8868467B2 · Serebrennikov · 2014 [cited by applicant]
US 9159058B2 · Fleishman et al. · 2015 [cited by applicant]
US 10693658B2 · Jacobs · 2020 [cited by examiner]
US 20110055083A1 · Grinhute · 2011 [cited by applicant]
US 20110137789A1 · Kortina et al. · 2011 [cited by applicant]
US 20130159194A1 · Habib · 2013 [cited by applicant]
US 20130282580A1 · O'Brien et al. · 2013 [cited by applicant]
US 20150348038A1 · Femrite et al. · 2015 [cited by applicant]
US 20170141926A1 · Xu · 2017 [cited by examiner]
US 20170221066A1 · Ledford et al. · 2017 [cited by applicant]
US 20190098013A1 · Wilkinson · 2019 [cited by examiner]
US 20200387878A1 · Jones · 2020 [cited by examiner]
US 20210049596A1 · Guo · 2021 [cited by examiner]
Mohamed Al-Fairuz, Karen Renaud; Multi-channel, Multi-level Authentication for More Secure eBanking; Published in Conference: Information Security South Africa Conference 2010, Sandton Convention Centre, Sandton, South … [cited by applicant]