IP Library Granted Patent US 12,572,929
Granted Patent B2
US 12,572,929 · App. 18/825,333 · Granted Mar 10, 2026

Method for securing sensitive data

Inventor: Ezio Anselmo Mazarim Fernandes (Redwood City, CA)
Assignee: OBEP PAYMENTS, LLC
G06Q20/3823G06Q20/12G06Q20/382G06Q20/385G06Q20/40975G06Q20/023
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,572,929
App. No.
18/825,333
Granted
Mar 10, 2026
Kind
B2
Abstract

A transaction system avoids the storage of any single information item that can be used to provide access to sensitive information. To gain access to the sensitive information, information elements from at least two different databases must be provided, none of the information elements being sufficient to gain access to the sensitive information. In an example embodiment, a payment company encrypts the sensitive information, then partitions the encrypted information into at least two parts. These at least two parts are stored in at least two databases, each database being controlled by a different entity. To gain access to the sensitive information, each of the different entities must provide their part of the encrypted information. Absent any one of the parts of the encrypted information, it is virtually impossible to access the sensitive information.

Claims (55)

1 . A method for reproducing partitioned datasets, the method comprising:

partitioning an encrypted dataset at a first party system into a first encrypted part and a second encrypted part, each of the encrypted parts associated with a same unique token;

storing the first encrypted part at a first party system database;

providing the second encrypted part from the first party system to the second party system, wherein the second party system:

partitions the second encrypted part into first encrypted piece and second encrypted piece,

stores the first encrypted piece in association with a client identifier (ID) and the token at a second party system database,

executes code at a client device to trigger storage of the second encrypted piece at an application installed on the client device, and

receives a request to use the encrypted dataset in an online transaction between the client device and the second party system, the request including the unique token and the second encrypted piece provided by the client device;

receiving a combination of the first encrypted piece stored at the second party system and the second encrypted piece received from the client device, the combination sent from the second party system to the first party system;

retrieving, by the first party system, the first encrypted part associated with the unique token from the first party system database;

combining, by the first party system, the combined encrypted pieces received from the second party system and the first encrypted part retrieved from the first party system database into a reproduced encrypted dataset based on shared association with the unique token;

decrypting, by the first party system, the reproduced encrypted dataset to retrieve client's credit card information;

sending, by the first party system to a credit card operator, transaction information including the client's credit card information; and

receiving, by the first party system from the credit card operator, authorization for the online transaction in response to the request based on decryption of the reproduced encrypted dataset.

2 . The method of claim 1 , wherein the installed application is in wireless communication with the second party system.

3 . The method of claim 1 , wherein the installed application is an extension on a browser on the client device.

4 . The method of claim 1 , wherein the installed application is executable to automatically send the second encrypted piece from the client device when contact is re-initiated with the second party system.

5 . The method of claim 1 , wherein the second party system retrieves the token based on the client ID associated with the client device.

6 . A system for reproducing partitioned datasets, the system comprising:

a first party system comprising:

a first party system processor; and a first party system memory storing first party system instructions that when executed by the first party system processor perform operations comprising:

partitioning an encrypted dataset into a first encrypted part and a second encrypted part, each of the encrypted parts associated with a same unique token;

storing the first encrypted part at a first party system database;

providing the second encrypted part to the second party system;

retrieving the first encrypted part associated with the unique token from the first party system database;

combining a combined encrypted pieces received from a second party system and the first encrypted part retrieved from the first party system database into a reproduced encrypted dataset based on shared association with the unique token;

decrypting the reproduced encrypted dataset to retrieve client's credit card information;

sending, to a credit card operator, transaction information including the client's credit card information;

receiving, from the credit card operator, authorization for an online transaction in response to a request based on decryption of the reproduced encrypted dataset; and

the system additionally including the second party system comprising:

a second party system processor; and a second party system memory storing second party system instructions that when executed by the second party system processor performs operations comprising:

partitioning the received second encrypted part into a first encrypted piece and a second encrypted piece;

storing the first encrypted piece in association with a client identifier (ID) and the token at a second party system database;

executing code at a client device to trigger storage of the second encrypted piece at an application installed on the client device;

receiving the request to use the encrypted dataset in an online transaction between the client device and the second party system, the request including the unique token and the second encrypted piece provided by the client device; and

sending, to the first party system, the combination of the first encrypted piece stored at the second party system and the second encrypted piece received from the client device.

7 . The system of claim 6 , wherein the installed application is in wireless communication with the second party system.

8 . The system of claim 7 , wherein the installed application is an extension on a browser on the client device.

9 . The system of claim 7 , wherein the installed application is executable to automatically send the second encrypted piece from the client device when contact is re-initiated with the second party system.

10 . The system of claim 6 , wherein the second party system retrieves the token based on the client ID associated with the client device.

11 . A system comprising a first party non-transitory, computer-readable storage medium, having embodied thereon a first party program executable by a first party processor to perform a method for reproducing partitioned datasets, the method comprising:

partitioning an encrypted dataset into a first encrypted part and a second encrypted part, each of the encrypted parts associated with a same unique token;

storing the first encrypted part at a first party system database;

providing the second encrypted part to a second party system;

retrieving the first encrypted parts associated with the unique token from the first party system database;

combining a combined encrypted pieces received from the second party system and the first encrypted part retrieved from the first party system database into a reproduced encrypted dataset based on shared association with the unique token;

decrypting the reproduced encrypted dataset to retrieve client's credit card information;

sending, to a credit card operator, transaction information including the client's credit card information;

receiving, from the credit card operator, authorization for an online transaction in response to a request based on decryption of the reproduced encrypted dataset; and

the system further including a second party non-transitory computer-readable storage medium comprising second party instructions, that when read by a second party processor cause the second party processor to perform operations comprising:

partitioning the received second encrypted part into a first encrypted piece and a second encrypted piece;

storing the first encrypted piece in association with a client identifier (ID) and the token at a second party system database;

executing code at a client device to trigger storage of the second encrypted piece at an application installed on the client device;

receiving the request to use the encrypted dataset in the online transaction between the client device and the second party system, the request including the unique token and the second encrypted piece provided by the client device; and

sending, to the first party system, the combination of the first encrypted piece stored at the second party system and the second encrypted piece received from the client device.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 10, 2024
From: MAZARIM FERNANDES, EZIO ANSELMO
To: PAYWITHMYBANK, INC.
Reel/Frame 068543/0948 →
CONVERSION AND NAME CHANGE Recorded Sep 10, 2024
From: PAYWITHMYBANK, INC.
To: PWMB, LLC
Reel/Frame 068920/0598 →
CHANGE OF NAME Recorded Sep 10, 2024
From: PWMB, LLC
To: OBEP PAYMENTS, LLC
Reel/Frame 068922/0463 →
Continuity (3)
Continuation 14341776 · Jul 26, 2014
Provisional Application 61930433 · Jan 22, 2014
Related Publication 20250061447A1 · Feb 20, 2025
References Cited (21)
US 12106289B2 · Fernandes · 2024 [cited by applicant]
US 20020049914A1 · Inoue · 2002 [cited by examiner]
US 20060005033A1 · Wood · 2006 [cited by applicant]
US 20080109279A1 · Csoka · 2008 [cited by applicant]
US 20080208697A1 · Kargman · 2008 [cited by examiner]
US 20100274634A1 · Ifrah · 2010 [cited by applicant]
US 20130054462A1 · Sproles · 2013 [cited by examiner]
US 20130145173A1 · Shablygin · 2013 [cited by examiner]
US 20130275308A1 · Paraskeva · 2013 [cited by examiner]
US 20130278622A1 · Sun · 2013 [cited by examiner]
US 20130297516A1 · Mampaey · 2013 [cited by applicant]
US 20150206137A1 · Fernandes · 2015 [cited by applicant]
White, Ron; “How Computers Work”, Illustrated by Timothy Edward Downs, 7th Edition, Oct. 15, 2003. [cited by applicant]
U.S. Appl. No. 14/341,776 Final Office action mailed Nov. 29, 2023. [cited by applicant]
U.S. Appl. No. 14/341,776 Office action mailed Jun. 28, 2023. [cited by applicant]
U.S. Appl. No. 14/341,776 Final Office action mailed Feb. 9, 2023. [cited by applicant]
U.S. Appl. No. 14/341,776 Office action mailed Apr. 20, 2022. [cited by applicant]
U.S. Appl. No. 14/341,776 Final Office action mailed Aug. 3, 2021. [cited by applicant]
U.S. Appl. No. 14/341,776 Office action mailed Oct. 7, 2020. [cited by applicant]
U.S. Appl. No. 14/341,776 Final Office action mailed Jun. 14, 2018. [cited by applicant]
U.S. Appl. No. 14/341,776 Office action mailed Sep. 5, 2017. [cited by applicant]