IP Library Granted Patent US 12,694,397
Granted Patent B2
US 12,694,397 · App. 19/026,763 · Granted Jul 28, 2026

Utilizing a transaction card to provide secondary authentication for accessing a secure application with a user device

Inventors: James Zarakas (Centreville, VA); Molly Johnson (Alexandria, VA); Robert Perry (Ashburn, VA); Adam Koeppel (Washington, DC); Tyler Locke (Washington, DC)
Assignee: Capital One Services, LLC
G06Q20/3674G06F3/017G06F21/35G06Q20/105G06Q20/3226G06Q20/3227G06Q20/3278G06Q20/353G06Q20/385G06Q20/409G06Q40/02G07F7/0833H04L9/0877H04L9/3226H04L9/3234H04L63/0853G06F21/6245G06F2200/1636G06F2200/1637H04L2209/805H04L2463/082H04W4/80H04W84/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,694,397
App. No.
19/026,763
Filed
Jan 17, 2025
Granted
Jul 28, 2026
Kind
B2
Art Unit
3699
USPC
705/67
Abstract

A transaction card includes a near-field communication (NFC) component, a security component, a wireless component, one or more memories, and one or more processors communicatively coupled to the one or more memories. The device receives a signal from a user device attempting to access a secure application, and energizes the NFC component based on the signal received from the user device. The device causes the security component to generate an encrypted code based on the NFC component being energized, and provides, via the security component, the encrypted code to the wireless component. The device provides, via the wireless component, the encrypted code to the user device to permit the user device to utilize the encrypted code as authentication for accessing the secure application.

Claims (73)

1 . A transaction card, comprising:

one or more hardware components configured to:

receive a signal from a user device,

wherein the signal is received when the transaction card is within a threshold proximity of the user device;

energize, based on the signal, a near-field communication (NFC) component of the transaction card;

generate an encrypted code based on the NFC component being energized; and

provide the encrypted code to the user device,

wherein the encrypted code provides authentication to access an application of an application platform.

2 . The transaction card of claim 1 , wherein the encrypted code is associated with one factor of a two factor authentication.

3 . The transaction card of claim 1 , wherein a sensor component, of the one or more hardware components, is configured to:

detect a gesture performed with the transaction card when the transaction card is within the threshold proximity of the user device.

4 . The transaction card of claim 1 , wherein the encrypted code is encrypted with elliptic-curve cryptography (ECC).

5 . The transaction card of claim 1 , wherein a sensor component, of the one or more hardware components, is configured to:

provide an instruction, to the NFC component, that causes the NFC component to be energized.

6 . The transaction card of claim 5 , wherein the NFC component is configured to:

automatically generate an instruction for a security component, of the one or more hardware components, based on the instruction from the sensor component and being energized.

7 . The transaction card of claim 1 , wherein the NFC component is configured to:

automatically instruct a security component, of the one or more hardware components, to generate the encrypted code based on being energized.

8 . The transaction card of claim 1 , wherein a capacitive component, of the one or more hardware components, is configured to energize the NFC component, and

a security component, of the one or more hardware components, is configured to generate the encrypted code.

9 . The transaction card of claim 3 , wherein the gesture comprises at least one of:

a movement of the transaction card,

a movement of the transaction card in a particular pattern,

a tapping of the transaction card on the user device,

a tapping of the transaction card on a surface,

a flipping of the transaction card,

a finger tapping on the transaction card,

a finger movement on the transaction card,

a finger movement in a particular pattern on the transaction card,

a motioning of a finger or a hand over the transaction card, or

a motioning of a finger or a hand over the transaction card in a particular manner.

10 . A method, comprising:

receiving, by a transaction card and from a user device, a signal when the transaction card is within a threshold proximity of the user device,

wherein the signal is associated with a request to access an application of an application platform;

energizing, by the transaction card and based on receiving the signal, a near-field communication (NFC) component of the transaction card;

generating, by the transaction card, an encrypted code based on the NFC component being energized; and

providing, by the transaction card, the encrypted code to the user device,

wherein the encrypted code provides authentication to access the application.

11 . The method of claim 10 , wherein the encrypted code is associated with two factor authentication.

12 . The method of claim 10 , wherein the encrypted code is encrypted with elliptic-curve cryptography (ECC).

13 . The method of claim 10 , wherein generating the encrypted code based on the NFC component being energized comprises:

generating an instruction for a security component, of the transaction card, to generate the encrypted code based on the NFC component being energized; and

generating, by the security component, the encrypted code based on receiving the instruction.

14 . The method of claim 10 , wherein generating the encrypted code based on the NFC component being energized comprises:

automatically instructing a security component, of the transaction card, to generate the encrypted code based on the NFC component being energized.

15 . The method of claim 10 , further comprising:

sensing a gesture performed with the transaction card based on the transaction card being within the threshold proximity of the user device, wherein the gesture comprises one or more of:

a movement of the transaction card,

a movement of the transaction card in a particular pattern,

a tapping of the transaction card on the user device,

a tapping of the transaction card on a surface,

a flipping of the transaction card,

a finger tapping on the transaction card,

a finger movement on the transaction card,

a finger movement in a particular pattern on the transaction card,

a motioning of a finger or a hand over the transaction card, or

a motioning of a finger or a hand over the transaction card in a particular manner.

16 . A user device, comprising:

one or more memories; and

one or more processors, communicatively coupled to the one or more memories, configured to cause the user device to:

generate a signal associated with a request to access an application of an application platform;

receive, in response to the generated signal and based on a transaction card being within a threshold proximity to the user device, an encrypted code from the transaction card;

perform one or more actions to verify the encrypted code; and

access, based on verification of the encrypted code, the application,

wherein the encrypted code provides authentication to access the application.

17 . The user device of claim 16 , wherein the encrypted code is associated with two factor authentication, and

wherein the one or more processors, to perform the one or more actions to verify the encrypted code, are configured to cause the user device to:

transmit the encrypted code to another device.

18 . The user device of claim 16 , wherein the encrypted code is encrypted with elliptic-curve cryptography (ECC).

19 . The user device of claim 18 , wherein the encrypted code represents one authentication factor for a two factor authentication.

20 . The user device of claim 19 , wherein the request includes authentication information associated with a user, and

wherein the one or more processors are further configured to cause the user device to:

transmit the encrypted code to a point-of-sale (POS) device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 21, 2025
From: ZARAKAS, JAMES; JOHNSON, MOLLY; PERRY, ROBERT; KOEPPEL, ADAM; LOCKE, TYLER
To: CAPITAL ONE SERVICES, LLC
Reel/Frame 069936/0762 →
Continuity (5)
Continuation 18537905 · Dec 13, 2023
Continuation 17667709 · Feb 9, 2022
Continuation 16601709 · Oct 15, 2019
Continuation 15867233 · Jan 10, 2018
Related Publication 20250156853A1 · May 15, 2025
References Cited (57)
US 9571164B1 · Luo et al. · 2017 [cited by applicant]
US 9826400B2 · Jakobsson · 2017 [cited by examiner]
US 10372892B2 · DeBates · 2019 [cited by examiner]
US 10453054B2 · Zarakas et al. · 2019 [cited by applicant]
US 11250419B2 · Zarakas et al. · 2022 [cited by applicant]
US 11341470B1 · Pearce · 2022 [cited by examiner]
US 11893576B2 · Zarakas et al. · 2024 [cited by applicant]
US 20070118745A1 · Buer · 2007 [cited by examiner]
US 20090145964A1 · Blythe · 2009 [cited by applicant]
US 20130144793A1 · Royston · 2013 [cited by applicant]
US 20130205373A1 · Jaudon et al. · 2013 [cited by applicant]
US 20130211929A1 · Itwaru · 2013 [cited by examiner]
US 20130228616A1 · Bhosle et al. · 2013 [cited by applicant]
US 20130320080A1 · Olson et al. · 2013 [cited by applicant]
US 20140149263A1 · Denton et al. · 2014 [cited by applicant]
US 20140181955A1 · Rosati · 2014 [cited by applicant]
US 20140279546A1 · Poole · 2014 [cited by examiner]
US 20150032635A1 · Guise · 2015 [cited by applicant]
US 20150134513A1 · Olson et al. · 2015 [cited by applicant]
US 20150149365A1 · Mobini · 2015 [cited by applicant]
US 20150170014A1 · Olson et al. · 2015 [cited by applicant]
US 20150220109A1 · Von Badinski et al. · 2015 [cited by applicant]
US 20150286813A1 · Jakobsson · 2015 [cited by examiner]
US 20160057627A1 · Burgbacher · 2016 [cited by applicant]
US 20160188919A1 · Gao et al. · 2016 [cited by applicant]
US 20160189143A1 · Koeppel · 2016 [cited by examiner]
US 20160261411A1 · Yau et al. · 2016 [cited by applicant]
US 20160277388A1 · Lowe et al. · 2016 [cited by applicant]
US 20160307186A1 · Noë · 2016 [cited by examiner]
US 20160307190A1 · Zarakas · 2016 [cited by examiner]
US 20170061404A1 · Tunnell · 2017 [cited by examiner]
US 20170068437A1 · Warren · 2017 [cited by applicant]
US 20170154328A1 · Zarakas et al. · 2017 [cited by applicant]
US 20170161709A1 · Tunnell · 2017 [cited by examiner]
US 20170187529A1 · Guilley · 2017 [cited by examiner]
US 20170228631A1 · Larsen et al. · 2017 [cited by applicant]
US 20170323166A1 · Colussi et al. · 2017 [cited by applicant]
US 20180005223A1 · Terra · 2018 [cited by examiner]
US 20180005227A1 · Sandelov et al. · 2018 [cited by applicant]
US 20180120892A1 · Von Badinski et al. · 2018 [cited by applicant]
US 20180121925A1 · Gaikar · 2018 [cited by examiner]
US 20180285602A1 · Mersh · 2018 [cited by examiner]
US 20200110482A1 · Vu · 2020 [cited by examiner]
US 20200160670A1 · Zalewski · 2020 [cited by examiner]
US 20200175793A1 · Wishne · 2020 [cited by examiner]
US 20240112178A1 · Zarakas et al. · 2024 [cited by applicant]
SG 10201707206X · 2019 [cited by examiner]
WO 2014062623A1 · 2014 [cited by applicant]
WO 2016015054A1 · 2016 [cited by applicant]
WO WO2016201522A1 · 2016 [cited by examiner]
Parada et al. “Gesture Detection Using Passive RFID Tags to Enable People-Centric IoT Applications”, IEEE Communications Magazine, Feb. 2017, pp. 56-61 (Year: 2017). [cited by examiner]
Solat “Security of Electronic Payment Systems: A Comprehensive Survey”, pp. 29:1-29:29, Jan. 12, 2017 (Year: 2017). [cited by examiner]
Extended European Search Report for Application No. EP19150714.4, mailed on May 27, 2019, 9 pages. [cited by applicant]
Extended European Search Report for Application No. EP23190979.7, mailed on Sep. 28, 2023, 8 pages. [cited by applicant]
Gummeson J., et al., “An Energy Harvesting Wearable Ring Platform for Gesture Input on Surfaces”, presented at Mobisys, Jun. 2014, pp. 162-175. [cited by applicant]
Seneviratne S., et al., “A Survey of Wearable Devices and Challenges”, IEEE Communications Surveys and Tutorials, Jul. 2017, vol. 19(4), pp. 2573-2620. [cited by applicant]
Smart Card Alliance and EMVCo Webinar: The Evolution of Payment Specifications and Tokenization, Nov. 4, 2015, 40 pages. [cited by applicant]