IP Library Granted Patent US 9,123,042
Granted Patent B2
US 9,123,042 · App. 11/839,698 · Granted Sep 1, 2015

Pin block replacement

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,123,042
App. No.
11/839,698
Granted
Sep 1, 2015
Kind
B2
Abstract

Systems and methods for performing token transactions are provided. In one embodiment, the invention provides for processing token transactions, including receiving an encrypted password for a debit card transaction, wherein the password was secured using encrypted debit-card information, decrypting the password using encrypted debit-card information for the debit card, recreating the password using actual debit-card information for the debit card, and forwarding the recreated password for subsequent transaction processing. The invention is suitable for implementation with other types of tokens in addition to debit-card tokens as well. The invention can be implemented in a scenario where the password includes a PIN block that is created by combining a clear or encrypted PIN for the token with token information.

Claims (38)

1. A method for processing a token-based transaction, wherein a token having token data that comprises account data, and an original PIN used to authenticate the token, are used to fulfill the token-based transaction, the method for processing comprising:

receiving, using a computer system, transaction data for the token-based transaction at a processing device, the transaction data comprising encrypted account information and an encrypted first PIN block, wherein the processing device comprises the computer system;

the processing device:

obtaining an unencrypted account data for the token by decrypting the encrypted account information using a first key;

obtaining a decrypted first PIN block by decrypting the encrypted first PIN block using a second key, wherein the decrypted first PIN block comprises a combination of the encrypted account information and the original PIN;

obtaining the original PIN by applying the encrypted account information to the decrypted first PIN block;

creating a second PIN block containing a combination of the original PIN and the unencrypted account data by combining the unencrypted account data with the original PIN; and

routing, based on the account data, the second PIN block and the unencrypted account data to a PIN verification system.

2. The method of claim 1 , wherein the encrypted account information comprises encrypted account data that is in the same format as the account data.

3. The method of claim 1 , wherein the encrypted account information comprises a combination of a portion of original account data with encrypted account data, wherein the combination is in the same format as the account data.

4. The method of claim 1 , wherein the decrypted first PIN block is created by exclusive OR-ing the PIN with the encrypted account information.

5. The method of claim 1 , further comprising the step of encrypting the decrypted first PIN block using an encryption algorithm before sending the first PIN block to the processing device.

6. The method of claim 1 , wherein the steps of receiving, decrypting, applying, combining and routing are performed at a processing device communicatively coupled between a point-of-sale terminal and a transaction processing network.

7. The method of claim 1 , wherein the token is a magnetic stripe card, and the account data comprises a personal account number associated with the magnetic stripe card.

8. A computer-based apparatus comprising:

means for receiving transaction data for a token-based transaction, the transaction data comprising encrypted account information and an encrypted first PIN block;

means for obtaining an unencrypted account data for the token by decrypting the encrypted account information using a first key;

means for obtaining a decrypted first PIN block by decrypting the encrypted first PIN block using a second key, wherein the decrypted first PIN block comprises a combination of encrypted account information and a PIN;

means for obtaining the PIN by applying the encrypted account information to the decrypted first PIN block;

means for creating a second PIN block containing a combination of the PIN and the unencrypted account data by combining the unencrypted account data with the PIN; and

means for routing, based on the unencrypted account data, the second PIN block and the unencrypted account data to a PIN verification system.

9. The computer-based apparatus of claim 8 , wherein the encrypted account information comprises encrypted account data that is in the same format as the unencrypted account data.

10. The computer-based apparatus of claim 8 , wherein the encrypted account information comprises a combination of a portion of original account data with encrypted account data, wherein the combination is in the same format as the unencrypted account data.

11. The computer-based apparatus of claim 8 , wherein the decrypted first PIN block is created by exclusive OR-ing the PIN with the encrypted account information.

12. The computer-based apparatus of claim 8 , wherein the steps of receiving, decrypting, applying, combining and routing are performed at a processing device communicatively coupled between a point-of-sale terminal and a transaction processing network.

13. The computer-based apparatus of claim 8 , wherein the token is a magnetic stripe card, and the unencrypted account data comprises a personal account number associated with the magnetic stripe card.

14. A token transaction system for processing a token-based transaction, wherein a token having token data that comprises account data, and a PIN used to authenticate the token, are used to fulfill the token-based transaction, comprising:

a processor;

a memory coupled to the processor and having instructions stored thereon that, when executed by the processor, causes the processor to perform the steps of:

receiving transaction data for the token based transaction, the transaction data comprising encrypted account information and an encrypted first PIN block,

obtaining an unencrypted account data for the token by decrypting the encrypted account information using a first key,

obtaining a decrypted first PIN block by decrypting the encrypted first PIN block using a second key, wherein the decrypted first PIN block comprises a combination of the encrypted account information and the PIN;

obtaining the PIN by applying the encrypted account information to the decrypted first PIN block,

creating a second PIN block containing a combination of the PIN and the unencrypted account data by combining the unencrypted account data with the PIN; and

routing, based on the account data, the second PIN block and the unencrypted account data to a PIN verification system.

15. The token transaction system of claim 14 , wherein the account data is in clear-text.

16. The token transaction system of claim 14 , further comprising a plurality of token readers configured to read token data and to encrypt some or all of the token data to generate the encrypted token data.

17. The token transaction system of claim 14 , wherein the token transaction system is a gateway configured to route data between a token reader and a transaction processing network.

Assignments (12)
ASSIGNMENT OF SECURITY INTEREST IN PATENT COLLATERAL RECORDED AT R/F 046920-0784 Recorded Apr 28, 2025
From: UBS AG, STAMFORD BRANCH, AS SUCCESSOR TO CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS ASSIGNOR
To: BARCLAYS BANK PLC, AS ASSIGNEE
Reel/Frame 071095/0667 →
RELEASE OF SECURITY INTEREST RECORDED AT REEL/FRAME 46920/0817 Recorded May 10, 2019
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: VERIFONE SYSTEMS, INC.; VERIFONE, INC.; HYPERCOM CORPORATION
Reel/Frame 049150/0190 →
FIRST LIEN PATENT SECURITY AGREEMENT Recorded Aug 23, 2018
From: VERIFONE, INC.; HYPERCOM CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH AS COLLATERAL AGENT
Reel/Frame 046920/0784 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Aug 23, 2018
From: VERIFONE, INC.; HYPERCOM CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH AS COLLATERAL AGENT
Reel/Frame 046920/0817 →
RELEASE (R033282F0757) Recorded Aug 21, 2018
From: JPMORGAN CHASE BANK, N.A.
To: VERIFONE, INC.; HYPERCOM CORPORATION; GLOBAL BAY MOBILE TECHNOLOGIES, INC.
Reel/Frame 046864/0909 →
RELEASE (R027472F0851) Recorded Aug 21, 2018
From: JPMORGAN CHASE BANK, N.A.
To: VERIFONE, INC.
Reel/Frame 046866/0016 →
SECURITY INTEREST Recorded Jul 9, 2014
From: VERIFONE, INC.; HYPERCOM CORPORATION; GLOBAL BAY MOBILE TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 033282/0757 →
CORRECTIVE ASSIGNMENT TO CORRECT THE INCORRECT PATENT AND APPLICATION NUMBERS 12/188114,7162636,7171560,7543151,7725726 PREVIOUSLY RECORDED ON REEL 027472 FRAME 0851. ASSIGNOR(S) HEREBY CONFIRMS THE GRANT OF A SECURITY INTEREST TO JPMORGAN CHASE BANK, N.A. Recorded Apr 18, 2012
From: VERIFONE, INC.; HYPERCOM CORPORATION; VERIFONE MEDIA, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 028068/0570 →
SECURITY INTEREST Recorded Jan 4, 2012
From: VERIFONE, INC., A DELAWARE CORPORATION
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 027472/0851 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 5, 2010
From: VERIFONE SYSTEMS, INC.
To: VERIFONE, INC.
Reel/Frame 025328/0286 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 21, 2010
From: SEMTEK INNOVATIVE SOLUTIONS CORPORATION
To: VERIFONE SYSTEMS, INC.
Reel/Frame 025177/0121 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 19, 2007
From: VON MUELLER, CLAY; YALE, SCOTT; CATINELLA, PAUL
To: SEMTEK INNOVATIVE SOLUTIONS, INC.
Reel/Frame 019987/0233 →