-
公开(公告)号:US11178124B2
公开(公告)日:2021-11-16
申请号:US14475308
申请日:2014-09-02
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Jerrold V. Hauck
Abstract: Systems, methods, and computer-readable media for securely pairing a secure element and a processor of an electronic device are provided. In one example embodiment, a method, at an electronic device, includes, inter alia, deriving a key using a processor of the electronic device, sharing the derived key with a commercial entity subsystem, and receiving the shared key from the commercial entity subsystem at a secure element of the electronic device, where the received key may be leveraged for enabling a secure communication channel between the processor and the secure element. Additional embodiments are also provided.
-
公开(公告)号:US11068875B2
公开(公告)日:2021-07-20
申请号:US14502135
申请日:2014-09-30
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Timothy S. Hurley
Abstract: Using electronic devices (such as cellular telephones) that communicate wirelessly, two individuals can make person-to-person payments. In particular, an individual using an electronic device may identify another proximate electronic device of a counterparty in a financial transaction, and may provide an encrypted payment packet to the other electronic device that includes: a financial credential for a financial account of the individual, a payment amount, and a payment sign. When the other electronic device receives the encrypted payment applet, the counterparty may accept the payment in the financial transaction specified by the encrypted payment packet. Then, the other electronic device may provide the encrypted payment packet and another encrypted payment packet (with a financial credential for a financial account of the counterparty, the payment amount and the opposite payment sign) to a third party that completes the financial transaction.
-
公开(公告)号:US11042846B2
公开(公告)日:2021-06-22
申请号:US14475128
申请日:2014-09-02
Applicant: Apple Inc.
Inventor: George R. Dicker , Christopher B. Sharp , Ahmer A. Khan , Yousuf H. Vaid , Glen W. Steele , Christopher D. Adams , David T. Haggerty
Abstract: To facilitate conducting a financial transaction via wireless communication between an electronic device and another electronic device, the electronic device determines a unique transaction identifier for the financial transaction based on financial-account information communicated to the other electronic device. The financial-account information specifies a financial account that is used to pay for the financial transaction. Moreover, the unique transaction identifier may be capable of being independently computed by one or more other entities associated with the financial transaction (such as a counterparty in the financial transaction or a payment network that processes payment for the financial transaction) based on the financial-account information communicated by the portable electronic device. The electronic device may also associate receipt information, which is subsequently received from a third party (such as the payment network), with the financial transaction by comparing the determined unique transaction identifier to the computed unique transaction identifier.
-
公开(公告)号:US11037131B2
公开(公告)日:2021-06-15
申请号:US14474787
申请日:2014-09-02
Applicant: Apple Inc.
Inventor: Yousuf H. Vaid , George R. Dicker , Ahmer A. Khan , Christopher B. Sharp , Glen W. Steele , Christopher D. Adams , David T. Haggerty
Abstract: To facilitate conducting a financial transaction via wireless communication between an electronic device and another electronic device, a secure element in the electronic device receives, from a third party, a notification associated with a financial transaction. This third party may be independent of a counterparty in the financial transaction, such as: a provider of the electronic device or a payment network that processes payment for the financial transaction. In response to the notification, the secure element requests, from the third party, receipt information associated with the financial transaction, and then receives the receipt information from the third party. This receipt information may include a first-level information, such as payment status. Alternatively or additionally, the receipt information may include a second-level information, such as an itemized list of purchased items, links to information and/or discounts.
-
公开(公告)号:US10929843B2
公开(公告)日:2021-02-23
申请号:US14475251
申请日:2014-09-02
Applicant: Apple Inc.
Inventor: Ahmer A. Khan
IPC: G06Q20/38 , G06Q20/36 , H04W8/20 , H04W12/04 , G06Q20/32 , G06Q20/20 , G06F21/33 , G06F21/42 , H04W12/06 , H04W12/08 , H04L9/08 , H04W4/80 , G06Q20/34 , H04L29/06
Abstract: Systems, methods, and computer-readable media for efficiently storing credential service provider data in a security domain of a secure element of an electronic device are provided. In one example embodiment, an electronic device may include a secure element that, inter alia, receives credential service provider data from a secure element vendor subsystem, and that encrypts a key of the secure element with the received credential service provider data. The electronic device may also include a communications component that transmits the encrypted key to a credential service provider. Additional embodiments are also provided.
-
公开(公告)号:US10685346B2
公开(公告)日:2020-06-16
申请号:US16140214
申请日:2018-09-24
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Zachary A. Rosen , Joakim Linde
Abstract: To facilitate conducting a secure transaction via wireless communication between a portable electronic device (such as a smartphone) and another electronic device (such as a point-of-sale terminal), the portable electronic device may, after a final command is received from the other electronic device, determine a unique transaction identifier for the secure transaction. In particular, the final command may be specific to an applet, stored in a secure element in the portable electronic device, which conducts the secure transaction. The secure element may generate the unique transaction identifier based on financial-account information associated with the applet, which is communicated to the other electronic device. Next, the secure element may provide, to a processor in the portable electronic device, an end message for the secure transaction with the unique transaction identifier.
-
公开(公告)号:US10579997B2
公开(公告)日:2020-03-03
申请号:US15941705
申请日:2018-03-30
Applicant: Apple Inc.
Inventor: Herve Sibert , Onur E. Tackin , Matthias Lerch , Ahmer A. Khan , Franck Rakotomalala , Oren M. Elrad
Abstract: Techniques are disclosed relating to authenticate a user with a mobile device. In one embodiment, a computing device includes a short-range radio and a secure element. The computing device reads, via the short-range radio, a portion of credential information stored in a circuit embedded in an identification document issued by an authority to a user for establishing an identity of the user. The computing device issues, to the authority, a request to store the credential information, the request specifying the portion of the credential information. In response to an approval of the request, the computing device stores the credential information in the secure element, the credential information being usable to establish the identity of the user. In some embodiments, the identification document is a passport that includes a radio-frequency identification (RFID) circuit storing the credential information, and the request specifies a passport number read from the RFID circuit.
-
公开(公告)号:US10552830B2
公开(公告)日:2020-02-04
申请号:US14475292
申请日:2014-09-02
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Joakim Linde , Christopher Sharp , Jerrold V. Hauck
Abstract: Systems, methods, and computer-readable media for managing credentials are provided. In one example embodiment, an electronic device may include a secure element with a security domain element stored on the secure element. The electronic device may also include a processor component that may be configured to, inter alia, permanently terminate the functionality of the security domain element, after the functionality has been permanently terminated, communicatively couple the electronic device to a trusted service manager, and transmit data to the communicatively coupled trusted service manager that may be usable by the trusted service manager to determine that the functionality has been permanently terminated. Additional embodiments are also provided.
-
69.
公开(公告)号:US20190251546A1
公开(公告)日:2019-08-15
申请号:US16394452
申请日:2019-04-25
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Gregory B. Novick , Jerrold V. Hauck , Saket R. Vora , Yehonatan Perez
CPC classification number: G06Q20/3227 , G06Q20/32 , G06Q20/3278 , G06Q20/352 , G06Q20/353 , G06Q20/367 , G06Q20/382 , G06Q20/4018 , G06Q20/4097 , G06Q20/40975
Abstract: Methods for operating a portable electronic device to conduct a mobile payment transaction at a merchant terminal are provided. The electronic device may verify that the current user of the device is indeed the authorized owner by requiring the current user to enter a passcode. If the user is able to provide the correct passcode, the device is only partly ready to conduct a mobile payment. In order for the user to fully activate the payment function, the user may have to supply a predetermined payment activation input such as a double button press that notifies the device that the user intends to perform a financial transaction in the immediate future. The device may subsequently activate a payment applet for a predetermined period of time during which the user may hold the device within a field of the merchant terminal to complete a near field communications based mobile payment transaction.
-
公开(公告)号:US10206082B2
公开(公告)日:2019-02-12
申请号:US15174859
申请日:2016-06-06
Applicant: Apple Inc.
Inventor: Ahmer A. Khan , Zachary A. Rosen
IPC: H04W4/00 , H04W4/80 , H04L12/725
Abstract: Systems, methods, and computer-readable media for priority based routing on an electronic device of data received from a processing subsystem are provided. In some embodiments, a method may include detecting on an electronic device that data received from a remote subsystem includes identifier information that is associated with a match element of an entry of a routing table, routing at least a portion of the data to a first priority destination identified by the entry, and, when the routing of the at least a portion of the data to the first priority destination identified by the entry is not successful, routing the at least a portion of the data to a second priority destination identified by the entry, wherein the second priority destination identified by the entry is different than the first priority destination identified by the entry.
-
-
-
-
-
-
-
-
-