摘要:
A method is provided for conducting a transaction over a computer network (such as the Internet) where the remote wallet server conducts a transaction with a merchant computer in a format substantially compliant with a chip card electronic commerce protocol or specification, regardless of whether or not the payment card of the consumer involved in the transaction is a chip card.
摘要:
An apparatus and method by which a user or cardholder can be given an Electronic-Commerce PIN that bears no discernible relation to the ATM PIN, but from which the ATM PIN can be cryptographically determined using the cardholder's account number and an issuer-unique “conversion” secret key. The intent is that the Maestro Master Debit Switch, or else the Member Interface Processor, whichever is appropriate to a given issuer, can “convert” an Electronic-Commerce PIN to an ATM PIN, so that the member, by verifying the ATM PIN, is in effect verifying the Electronic-Commerce PIN. If the Electronic-Commerce PIN is entered incorrectly, it will convert into an incorrect ATM PIN. Thus the member's EDP facility need not deal with two PINs, yet the ATM PIN is not exposed to possible compromise in PCs or other electronic-commerce equipment. The suggested approach ensures that any disclosure of the Electronic-Commerce PIN does not disclose the ATM PIN.
摘要:
A method and apparatus for conducting a secure transaction involving generation of a dynamic authentication code on a mobile device, based on secret data which does not identify an account. The authentication code and financial account identifying information are transmitted to a validating entity, which shares information about the secret data, to authorize the transaction.
摘要:
A method and apparatus for conducting a transaction involving transmission of a dynamic authentication code in place of a static PIN block using currently existing messaging standards or PIN acceptance devices. Minimal changes to existing processes an equipment are made while greatly improving security and fraud minimization.
摘要:
A method and apparatus for conducting a secure transaction involving generation of a dynamic authentication code on a mobile device, based on secret data which does not identify an account. The authentication code and financial account identifying information are transmitted to a validating entity, which shares information about the secret data, to authorize the transaction.
摘要:
Techniques for reducing or eliminating the likelihood of fraud in a contactless proximity communications apparatus are provided. The apparatus can include a body portion with a body, a communications circuit, and an antenna. The apparatus can also include a signal-disrupting portion that is mounted for motion, such as rotary or linear motion, with respect to the body portion and configured to substantially disrupt RF signals in a first position, and to move to a second position where RF communication is possible.
摘要:
A proximity device transmits a first dynamic authentication value contactlessly to a terminal. The first authentication value is included in a discretionary data field of message data arranged in an ISO Track 1 and/or ISO Track 2 formal Message data is sent from the terminal to an issuer. The issuer separately derives a second authentication value and compares it with the first authentication value.
摘要:
Methods and systems for mutual authentication and personalizing a transaction device, such as a payment, transaction, or identity card. Successively generated one time codes are calculated by a first and second entity. One of the codes is transmitted to the second entity, which verifies the code is proper, then encrypts a second one time code using a third one time code and transmits the encrypted data to the first entity. The first entity decrypts the data using the third one time code, verifies the encrypted second one time code is proper, thereby mutually authenticating, and establishing a shared encryption key for subsequent communications, including transmission of personalization data.
摘要:
A secure electronic payment system and method for conducting a secure transaction using voice authentication is provided. A merchant's computer transmits an authorization request to an access control server. The access control server places a telephone call to the purchaser and performs voice authentication to confirm the identity of the purchaser. The access control server then transmits a response to the merchant's computer. If the purchaser is authorized to access the account, payment is processed by the merchant and the transaction is completed.
摘要:
A payment device includes a memory, a processor coupled to the memory, a communications module coupled to the processor and configured to interact with a payment terminal, a sound-producing element coupled to the processor, and an associated body portion. The memory is configured to store at least one representation of at least one sound and the processor is configured to cause the sound-producing element to produce a sound corresponding to the at least one representation of the at least one sound when such representation is stored in the memory, responsive to the communications module interacting with the payment terminal, substantially without usage of a battery on the device. Visual stimuli can be employed in addition to or in lieu of sounds. Sounds can be downloaded to devices with or without batteries, as part of a service offering.