Nova Patents
US20160027015A1

Managing a secure transaction

Claim Score by NHIP

Read claim 21, the broadest

Abstract

A method, system or computer usable program product for secure short range protocol based transaction processing including using a mobile device capable of short range protocol communication to receive a user password; exchanging transaction data between the mobile device and a point of transaction device through a short range protocol communication, the transaction data including a timestamp; using the mobile device, generating a hash including the user password and the timestamp as inputs; providing the hash and the timestamp to an authorization agent; and receiving an authorization from the authorization agent for an account transaction with the point of transaction device based on the password in the hash.

US20160027015A1, drawing sheet 1
Sheet 1 of 9

Term

7.8 yearsto projected expiry

Projected expiry 28 July 2034, counted from filing; an application has no term until it is granted.

  1. Priority and filed
  2. Published
  3. Today
  4. Projected expiry

24 claims: 4 independent, 20 dependent

  1. 1
    A method for secure short range protocol communication based transaction processing comprising:using a mobile device capable of short range protocol communication and capable of receiving a user password and for storing embedded data communicated with an authorization agent substantially previous to the communication based transaction;exchanging transaction data between the mobile device and a point of transaction device through a short range protocol communication, the transaction data including a timestamp;using the mobile device, generating a hash including the user password, embedded data, and the timestamp as inputs;providing the hash and the timestamp to the authorization agent for deriving the password and embedded data from the hash using the timestamp;and receiving an authorization from the authorization agent for an account transaction with the point of transaction device based on the password and embedded data derived from the hash.
  2. 10
    A computer program product for secure short range protocol communication based transaction processing, the computer program product comprising a computer readable storage medium having program instructions embodied therewith, the program instructions executable by a processing circuit to cause the device to perform a method comprising:using a mobile device capable of short range protocol communication and capable of receiving a user password and for storing embedded data communicated with an authorization agent substantially previous to the communication based transaction;exchanging transaction data between the mobile device and a point of transaction device through a short range protocol communication, the transaction data including a timestamp;using the mobile device, generating a hash including the user password, embedded data, and the timestamp as inputs;providing the hash and the timestamp to the authorization agent for deriving the password and embedded data from the hash using the timestamp;and receiving an authorization from the authorization agent for an account transaction with the point of transaction device based on the password and embedded data derived from the hash.
  3. 16
    A data processing system for secure short range protocol communication based transaction processing, the data processing system comprising:a processor;and a memory storing program instructions which when executed by the processor execute the steps of: using a mobile device capable of short range protocol communication and capable of receiving a user password and for storing embedded data communicated with an authorization agent substantially previous to the communication based transaction;exchanging transaction data between the mobile device and a point of transaction device through a short range protocol communication, the transaction data including a timestamp;using the mobile device, generating a hash including the user password, embedded data, and the timestamp as inputs;providing the hash and the timestamp to the authorization agent for deriving the password and embedded data from the hash using the timestamp;and receiving an authorization from the authorization agent for an account transaction with the point of transaction device based on the password and embedded data derived from the hash.
  4. 21
    Broadest claimClaim Score 62, broad(NHIP)A method of an authorization agent authenticating a user for a transaction comprising:receiving a hash from a mobile device, the hash generated using a user password, embedded data communicated between the authorization agent and mobile device for storage on the mobile device substantially previous to the transaction, and a timestamp as inputs;receiving a request for authorizing an account transaction from a point of transaction device, the request including the timestamp;deriving the user password and embedded data from the hash using the timestamp;determining whether the derived user password and embedded data is authentic;and upon a positive determination, providing an authorization for an account transaction to the point of transaction device.