发明名称 TWO-FACTOR AUTHENTICATION METHOD
摘要 The present invention describes a method and a two-factor authentication system to increase the safety of transactions effected between a user and a transaction system or point of an entity. Said method comprises the steps of providing a set of functions to an application in a mobile device;accessing the application of the mobile device by recognizing biometric information;encrypting the transaction data if the identification is positive;sending the encrypted data to an external server along with at least the information on date, time, number of attempts and single number of the device;recording in the external server the received information and generating a single code for each transaction, and said code is then sent to the application housed in the mobile device;sending the single code and the transaction data to the transaction point from the mobile device through the application;checking by the transaction point with the external server that generates the single code the validity of said code and at least other information such as the date and time of code generation, and the geographical location of the place where the identity verification was carried out; andeffecting the transaction if the request made by the transaction point coincides with the information provided by the user.
申请公布号 US2016342996(A1) 申请公布日期 2016.11.24
申请号 US201415024738 申请日期 2014.11.06
申请人 TOC S.A. 发明人 NAVARRO Luft Ricardo
分类号 G06Q20/40;H04L29/06 主分类号 G06Q20/40
代理机构 代理人
主权项 1. Two-factor authentication method to increase the safety of transactions between a user and a transaction point or system of an entity, comprising the steps of: providing a set of functions to an application in a mobile device; accessing the application of the mobile device by recognizing biometric information, where said functions allow activating a biometric reader of the mobile device, waiting a while to activate the GPS of said device, reading the single serial number of the device and receiving a generated code; encrypting the verification data on user's identity (date and time, single serial number and GPS position) if the identification is positive; sending the encrypted data to an external server along with at least the information on date, time, number of attempts and single number of the device; recording in the external server the received information and generating a single code for each transaction, and said code is then sent to the application housed in the mobile device; sending the single code and the transaction data to the transaction point from the mobile device through the application; checking by the transaction point with the external server that generates the single code the validity of said code and at least other information such as the date and time of code generation, and the geographical location of the place where the identity verification was carried out; and effecting the transaction if the request made by the transaction point coincides with the information provided by the user.
地址