发明名称 Apparatus and method for handling transaction tokens
摘要 According to one embodiment, an apparatus may store a plurality of token-based rules. A token-based rule may facilitate the processing of transactions. The apparatus may receive a transaction token indicating that a transaction associated with an entity has been requested. The apparatus may determine at least one token-based rule based at least in part upon the transaction token. The at least one token-based rule may indicate that there is a risk that the transaction is fraudulent. The apparatus may determine that the transaction should be denied based at least in part upon the risk that the transaction is fraudulent.
申请公布号 US9166966(B2) 申请公布日期 2015.10.20
申请号 US201213479516 申请日期 2012.05.24
申请人 Bank of America Corporation 发明人 Radhakrishnan Rakesh
分类号 G06F7/04;H04L29/06;G06F21/32;G06F21/33;G06F21/57 主分类号 G06F7/04
代理机构 代理人 Springs Michael A.
主权项 1. An apparatus comprising: a memory operable to store a plurality of token-based rules, wherein a token-based rule facilitates the processing of transactions; and a processor communicatively coupled to the memory and operable to: receive a transaction token indicating that a transaction associated with an entity has been requested;determine, in response to receiving the transaction token, a numeric assurance level based at least in part upon a form of authentication performed by a user associated with the transaction;determine, in response to receiving the transaction token, a numeric risk level based at least in part the numeric assurance level;determine at least one token-based rule based at least in part upon the transaction token, wherein the at least one token-based rule indicates a threshold risk level;compare the numeric risk level to the threshold risk level to determine that there is a risk that the transaction is fraudulent;determine that the transaction should be denied based at least in part upon the risk that the transaction is fraudulent;communicate a request that biometric authentication be performed, wherein the request is communicated in response to the determination that the transaction should be denied;receive at least one subject token indicating that the requested biometric authentication has been performed;in response to receiving the at least one subject token, re-determine the numeric assurance level based at least in part upon the at least one subject token;re-determine the numeric risk level based at least in part upon the re-determined numeric assurance level;compare the re-determined numeric risk level to the threshold risk level to determine that the risk that the transaction is fraudulent is reduced; anddetermine, in response to the determination that the risk that the transaction is fraudulent is reduced, that the transaction should be allowed.
地址 Charlotte NC US