发明名称 Method and device for end-user verification of an electronic transaction
摘要 The present invention provides methods and apparatuses for verifying that a transaction is legitimate. The methods and apparatuses use protected memory space, such as kernel space of an operating system, or a separate memory space, such as is available on a SIM card of a cellular phone. The method of the invention proceeds by creating a transaction identification string (TID) and associating the TID with a transaction. The TID contains data relevant to or associated with the transaction and is typically readable by an end-user. The transaction is then interrupted until a user responds in the affirmative to allow completion of the transaction. Methods and devices used in the invention are particularly well suited to M-commerce, where transactions originating from a device are typically recognized by a merchant as coming from the owner of the device without further authentication.
申请公布号 US8996867(B2) 申请公布日期 2015.03.31
申请号 US200812072739 申请日期 2008.02.28
申请人 AT&T Intellectual Property I, L.P. 发明人 Ji Lusheng;Bowen Donald John;Killian Thomas;Kormann David;Miller, II Robert R.;Schryer Norman L.
分类号 G06Q20/00;G06F17/30;H04L9/32;G07F7/12;H04L29/06;G06Q20/40;G06Q20/38;G06Q20/32;G07F7/10 主分类号 G06Q20/00
代理机构 Wolff & Samson, PC 代理人 Wolff & Samson, PC
主权项 1. A method for verification of a transaction on an end-user device comprising: creating a transaction identification string using data stored in a first memory space on an end-user device, wherein the transaction identification string is a unique string associated with a transaction that has been negotiated with a merchant; interrupting an electronic communication associated with the transaction before completion of the transaction using the data stored in the first memory space on the end-user device; exhibiting the transaction identification string to an end-user using the data stored in the first memory space on the end-user device; receiving a response to the transaction identification string by the end user device, wherein the interrupting comprises disallowing further electronic communication associated with the transaction until the response to the transaction identification string is received by refusing a connection with the merchant based on identifying information regarding the merchant; and carrying out an action based upon the response using data stored in a second memory space on the end-user device, the first memory space separate from the second memory space.
地址 Atlanta GA US