US2015095238A1PendingUtilityA1

Online payments using a secure element of an electronic device

Assignee: APPLE INCPriority: Sep 30, 2013Filed: Sep 9, 2014Published: Apr 2, 2015
Est. expirySep 30, 2033(~7.2 yrs left)· nominal 20-yr term from priority
G06Q 20/3227G06Q 20/3829G06Q 20/3278G06Q 20/40G06Q 20/10G06Q 20/325G06Q 20/382G06Q 20/12G06Q 20/3823G06Q 20/326
69
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

Systems, methods, and computer-readable media for securely conducting online payments with a secure element of an electronic device are provided. In one example embodiment, a method includes, inter alia, at an electronic device, generating first data that includes payment card data, generating second data by encrypting the first data and merchant information with a first key, transmitting to a commercial entity subsystem the generated second data, receiving third data that includes the first data encrypted with a second key that is associated with the merchant information, and transmitting the received third data to a merchant subsystem that is associated with the merchant information, where the first key is not accessible to the merchant subsystem, and where the second key is not accessible to the electronic device. Additional embodiments are also provided.

Claims

exact text as granted — not AI-modified
1 . A method comprising:
 at an electronic device:
 generating first data that comprises payment card data; 
 generating second data by encrypting the first data and merchant information with a first key; 
 transmitting to a commercial entity subsystem the generated second data; 
 receiving third data that comprises the first data encrypted with a second key that is associated with the merchant information; and 
 transmitting the received third data to a merchant subsystem that is associated with the merchant information, wherein:
 the first key is not accessible to the merchant subsystem; and 
 the second key is not accessible to the electronic device. 
 
   
     
     
         2 . The method of  claim 1 , wherein the third data is not encrypted with the first key. 
     
     
         3 . (canceled) 
     
     
         4 . The method of  claim 1 , wherein:
 the generating the first data comprises generating the first data by encrypting the payment card data with a third key; and   at least a portion of the third data is encrypted with the third key.   
     
     
         5 . The method of  claim 4 , wherein the third key is not accessible to the merchant subsystem. 
     
     
         6 . The method of  claim 4 , wherein the third key is not accessible to the commercial entity subsystem. 
     
     
         7 . The method of  claim 1 , further comprising:
 at the electronic device:
 accessing an online resource of the merchant subsystem; and 
 before the transmitting the generated second data, identifying the merchant information from the accessed online resource. 
   
     
     
         8 . The method of  claim 7 , wherein the transmitting the received third data comprises transmitting, with the electronic device, the received third data to the merchant subsystem via the accessed online resource. 
     
     
         9 . (canceled) 
     
     
         10 . (canceled) 
     
     
         11 . An electronic device comprising:
 a communication component;   an application processor configured to access an online resource of a merchant server; and   a secure element configured to store credential data, a credential key, and an access key, wherein:
 the secure element is configured to generate first data comprising the credential data encrypted with the credential key; 
 the secure element is configured to generate second data comprising the first data encrypted with the access key; 
 the application processor is configured to identify merchant information from the accessed online resource; and 
 the communication component is configured to transmit to a commercial entity server the generated second data and the identified merchant information. 
   
     
     
         12 . The electronic device of  claim 11 , wherein the access key is not accessible to the application processor. 
     
     
         13 . The electronic device of  claim 11 , wherein the credential key is not accessible to the application processor. 
     
     
         14 . The electronic device of  claim 11 , wherein the credential key is not accessible to the commercial entity server. 
     
     
         15 . The electronic device of  claim 11 , wherein the communication component is configured to receive third data comprising the first data encrypted with a merchant key. 
     
     
         16 . The electronic device of  claim 15 , wherein the merchant key is not accessible to the electronic device. 
     
     
         17 . (canceled) 
     
     
         18 . The electronic device of  claim 15 , wherein the communication component is configured to transmit the third data to the merchant server. 
     
     
         19 . (canceled) 
     
     
         20 . (canceled) 
     
     
         21 . A method comprising:
 at a commercial entity subsystem:
 receiving first data from an electronic device, wherein the first data comprises credential information and merchant information indicative of a merchant subsystem; 
 decrypting the first data using an access key; 
 identifying a merchant key based on the merchant information from the first data; 
 encrypting the credential information using the identified merchant key; and 
 transmitting second data to at least one of the merchant subsystem and the electronic device, wherein the second data comprises the credential information encrypted with the identified merchant key. 
   
     
     
         22 . The method of  claim 21 , further comprising the commercial entity subsystem sharing the access key with the electronic device. 
     
     
         23 . (canceled) 
     
     
         24 . (canceled) 
     
     
         25 . The method of  claim 21 , wherein the identifying the merchant key comprises the commercial entity subsystem comparing the merchant information to a table of data that comprises a plurality of merchant keys. 
     
     
         26 . The method of  claim 25 , wherein:
 at least a first merchant key of the plurality of merchant keys is associated with a first merchant;   at least a second merchant key of the plurality of merchant keys is associated with a second merchant; and   the first merchant is different than the second merchant.   
     
     
         27 . The method of  claim 21 , wherein the merchant key is not accessible by the electronic device. 
     
     
         28 . The method of  claim 21 , wherein the access key is not accessible by the merchant subsystem. 
     
     
         29 - 84 . (canceled)

Join the waitlist — get patent alerts

Track US2015095238A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.