×

System and method for performing secure online transactions

  • US 8,370,262 B2
  • Filed: 11/17/2008
  • Issued: 02/05/2013
  • Est. Priority Date: 11/26/2007
  • Status: Active Grant
First Claim
Patent Images

1. A method for performing a requested secure online transaction based on challenge/response procedures executed by a terminal of a customer and by a terminal of a service provider, the terminal of the customer and the terminal of the service provider being connected to a network, the method comprising:

  • a) using the terminal of the service provider for capturing biometric elements from the customer during an enrolment procedure;

    b) storing the biometric elements in a database that is accessible by the terminal of the service provider;

    c) forwarding a set of processing instructions in a machine readable or in a non-machine readable format to the terminal of the customer for every transaction or for a number of transactions, the processing instructions defining operations to be performed on transaction data contained within a transaction summary that contains the customer'"'"'s requested transaction;

    d) based on the processing instructions executing synchronized challenge procedures for each transaction in a first challenge module provided in the terminal of the service provider and in a second challenge module provided in the terminal of the customer, thus producing identical random challenges based on current transaction data and identical processing instructions;

    e) capturing, with a capturing module provided in the terminal of the customer, biometric data from a customer'"'"'s response provided for the challenge established by the second challenge module;

    f) delivering the transaction data and the biometric data of the customer'"'"'s response to the terminal of the service provider;

    g) retrieving from the database and assembling, in a response module provided in the terminal of the service provider, biometric elements according to the challenge established by the first challenge module in order to create a separate response; and

    h) comparing, with a biometric authentication module provided in the terminal of the service provider, the biometric data of the customer'"'"'s response with the data of the assembled separate response and performing the requested transaction in the event that the responses match.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×