Payment method and device based on biometric authentication, equipment and storage medium
By employing biometric authentication on television terminals, the payment process can be completed directly on the terminal, solving the problems of long payment chains and low security in existing technologies, and achieving an efficient and secure payment process.
Patent Information
- Application Number
- CN202110231628.2
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2021-03-02
- Publication Date
- 2025-11-18
- Estimated Expiration
- 2041-03-04
AI Technical Summary
In existing technologies, TV terminal payment solutions that rely on scanning QR codes have long payment links, high barriers to entry, high dropout rates, and the risk of QR codes being hijacked by phishing, resulting in low payment security.
The payment method adopts biometric authentication, which presents payment prompts on the terminal, receives and verifies the user's biometric features (such as fingerprints, voiceprints, irises, etc.), calls a third-party application to make payment after successful authentication, and presents a payment success page after payment is completed.
It simplifies the payment process, improves the payment success rate, avoids information leakage, and enhances payment security.
Smart Images

Figure CN114997873B_ABST
Abstract
Description
Technical Field
[0001] This application relates to artificial intelligence technology, and more particularly to a payment method, apparatus, device, and computer-readable storage medium based on biometric authentication. Background Technology
[0002] Artificial intelligence (AI) is the theory, methods, technology, and application systems that use digital computers or machines controlled by digital computers to simulate, extend, and expand human intelligence, perceive the environment, acquire knowledge, and use that knowledge to achieve optimal results. Computer vision and speech technology are important technologies in artificial intelligence.
[0003] With the advancement of smart terminal technology, people are increasingly accustomed to purchasing high-definition videos, games, music videos, educational content, and other video resources, or directly shopping via TV, on smart terminals (such as televisions). TV payment solutions typically involve displaying a QR code on the TV, which is then scanned by a mobile phone to complete the payment. However, this method suffers from a long payment chain and high barriers to entry, leading to a high rate of payment loss. Furthermore, the QR codes used for payment are susceptible to phishing and hijacking, resulting in low payment security. Summary of the Invention
[0004] This application provides a payment method, apparatus, computer device, and computer-readable storage medium based on biometric authentication, which can improve payment efficiency and payment security.
[0005] The technical solution of this application embodiment is implemented as follows:
[0006] This application provides a payment method based on biometric authentication, including:
[0007] A payment page is displayed, which includes payment prompts to instruct the user to input their biometric features.
[0008] Receives biometric data based on input from the control device, the biometric data corresponding to the payment prompt information;
[0009] When user authentication is successful based on the biometric characteristics, the payment interface provided by the third-party application is invoked, and payment is made through the third-party application.
[0010] A payment success page will be displayed after payment is completed.
[0011] This application provides a payment device based on biometric authentication, comprising:
[0012] The presentation module is used to present a payment page containing payment prompt information, which is used to indicate the input of the user's biometric features;
[0013] A receiving module is configured to receive biometric features input from a control device, wherein the biometric features correspond to the payment prompt information;
[0014] The payment module is used to, when user authentication is successful based on the biometrics, invoke a payment interface provided by a third-party application to perform payment through the third-party application.
[0015] A payment success page will be displayed after payment is completed.
[0016] In the above scheme, the payment module is also used to obtain the device information of the current device and the password used to encrypt the device information;
[0017] Based on the device information and the corresponding password, an encrypted ticket is generated;
[0018] Send the encrypted ticket, which is used by the server to verify the legitimacy of the current device;
[0019] Receive the validity verification result for the current device returned by the server;
[0020] When the legality verification result indicates that the current device is a legitimate device, and the user authentication is successful based on the biometrics, the payment interface provided by the third-party application is invoked.
[0021] In the above scheme, the payment module is also used to establish an association between the user account of the third-party application used for payment and the current device;
[0022] Obtain the user account of the third-party application associated with the current device;
[0023] Payment is made using the user account obtained from the third-party application.
[0024] In the above scheme, the payment module is further configured to receive the user's target biometric features based on the input from the control device;
[0025] Establish the association between the target biometric features and the device information of the current device;
[0026] Locate the target biometric features associated with the device information and match the biometric features with the target biometric features;
[0027] When it is determined that the biometrics match the target biometrics, the user authentication is deemed successful.
[0028] In the above scheme, the receiving module is further configured to receive voice information input based on the voice function button of the control device when the payment prompt information indicates the input of voice information, and
[0029] The voice information is used as a biometric feature corresponding to the payment prompt information;
[0030] The payment module is also used to extract voiceprint features from the voice information;
[0031] The voiceprint features are matched with the stored target voiceprint features;
[0032] When the voiceprint feature matches the stored target voiceprint feature, the user authentication is deemed successful.
[0033] In the above scheme, the receiving module is further configured to receive voice information input based on the voice function button of the control device when the payment prompt information indicates the input of voice information corresponding to the target text, and
[0034] The voice information is used as a biometric feature corresponding to the payment prompt information;
[0035] The payment module is further configured to perform speech recognition on the voice information to obtain the text corresponding to the voice information, and
[0036] Extract the voiceprint information from the speech information;
[0037] The text obtained from speech recognition is matched with the target text, and the voiceprint information is matched with the stored target voiceprint features;
[0038] When the text obtained from speech recognition matches the target text, and the voiceprint features match the stored target voiceprint features, the user authentication is deemed successful.
[0039] In the above scheme, the receiving module is further configured to receive fingerprint information input through touch operation in the touch area of the control device when the payment prompt information indicates that fingerprint information is to be input;
[0040] Fingerprint features are extracted from the fingerprint information to obtain the user's fingerprint features, and
[0041] The fingerprint feature is used as the biometric feature corresponding to the payment prompt information.
[0042] In the above scheme, the receiving module is further configured to receive a camera activation command triggered by the camera function button of the control device when the payment prompt information indicates the input of image information;
[0043] Capture images including the user's eyes using a camera;
[0044] Iris features are extracted from the image to obtain the user's iris features, and
[0045] The iris feature is used as the biometric feature corresponding to the payment prompt information.
[0046] In the above scheme, the receiving module is also used to present a type selection interface for selecting biometric types;
[0047] Upon receiving a biometric type selection operation triggered by the control device, the biometric type corresponding to the selection operation is used as the target biometric type for authentication.
[0048] Receive biometrics based on the target biometric type input from the control device.
[0049] In the above scheme, the payment module is also used to obtain the user account currently logged into the application when the user account logged into the application is associated with a third-party application;
[0050] Log in to the third-party application using the user account currently logged in to the application and make a payment.
[0051] In the above scheme, the payment module is also used to run the third-party application and obtain the user account currently logged into the third-party application;
[0052] Make payment using the currently logged-in user account.
[0053] In the above scheme, the payment module is also used to acquire at least two target biometric features;
[0054] Each of the target biometric features is associated with and stored in relation to the user account of the corresponding third-party application;
[0055] Obtain target biometrics that match the stated biometrics;
[0056] Based on the association between the target biometrics and the user accounts of third-party applications, obtain the user accounts of the third-party applications corresponding to the biometrics;
[0057] Payment is made using the obtained user account.
[0058] This application provides a computer device, including:
[0059] Memory, used to store executable instructions;
[0060] The processor, when executing executable instructions stored in the memory, implements the biometric authentication-based payment method provided in the embodiments of this application.
[0061] This application provides a computer-readable storage medium storing executable instructions, which, when executed by a processor, implement the biometric authentication-based payment method provided in this application.
[0062] The embodiments of this application have the following beneficial effects:
[0063] According to the embodiments of this application, a payment page containing payment prompt information is presented through the terminal, the payment prompt information being used to indicate the input of the user's biometric features; the biometric features input by the control device are received, the biometric features corresponding to the payment prompt information; when it is determined that the user authentication is successful based on the biometric features, the terminal calls the payment interface provided by the third-party application, performs payment through the user account of the third-party application, and presents a payment success page after the payment is completed; thus, when a user needs to make a payment, the payment process can be completed directly through the terminal, the control device only performs biometric feature collection and transmission, no other electronic devices are needed during the payment process, the process is simple, and the payment success rate can be improved; moreover, compared with the payment method of scanning QR codes, information leakage is avoided, and payment security is improved. Attached Figure Description
[0064] Figure 1 This is a schematic diagram of the payment process provided by the relevant technology;
[0065] Figure 2 This is an optional architecture diagram of the payment system 100 based on biometric authentication provided in this application embodiment;
[0066] Figure 3 This is a flowchart illustrating the payment method based on biometric authentication provided in the embodiments of this application;
[0067] Figure 4A This is a schematic diagram of the payment page provided in an embodiment of this application;
[0068] Figure 4B This is a schematic diagram of the payment page provided in an embodiment of this application;
[0069] Figure 5 This is a schematic diagram of the touch area of the control device provided in the embodiments of this application;
[0070] Figure 6 This is a schematic diagram of the target biometric type selection process provided in the embodiments of this application;
[0071] Figure 7 This is a flowchart illustrating the payment method for biometric authentication provided in this application embodiment;
[0072] Figure 8 This is a schematic diagram of the device registration process provided in an embodiment of this application;
[0073] Figure 9 This is a schematic diagram of the initial payment process provided in an embodiment of this application;
[0074] Figure 10 This is a schematic diagram of a payment process based on voiceprint feature authentication provided in an embodiment of this application;
[0075] Figure 11 This is a schematic diagram of the structure of a payment device based on biometric authentication provided in an embodiment of this application;
[0076] Figure 12 This is a schematic diagram of the structure of the computer device provided in the embodiments of this application. Detailed Implementation
[0077] To make the objectives, technical solutions, and advantages of this application clearer, the application will be further described in detail below with reference to the accompanying drawings. The described embodiments should not be regarded as limitations on this application. All other embodiments obtained by those skilled in the art without creative effort are within the scope of protection of this application.
[0078] In the following description, references are made to “some embodiments,” which describe a subset of all possible embodiments. However, it is understood that “some embodiments” may be the same subset or different subsets of all possible embodiments and may be combined with each other without conflict.
[0079] In the following description, the terms "first, second, third" are used merely to distinguish similar objects and do not represent a specific ordering of objects. It is understood that "first, second, third" may be interchanged in a specific order or sequence where permitted, so that the embodiments of this application described herein can be implemented in an order other than that illustrated or described herein.
[0080] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as commonly understood by one of ordinary skill in the art to which this application belongs. The terminology used herein is for the purpose of describing embodiments of this application only and is not intended to limit this application.
[0081] In the implementation of this application, the collection and processing of relevant data should strictly comply with the requirements of relevant laws and regulations, obtain the informed consent or separate consent of the personal information subject, and carry out subsequent data use and processing within the scope of laws and regulations and the authorization of the personal information subject.
[0082] Before providing a further detailed description of the embodiments of this application, the nouns and terms involved in the embodiments of this application will be explained, and the nouns and terms involved in the embodiments of this application shall be interpreted as follows.
[0083] 1) In response to, used to indicate the conditions or states on which the operation performed depends. When the conditions or states on which it depends are met, one or more operations performed may be performed in real time or with a set delay. Unless otherwise specified, there is no restriction on the order in which the multiple operations are performed.
[0084] Figure 1 This is a diagram illustrating the payment process provided by the relevant technology; see [link / reference]. Figure 1 In related technologies, it is necessary to combine TV terminals and mobile terminals (such as mobile phones) to complete the payment. That is, when a user needs to make a payment, such as activating a membership or purchasing videos, the TV terminal displays a QR code for payment. Then, the user uses a mobile terminal to scan the QR code through a third-party application (such as a payment application) on the mobile terminal to obtain the payment order information and complete the payment for the payment order information.
[0085] When implementing the embodiments of this application, the applicant found that the above solution requires scanning a code and making payment through a mobile terminal in each payment process. The entire payment chain is long and has high barriers to entry, resulting in a high payment loss rate. Furthermore, the user's payment QR code is at risk of being phished or hijacked. For example, the QR code may contain the user's login information, which can be used to obtain the user's account and then consume the diamonds, gold coins, etc. in the user's account.
[0086] Based on this, embodiments of this application provide a payment method, apparatus, device, and computer-readable storage medium based on biometric authentication, which can improve payment efficiency and payment security.
[0087] See Figure 2 , Figure 2 This is an optional architecture diagram of the payment system 100 based on biometric authentication provided in this application embodiment. To support an exemplary application, a control device (such as control device 200-1 or control device 200-2) establishes a communication connection with the terminal 400 to realize data transmission. For example, when the terminal 400 is a television terminal, a communication connection is established with the television terminal through the radio frequency module included in the television terminal to realize data transmission through wireless communication. The terminal connects to the server 300 through a network, which can be a wide area network or a local area network, or a combination of both.
[0088] In practical applications, the terminal can be a television terminal, such as an all-in-one internet TV, a set-top box + TV, a projector, etc., or it can be a laptop, desktop computer, smart vehicle terminal, etc., and the embodiments in this application are not limited to these. The control device includes, but is not limited to, a keyboard, a remote control, a mobile terminal, or other handheld terminals. The terminal 400 may have a client application, such as a video playback client, through which users can purchase video resources.
[0089] Terminal 400 displays a payment page containing payment prompt information, which is used to instruct the user to input their biometric features.
[0090] The control device (such as control device 200-1) receives the biometric feature corresponding to the payment prompt information and sends the biometric feature to the terminal 400;
[0091] Terminal 400 sends an authentication request carrying biometric features to server 300;
[0092] Server 300 authenticates the user based on the biometrics, obtains the authentication result, and returns it to terminal 400;
[0093] When the authentication result of terminal 400 indicates that the user authentication is successful, it calls the payment interface provided by the third-party application to make the payment through the third-party application, and displays a payment success page after the payment is completed.
[0094] In some embodiments, server 300 may be an independent physical server, a server cluster or distributed system composed of multiple physical servers, or a cloud server that provides basic cloud computing services such as cloud services, cloud databases, cloud computing, cloud functions, cloud storage, network services, cloud communication, middleware services, domain name services, security services, content delivery networks (CDN), and big data and artificial intelligence platforms.
[0095] Based on the foregoing description of the biometric authentication-based payment system provided in the embodiments of this application, the biometric authentication-based payment method provided in the embodiments of this invention is described below. See also Figure 3 , Figure 3 This is a flowchart illustrating the payment method based on biometric authentication provided in this application embodiment. In some embodiments, the payment method based on biometric authentication can be implemented by the terminal alone, or by the terminal and the server working together. Taking terminal implementation as an example, the payment method based on biometric authentication provided in this application embodiment includes:
[0096] Step 301: The terminal displays a payment page containing payment prompts.
[0097] Here, payment prompts are used to prompt users to input their biometric features. These prompts can be presented in text, image, or voice format. Biometric features refer to inherent physiological characteristics (such as fingerprints, voiceprints, irises, facial features, etc.) or behavioral characteristics (such as gait).
[0098] In practice, the terminal is equipped with client applications, such as video clients and music clients. Users can purchase video or audio resources through these clients or directly engage in TV shopping. When a user triggers a purchase instruction, the terminal displays the corresponding payment page, along with payment prompts prompting the user to input their biometric data to complete the payment. These payment prompts can be displayed as a floating window on the payment page or as a layer with preset transparency.
[0099] In practical applications, purchase instructions can be triggered by control devices. These control devices are auxiliary devices used to control the terminal for video playback. For example, when the terminal is a television, the control device can be a remote control (such as a remote, mobile phone, or other handheld terminal). The terminal displays a page including purchase options (such as a membership activation button). The user can trigger this purchase option via the remote control. The television receives the trigger operation for this purchase option, displays the corresponding payment page, and shows payment prompts. When the terminal is a desktop computer, the control device can be the desktop computer's keyboard, mouse, etc. For example, the user can trigger a purchase instruction by pressing a key on the keyboard. The keyboard then sends an object recognition instruction to the desktop computer. The desktop computer receives the recognition instruction, displays the corresponding payment page, and shows payment prompts.
[0100] Step 302: The terminal receives biometric data based on input from the control device.
[0101] Here, biometric features correspond to payment notification information.
[0102] In practice, biometric input is achieved through a control device. For example, the control device can receive input biometric data and then send it to the terminal; alternatively, the control device can trigger the terminal's biometric reception function, allowing the terminal to collect the user's biometric data. In other words, the control device is used for both biometric data collection and transmission, enabling the terminal to receive the collected biometric data.
[0103] Here, the input biometrics can be one or more. That is, one biometric can be input and verified. Once the biometric is verified, the authentication is considered successful. Alternatively, multiple biometrics can be input, which means that multiple biometrics are combined for authentication. Only when all multiple features are verified is the authentication considered successful.
[0104] In some embodiments, the terminal may receive biometric features corresponding to payment prompts based on input from the control device in the following ways: when the payment prompts indicate the input of voice information, the terminal receives voice information input based on the voice function button of the control device and uses the voice information as the biometric feature corresponding to the payment prompts; before calling the payment interface provided by a third-party application to make payment through the third-party application, the terminal may also extract voiceprint features from the voice information; match the voiceprint features with stored target voiceprint features; when the voiceprint features match the stored target voiceprint features, the user authentication is confirmed to be successful.
[0105] In practice, when the payment prompt indicates that voice information should be entered, the user can trigger the voice function button on the control device to activate the voice acquisition function of the control device, so that the control device can receive the voice information entered by the user; after receiving the voice information, the control device sends the voice information to the terminal, the terminal receives the voice information and uses the voice information as a biometric feature.
[0106] Here, when the control device sends voice information, it can modulate the voice information, obtain the modulated signal, and then send the modulated signal to the terminal. The terminal demodulates the modulated signal to obtain the voice information.
[0107] In some embodiments, after acquiring voice information, the terminal can extract voiceprint features from the voice information in the following ways: First, the voice information is preprocessed, that is, effective audio information is extracted from the voice information through voice activity detection; the extracted audio information is segmented into multiple frame data; then, voice feature processing is performed, that is, the discrete periodic signal in the time domain is converted into a discrete signal in the frequency domain, such as by using Fast Fourier Transform to convert the discrete periodic signal in the time domain into a discrete signal in the frequency domain; then, the signal in the frequency domain is filtered and reduced in dimensionality, such as by using Mel filtering; finally, signal feature values are extracted to obtain the user's voiceprint features, such as by using Discrete Cosine Transform to extract signal feature values.
[0108] In some embodiments, after obtaining the voiceprint feature, the terminal can match the voiceprint feature with the stored target voiceprint feature in the following way: calculate the similarity between the voiceprint feature and the stored target voiceprint feature, such as cosine similarity; when the similarity reaches the similarity threshold, determine that the voiceprint feature matches the stored target voiceprint feature; otherwise, consider that the voiceprint feature does not match the stored target voiceprint feature.
[0109] The target voiceprint features here are pre-entered and stored locally or on a server.
[0110] It should be noted that, since authentication only requires extracting the voiceprint features from the voice information, without needing to identify and match the content spoken by the user, the voice information can be any voice information. That is, the user can say any sentence, and the device can collect the content spoken by the user to obtain the voice information. In this way, the difficulty of voice information input can be reduced and the authentication efficiency can be improved.
[0111] In some embodiments, the system receives biometric information corresponding to payment prompts based on input from a control device: when the payment prompts indicate the input of voice information corresponding to the target text, it receives voice information input via the voice function button on the control device and uses the voice information as the biometric information corresponding to the payment prompts; before the terminal calls the payment interface provided by a third-party application to make a payment through the third-party application, it can also perform speech recognition on the voice information to obtain the text corresponding to the voice information and extract the voiceprint information from the voice information; it matches the text obtained from speech recognition with the target text and matches the voiceprint information with the stored target voiceprint features; when the text obtained from speech recognition matches the target text and the voiceprint features match the stored target voiceprint features, it is determined that the user authentication is successful.
[0112] The target text here can be pre-set. The payment prompt message will then prompt the user to input voice information corresponding to the pre-set target text. Figure 4A This is a schematic diagram of the payment page provided in an embodiment of this application. See also: Figure 4A The payment page displays a payment prompt message 401 via a floating window, instructing the user to input pre-defined voice information from the device; alternatively, the target text can be randomly generated and then presented by the terminal, prompting the user to input voice information corresponding to the presented target text via the payment prompt message. Figure 4B This is a schematic diagram of the payment page provided in an embodiment of this application. See also: Figure 4B On the payment page, a payment prompt message 402 is displayed via a floating window to instruct the user to enter the randomly generated voice message "Quick Payment".
[0113] In practice, payment prompts can be used to instruct users to input the corresponding target text via voice. This means the user needs to speak the target text, and the control device collects this speech to obtain the voice information. After the control device sends the voice information to the terminal, the terminal not only needs to extract the voiceprint information but also recognize the corresponding text. Then, during authentication based on this voice information, both voiceprint features and voice content need to be verified simultaneously. The voiceprint information extracted from the voice information is matched with the target voiceprint information, and the text obtained from voice recognition is matched with the target text. Only when both match successfully is the user authentication considered successful.
[0114] This application matches the text obtained from speech recognition with the target text and matches the voiceprint information with the stored target voiceprint features. When the text obtained from speech recognition matches the target text and the voiceprint features match the stored target voiceprint features, the user authentication is confirmed to be successful. This prevents authentication from being performed using pre-recorded audio files and improves payment security.
[0115] In some embodiments, biometric features corresponding to payment prompt information input by the control device can be received in the following manner: when the payment prompt information indicates that fingerprint information is to be input, the fingerprint information input by touch operation in the touch area of the control device is received; fingerprint features are extracted from the fingerprint information to obtain the user's fingerprint features, and the fingerprint features are used as biometric features corresponding to the payment prompt information.
[0116] In practice, biometrics can be fingerprints, and the control device is equipped with a touch area capable of receiving fingerprint information. (See [link to relevant documentation]). Figure 5 , Figure 5 This is a schematic diagram of the touch area of the control device provided in the embodiment of this application. The user can input fingerprint information by touching the touch area. After the control device collects the fingerprint information, it sends the fingerprint information to the terminal.
[0117] Here, fingerprint information can be in the form of an image. After the terminal obtains the fingerprint image, it performs preprocessing on the fingerprint image, including fingerprint segmentation, fingerprint enhancement, binarization, and thinning, and then performs fingerprint feature extraction. Here, features can be extracted from grayscale images or from thinned binary images.
[0118] In practical applications, after obtaining fingerprint features, the obtained fingerprint features are matched with the stored target fingerprint features. When the fingerprint features match the stored target fingerprint features, the user authentication is confirmed to be successful.
[0119] In some embodiments, the terminal may receive biometric features corresponding to payment prompt information based on input from the control device in the following manner: when the payment prompt information indicates the input of image information, it receives a camera activation command triggered by the camera function button of the control device; it acquires an image containing the user's eyes through the camera; it extracts iris features from the image to obtain the user's iris features, and uses the iris features as biometric features corresponding to the payment prompt information.
[0120] Here, biometrics can refer to iris features, which are the characteristics of the iris in a person's eyes. Therefore, it is necessary to capture images containing the user's eyes. In actual implementation, when the terminal is equipped with a camera, the image containing the user's eyes is captured through the terminal's camera. Then, the iris is located, and the positions of the inner circle, outer circle, and quadratic curve in the image are determined. Next, the size of the iris in the image is adjusted to a fixed size set by the recognition system. For the normalized image, brightness, contrast, and smoothness are processed. Finally, the feature points required for iris recognition are extracted from the image and encoded to obtain the user's iris features.
[0121] In some embodiments, when the control device is equipped with a camera, it can acquire images containing the user's eyes; then the acquired images are sent to the terminal, where iris feature extraction is performed to obtain the user's iris features.
[0122] In practical applications, after obtaining iris features, the obtained iris features are matched with the stored target iris features. When the iris features match the stored target iris features, the user authentication is confirmed to be successful.
[0123] In some embodiments, before receiving the biometrics corresponding to the payment prompt information input by the control device, the terminal may also present a type selection interface for selecting the biometric type; upon receiving the biometric type selection operation triggered by the control device, the biometric type corresponding to the selection operation is used as the target biometric type for authentication; the terminal may receive the biometrics corresponding to the payment prompt information input by the control device in the following manner: receiving the biometrics of the target biometric type input by the control device.
[0124] Here, multiple selectable biometric types can be set, allowing users to make payments using one or more of these types. In practice, the terminal can present a type selection interface with multiple biometric type options and selection boxes. These selection boxes can be placed at any biometric type option. Users can select a biometric type using the selection box via a control device. When the control device receives a selection command triggered by the user, it sends a modulated signal carrying selection indication information to the terminal. Upon receiving this modulated signal, the terminal demodulates it to obtain the selection indication information. Based on this information, the terminal controls the selection box to move among the multiple biometric type options, facilitating user selection. When the selection box reaches the desired biometric type, the control device triggers a confirmation operation, sending a control signal carrying confirmation selection indication information to the terminal. Upon receiving this signal, the terminal demodulates it to obtain the confirmation selection indication information, and then uses the selected biometric type as the user's target biometric type.
[0125] After the user selects the target biometric type, the user needs to input the biometrics of the selected target biometric type. Here, the biometrics collection function of the target biometric type can be automatically enabled to receive the biometrics of the target biometric type input by the user.
[0126] For example, Figure 6 This is a schematic diagram of the target biometric type selection process provided in the embodiments of this application. See also: Figure 6 The system presents a biometric selection interface with multiple biometric types to choose from, including fingerprint, voiceprint, and iris. A selection box is displayed for the fingerprint option. The control device sends a modulated signal carrying selection instruction information to the terminal. The terminal demodulates the modulated signal to obtain the selection instruction information and controls the selection box to move from the fingerprint option to the voiceprint option based on this information. If the control device then sends a modulated signal carrying confirmation selection instruction information to the terminal, the terminal demodulates the signal to obtain confirmation selection instruction information and uses the voiceprint selected in the selection box as the target biometric type. At this point, the voice acquisition function is automatically activated to collect the user's voice information.
[0127] Step 303: When the terminal determines that the user authentication is successful based on biometrics, it calls the payment interface provided by the third-party application to make the payment, and displays a payment success page after the payment is completed.
[0128] The terminal has a third-party application installed on it. The payment interface is a payment interface provided by the third-party application to the terminal so that the terminal can call the payment interface to make payments through the third-party application.
[0129] Here, the third-party application is used for payment. After the terminal authenticates the user, it calls the third-party application and sends a payment request to the third-party application's server to complete the payment. After the payment is completed, a payment success page is displayed to notify the user of the payment result.
[0130] In some embodiments, before invoking the payment interface provided by a third-party application and making payment through the user account of the third-party application, the terminal can also obtain the device information of the current device and the password used to encrypt the device information; generate an encrypted ticket based on the device information and the corresponding password; send the encrypted ticket for the server to verify the legitimacy of the current device; and receive the legitimacy verification result for the current device returned by the server. The terminal can invoke the payment interface provided by the third-party application in the following ways: when the user authentication is successful based on biometrics, the payment interface provided by the third-party application is invoked; when the legitimacy verification result indicates that the current device is a legitimate device and the user authentication is successful based on biometrics, the payment interface provided by the third-party application is invoked.
[0131] Here, "current device" refers to the terminal currently in use. Correspondingly, the relevant device information can be the terminal's device account identifier. In actual implementation, the terminal can also be verified. That is, only when the terminal is a legitimate device and the user authentication is successful based on biometrics will the payment interface provided by the third-party application be called to further improve payment security. For example, when the terminal is a TV terminal, the TV terminal obtains its own device account identifier and password to generate an encrypted ticket and send it to the server for the server to verify the legitimacy of the TV terminal.
[0132] In practice, both the terminal and the server store the device information of the current device and the password used to encrypt the device information. The terminal can use a symmetric encryption algorithm to perform symmetric encryption, that is, use the password as the encryption key and the device information as the encryption content to generate an encrypted ticket. Then, the encrypted ticket is sent to the server. The server uses the stored password to decrypt the encrypted ticket. If the decryption is successful and the decrypted device information is the device information of the current device, it means that the current device is a legitimate device; otherwise, the current device is an illegitimate device.
[0133] Here, the encrypted content can also include a timestamp, that is, a valid time is set. So when verifying the current device, only if the decryption is successful, the decrypted device information is consistent with the current device information, and the timestamp is within the valid time (such as 30 seconds), can the current device be determined to be a legitimate device.
[0134] In some embodiments, before calling the payment interface provided by a third-party application and making payment through the user account of the third-party application, the terminal may also establish an association between the user account of the third-party application used for payment and the current device; making payment through a third-party application includes: obtaining the user account of the third-party application associated with the current device; and making payment through the obtained user account of the third-party application.
[0135] In practice, the association between the user account of the third-party application used for payment and the current device can be established manually. For example, when a user account binding command is triggered, the terminal displays a user account binding page, and the user enters the user account on the binding page to associate the entered user account with the device information of the current device. Alternatively, the association between the user account and the current device can be established automatically. For example, during the first payment, the terminal displays a payment page with a QR code for payment, containing payment order information and the terminal's device information. The user uses a mobile terminal (such as a mobile phone) to scan the QR code using a third-party application (such as a payment application) on the mobile terminal to complete the payment. When the payment is successful, the mobile terminal sends the user account of the third-party application used for payment and the obtained device information to the terminal or server. The terminal or server then associates and stores the user's third-party application user account and device information.
[0136] If the user account and device information of the third-party application are stored on the terminal, the user account of the third-party application is obtained directly from the local device to make payment. If the user account and device information of the third-party application are stored on the server, an account retrieval request carrying the device information of the current device is sent to the server to obtain the user account of the third-party application associated with the current device to make payment.
[0137] In some embodiments, before calling the payment interface provided by a third-party application and making payment through the user account of the third-party application, the terminal may also receive the target biometric features of the user based on the input of the control device; establish the association between the target biometric features and the device information of the current device; after receiving the biometric features corresponding to the payment prompt information based on the input of the control device, the method further includes: finding the target biometric features associated with the device information and matching the biometric features with the target biometric features; when it is determined that the biometric features match the target biometric features, it is determined that the user authentication is successful.
[0138] In practice, users can pre-input target biometrics to establish an association between the target biometrics and device information. For example, when a user triggers a biometric binding operation on the terminal, the terminal displays a biometric management page to achieve biometric binding. Then, the user controls the device to collect their biometrics, which are then sent to the terminal. The terminal transmits the biometrics and device information to the server. The server associates and stores the extracted biometrics with the device information. During user authentication, the received biometrics and device information are sent to the server. The server retrieves the target biometrics corresponding to the device information and matches them with the target biometrics. When a match is confirmed, user authentication is successful.
[0139] Here, by searching for the target biometric feature associated with the device information, the biometric feature is restricted to be used only on the current device. For example, if a user inputs the target biometric feature through terminal A, then the corresponding biometric feature can only be used to make a payment on terminal A, and cannot be used to make a payment on other terminals. This improves the security of the payment.
[0140] In some embodiments, a terminal can make payments through a third-party application in the following ways: when the user account currently logged into the application is associated with a third-party application, obtain the user account currently logged into the application; log into the third-party application using the user account currently logged into the application to make payments.
[0141] In practice, when the user account logged into the current application is associated with a third-party application, such as when the current application uses a user account from a third-party application to log in, the user account logged into the current application is the same as the user account from the third-party application. The user account logged into the current application can be directly obtained, and then the user can log into the third-party application using the user account logged into the current application, and then make a payment using the user account logged into the current application.
[0142] In some embodiments, a terminal can make payments through a third-party application by running the third-party application and obtaining the currently logged-in user account of the third-party application; and then making payments using the currently logged-in user account.
[0143] In practice, payments can be made directly using the user account currently logged into the third-party application. That is, before making a payment through the third-party application, the user has already logged into the third-party application using their user account. Therefore, when running the third-party application, payments can be made directly based on the currently logged-in user account.
[0144] In some embodiments, before presenting a payment page containing payment prompt information, the terminal may also acquire at least two target biometric features; associate and store each target biometric feature with the corresponding user account of a third-party application; and make payment through the third-party application, including: acquiring a target biometric feature that matches the biometric feature; acquiring the user account of the third-party application corresponding to the biometric feature based on the association between the target biometric feature and the user account of the third-party application; and making payment through the acquired user account.
[0145] In practice, multiple target biometric features can be obtained in advance. For example, in a family application scenario, the target biometric features of all family members can be obtained and each target biometric feature can be associated with and stored with the corresponding user account of a third-party application. When making a payment through a third-party application, the user account of the corresponding third-party application can be found based on the input target biometric feature.
[0146] In some embodiments, a third-party application user account can be associated with the target biometrics of multiple users. For example, in a family application scenario, all family members can use the same user account for payment. In this case, multiple target biometrics and a user account can be stored in advance. When making a payment through the third application, the received biometrics are directly verified to see if they match the stored target biometrics. If the stored target biometrics match, the stored user account is used directly for payment.
[0147] By applying the embodiments of this application, a payment page containing payment prompt information is presented on the terminal, which is used to indicate the input of the user's biometric features; upon receiving the biometric features input based on the control device, the biometric features correspond to the payment prompt information; when the user authentication is confirmed to be successful based on the biometric features, the payment interface provided by the third-party application is called to perform the payment through the user's account in the third-party application, and a payment success page is displayed after the payment is completed; in this way, the payment process can be completed directly on the terminal, which is simple and can improve the payment success rate; and compared with the payment method of scanning QR codes, it avoids information leakage and improves payment security.
[0148] The payment method for biometric authentication provided in this application will be further described below. Taking a television terminal as an example, the payment method for biometric authentication provided in this application can be implemented collaboratively by a control device, a television terminal, and a server. Here, iris recognition is used as an example of biometric authentication. See [link to relevant documentation]. Figure 7 , Figure 7 This is a flowchart illustrating the payment method for biometric authentication provided in this application embodiment. The payment method for biometric authentication provided in this application embodiment includes:
[0149] Step 701: The control device sends an iris feature binding instruction to the television terminal.
[0150] Step 702: The TV terminal displays a management page containing binding prompts and captures an image of the user's eyes through the camera.
[0151] Here, the binding prompt message is used to instruct the user to input an image containing the user's eyes.
[0152] Step 703: Send the device information of the TV terminal and the target image containing the user's eyes to the server.
[0153] Step 704: The server extracts iris features from the target image, obtains the target iris features, and associates and stores the target iris features with the device information.
[0154] Step 705: The control device sends a payment instruction to the television terminal.
[0155] Step 706: The TV terminal displays a payment page containing payment prompts.
[0156] Here, the payment prompt message is used to instruct the user to enter an image containing the user's eyes, and may not carry any payment information (such as a payment order).
[0157] Step 707: Received a camera activation command triggered by the camera function button on the control device.
[0158] Step 708: Capture an image containing the user's eyes using a camera.
[0159] Step 709: Send the device information of the TV terminal and an image containing the user's eyes to the server.
[0160] Step 710: The server extracts iris features from the image to obtain the user's iris features.
[0161] Step 711: Based on the device information, obtain the target iris features associated with the device information, and match the iris features with the target iris features.
[0162] Step 712: When the iris feature matches the target iris feature, the user authentication is confirmed to be successful, and the authentication result is sent to the TV terminal.
[0163] Step 713: The TV terminal runs a third-party application and obtains the currently logged-in user account of the third-party application.
[0164] Step 714: Make payment using the currently logged-in user account.
[0165] By applying the embodiments of this application, the payment process can be completed directly on the TV terminal without the need for other terminals. The process is simple and can improve the payment success rate. Moreover, compared with the payment method of scanning QR codes, it avoids information leakage and improves payment security.
[0166] The following describes an exemplary application of the embodiments of this application in a real-world scenario. The payment method based on biometric authentication provided in this application is applied in a living room setting, including payment activities such as membership activation and single-item purchases via smart TVs, set-top boxes, projectors, etc.
[0167] In practice, device registration is performed when the client is launched for the first time; user registration, including voiceprint registration and account binding, is performed during the first payment; and authentication is performed based on device information and voiceprint information during subsequent payments. The details are explained below.
[0168] Figure 8 This is a schematic diagram of the device registration process provided in an embodiment of this application. See also: Figure 8 When the client is first launched on the current device, the client sends a device registration request to the server; the server assigns a device information GUID (such as a device account identifier) and a password secret for encrypting the device information to the current device.
[0169] In actual implementation, when the client is launched for the first time, it checks whether a GUID is stored locally. If not, it sends a device registration request to the server. Upon receiving the request, the server generates a new GUID as the current device's GUID through the account system and randomly assigns a secret. Then, it stores the GUID and secret in the database and returns them to the client. After obtaining the GUID and secret, the client stores them locally.
[0170] Here, the GUID can be generated by incrementing an integer value or by using a 32-bit random code, as long as the generated GUID is unique each time.
[0171] After registration on the TV terminal, in order to enable payment based on voiceprint authentication, the TV terminal needs to be bound to the user account and voiceprint features. In some embodiments, the user account can be bound manually by the user, such as by establishing the binding relationship between the user's input account, voiceprint features, and the TV terminal through the settings function before making a payment through the TV terminal;
[0172] In some embodiments, the aforementioned binding relationship may also be automatically formed during the initial payment process via a television terminal. Figure 9 This is a schematic diagram of the initial payment process provided in an embodiment of this application. See also: Figure 9 The initial payment process includes two parts: binding the user account and binding the voiceprint feature, which will be explained below.
[0173] like Figure 9 As shown in Figure 901, when making a payment for the first time through a TV terminal, payment can be made by scanning a QR code. The user triggers a purchase button (such as a membership activation or single-item purchase button) on the TV terminal (such as a smart TV). The TV terminal receives the payment instruction, displays a payment page, and shows a QR code for payment. The QR code contains payment order information and TV terminal device information. The user uses a mobile terminal (such as a mobile phone) to scan the QR code through a third-party application (such as a payment application) on the mobile terminal to complete the payment. When the payment is successful, the TV terminal will display a payment success message. The mobile terminal sends the user account of the third-party application used for payment and the obtained TV terminal device information (such as device ID) to the server. The server associates and stores the user's third-party application user account with the device information.
[0174] like Figure 9 As shown in Figure 902, the user triggers a voiceprint binding operation on the TV terminal. The TV terminal displays a voiceprint management page and a target text, which is the text that the user needs to read aloud. The user reads the text and the control device collects the user's voice information. The control device sends the collected voice information to the TV terminal. The TV terminal transmits the voice information and device information to the server. The server extracts voiceprint features from the voice information, stores the extracted voiceprint features in the database, generates an ID corresponding to the voiceprint feature, and associates the TV terminal's device information (such as device ID) with the ID of the voiceprint feature.
[0175] In practical implementation, voiceprint feature extraction can be performed as follows: First, the speech information is preprocessed, i.e., effective audio information is extracted from the speech information through speech activity detection; the extracted audio information is then segmented into multiple frames; then, speech feature processing is performed, i.e., the discrete periodic signal in the time domain is converted into a discrete signal in the frequency domain, such as by using Fast Fourier Transform; next, the signal in the frequency domain is filtered and reduced in dimensionality, such as by using Mel filtering; finally, signal feature values are extracted to obtain the user's voiceprint features, such as by using Discrete Cosine Transform.
[0176] In some embodiments, since it is applied to a living room scenario, a user account can be bound to the voiceprint features of multiple family members, that is, the voiceprint features of any family member can complete the payment behavior under the device; in other embodiments, the voiceprint features of different family members can be associated with different user accounts, and when voice input is performed, the user account corresponding to the voiceprint feature is automatically identified, and then payment is made through the user account.
[0177] Figure 10 This is a schematic diagram of a payment process based on voiceprint feature authentication provided in an embodiment of this application. See also... Figure 6 The payment process based on voiceprint authentication provided in this application includes:
[0178] Step 1001: The TV terminal receives the payment instruction and displays a payment page containing the target text.
[0179] The target text here is the text that requires user voice input.
[0180] Step 1002: Receive voice information input by the user through the remote control terminal.
[0181] Step 1003: The server verifies the device information and voice information of the TV terminal.
[0182] In practice, device information can be verified in the following way: The TV terminal generates an encrypted ticket using the stored device information (guid) and password (secret). This can be done using a symmetric encryption algorithm, that is, using the secret as the encryption key and the guid and timestamp as the encryption content. The TV terminal sends the generated encrypted ticket to the server. The server decrypts the ticket using the secret stored on the server. If the decryption is successful and the decrypted guid matches the requested guid, and the timestamp is within the valid time (e.g., 30 seconds), then the encrypted ticket is considered valid, and the request is considered to have come from a legitimate device, and the device information verification is successful.
[0183] In practice, voice information can be verified in the following way: The TV terminal sends the voice information to the server, the server extracts the voiceprint from the voice information to obtain the user's voiceprint features; the stored voiceprint feature ID is read through the TV terminal's GUID, and then the target voiceprint feature corresponding to the voiceprint feature ID is obtained. The target voiceprint feature is matched with the received voiceprint feature. If the match is successful, the request is considered to come from a legitimate user, and the voiceprint feature verification is passed.
[0184] Here, verification can be performed using the cosine of the angle between the two voiceprint feature vectors. That is, the cosine of the angle between the target voiceprint feature and the received voiceprint feature is calculated. If the cosine value is less than the threshold, the match is considered successful.
[0185] Step 1004: When both device information and voice information are verified, a third-party application is invoked to make payment through the user account of the third-party application.
[0186] Here, the server retrieves the user account of the third-party application associated with the TV terminal's device information based on the association between the device information and the user account stored during the initial payment, and then requests the third-party application's server to make the payment using the retrieved user account.
[0187] The embodiments of this application have the following beneficial effects:
[0188] 1. Users can complete voiceprint recognition by voice input, which reduces the payment verification process, lowers the payment threshold, and improves the payment conversion rate;
[0189] 2. Applied to living room scenarios, voiceprint recognition can solve the problem of elderly people and children being unable to perform cumbersome payment operations such as scanning QR codes with their mobile phones, greatly expanding the payment user base in living room scenarios;
[0190] 3. It combines device authentication and voiceprint authentication, limiting payment transactions to the current account on the current device, thus solving the security issues caused by cross-platform payments.
[0191] The following description further illustrates the exemplary structure of the biometric authentication-based payment device 455 provided in this application embodiment as a software module. (See also...) Figure 11 , Figure 11 This is a schematic diagram of the structure of a payment device based on biometric authentication provided in an embodiment of this application. The payment device based on biometric authentication provided in an embodiment of this application includes:
[0192] Presentation module 4551 is used to present a payment page containing payment prompt information, wherein the payment prompt information is used to indicate the input of the user's biometric features;
[0193] The receiving module 4552 is used to receive biometric features based on input from the control device, wherein the biometric features correspond to the payment prompt information;
[0194] Payment module 4553 is used to, when the user authentication is successful based on the biometric characteristics, call the payment interface provided by a third-party application to perform payment through the third-party application, and
[0195] A payment success page will be displayed after payment is completed.
[0196] In some embodiments, the payment module 4553 is further configured to obtain device information of the current device and a password for encrypting the device information;
[0197] Based on the device information and the corresponding password, an encrypted ticket is generated;
[0198] Send the encrypted ticket, which is used by the server to verify the legitimacy of the current device;
[0199] Receive the validity verification result for the current device returned by the server;
[0200] When the legality verification result indicates that the current device is a legitimate device, and the user authentication is successful based on the biometrics, the payment interface provided by the third-party application is invoked.
[0201] In some embodiments, the payment module 4553 is further configured to establish an association between the user account of the third-party application used for payment and the current device;
[0202] Obtain the user account of the third-party application associated with the current device;
[0203] Payment is made using the user account obtained from the third-party application.
[0204] In some embodiments, the payment module 4553 is further configured to receive the user's target biometric features based on input from the control device;
[0205] Establish the association between the target biometric features and the device information of the current device;
[0206] Locate the target biometric features associated with the device information and match the biometric features with the target biometric features;
[0207] When it is determined that the biometrics match the target biometrics, the user authentication is deemed successful.
[0208] In some embodiments, the receiving module 4552 is further configured to receive voice information input via the voice function button of the control device when the payment prompt information indicates the input of voice information, and
[0209] The voice information is used as a biometric feature corresponding to the payment prompt information;
[0210] The payment module 4553 is also used to extract voiceprint features from the voice information;
[0211] The voiceprint features are matched with the stored target voiceprint features;
[0212] When the voiceprint feature matches the stored target voiceprint feature, the user authentication is deemed successful.
[0213] In some embodiments, the receiving module 4552 is further configured to receive voice information input based on the voice function button of the control device when the payment prompt information indicates the input of voice information corresponding to the target text, and
[0214] The voice information is used as a biometric feature corresponding to the payment prompt information;
[0215] The payment module 4553 is further configured to perform speech recognition on the voice information to obtain the text corresponding to the voice information, and
[0216] Extract the voiceprint information from the speech information;
[0217] The text obtained from speech recognition is matched with the target text, and the voiceprint information is matched with the stored target voiceprint features;
[0218] When the text obtained from speech recognition matches the target text, and the voiceprint features match the stored target voiceprint features, the user authentication is deemed successful.
[0219] In some embodiments, the receiving module 4552 is further configured to receive fingerprint information input via touch operation in the touch area of the control device when the payment prompt information indicates that fingerprint information is to be input;
[0220] Fingerprint features are extracted from the fingerprint information to obtain the user's fingerprint features, and
[0221] The fingerprint feature is used as the biometric feature corresponding to the payment prompt information.
[0222] In some embodiments, the receiving module 4552 is further configured to receive a camera activation command triggered by the camera function button of the control device when the payment prompt information indicates input image information;
[0223] Capture images including the user's eyes using a camera;
[0224] Iris features are extracted from the image to obtain the user's iris features, and
[0225] The iris feature is used as the biometric feature corresponding to the payment prompt information.
[0226] In some embodiments, the receiving module 4552 is further configured to present a type selection interface for selecting biometric types;
[0227] Upon receiving a biometric type selection operation triggered by the control device, the biometric type corresponding to the selection operation is used as the target biometric type for authentication.
[0228] Receive biometrics based on the target biometric type input from the control device.
[0229] In some embodiments, the payment module 4553 is further configured to obtain the user account currently logged into the application when the user account logged into the application is associated with a third-party application;
[0230] Log in to the third-party application using the user account currently logged in to the application and make a payment.
[0231] In some embodiments, the payment module 4553 is further configured to run the third-party application and obtain the user account currently logged into the third-party application;
[0232] Make payment using the currently logged-in user account.
[0233] In some embodiments, the payment module 4553 is further configured to acquire at least two target biometric features;
[0234] Each of the target biometric features is associated with and stored in relation to the user account of the corresponding third-party application;
[0235] Obtain target biometrics that match the stated biometrics;
[0236] Based on the association between the target biometrics and the user accounts of third-party applications, obtain the user accounts of the third-party applications corresponding to the biometrics;
[0237] Payment is made using the obtained user account.
[0238] By applying the embodiments of this application, the payment process can be completed directly on the current device without the need for other terminals. The process is simple and can improve the payment success rate. Moreover, compared with the payment method of scanning QR codes, it avoids information leakage and improves payment security.
[0239] This application also provides a computer device, which can be a terminal or a server, see [link]. Figure 12 , Figure 12 This is a schematic diagram of the structure of a computer device provided in an embodiment of this application. The computer device provided in an embodiment of this application includes:
[0240] Memory 450 is used to store executable instructions;
[0241] The processor 410 is configured to execute executable instructions stored in the memory to implement the biometric authentication-based payment method provided in the embodiments of this application.
[0242] Here, processor 410 can be an integrated circuit chip with signal processing capabilities, such as a general-purpose processor, a digital signal processor (DSP), or other programmable logic devices, discrete gate or transistor logic devices, discrete hardware components, etc. Among them, the general-purpose processor can be a microprocessor or any conventional processor, etc.
[0243] The memory 450 may be removable, non-removable, or a combination thereof. Exemplary hardware devices include solid-state storage, hard disk drives, optical disk drives, etc. The memory 450 may optionally include one or more storage devices physically located away from the processor 410.
[0244] The memory 450 may include volatile memory or non-volatile memory, or both. The non-volatile memory may be read-only memory (ROM), and the volatile memory may be random access memory (RAM). The memory 450 described in this application embodiment is intended to include any suitable type of memory.
[0245] In some embodiments, at least one network interface 420 and a user interface 430 may also be included. Various components in the computer device are coupled together via a bus system 440. It is understood that the bus system 440 is used to implement communication between these components. In addition to a data bus, the bus system 440 also includes a power bus, a control bus, and a status signal bus. However, for clarity, in… Figure 7 The general labeled all buses as Bus System 440.
[0246] This application provides a computer program product or computer program that includes computer instructions stored in a computer-readable storage medium. A processor of a computer device reads the computer instructions from the computer-readable storage medium and executes the computer instructions, causing the computer device to perform the biometric authentication-based payment method described above in this application.
[0247] This application provides a computer-readable storage medium storing executable instructions. When these executable instructions are executed by a processor, they cause the processor to perform the method provided in this application, for example... Figure 3 The method shown.
[0248] In some embodiments, the computer-readable storage medium may be a memory such as FRAM, ROM, PROM, EPROM, EEPROM, flash memory, magnetic surface memory, optical disk, or CD-ROM; or it may be a variety of devices including one or any combination of the above-mentioned memories.
[0249] In some embodiments, executable instructions may take the form of a program, software, software module, script, or code, written in any form of programming language (including compiled or interpreted languages, or declarative or procedural languages), and may be deployed in any form, including as a standalone program or as a module, component, subroutine, or other unit suitable for use in a computing environment.
[0250] As an example, executable instructions may, but do not necessarily, correspond to files in a file system. They may be stored as part of a file that holds other programs or data, for example, in one or more scripts in a Hyper Text Markup Language (HTML) document, in a single file dedicated to the program in question, or in multiple collaborating files (e.g., a file that stores one or more modules, subroutines, or code sections).
[0251] As an example, executable instructions can be deployed to execute on a single computing device, or on multiple computing devices located in one location, or on multiple computing devices distributed across multiple locations and interconnected via a communication network.
[0252] The above description is merely an embodiment of this application and is not intended to limit the scope of protection of this application. Any modifications, equivalent substitutions, and improvements made within the spirit and scope of this application are included within the scope of protection of this application.
Claims
1. A payment method based on biometric authentication, characterized in that, Applied to a terminal, wherein a communication connection is established between the terminal and a control device, the method includes: A page including a purchase function is displayed; if the control device triggers a purchase instruction for the purchase function, a payment page containing payment prompt information is displayed, the payment prompt information being used to instruct the user to input their biometric features; The system receives the biometric data sent by the control device, wherein the biometric data is input into the control device and corresponds to the payment prompt information. When the biometric feature matches the target biometric feature, the user authentication is confirmed to be successful. The target biometric feature is associated with the terminal's device information. The association is formed after the terminal's first successful payment in the following way: receiving the user's biometric feature collected by the control device and associating and storing the biometric feature and the terminal's device information on the server. An encrypted ticket is sent to the server. The encrypted ticket is generated based on the device information and the corresponding password and is used by the server to verify the legitimacy of the terminal. When the server sends a verification result indicating that the terminal is a legitimate device, The payment interface provided by a third-party application is called, and payment is made through the third-party application. A payment success page will be displayed after payment is completed.
2. The method as described in claim 1, characterized in that, Before presenting the page including the purchase function, the method further includes: Establish an association between the user account of the third-party application used for payment and the terminal; The payment through the third-party application includes: Obtain the user account of the third-party application associated with the terminal; Payment is made using the user account obtained from the third-party application.
3. The method as described in claim 1, characterized in that, After receiving the biometric data sent by the control device, the method further includes: Locate the target biometric features associated with the device information and match the biometric features with the target biometric features; When it is determined that the biometrics match the target biometrics, the user authentication is deemed successful.
4. The method as described in claim 1, characterized in that, The receipt of the biometrics sent by the control device includes: When the payment prompt indicates that voice information should be input, voice information input via the voice function button on the control device is received, and The voice information is used as a biometric feature corresponding to the payment prompt information; Before invoking the payment interface provided by the third-party application and making payment through the third-party application, the method further includes: Extract the voiceprint features from the speech information; The voiceprint features are matched with the stored target voiceprint features; When the voiceprint feature matches the stored target voiceprint feature, the user authentication is deemed successful.
5. The method as described in claim 1, characterized in that, The receipt of the biometrics sent by the control device includes: When the payment prompt indicates that voice information corresponding to the target text should be entered, voice information input based on the voice function button of the control device is received, and The voice information is used as a biometric feature corresponding to the payment prompt information; Before invoking the payment interface provided by the third-party application and making payment through the third-party application, the method further includes: The speech information is subjected to speech recognition to obtain the corresponding text. Extract the voiceprint information from the speech information; The text obtained from speech recognition is matched with the target text, and the voiceprint information is matched with the stored target voiceprint features; When the text obtained from speech recognition matches the target text, and the voiceprint features match the stored target voiceprint features, the user authentication is deemed successful.
6. The method as described in claim 1, characterized in that, The receipt of the biometrics sent by the control device includes: When the payment prompt message indicates that fingerprint information should be entered, the fingerprint information entered through touch operation in the touch area of the control device is received; Fingerprint features are extracted from the fingerprint information to obtain the user's fingerprint features, and The fingerprint feature is used as the biometric feature corresponding to the payment prompt information.
7. The method as described in claim 1, characterized in that, The receipt of the biometrics sent by the control device includes: When the payment prompt message indicates that image information should be entered, a camera activation command triggered by the camera function button on the control device is received; Capture images including the user's eyes using a camera; Iris features are extracted from the image to obtain the user's iris features, and The iris feature is used as the biometric feature corresponding to the payment prompt information.
8. The method as described in claim 1, characterized in that, Before receiving the biometric data sent by the control device, the method further includes: Presents a type selection interface for choosing biometric types; Upon receiving a biometric type selection operation triggered by the control device, the biometric type corresponding to the selection operation is used as the target biometric type for authentication. The receipt of the biometrics sent by the control device includes: Receive biometrics based on the target biometric type input from the control device.
9. The method as described in claim 1, characterized in that, The payment through the third-party application includes: When the user account currently logged into the application is associated with a third-party application, retrieve the user account currently logged into the application. Log in to the third-party application using the user account currently logged in to the application and make a payment.
10. The method as described in claim 1, characterized in that, The payment through the third-party application includes: Run the third-party application and obtain the user account currently logged into the third-party application; Make payment using the currently logged-in user account.
11. The method as described in claim 1, characterized in that, Before presenting the page that includes the purchase function, the method further includes: Acquire at least two target biometric features; Each of the target biometric features is associated with and stored in relation to the user account of the corresponding third-party application; The payment through the third-party application includes: Obtain target biometrics that match the stated biometrics; Based on the association between the target biometrics and the user accounts of third-party applications, obtain the user accounts of the third-party applications corresponding to the biometrics; Payment is made using the obtained user account.
12. A payment device based on biometric authentication, characterized in that, Applied to a terminal, wherein a communication connection is established between the terminal and a control device, the device includes: The presentation module is used to present a page that includes a purchase function item; when the control device triggers a purchase instruction for the purchase function item, a payment page containing payment prompt information is presented, the payment prompt information being used to indicate the input of the user's biometric features; A receiving module is used to receive the biometric features sent by the control device, wherein the biometric features are input into the control device and correspond to the payment prompt information; The payment module is used to determine that the user authentication is successful when the biometric feature matches the target biometric feature. The target biometric feature is associated with the device information of the terminal. The association is formed after the terminal makes its first successful payment in the following way: receiving the user's biometric feature collected by the control device and associating and storing the biometric feature and the terminal's device information on the server. An encrypted ticket is sent to the server. The encrypted ticket is generated based on the device information and the corresponding password and is used by the server to verify the legitimacy of the terminal. When the server sends a verification result indicating that the terminal is a legitimate device, The payment interface provided by a third-party application is called, and payment is made through the third-party application. A payment success page will be displayed after payment is completed.
13. The apparatus according to claim 12, characterized in that, The payment module is also used to establish an association between the user account of the third-party application used for payment and the terminal; Obtain the user account of the third-party application associated with the terminal; Payment is made using the user account obtained from the third-party application.
14. The apparatus according to claim 12, characterized in that, The payment module is also used to find the target biometric feature associated with the device information and match the biometric feature with the target biometric feature; When it is determined that the biometrics match the target biometrics, the user authentication is deemed successful.
15. A computer device, characterized in that, include: Memory, used to store executable instructions; A processor, when executing executable instructions stored in the memory, implements the payment method based on biometric authentication as described in any one of claims 1 to 11.
16. A computer-readable storage medium, characterized in that, It stores executable instructions for use by a processor to implement the payment method based on biometric authentication as described in any one of claims 1 to 11.
17. A computer program product comprising executable instructions, characterized in that, When the executable instructions are executed by the processor, they implement the payment method based on biometric authentication as described in any one of claims 1 to 11.
Citation Information
Patent Citations
Online payment system and online payment method for Internet television
CN102164128A
Electronic payment method and device and digital television
CN103955825A
Information transmission method and system
CN109345250A
Payment method, device and equipment
CN111429126A