Embedded Card Reader Security via PAN PIN Separation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Consumer off-the-shelf (COTS) devices, used for transactions, pose a security risk due to the simultaneous presence of Personal Account Number (PAN) and Personal Identification Number (PIN) data, increasing the likelihood of unauthorized access and fraudulent transactions.
Innovation Solution
Implementing temporal and spatial separation of PAN and PIN data through default PIN usage, where PAN data is sent to a payment processing service without the actual PIN, and the PIN is collected separately, along with encryption schemes and trusted execution environments to enhance security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If PAN and PIN data are stored simultaneously on COTS devices for transaction processing, then transaction convenience is improved, but security risk increases
Solution Approach 1:
The patent divides the sensitive data into two separate components: PAN data and PIN data. These are stored and processed in different locations and at different times within the system, preventing both components from being present simultaneously on the COTS device. This segmentation eliminates the security risk while maintaining transaction functionality.
Solution Approach 2:
The patent introduces a payment processing service as an intermediary between the COTS device and the transaction network. This intermediary handles the coordination of data transmission, ensuring that PIN data is collected and transmitted separately from PAN data, thereby reducing security risks while enabling convenient transactions.
2Object-affected harmful factors
If temporal and spatial separation of PAN and PIN data is implemented, then security is improved, but system complexity increases
Solution Approach 1:
The payment processing service acts as an intermediary that manages the complex coordination required for temporal and spatial separation. It handles the timing and routing of data transmissions, absorbing the complexity away from the COTS device and the merchant system, thereby achieving security without excessive complexity.
Solution Approach 2:
The system automatically manages the separation and transmission of PAN and PIN data through predefined protocols and processes. The payment processing service autonomously coordinates data collection, transmission, and processing without requiring manual intervention, reducing operational complexity while maintaining security.
3Object-affected harmful factors
If separate collection and transmission of PIN data is implemented, then security is improved, but transaction processing time increases
Solution Approach 1:
The system collects and transmits PAN data in advance before PIN data is required. This preliminary action allows the transaction process to be staged efficiently, with the intermediary already prepared to receive and process PIN data when it becomes available, minimizing overall processing time while maintaining security separation.
Solution Approach 2:
The payment processing service maintains continuous readiness to receive and process both PAN and PIN data through established communication channels and protocols. This continuous preparedness ensures that the separate transmission of PIN data does not create significant delays, as the system is always ready to process the data immediately upon arrival.
Data Source
AI summary
Techniques described herein are directed to embedded card reader security. In an example, personal account number data read from a payment instrument may be temporally and/or spatially separated from personal identification number data utilized to complete a payment for products. Temporal separation may include removing the personal account number data from a merchant device prior to request personal identification number data. Spatial separation may include utilization of trusted execution environments, separated embedded card reader applications, intermediary applications, and/or trust routines, for example to enable different components of a merchant device, and/or components of other devices and systems to handle personal account number data and personal identification number data.


