Contactless Card Disabling via Key Modification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems lack the ability to physically disable contactless cards when they are determined to be fraudulent, lost, or stolen, allowing for potential fraudulent transactions before they can be blocked.
Innovation Solution
A method and system that allow for the disabling of contactless cards by determining their fraudulent status through trust level scores, loss or theft reports, and then employing techniques such as overwriting applets, changing public keys, deleting keys, modifying payment applets, or sending temporary disabling signals.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If contactless cards are blocked after being reported as lost or stolen, then future transactions are denied, but fraudulent transactions can still be processed before the block is applied
Solution Approach 1:
The system performs preliminary actions by immediately modifying the contactless card (overwriting applets, changing keys) at the point of detection, before any fraudulent transactions can occur. This eliminates the time window between detection and blocking that exists in conventional systems.
Solution Approach 2:
The system applies preliminary anti-action by proactively disabling the contactless card's functionality through cryptographic modifications before fraudulent actors can exploit it. The card is rendered unusable in advance, preventing rather than merely blocking transactions.
2Reliability
If contactless cards are modified to disable them, then fraudulent transactions are prevented, but the card requires complex cryptographic operations
Solution Approach 1:
The system extracts the disabling functionality from the card issuer's backend systems and implements it directly on the contactless card itself through applet modification. This self-contained approach simplifies the overall system architecture while maintaining strong cryptographic security.
Solution Approach 2:
The contactless card applet acts as an intermediary that receives and executes disabling commands from the issuer system. The applet mediates between the external disabling request and the card's security elements, performing the cryptographic operations in a controlled manner.
Data Source
AI summary
A method of disabling a contactless card for fraud prevention is provided. The method includes determining that the contactless card is fraudulent, which includes at least one of determining that a trust level score of the contactless card is less than a trust level threshold, determining that the contactless card is lost, or determining that the contactless card is stolen. The method further includes disabling the contactless card, which comprises at least one selected from the group of overwriting an applet on the contactless card, changing public keys on the contactless card, deleting public and private keys on the contactless card, changing a private key on the contactless card, and modifying a payment applet on the contactless card to accept a temporary disabling signal.


