Electronic Device Binding via Token Vault Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for preventing fraud and theft of payment credentials in mobile devices are inadequate as they require users to enter sensitive information, making them vulnerable to theft and compromise.

Innovation Solution

A system and method for binding a first user device to a second user device using an electronic telecommunications device, which connects wirelessly and authenticates users without requiring them to enter sensitive account information, utilizing a secure communication channel and a token vault to issue a token for secure transactions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If users enter sensitive account information during transactions, then authentication can be performed, but security is compromised due to vulnerability to theft and fraud

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent extracts sensitive account information from the user's input process entirely. Instead of requiring users to enter account numbers, the system uses device identification (IMEI, serial numbers) and tokenization to represent accounts, eliminating the vulnerability of transmitting sensitive information while maintaining authentication capability.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an intermediary binding process that occurs at a secure location (branch office, ATM, kiosk) between the user's first device and second device. This intermediary process establishes secure associations without requiring users to handle or enter sensitive account information, acting as a mediator that protects security while enabling authentication.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If camera systems or authentication methods are used to prevent fraud, then security is improved, but the limitation remains that users must still provide sensitive information into a device

Engineering Contradiction:
Improvefraud preventionVSAvoidauthentication system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent removes the requirement for users to input sensitive information into any device. The system achieves fraud prevention by extracting the vulnerable step of information entry and replacing it with device-based identification and secure binding processes that occur in controlled environments.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent uses tokenization to create secure representations (tokens) of account information without exposing the actual sensitive data. These tokens serve as safe copies that can be transmitted and processed without compromising security, reducing device complexity requirements for handling sensitive information.

Inventive Principle:
Principle #26Copying

3Reliability

If a secure binding process is implemented without user input of sensitive information, then security is enhanced, but the binding process requires additional authentication steps

Engineering Contradiction:
ImprovesecurityVSAvoidbinding process time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent performs the secure binding process in advance at controlled locations (branch offices, ATMs, kiosks) before actual transactions occur. By completing the authentication and binding setup beforehand in secure environments, the system eliminates the need for repeated authentication steps during transactions, reducing time loss while maintaining high security standards.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS10977641B2Binding process using electronic telecommunications device
Publication Date: 2021.04.13 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US10977641B2 patent drawing
  • US10977641B2 patent drawing
  • US10977641B2 patent drawing

AI summary

A user may utilize an electronic telecommunications device comprising a wireless communications device to bind a first user device and a second user device. The user can insert the first user device into the electronic telecommunications device and enter authentication information. The first user device and the second user device can be bound over a wireless network enabled by the wireless communications device without requiring any sensitive account information to be entered by the user.