Payment Card Optical Authentication Cryptogram
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current methods for securing online bank card transactions are inadequate, particularly against phishing and physical theft, as existing solutions like 3D-Secure authentication have weaknesses and do not universally prevent fraud, and technologically advanced dynamic CVV cryptograms are costly and not widely adopted.
Innovation Solution
A payment card with a unique authentication cryptogram on one side, comprising a large number of characters, and a PAN cryptogram replacing part of the PAN number, combined with a two-factor authentication method that requires optical recognition of the authentication cryptogram and entry of security data, ensuring the cardholder's identity and possession of the card for secure transactions.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If traditional security data (PAN number, CVV) are used for online transactions, then ease of operation is maintained, but security against phishing and visual hacking is insufficient
Solution Approach 1:
The patent uses optical copying (photographing) of the authentication cryptogram on the card front as a replacement for traditional security verification. The captured image is then processed through OCR to extract the cryptogram, enabling secure verification through a visual copy rather than direct data entry, thus maintaining ease of operation while significantly improving security against phishing attacks
Solution Approach 2:
The patent replaces the mechanical/data-entry-based security verification system with an optical recognition system. Instead of manually entering security codes, the system uses camera-based optical capture and OCR technology to read the authentication cryptogram, substituting physical interaction with optical field-based verification to enhance security
2Reliability
If 3D-Secure authentication with SMS code is implemented, then security is improved, but device complexity and loss of time increase
Solution Approach 1:
The patent extracts the security verification process from the complex multi-step 3D-Secure authentication flow. By isolating the authentication cryptogram as a separate visual element on the card front and using direct optical recognition, the system removes the need for SMS communication, additional authentication servers, and multiple verification steps, thereby reducing device complexity while maintaining security
Solution Approach 2:
The patent enables the authentication process to skip the intermediate SMS code generation and delivery steps inherent in 3D-Secure systems. The optical recognition system directly captures and verifies the cryptogram in a single action, rushing through the authentication process in one step rather than requiring sequential completion of multiple verification stages
3Reliability
If dynamic CVV cryptogram technology is adopted, then security is enhanced, but manufacturing cost increases
Solution Approach 1:
Instead of making the CVV code dynamic through complex embedded systems, batteries, and display components (as in dynamic CVV technology), the patent inverts the approach by making the authentication element static and visually prominent on the card front. The security is enhanced not by making the data change, but by making it optically recognizable and harder to steal, thereby avoiding the high manufacturing costs of dynamic systems
Data Source
AI summary
The payment card includes at least one authentication cryptogram on one side of the card. The authentication cryptogram being unique and belonging to the payment card, is affixed to the payment card and identifies the payment card by optical recognition. The optical recognition identifier is linked to a bank account to which the payment card is linked. The method for authenticating the payment card and the bearer of the payment card is performed for a secure operation relating to personal data of the bearer of the payment card. Finally, the invention relates to a use of the authentication method to make a remote payment using the payment card.


