Online Payment Method Using Segmented Card Data Binding

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing online payment methods are vulnerable to security breaches, as malicious applications can intercept and misuse user bank card information, compromising user data and financial security.

Innovation Solution

The proposed method involves generating a first binding request with partial user information and an associated identifier, which is used to establish a payment binding relationship, ensuring that complete user information is divided and only partial information is input for payment verification, thereby preventing unauthorized access to sensitive data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If user complete bank card information is collected and transmitted for online payment, then payment functionality is achieved, but user information security deteriorates due to interception risks

Engineering Contradiction:
Improveuser information securityVSAvoidpayment operation simplicity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent segments the bank card information into multiple parts (first card information, second card information, third card information) that are stored separately in the terminal device. Each part alone is insufficient for unauthorized transactions, as the complete card number cannot be reconstructed from any single segment. This segmentation resolves the contradiction by maintaining security through distributed storage while enabling complete payment functionality when all segments are properly combined during authorized transactions.

Inventive Principle:
Principle #1Segmentation

2Reliability

If payment proxy server stores complete user bank card information, then payment processing is enabled, but security against third-party interception deteriorates

Engineering Contradiction:
Improveinformation securityVSAvoidpayment processing efficiency
Core Design Contradiction:
ReliabilityVSProductivity

Solution Approach 1:

The patent implements segmentation by dividing bank card information into multiple stored parts in the terminal device rather than transmitting or storing the complete card number centrally. The payment proxy server receives and processes these segmented parts along with verification codes, enabling payment processing while preventing reconstruction of complete card information by any single party including the server itself, thus resolving the security-efficiency contradiction.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a verification code as an intermediary element that mediates between the segmented card information and the payment processing. The verification code is generated based on the segmented card information and user authentication, serving as a mediator that enables payment processing without requiring transmission or storage of complete sensitive card data, thereby resolving the contradiction between payment efficiency and information security.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If malicious application intercepts complete bank card information, then unauthorized payment can be performed, but capital security deteriorates

Engineering Contradiction:
Improvecapital securityVSAvoidinformation management complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies segmentation by storing bank card information in multiple separate parts (first, second, and third card information) within the terminal device. Even if a malicious application manages to intercept one or more segments, it cannot reconstruct the complete card number or perform unauthorized transactions without all segments and the proper verification code. This segmentation strategy resolves the contradiction by enhancing capital security through distributed information storage while managing complexity through automated combination processes during authorized payments.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP3079326B1Network payment method, apparatus and system
Publication Date: 2020.10.28 HUAWEI TECH CO LTD
  • EP3079326B1 patent drawingFigure 1
  • EP3079326B1 patent drawingFigure 2
  • EP3079326B1 patent drawingFigure 3

AI summary

Embodiments of the present invention provide an online payment method, system, and an apparatus, which are applied to the field of information security, and can improve security of user information during online payment, and ensure capital security of a user. The online payment method is applied to a terminal device, and includes: generating a first binding request, where the first binding request includes first user information, an application identifier, and a terminal device identifier; sending the first binding request to a payment proxy server; receiving an associated identifier sent by the payment proxy server; generating a second binding request according to the associated identifier, where the second binding request includes second user information and the associated identifier, and the second user information and the first user information are used for forming complete user information; and sending the second binding request to the payment proxy server. Embodiments of the present invention provide an online payment method, system, and an apparatus, which are used for paying network fees.