Trusted Intermediary for Indirect Device Pairing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Consumers face risks when interacting with public devices, such as ATMs and vending machines, as they may be tampered with to steal sensitive information, and there is a need for a method to complete transactions without directly providing sensitive information to these devices, as well as controlling transactions remotely.

Innovation Solution

Indirectly pairing a trusted device with an untrusted device through a trusted intermediary, which receives a pairing request, searches for a matching identifier, and locks the pairing identifier, allowing the trusted device to complete transactions without communicating sensitive information to the untrusted device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If consumers directly provide sensitive information to public devices, then transactions can be completed, but security risks increase due to potential device tampering

Engineering Contradiction:
Improvetransaction securityVSAvoidinformation exposure risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a trusted intermediary device that acts as a mediator between the consumer's trusted device and the untrusted public device. The intermediary receives transaction requests from the trusted device, processes them, and communicates with the public device without exposing sensitive information to the public device. This resolves the contradiction by enabling transactions while maintaining security through the intermediary layer.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the transaction process into multiple components: the trusted device holds sensitive information, the intermediary processes transactions, and the public device only receives processed commands. This segmentation prevents direct exposure of sensitive information to the public device while still enabling transaction completion.

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If consumers use public devices for transactions, then convenience is improved, but vulnerability to fraud increases

Engineering Contradiction:
Improvetransaction accessibilityVSAvoidfraud risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The trusted intermediary serves as a security mediator that enables consumers to use public devices conveniently while filtering out fraud risks. The intermediary verifies transaction legitimacy and prevents malicious activities, allowing consumers to access public devices without directly exposing themselves to fraud.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system performs preliminary security checks and validations through the trusted intermediary before transactions reach the public device. This preliminary anti-action prevents fraudulent transactions from being executed, protecting consumers while maintaining ease of operation for legitimate transactions.

Inventive Principle:
Principle #9Preliminary anti-action

3Productivity

If sensitive information is transmitted to public devices, then transaction processing is enabled, but data security is compromised

Engineering Contradiction:
Improvetransaction processing capabilityVSAvoidsensitive information exposure
Core Design Contradiction:
ProductivityVSLoss of information

Solution Approach 1:

The trusted intermediary acts as an information gatekeeper that enables transaction processing without transmitting sensitive information to the public device. The intermediary receives processed commands from the trusted device and communicates only necessary non-sensitive information to the public device, maintaining productivity while preventing information loss.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system extracts sensitive information from the transaction data stream before it reaches the public device. The trusted intermediary processes transactions using stored sensitive information locally, extracting only the necessary transaction details without exposing the underlying sensitive data to the public device.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS10692076B2Device pairing via trusted intermediary
Publication Date: 2020.06.23 VISA INTERNATIONAL SERVICE ASSOCIATION
  • US10692076B2 patent drawing
  • US10692076B2 patent drawing
  • US10692076B2 patent drawing

AI summary

Embodiments are directed at systems, apparatuses, and methods for indirect device pairing through a trusted intermediary. One embodiment is directed to a method including receiving a pairing identifier associated with an untrusted device controller. The method further comprises extracting the pairing identifier from the pairing request, searching a pairing identifier database for a matching pairing identifier, determining an untrusted device controller associated with the matching pairing identifier, and sending the pairing request to the untrusted device controller. The untrusted device controller may identify the untrusted device, associate the pairing identifier with the trusted intermediary, and lock the pairing identifier. The method further comprises receiving a pairing response indicating that the untrusted device is paired with the computer. Accordingly, the trusted device is indirectly paired to the untrusted device and the trusted device is configured to complete a transaction with the untrusted device without communicating transaction information to the untrusted device.