Trusted Intermediary for Indirect Device Pairing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Consumers face risks when interacting with public devices, such as ATMs and vending machines, as they may be tampered with to steal sensitive information, and there is a need for a method to complete transactions without directly providing sensitive information to these devices, as well as controlling transactions remotely.
Innovation Solution
Indirectly pairing a trusted device with an untrusted device through a trusted intermediary, which receives a pairing request, searches for a matching identifier, and locks the pairing identifier, allowing the trusted device to complete transactions without communicating sensitive information to the untrusted device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If consumers directly provide sensitive information to public devices, then transactions can be completed, but security risks increase due to potential device tampering
Solution Approach 1:
The patent introduces a trusted intermediary device that acts as a mediator between the consumer's trusted device and the untrusted public device. The intermediary receives transaction requests from the trusted device, processes them, and communicates with the public device without exposing sensitive information to the public device. This resolves the contradiction by enabling transactions while maintaining security through the intermediary layer.
Solution Approach 2:
The patent segments the transaction process into multiple components: the trusted device holds sensitive information, the intermediary processes transactions, and the public device only receives processed commands. This segmentation prevents direct exposure of sensitive information to the public device while still enabling transaction completion.
2Ease of operation
If consumers use public devices for transactions, then convenience is improved, but vulnerability to fraud increases
Solution Approach 1:
The trusted intermediary serves as a security mediator that enables consumers to use public devices conveniently while filtering out fraud risks. The intermediary verifies transaction legitimacy and prevents malicious activities, allowing consumers to access public devices without directly exposing themselves to fraud.
Solution Approach 2:
The system performs preliminary security checks and validations through the trusted intermediary before transactions reach the public device. This preliminary anti-action prevents fraudulent transactions from being executed, protecting consumers while maintaining ease of operation for legitimate transactions.
3Productivity
If sensitive information is transmitted to public devices, then transaction processing is enabled, but data security is compromised
Solution Approach 1:
The trusted intermediary acts as an information gatekeeper that enables transaction processing without transmitting sensitive information to the public device. The intermediary receives processed commands from the trusted device and communicates only necessary non-sensitive information to the public device, maintaining productivity while preventing information loss.
Solution Approach 2:
The system extracts sensitive information from the transaction data stream before it reaches the public device. The trusted intermediary processes transactions using stored sensitive information locally, extracting only the necessary transaction details without exposing the underlying sensitive data to the public device.
Data Source
AI summary
Embodiments are directed at systems, apparatuses, and methods for indirect device pairing through a trusted intermediary. One embodiment is directed to a method including receiving a pairing identifier associated with an untrusted device controller. The method further comprises extracting the pairing identifier from the pairing request, searching a pairing identifier database for a matching pairing identifier, determining an untrusted device controller associated with the matching pairing identifier, and sending the pairing request to the untrusted device controller. The untrusted device controller may identify the untrusted device, associate the pairing identifier with the trusted intermediary, and lock the pairing identifier. The method further comprises receiving a pairing response indicating that the untrusted device is paired with the computer. Accordingly, the trusted device is indirectly paired to the untrusted device and the trusted device is configured to complete a transaction with the untrusted device without communicating transaction information to the untrusted device.


