Virtual Payment Terminal Secure Memory Isolation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing payment systems face challenges in providing secure 'card present' transactions, especially in online environments, due to the need for device-specific solutions, ease of device compromise, and incompatibility with modern data transmission protocols, leading to scalability and security issues.
Innovation Solution
Implementing a virtual payment terminal within a user's communication terminal, utilizing a secure memory space for transaction processing, which includes loading a virtual payment terminal and virtual payment card, and using secure communication protocols to ensure secure transactions without the need for additional hardware.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a device-specific payment terminal is implemented for each terminal model, then payment security is improved, but device complexity and manufacturing cost increase significantly
Solution Approach 1:
The patent implements a universal payment terminal application that can run on multiple communication terminal models without requiring device-specific hardware. The virtual payment terminal is designed to be model-agnostic, allowing the same software solution to function across different terminal types, thereby reducing manufacturing complexity while maintaining payment security through standardized protocols and secure elements.
Solution Approach 2:
The patent uses virtualization to create a software-based payment terminal that replicates the functionality of physical payment terminals. By copying the essential payment processing capabilities into a virtual environment, the system eliminates the need for specialized hardware for each terminal model, reducing device complexity while preserving security through secure element emulation and cryptographic protocols.
2Reliability
If additional payment devices are connected to communication terminals, then payment security is improved, but ease of operation and scalability deteriorate
Solution Approach 1:
The patent merges the payment terminal functionality directly into the communication terminal's existing secure elements and processing capabilities. Instead of requiring separate external devices, the payment terminal is integrated as a virtual application within the communication terminal, combining multiple functions into a single unified system that is easier to operate and scale.
Solution Approach 2:
The communication terminal's secure elements and processing units are utilized directly by the payment terminal application, eliminating the need for external authentication devices. The terminal itself provides the security services through its built-in secure elements, making the system easier to operate while maintaining security standards.
3Reliability
If traditional payment terminals are used, then card present transaction security is achieved, but adaptability to modern communication protocols and scalability are limited
Solution Approach 1:
The patent replaces traditional hardware-based payment terminals with a software-based virtual payment terminal that runs on communication terminals. This substitution allows the system to leverage modern communication protocols and web technologies while maintaining security through virtualized secure elements, thereby improving adaptability to contemporary communication standards and enhancing scalability.
Data Source
Figure 1
Figure 2
Figure 3~4
AI summary
The invention relates to a method for processing transaction data representing a payment made by a user from a communication terminal (TC). According to the invention, such a method comprises: a step of loading (10) a virtual payment terminal (vPos) in a first secure memory space (SecSpace1) of the communication terminal (TC), said virtual terminal (vPos) being provided in the form of a software module stored in a secure storage space of the communication terminal (TC); a step of loading (20), in a second secure space (SecSpace2), at least one virtual payment card (vCB); a step of processing (30), by the virtual payment terminal (vPos), of a payment transaction by means of said at least one virtual payment card (vCB).