Biometric transaction system and method

Information

  • Patent Grant
  • 9165323
  • Patent Number
    9,165,323
  • Date Filed
    Monday, December 10, 2012
    12 years ago
  • Date Issued
    Tuesday, October 20, 2015
    9 years ago
Abstract
A system for enabling identity verification of an individual in a transaction between the individual and an entity that utilizes a data processing system, an entity device, and an individual device. The individual registers with the data processing system biometric data taken from the individual and data pertaining to an individual device. The entity registers with the data processing system entity identifying information. Once the individual and entity agree on a transaction, the entity notifies the data processing system of the pending transaction and requests verification of the individual's identity. The individual communicates to the data processing system individual biometric data. The data processing system compares the biometric data from the individual with registered biometric data. The data processing system forwards a result of the comparison to the entity and upon a successful comparison, may forward any requested information regarding the individual to the entity.
Description
FIELD OF THE INVENTION

This invention relates to the field of biometric authentication. Specifically, this invention is directed towards a system and method for biometric authentication of individual biometric data for the purposes of verifying that individual's identity in a transaction using a wired or wireless communication system and portable or static devices such as a telephone (wired or wireless), a personal digital assistant (PDA), a computer (tablet, laptop, or desktop) or a similar device, wherein a biometric, such as a finger image or voice print, is used.


BACKGROUND OF THE INVENTION

There is an increasing need for individuals to be able to conveniently and securely verify their identities via biometric authentication for various types of transactions with entities.


Conventionally, in a biometric authentication system, individuals must present their biometric data to an entity via an entity device. The entity device then communicates with a data processing system to affect biometric data matching of the presented biometric data to registered biometric data to determine if individuals presenting the biometric data are who they claim to be. However, for some individuals, presenting biometric data via an entity device has proven a transaction deterrent, as they may question the security of entering such personal data into the entity device.


There are numerous problems with this conventional approach. First, the conventional approach is often uncomfortable for the individual to use, as he must enter a significant amount of personal data into an entity device, thereby trusting the entity with his highly personal data. Second, this approach requires that an entity invest in a biometric device that it may not use often and must incorporate somewhere near a point of transaction where it inevitably monopolizes valuable space. Third, this approach is inflexible in that it requires that the individual and entity be co-located in order to affect a transaction. Fourth, in the case of a financial, token-based transaction, those made without a card being physically present (as in the case of a telephone or Internet order) are charged a higher “discount rate” than transactions where the card is present. The discount rate is the amount that the credit card associations, issuing banks, acquiring banks, and third-party transaction processors collectively charge the entity (e.g., merchant) on each transaction, generally expressed as a percentage of the gross transaction amount. Discount rates of 3%-5% for card-not-present transactions are common.


As a result, there is a need for a system that solves these problems. Accordingly, it is an object of this invention to provide a new biometric authentication system and method for facilitating identity verification of individuals conducting transactions that allows an individual to utilize an individual device to enter sensitive biometric data into the system.


Biometric authentication systems are known in the art; examples include U.S. Pat. No. 5,613,012 to Hoffman et al., U.S. Pat. No. 5,838,812 to Pare, Jr. et al., U.S. Pat. No. 5,870,723 to Pare, Jr. et al., U.S. Pat. No. 6,230,148 to Pare, Jr. et al., U.S. Pat. No. 6,154,879 to Pare, Jr. et al., U.S. Pat. No. 7,613,659 to Hoffman, et al., U.S. Pat. No. 7,512,567 to Bemmel, et al., and U.S. Pat. No. 7,269,737 to Robinson, all of which are incorporated by reference.


In particular, it is an object of the invention that an individual be enabled to use an individual device to facilitate verification of his identity in a variety of transactions.


It is another object of the invention that the system and method are secure, eliminating the possibility of fraud via intercepting transmissions from the individual device.


It is another object of the invention that the system and method provide the flexibility of supporting multiple types of individual and entity devices.


It is still another object of the invention that it be easy to integrate the present invention with existing entity computer, information, and transaction systems.


SUMMARY OF THE INVENTION

This invention provides a method for biometric identity verification of an individual in a transaction between the individual and an entity using an electronic data processing system (DPS), an individual device, and an entity device. A transaction may comprise any number of communicative interactions between two parties, e.g., an entity and an individual, in which the identity of one or more of the parties must be verified. Examples of such transactions include financial transactions, age verifications, identity verifications, ticket redemptions, incentive transactions, peer-to-peer payments, peer-to-peer privilege transfers, physical access requests, virtual access requests, or the like. To utilize the system, an individual registers with the DPS biometric data and an individual device code (ID code) that is associated with an individual or individual device. The biometric data may be taken directly from the individual's person, from a token, from a data store, or a combination thereof. The ID code may be any code that can be used to identify or assist in identifying the individual or individual device. In a transaction, the individual and entity establish communications with each other. Such communications may be face-to-face or via communication of individual and entity devices or any other method. The individual device may communicate to the entity its associated ID code, which the entity may forward to the DPS. The individual and the DPS may then use the ID code to establish communications. The individual device may communicate the ID code to the DPS, which may utilize it to verify the ID code received from the entity and utilize it to determine registration biometric data to compare with biometric data taken directly from the individual's person to produce a successful or failed identification of the individual. Upon successful comparison of biometric data, the DPS may verify the individual's identity to the entity. The DPS may additionally forward individual data registered with the DPS to the entity upon a successful comparison of biometric data. Such data may include, for example, the individual's age, name, address, or any other data that the individual has registered with the DPS.


The foregoing and other objects, features, and advantages of the invention will become more readily apparent from the following detailed description of the invention which proceeds with reference to the accompanying drawings.





BRIEF DESCRIPTION OF THE DRAWINGS


FIG. 1 shows the overall collection of elements comprising the system.



FIG. 2 illustrates an example operation of the system.





DETAILED DESCRIPTION

Overall Architecture


As shown in FIG. 1, the invention comprises DPS 100, which is capable of communicating with individual device 104 and entity device 102. An individual may use DPS 100 to verify one or more aspects of his identity. Similarly, an entity may use DPS 100 to obtain verification of one or more aspects of the individual's identity. The individual has access to individual device 104. As described in greater detail below, individual device 104 may be a device that is at least capable of communicating with DPS 100 and accepting biometric data from the individual. Individual device 104 may additionally be capable of communicating directly with entity device 102. Biometric data may be any unique human characteristic of which a scan or image is taken directly from the person and may be, but is not limited to, a voice print, a fingerprint, a retinal image, an iris image, a facial image, an electronic representation of the above, such as a template, or the like.


DPS 100 may provide the ability to accept data pertaining to the individual (e.g., biometric and other data), to identify the individual from this data, to verify the identity of the individual to an entity, and to provide the entity with individual data upon request. It is understood that DPS 100 may be owned and/or operated by the entity, the individual, or a third party.


DPS 100 may be a single computer or a collection of computers and may serve a particular entity or a number of different entities. Although only a single instance of each component is depicted, this is for illustrative purposes only and is not to be construed as limiting. Furthermore, although each component is depicted and described herein as separate, this is not to be construed as limiting, and components may be combined per implementation. For example, components of DPS 100 may be combined (e.g., biometric data and additional data may be stored in the same location).


Communication Links


Communication links may exist or may be established between individual device 104 and entity device 102, individual device 104 and DPS 100, and the entity device 102 and DPS 100. A communication link may be a permanent connection (e.g., a leased line), a temporary switched-circuit connection (e.g., a dialup telephone call), a network (e.g., cellular networks, the Internet, Wi-Fi, GPS, NFC, WAN, LAN, WLAN, WPAN, etc.), a virtual connection (e.g., via packet switching), or any other suitable connection. Encryption may be employed on all communication links to protect sensitive data, as is standard in the industry.


Individual Device


Individual device 104 is any device that is capable of communicating with DPS 100 and accepting a biometric sample from the individual. Individual device 104 may be a portable device, such as a wireless telephone, a two-way pager, a personal digital assistant (e.g., a smartphone), an Internet-enabled phone, a portable computer (e.g., a laptop, a tablet computer) or the like. Individual device 104 may alternatively be a static device, such as a wired telephone, a desktop computer, a kiosk, or the like. Individual device 104 may additionally be capable of communicating directly with entity device 102. Different individual devices may be preferable in different situations. In one embodiment, an individual may use a device such as a wireless telephone to call an entity and conduct a transaction. In such a case, individual device 104 may be used as a biometric input device utilizing the individual's voice as a biometric and the wireless telephone's microphone as a biometric reader. Individual device 104 may also be equipped with a finger image scanner or other biometric sensor, such as a camera for capturing facial data. Other individual devices will be apparent to those of ordinary skill in the art and the aforementioned examples are not to be construed as limiting.


Individual device 104 may be associated with an ID code. This ID code may be unique to individual device 104 but is not required to be. Examples of ID codes may include a digital certificate, a Subscriber Identity Module (SIM) code, a code for enabling short-range transmissions (e.g., Near Field Communications), a telephone number, an electronic serial number (ESN), a mobile identification number (MIN), a hardware identification code, an encryption of a challenge message using a private key, or the like. An ID code may also be a code that is not directly associated with the device but instead may be unique to an individual. Examples of such ID codes could include social security numbers, driver's license numbers, telephone numbers, birth dates, PIN codes, etc. Such an ID code may enable the individual to utilize any individual device 104, whether it is his device or a shared device. Communication of the ID code may be accomplished via caller identification, hand-keying, voice recognition, automated transmission, or the like, and communication between the entity and individual may be established via a telephone call, three-way calling, induced three-way calling, packet switching, a data exchange, a face-to-face interaction, text messaging, the Internet, a local area network (LAN), a personal area network (PAN), a wireless local network (WLAN), a wide area network (WAN), a wireless personal network (WPAN, e.g., Bluetooth), Near Field Communication (NFC), or the like.


Entity Device


Entity device 102 is any device that is capable of communicating with DPS 100. Entity device 102 may be a stand-alone device or a network of devices utilized to function as entity device 102. Entity device 102 may communicate with DPS 100 directly or via one or more communication networks. The “entity” may be an individual or institution with which the individual is interacting. For example, an entity may be a retailer, an airline or other travel entity, a government agency, or the like, or an entity may be an individual employed by such an institution or acting independently. Entity device 102 may additionally be capable of communicating with individual device 104 and/or of receiving entity biometric data. As with individual device 104, entity device 102 may be a portable or static device. Additional forms of entity device 102 may include a point of transaction station, such as a point-of-sale terminal, ticket redemption counter, a kiosk, an identification check point, a vending machine, or the like. In other embodiments, the entity may be another individual utilizing a second individual device to conduct a peer-to-peer transaction. In this scenario, the second individual device interacts with DPS 100 in a manner similar to that of entity device 102. Entity device 102 may also be associated with an entity identification (EID) code, which may help DPS 100 more easily identify the entity. This EID may be unique to entity device 102 but is not required to be. Examples of EID codes may include a digital certificate, a Subscriber Identity Module (SIM) code, a code for enabling short-range transmissions (e.g., Near Field Communications), a telephone number, an electronic serial number (ESN), a mobile identification number (MIN), a hardware identification code, an encryption of a challenge message using a private key, or the like. Communication of the EID code may be accomplished via caller identification, hand-keying, voice recognition, automated transmission, or the like, and communication between the entity and individual may be established via a telephone call, three-way calling, induced three-way calling, packet switching, a data exchange, a face-to-face interaction, text messaging, the Internet, a local area network (LAN), a personal area network (PAN), a wireless local network (WLAN), a wide area network (WAN), a wireless personal network (WPAN, e.g., Bluetooth), Near Field Communication (NFC), or the like.


Data Processing System (DPS)


DPS 100 may include a data and/or call-processing system comprising one or more of execution module 106; biometric comparison mechanism 110; linking mechanism 118; and data stores capable of storing identifying data, such as biometric data 108, individual additional data 112, entity additional data 114, individual device data 116, and entity device data 120. The inclusion of differing data stores is for illustrative purposes and is not to be considered limiting. Such data stores could also be combined and/or further segmented, depending on the embodiment of DPS 100. DPS 100 may be a single computer or a collection of computers and may serve a particular entity or a number of different entities.


Biometric data store 108 may store biometric data of individuals and entities registered to use DPS 100. Device data stores 116 and 120 may store an ID code and an EID code, respectively, and other data associated with individual device 104 and entity device 102. Additional data stores 112 and 114 may store individual and entity data other than biometric data and device data, such as identity information, location information, age information, contact information, financial account information, or the like. Biometric comparison mechanism 110 may compare biometric data received from individual device 104 and/or entity device 102 with registered biometric data stored in biometric data store 108.


DPS 100 may utilize ID codes or any other individual- or entity-specific data to reference and locate registered data. For example, an individual's registered biometric data and additional data may be stored in association with an ID code received from individual device 104. Alternatively, individual and/or entity data may be associated with a system identifier (SI) code. An SI code may reference the entirety of the individual's or entity's data stored within DPS 100. The SI code may be included in a registry to enable DPS 100 to index biometric data, additional data, and device data, or the like to better facilitate locating such data throughout DPS 100.


Execution module 106 may serve as the computing mechanism to affect communication within DPS 100, with entity device 102, with individual device 104, and may assist in the enablement of the transaction between the individual and the entity. Linking mechanism 118 may assist DPS 100 in linking data received from entity device 102 and individual device 104 in order to facilitate responding to entity requests. While DPS 100 is depicted as comprising biometric comparison mechanism 110, the system may also be structured to utilize a biometric comparison mechanism that may be present in individual device 104. For example, DPS 100 may communicate registered biometric data to individual device 104 to enable a biometric comparison mechanism residing on individual device 104 to compare to the registered biometric data with captured biometric data. An example of such a system configuration is further discussed in U.S. Pat. No. 7,269,737 to Robinson, which is herein incorporated by reference.


DPS 100 may accept queries including biometric data and utilize this data to identify individuals. Once an individual is identified, DPS 100 may retrieve data associated with that individual necessary for completion of a transaction. Such data may be requested by the entity or the individual and may be used to approve or disapprove a requested transaction. Such information may include an electronic copy of an identification document (e.g., a passport, a driver's license, a visa, etc.), information associated with one or more individual financial accounts, medical records, a yes/no answer to the query of whether or not the individual is a certain age, an indication of the individual's identity, or the like.


An example of a system such as DPS 100 is illustrated in U.S. Pat. No. 5,613,012 to Hoffman, et al., which is hereby incorporated by reference.


Use of DPS 100


An individual and an entity may wish to utilize DPS 100 to facilitate a transaction in which the entity seeks verification of the individual's identity. The individual and the entity establish a communication link to negotiate the details of the transaction. The manner of establishing this link may be, for example, via face-to-face interaction or device-to-device interaction. For example, the individual may use individual device 104 to contact entity device 102.


Once the individual and the entity have negotiated the details of the transaction via their established communication link, they may utilize DPS 100 to verify the identity of the individual. For example, the individual may wish to verify his identify to the entity, and the parties may utilize DPS 100 to facilitate biometric identity verification of the individual in order to do so.



FIG. 2 shows an example method of verifying the identity of an individual via DPS 100. The method depicted may be implemented through the use of various embodiments of individual device 104.


At step 202, DPS 100 receives a communication link request, in which entity device 102 requests to establish a communication link with DPS 100. Once a communication link is established between DPS 100 and entity device 102, at step 204 execution module 106 receives a verification request, in which entity device 102 requests that DPS 100 verify the identity of an individual in a transaction. This verification request may include transaction data, such as an ID code that corresponds to an individual or an individual device 104, entity identifying information (e.g., an EID code associated with entity device 102, a name, an address, a location identifier, a telephone number, etc.), details of the transaction that the individual and entity have negotiated, or the like. In negotiating the details of the transaction, entity device 102 may have received the ID code from individual device 104 in various ways. For example, in a device-to-device embodiment, this may be accomplished via caller identification or another automated method. In a face-to-face embodiment, the individual may tell the entity his ID code, which the entity may then enter into entity device 102. Execution module 106 may receive the verification request from entity device 102 via an out-of-band channel (e.g., a separate network connection, via a virtual private network, etc.) or it may be passed in-band via the initiation of a connection.


Execution module 106 may forward the verification request to linking mechanism 118, where it may be assigned a reference code and held for use by DPS 100 to facilitate a request response to entity device 102. The reference code may provide DPS 100 with a way to track transaction data as it is utilized throughout DPS 100. The reference code may be a portion of the transaction data, such as the ID code, an entity identifier, or the like. Alternatively, execution module 106 may assign a system-generated reference code to the verification request. The reference code may be associated with any pertinent data as it is communicated internally or externally to aid with data processing.


In step 206, execution module 106 may utilize the received ID code to locate or to assist in locating registered biometric data stored in biometric data store 108. As mentioned, DPS 100 may be configured to associate registered biometric data with ID codes or with other identifiers. If registered biometric data is not associated directly with ID codes, the execution module may locate the registered biometric data via another identifier also referenced with the received ID code, such as an SI code.


In step 208, DPS 100 and individual device 104 may establish a communication link. This may be accomplished via execution module 106 utilizing the ID code to establish a connection with individual device 104. Alternatively, execution module 106 may search individual device data store 116 for associated device data it may use to contact individual device 104. In a further embodiment, if entity device 102 and individual device 104 have established a communication link, entity device 102 may transfer its communication link with DPS 100 to individual device 104 so that individual device 104 and DPS 100 may interact. And in yet an alternative embodiment, execution module 106 may await a communication link request from individual device 104. In an embodiment in which individual device 104 initiates communication with DPS 100, individual device 104 may identify itself to DPS 100 via presentment of its ID code. Execution module 106 may forward the ID code to linking mechanism 118 to retrieve necessary data to continue processing of the initial request received from entity device 102.


Once communication is established between DPS 100 and individual device 104, in step 210 execution module 106 may prompt individual device 104 to provide biometric data. Individual device 104 may, in turn, prompt the individual to input biometric data if he has not already done so. Depending on the configuration of individual device 104, biometric data may be a finger image, a voiceprint, or any other type of biometric.


In step 212, execution module 106 may receive biometric data from individual device 104 and forward the received biometric data to biometric comparison mechanism 110 where it may be compared to the registered biometric data that execution module 106 has identified as being associated with the ID code. The result of this comparison may be utilized to verify the individual's identity. In the event that the received biometric data does not sufficiently match the registered biometric data and the individual's identity cannot be verified, execution module 106 may prompt individual device 104 to obtain biometric data again. At step 218, if the individual's identity cannot be verified after repeated tries, execution module 106 may transfer the communication link to a human customer service assistant, who may use other means to identify the individual or suggest to the entity that the transaction be declined. If the biometric comparison is successful, execution module 106 may retrieve the associated transaction data held in linking mechanism 118. Execution module 106 may use this transaction data to either identify entity device 102, should it have retained its communication with DPS 100, or locate contact data for entity device 102 via use of entity device store 120, entity additional data store 114, and/or a combination of entity device store 120 and entity additional data store 114. Alternatively, the transaction data may include entity device 102 contact data. Once entity device 102 is identified and/or its contact data located, at step 216, execution module 106 may notify the entity that the individual's identity is verified. This notifying may include utilizing the located contact data to establish communications with entity device 102 again to do so. Alternatively, module 106 may retrieve and forward any additional individual data necessary for satisfying the verification request from individual additional data store 112, according to the details of the received transaction data. Such information may include a yes/no answer to the query of whether or not the individual is a certain age, an indication of the individual's identity, account information pertaining to a credit card or other financial account data, a copy of an individual identification document, or the like. Upon communication of identity verification, the communication link between DPS 100 and entity device 102 may be maintained in order for the entity to query DPS 100 via entity device 102. Such an embodiment may allow an entity to obtain further data about the individual that may have not be requested in the initial transaction data.


In an additional embodiment, at step 210, should individual device 104 be equipped to effect biometric comparisons, execution module 106 may forward the registered biometric data associated with individual device 104 with a prompt for individual device 104 to provide the result of a comparison of the registered biometric data to individual biometric data retrieved via individual device 104. Execution module 106 may receive the result of the individual device biometric comparison at step 212 and proceed to step 214 as illustrated.


In an alternate embodiment of FIG. 2, individual device 104 may additionally send biometric data to entity device 106 via the communication link initially established for negotiating the details of the transaction or via a subsequent communication link. In this embodiment, DPS 100 may receive biometric data of the individual via the verification request of step 204 (e.g., as included as transaction data) or via a subsequent communication link between DPS 100 and entity device 106. Such a scenario may enable DPS 100 to provide verification of the individual's identity directly to the entity via entity device 106 without the need for establishing a separate communication link with individual device 104.


In a further embodiment, individual device 104 may receive an entity identifier and details of the negotiated transaction via the initially established communication link for negotiating the details of the transaction, or via a subsequent communication link between the individual device 104 and the entity device 106. In such a scenario, steps 202 through 206 of FIG. 2 may be eliminated. In addition, DPS 100 may communicate with individual device 104 at step 216 and/or 218, and individual device 104 may communicate with entity device 106 to either confirm or deny identity verification.


In preferred embodiments, encryption and cryptographic authentication mechanisms may be used to maintain the security, integrity, and non-repudiation of information communicated between individual device 104, entity device 106, and DPS 100. Such encryption may include symmetric or “secret key” cryptosystems or public key cryptosystems, and such authentication mechanisms may include cryptographic message authentication codes, as are known in the industry.


From the foregoing it will be appreciated how the objects of the invention are met. As can be seen from the above, the invention is markedly advantageous over existing systems in numerous ways:


First, the invention is convenient for the individual, in that DPS 100 may handle all personal information, eliminating the need to recite or otherwise enter personal information into a static or portable device.


Second, the use of biometrics and encryption may provide security, eliminating the possibility of fraud via intercepting transmissions from the static or portable device.


Third, the system may support the use of multiple types of individual data, providing flexibility for the individual.


Fourth, by using ordinary telephone connections, existing wireless connections, Internet connections, or the like, the invention may easily integrate with existing computer, information, and payment systems.


Although the invention has been described with respect to particular transactions, it will be appreciated that various modifications of the system and method are possible without departing from the invention.

Claims
  • 1. A data processing system, the data processing system comprising: an entity device that establishes a communication link;wherein the entity device receives a request to verify the identity of an individual, wherein the request includes an individual device code that establishes a communication link with an individual device capable of biometric input;wherein the individual device is identified via the individual device code;wherein a communication link is established with the identified individual device wherein the individual is identified via biometric data;wherein the biometric data is received from the individual via the individual device;wherein individual registered biometric data associated with the individual device code is determined;wherein the received biometric data is compared with the determined registered biometric data to produce a successful or failed comparison;wherein via the established communication link with the entity device, the entity device is notified of a result of the comparison, wherein the result verifies or denies the identity of the individual; andwherein the individual device code is one or more of a digital certificate, a Subscriber Identity Module code, a code for enabling short-range transmissions, a telephone number, an Electronic Serial Number, a mobile identification number, a hardware identification code, and an encryption of a challenge message using a private key.
  • 2. The data processing system of claim 1, wherein the individual has additionally registered with the data processing center one or more of a name, an address, and an age.
  • 3. The data processing system of claim 1, wherein the individual device is one or more of a portable device and a static device.
  • 4. The data processing system of claim 1, wherein the individual device code is communicated via one or more of caller identification, hand-keying, voice recognition, and automated transmission.
  • 5. The data processing system of claim 1, wherein the communications are established via one or more of a telephone call, three-way calling, induced three-way calling, packet switching, a data exchange, a face-to-face interaction, text messaging, the Internet, a local area network (LAN), a personal area network, a wireless local network (WLAN), a wide area network (WAN), a wireless personal network (WPAN), and Near Field Communication (NFC).
  • 6. The data processing system of claim 1, wherein the communication link is established with the individual device comprises one or more of the data processing system contacts the individual device or the individual device contacts the data processing system.
  • 7. The data processing system of claim 1, further comprising a request received from the entity device to return individual data to the entity device after a successful identification of the individual.
  • 8. The data processing system of claim 7, wherein the entity device utilizes the requested individual data to conduct a financial transaction, perform an age verification, perform an identity verification, grant the individual physical access to a restricted area, grant the individual virtual access to a restricted area, conduct a ticket redemption, conduct an incentive transaction, or authorize a peer-to-peer transfer privilege.
  • 9. The data processing system of claim 1, wherein the entity device is used by a second individual.
  • 10. The data processing system of claim 9, wherein the individual and the second individual utilize the data processing system to conduct a peer-to-peer transaction.
  • 11. A data processing system, the data processing system comprising: an entity device;a communication link established with the entity device;wherein individual data stored in association with ID code is located, the individual data at least comprising biometric data and the ID code received via the established communication link with the entity device to verify the identity of the an individual;wherein the ID code to facilitate communications with an individual device is utilized;wherein an individual is prompted to present biometric data via the individual device;wherein the presented biometric data is received; andwherein, via the established communication link with the entity device, the identity of the individual to the entity device based on a successful match of received individual data to stored individual data is verified; andwherein the ID code is one or more of a digital certificate, a Subscriber Identity Module code, a code for enabling short-range transmissions, a telephone number, an Electronic Serial Number, a mobile identification number, a hardware identification code, and an encryption of a challenge message using a private key.
  • 12. The data processing system, of claim 11, wherein the entity device is used by another individual.
  • 13. The data processing system, of claim 11, wherein the individual device is one or more of a portable device and a static device.
  • 14. A system comprising: one or more data stores that store data that one or more of an entity and an individual registers with a data processing system, the data at least comprising entity identifier data and entity device data and individual identifier data and individual device data, the individual identifier data including biometric data;a biometric comparison mechanism that compares biometric data;a linking mechanism that holds data that pertains to one or more of an entity request and an individual request; andan execution module that communicates with one or more of an entity device and an individual device and retrieves data registered with the data processing system based upon a prompt provided via one or more of the entity device and the individual device.
  • 15. The system of claim 14, wherein one or more of the entity device and the individual device communicates with the data processing system via a wireless communication system.
  • 16. The system of claim 14, wherein the biometric data comprises a voice print, a fingerprint, a retinal image, an iris image, and a facial image.
CROSS-REFERENCE TO RELATED APPLICATION

This application is a continuation-in-part of co-pending U.S. application Ser. No. 13/587,708, filed Aug. 16, 2012, which is a continuation of U.S. application Ser. No. 12/423,628, filed Apr. 4, 2009, now U.S. Pat. No. 7,970,678, which is a division of U.S. application Ser. No. 09/871,241, filed May 30, 2001, now U.S. Pat. No. 7,565,329, which claims the benefit of U.S. provisional application Ser. No. 60/208,680, filed May 31, 2000, herein incorporated by reference.

US Referenced Citations (232)
Number Name Date Kind
3639905 Yaida et al. Feb 1972 A
3876864 Clark et al. Apr 1975 A
3943335 Kinker et al. Mar 1976 A
3975711 McMahon Aug 1976 A
4048618 Hendry Sep 1977 A
4151512 Riganati et al. Apr 1979 A
4208651 McMahon Jun 1980 A
4213038 Silverman et al. Jul 1980 A
4227805 Schiller Oct 1980 A
4253086 Szwarcbier Feb 1981 A
4321672 Braun et al. Mar 1982 A
4322163 Schiller Mar 1982 A
4353056 Tsikos Oct 1982 A
4358677 Ruell et al. Nov 1982 A
4390968 Hennessy et al. Jun 1983 A
4429413 Edwards Jan 1984 A
4484328 Schlafly Nov 1984 A
4537484 Fowler et al. Aug 1985 A
4544267 Schiller Oct 1985 A
4582985 Lofberg Apr 1986 A
4618988 Schiller Oct 1986 A
4649563 Riskin Mar 1987 A
4675815 Kuroki et al. Jun 1987 A
4696046 Schiller Sep 1987 A
4699149 Rice Oct 1987 A
4720869 Wadia Jan 1988 A
4728186 Eguchi et al. Mar 1988 A
4734858 Schlafly Mar 1988 A
4747050 Brachtl et al. May 1988 A
4752966 Schiller Jun 1988 A
D298536 Brefka Nov 1988 S
4784484 Jensen Nov 1988 A
4790564 Larcher et al. Dec 1988 A
4799156 Shavit et al. Jan 1989 A
4805223 Denyer Feb 1989 A
4821118 Lafreniere Apr 1989 A
4837422 Dethloff et al. Jun 1989 A
4845636 Walker Jul 1989 A
4868376 Lessin et al. Sep 1989 A
4926480 Chaum May 1990 A
4946276 Chilcott Aug 1990 A
4947028 Gorog Aug 1990 A
4947443 Costello Aug 1990 A
4961142 Elliott et al. Oct 1990 A
4993068 Piosenka et al. Feb 1991 A
4995086 Lilley et al. Feb 1991 A
4998279 Weiss Mar 1991 A
5025372 Burton Jun 1991 A
5036461 Elliott et al. Jul 1991 A
5054089 Uchida et al. Oct 1991 A
5054090 Knight et al. Oct 1991 A
5056019 Schultz et al. Oct 1991 A
5073950 Colbert et al. Dec 1991 A
5077803 Kato et al. Dec 1991 A
5088817 Igaki et al. Feb 1992 A
5095194 Barbanell Mar 1992 A
5103486 Grippi Apr 1992 A
5105467 Kim et al. Apr 1992 A
5109427 Yang Apr 1992 A
5109428 Igaki et al. Apr 1992 A
5144680 Kobayashi et al. Sep 1992 A
5146102 Higuchi et al. Sep 1992 A
5161204 Hutcheson et al. Nov 1992 A
5168520 Weiss Dec 1992 A
5180901 Hiramatsu Jan 1993 A
5191611 Lang Mar 1993 A
5210588 Lee May 1993 A
5210797 Usui et al. May 1993 A
5222152 Fishbine et al. Jun 1993 A
5224164 Eisner Jun 1993 A
5224173 Kuhns et al. Jun 1993 A
5229764 Matchett et al. Jul 1993 A
5230025 Fishbine et al. Jul 1993 A
5239583 Parrillo Aug 1993 A
5241606 Horie Aug 1993 A
5251259 Mosley Oct 1993 A
D340919 Lee Nov 1993 S
5265162 Bush et al. Nov 1993 A
5267324 Kumagai Nov 1993 A
5274695 Green Dec 1993 A
5276314 Martino et al. Jan 1994 A
5280527 Gullman et al. Jan 1994 A
5280627 Flaherty et al. Jan 1994 A
5321242 Heath, Jr. Jun 1994 A
5321765 Costello Jun 1994 A
5325442 Knapp Jun 1994 A
5329589 Fraser et al. Jul 1994 A
5335288 Faulkner Aug 1994 A
5343529 Goldfine et al. Aug 1994 A
5351303 Willmore Sep 1994 A
5354974 Eisenberg Oct 1994 A
5359669 Shanley Oct 1994 A
5371794 Diffie et al. Dec 1994 A
5371797 Bocinsly, Jr. Dec 1994 A
5383113 Kight et al. Jan 1995 A
5386104 Sime Jan 1995 A
5400662 Tamori Mar 1995 A
5412738 Brunelli et al. May 1995 A
5416573 Sartor, Jr. May 1995 A
5429006 Tamori Jul 1995 A
5457747 Drexler Oct 1995 A
5465290 Hampton et al. Nov 1995 A
5465303 Levison et al. Nov 1995 A
5466919 Havakimian Nov 1995 A
5469506 Berson et al. Nov 1995 A
5484988 Hills et al. Jan 1996 A
5485510 Colbert Jan 1996 A
D367044 Arakaki Feb 1996 S
5493621 Matsumura Feb 1996 A
5499288 Hunt et al. Mar 1996 A
5513272 Bogosian, Jr. Apr 1996 A
5517558 Schalk May 1996 A
5533123 Force et al. Jul 1996 A
5534855 Shockley et al. Jul 1996 A
5546471 Merjanian Aug 1996 A
5546523 Gatto Aug 1996 A
5561718 Trew et al. Oct 1996 A
5572597 Chang et al. Nov 1996 A
5577120 Penzias Nov 1996 A
5578808 Taylor Nov 1996 A
5594806 Colbert Jan 1997 A
5598474 Johnson Jan 1997 A
5602933 Blackwell et al. Feb 1997 A
5604802 Holloway Feb 1997 A
5613012 Hoffman et al. Mar 1997 A
5615277 Hoffman Mar 1997 A
5621812 Deaton et al. Apr 1997 A
5635723 Fujieda et al. Jun 1997 A
5636038 Lynt et al. Jun 1997 A
5636282 Holmquist et al. Jun 1997 A
5647364 Schneider et al. Jul 1997 A
5650217 Skrivanek et al. Jul 1997 A
5655116 Kirk et al. Aug 1997 A
5677989 Rabin et al. Oct 1997 A
5719950 Osten et al. Feb 1998 A
5745555 Mark Apr 1998 A
5748780 Stolfo May 1998 A
5757917 Rose et al. May 1998 A
5764789 Pare, Jr. et al. Jun 1998 A
5768134 Swaelens et al. Jun 1998 A
5770849 Novis et al. Jun 1998 A
5787187 Bouchard et al. Jul 1998 A
5790668 Tomko Aug 1998 A
5794207 Walker et al. Aug 1998 A
5796857 Hara Aug 1998 A
5799156 Hogan et al. Aug 1998 A
D397682 Yotukura Sep 1998 S
5802199 Pare, Jr. et al. Sep 1998 A
5805719 Pare, Jr. et al. Sep 1998 A
5805802 Marx Sep 1998 A
D400191 Butts et al. Oct 1998 S
5822737 Ogram Oct 1998 A
5825907 Russo Oct 1998 A
5825924 Kobayashi Oct 1998 A
5826241 Stein et al. Oct 1998 A
5826245 Sandberg-Diment Oct 1998 A
5832464 Houvener et al. Nov 1998 A
5838812 Pare, Jr. et al. Nov 1998 A
5844287 Hassan et al. Dec 1998 A
5845005 Setlak et al. Dec 1998 A
5848400 Chang Dec 1998 A
5850442 Muftic Dec 1998 A
5870723 Pare, Jr. et al. Feb 1999 A
5876926 Beecham Mar 1999 A
5892824 Beatson et al. Apr 1999 A
5892838 Brady Apr 1999 A
5910988 Ballard Jun 1999 A
5926555 Ort et al. Jul 1999 A
5930804 Yu et al. Jul 1999 A
5933515 Pu Aug 1999 A
5935071 Schneider et al. Aug 1999 A
5943235 Earl et al. Aug 1999 A
5943423 Muftic Aug 1999 A
5956700 Landry Sep 1999 A
5982914 Lee et al. Nov 1999 A
5986746 Metz et al. Nov 1999 A
5991372 D'Ingianni et al. Nov 1999 A
6011858 Stock et al. Jan 2000 A
6012039 Hoffman et al. Jan 2000 A
6016476 Maes et al. Jan 2000 A
6023688 Ramachandran et al. Feb 2000 A
6028950 Merjanian Feb 2000 A
6029195 Herz Feb 2000 A
6040783 Houvener et al. Mar 2000 A
6041309 Laor Mar 2000 A
6045039 Stinson et al. Apr 2000 A
6052675 Checchio Apr 2000 A
6064751 Smithies et al. May 2000 A
6070141 Houvener et al. May 2000 A
6072894 Payne Jun 2000 A
6073840 Marion Jun 2000 A
6084967 Kennedy et al. Jul 2000 A
6105010 Musgrave Aug 2000 A
6111977 Scott et al. Aug 2000 A
6119096 Mann et al. Sep 2000 A
6154727 Karp et al. Nov 2000 A
6154879 Pare, Jr. et al. Nov 2000 A
6182076 Yu et al. Jan 2001 B1
6192142 Pare, Jr. et al. Feb 2001 B1
6202151 Musgrave et al. Mar 2001 B1
6208746 Musgrave Mar 2001 B1
6219439 Burger Apr 2001 B1
6225890 Murphy May 2001 B1
6230148 Pare, Jr. et al. May 2001 B1
6233565 Lewis et al. May 2001 B1
6233618 Shannon May 2001 B1
6256737 Bianco et al. Jul 2001 B1
6260024 Shkedy Jul 2001 B1
6268788 Gray Jul 2001 B1
6269348 Pare, Jr. et al. Jul 2001 B1
6275944 Kao et al. Aug 2001 B1
6310966 Dulude et al. Oct 2001 B1
6311272 Gressel Oct 2001 B1
6317834 Gennaro et al. Nov 2001 B1
6327578 Linehan Dec 2001 B1
6366682 Hoffman Apr 2002 B1
6377228 Jenkin et al. Apr 2002 B1
6397198 Hoffman et al. May 2002 B1
6411728 Lee et al. Jun 2002 B1
6496107 Himmelstein Dec 2002 B1
6522772 Morrison et al. Feb 2003 B1
6928546 Nanavati et al. Aug 2005 B1
7133792 Murakami et al. Nov 2006 B2
7152787 Cheng Dec 2006 B2
20010000045 Yu et al. Mar 2001 A1
20010000535 Lapsley et al. Apr 2001 A1
20010011247 O'Flaherty et al. Aug 2001 A1
20010033661 Prokoski Oct 2001 A1
20010034837 Kausik et al. Oct 2001 A1
20010044775 Saito et al. Nov 2001 A1
20010051924 Uberti Dec 2001 A1
20030061172 Robinson Mar 2003 A1
Foreign Referenced Citations (29)
Number Date Country
0581421 Feb 1994 EP
0598469 May 1994 EP
0651357 May 1995 EP
0823701 Feb 1998 EP
0652540 Sep 2000 EP
57-212851 Dec 1982 JP
59-368860 Feb 1984 JP
61-187838 Aug 1986 JP
63-003369 Jan 1988 JP
63-120385 May 1988 JP
63-261492 Oct 1988 JP
03-189756 Aug 1991 JP
03-288954 Dec 1991 JP
04-322382 Nov 1992 JP
04-324583 Nov 1992 JP
05-062057 Mar 1993 JP
05-250524 Sep 1993 JP
06-149980 May 1994 JP
06-176135 Jun 1994 JP
11-003382 Jan 1999 JP
11-039540 Feb 1999 JP
11-154260 Jun 1999 JP
WO 9410659 May 1994 WO
WO 9513591 May 1995 WO
WO 9809227 Mar 1998 WO
WO 9823062 May 1998 WO
WO 9825227 Jun 1998 WO
WO 9850875 Nov 1998 WO
WO 9928847 Jun 1999 WO
Non-Patent Literature Citations (23)
Entry
Anderson, Teresa, et al., “Security Works,” Security Management, v. 27, No. 11, Nov. 1993, pp. 17-19.
Anonymous, “A Credit Union Points a Finger at Biometrics,” Bank Network News, vol. 15, No. 16, Jan. 13, 1997, p. 2.
Anonymous, “Is it Time for Biometrics?”, Banking Automation Bulletin for Europe, London, Sep. 1992, Issue 115, (ProQuest document ID 7415352), 1 page.
“Biometric ID Cards,” store from Totse.com, Feb. 1996, 10 pages.
“Biometric Payment Firm Pay by Touch Secures $10 Million Funding,” Finextra.com, Oct. 2003, 3 pages.
“Biometrics Comparison Chart,” ncsc.dni.us, 2002, 2 pages.
Cavoukian, Ann, “Consumer Biometric Applications: A Discussion Paper,” Information and Privacy Commissioner, Ontario, Canada, Sep. 1999, 65 pages.
Cavoukian, Ann, “Go Beyond Security-Build in Privacy: One Does Not Equal the Other,” CardTec/SecurTech 96 Conference, Atlanta, GA, May 14-16, 1996, 7 pages.
Hall, Joseph, “Scanning Lets Fingerprints do Talking Scrambled Image Ensures Privacy Developer Says,” Toronto Star, May 15, 1997, p. A6.
Holmes, James P., et al., “A Performance Evaluation of Biometric Identification Devices,” Sandia National Laboratories, Jun. 1991, 27 pages.
Kolor, Joanna, “Biometric Technology Goes Live,” Bank Network News, May 1, 1996, 7 pages.
Lange, et al., “Digital Identification: Its Now at our Fingertips,” Electronic Engineering Times, No. 946, Mar. 24, 1997, p. 142.
“Pay by Touch Announces First UK Customer,” Pay by Touch Press Release, May 11, 2004, 2 pages.
Radcliff, Deborah, “When Data Warehouse Become Open Houses,” Software Magazine, vol. 16, No. 11, Nov. 26, 1996, 2pages.
“Recently Granted Patents in the USA,” Transponder News, Sep. 1998, 5 pages.
Rechtin, Mark, “Fingerprint Technology Makes for Best ID System,” Orange County Business Journal, vol. 22, Issue 51, Section 1, May 14, 1990, 3 pages (ProQuest Document ID 6020297).
Scally, Robert, “CompUSA Tests Fingerprinting to Help Secure Transactions,” Discount Store News, vol. 36, No. 10, May 19, 1997, 2 page.
Stosz, Jonathan D., et al., “Automated System for Fingerprint Authentication Using Pores and Ridge Structure,” Proceedings of the International Society for Optical Engineering, vol. 2277, Jul. 28-29, 1994, pp. 210-223.
“Supermarkets and Shopper Registration Guide,” Nocards.org, printed on Dec. 26, 2007, 19 pages.
“TCP Protocol Overview,” printed on Dec. 26, 2007, 3 pages.
“Veridicom Showcases New Customers and Applications at COMDEX,” Veridicom Press Release, Nov. 16, 1998, 3 pages.
“What Are Food Stamps?”, Virginia Department of Social Services, Nov. 10, 2005, 1 page.
“Why do you call them “registration and monitoring” programs?”, Frequently Asked Questions, Nocards.org, printed on Feb. 26, 2007, 1 page.
Provisional Applications (1)
Number Date Country
60208680 May 2000 US
Divisions (1)
Number Date Country
Parent 09871241 May 2001 US
Child 12423628 US
Continuations (1)
Number Date Country
Parent 12423628 Apr 2009 US
Child 13587708 US
Continuation in Parts (1)
Number Date Country
Parent 13587708 Aug 2012 US
Child 13709418 US