Near-field communication-based secure mobile payment service

  • Authors:
  • Kiran S. Kadambi;Jun Li;Alan H. Karp

  • Affiliations:
  • Hewlett-Packard Company, Cupertino, CA;Hewlett-Packard Laboratories, Palo Alto, CA;Hewlett-Packard Laboratories, Palo Alto, CA

  • Venue:
  • Proceedings of the 11th International Conference on Electronic Commerce
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

The loss of customer account information makes headlines all too often. The Payment Card Industry (PCI) Data Security Standard (DSS) has generated resistance from merchants because of its cost and complexity. Unfortunately, innovating in the Point of Sale (PoS) space is hard because the protocols have been standardized, tightly constraining new ideas. Using mobile phones as payment devices opens up some opportunities, but any solution must minimize changes in the back-end processing. This paper describes a Near Field Communication (NFC) based mobile phone payment solution in a service-oriented environment, which provides the needed data protection without requiring costly changes to the payment processing infrastructure. In the payment transaction path, a personal mobile phone is viewed as a single, user-trusted touch point. Compared to other solutions available, our approach better protects user credentials, provides better user control over the transaction, and supports both proximity and remote transactions. The prototype has been integrated with an instore kiosk application and a HP multi-channel banking platform to demonstrate its value in the retail environment.