WO2016173114A1 - 一种支付异常处理方法和装置 - Google Patents

一种支付异常处理方法和装置 Download PDF

Info

Publication number
WO2016173114A1
WO2016173114A1 PCT/CN2015/082898 CN2015082898W WO2016173114A1 WO 2016173114 A1 WO2016173114 A1 WO 2016173114A1 CN 2015082898 W CN2015082898 W CN 2015082898W WO 2016173114 A1 WO2016173114 A1 WO 2016173114A1
Authority
WO
WIPO (PCT)
Prior art keywords
user
payment
loss
authentication
transaction
Prior art date
Application number
PCT/CN2015/082898
Other languages
English (en)
French (fr)
Inventor
钟焰涛
傅文治
蒋罗
Original Assignee
宇龙计算机通信科技(深圳)有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 宇龙计算机通信科技(深圳)有限公司 filed Critical 宇龙计算机通信科技(深圳)有限公司
Publication of WO2016173114A1 publication Critical patent/WO2016173114A1/zh

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/32Payment architectures, schemes or protocols characterised by the use of specific devices or networks using wireless devices
    • G06Q20/322Aspects of commerce using mobile devices [M-devices]
    • G06Q20/3223Realising banking transactions through M-devices
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/401Transaction verification
    • G06Q20/4014Identity check for transactions
    • G06Q20/40145Biometric identity checks
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/401Transaction verification
    • G06Q20/4014Identity check for transactions
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/401Transaction verification
    • G06Q20/4016Transaction verification involving fraud or risk level assessment in transaction processing
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4093Monitoring of device authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords

Definitions

  • the present invention belongs to the field of information security technologies in mobile payment, and in particular, to a payment exception processing method and apparatus.
  • MP Mobile Payment
  • the security of payment accounts is an important issue in mobile payment.
  • the mobile users usually dial the customer service phone of the issuing bank or go directly to the bank counter to face-to-face.
  • go through the loss reporting procedure of the payment account (refer to the loss reporting of the ordinary bank card).
  • the user fails to report the loss in time for some reason, for example, if the lost mobile phone is not found in time, there is still a hidden danger that the payment account is stolen.
  • an object of the present invention is to provide a payment exception processing method and apparatus, which aims to eliminate the hidden danger of the payment account being stolen by protecting the set abnormality processing when the abnormal payment occurs, thereby protecting the user's interest.
  • a payment exception handling method including:
  • the set pre-loss loss processing is executed to avoid The account is stolen.
  • the abnormal condition is any one or more of the following conditions:
  • the occurrence time of the payment transaction does not match the preset legal time
  • the location of the payment transaction does not match the default legal location
  • the type of goods or service type involved in the payment transaction does not match the pre-set legal item type or legal service type.
  • the pre-loss processing of the execution setting includes:
  • the payment process continues to complete the payment
  • the payment process is aborted, and the user is notified by default to notify the user of the loss reporting.
  • the legality authentication of the user identity by using the preset authentication mode includes:
  • the user is notified by using a preset notification manner to report the account loss in time:
  • a payment exception processing device includes:
  • a detecting module configured to detect whether the currently performed payment transaction belongs to an abnormal transaction according to a preset abnormal payment condition
  • the pre-loss processing module is configured to perform the configured pre-loss processing when detecting that the payment transaction is an abnormal transaction, so as to prevent the payment account from being stolen.
  • the pre-loss processing module includes:
  • the authentication unit is configured to perform legality authentication on the user identity by using a preset authentication manner
  • a first processing unit configured to continue the payment process when the user identity passes the authentication to complete the payment
  • the second processing unit is configured to suspend the payment process when the user identity fails to pass the authentication, and notify the user to report the account loss in time by using a preset notification manner.
  • the authentication unit includes:
  • a prompting sub-unit for prompting the user to pay an abnormality, and reminding the user to input a fingerprint for identity verification within a prescribed time
  • a receiving subunit configured to receive fingerprint information input by a user
  • the identification subunit is configured to identify whether the fingerprint information input by the user is legal based on the pre-stored reference fingerprint.
  • the second processing unit comprises a first sending subunit or a second sending subunit, wherein:
  • a first sending subunit configured to send a prompt message to the user according to the reserved mobile phone number reserved by the user
  • the second sending subunit is configured to send a prompt email to the email address reserved by the user.
  • the payment abnormality processing method and apparatus of the present invention detects whether the currently performed payment transaction belongs to an abnormal transaction according to a preset payment abnormal condition; and when the detection result is an abnormal transaction, executes the set pre- Report the loss to avoid theft of the payment account. Therefore, different from the prior art, since the user can only passively rely on the user to report the loss of the account, and the mobile terminal is lost, the user's payment account has the characteristics of being stolen, and the present invention can pass the illegal payment by the illegal user. Actively perform the set exception handling to avoid the occurrence of the payment account being stolen, which protects the user's interests and enhances the user experience.
  • FIG. 1 is a flowchart of a payment exception processing method according to Embodiment 1 of the present invention.
  • FIG. 2 is another flowchart of a payment exception processing method according to Embodiment 1 of the present invention.
  • FIG. 3 is a schematic structural diagram of a payment exception processing apparatus according to Embodiment 2 of the present invention.
  • FIG. 4 is another schematic structural diagram of a payment exception processing apparatus according to Embodiment 2 of the present invention.
  • the first embodiment of the present invention discloses a payment exception processing method, which can be applied to a mobile terminal such as a smart phone or a tablet computer having a NFC (Near Field Communication) payment function.
  • a mobile terminal such as a smart phone or a tablet computer having a NFC (Near Field Communication) payment function.
  • NFC Near Field Communication
  • S101 Detect whether the currently performed payment transaction belongs to an abnormal transaction according to a preset abnormal payment condition.
  • the abnormal payment condition can be set by the user according to his payment habit.
  • the payment abnormal condition may include the following conditions:
  • the payment can be regarded as an abnormal payment.
  • the legal payment time can be set to the non-working day and the non-working time of the working day.
  • the daily activities of the user's work, life, etc. are fixed in a specific area, for example, if a user is fixed in a certain urban area for work and life for a certain period of time, the user can work and live in the period of time.
  • the several urban areas involved are set as legal payment places, so that when the user's mobile terminal is lost, the illegal user can use the payment account to perform payment transactions in other urban areas, and can effectively recognize that the transaction is an abnormal transaction.
  • a plurality of conditions are collectively used as a basis for detecting an abnormal payment. For example, if the above four conditions are simultaneously set to constitute an abnormal payment condition, and the current payment transaction meets any of the abnormal payment conditions, the current payment transaction is determined to be an abnormal transaction.
  • This embodiment adopts a fingerprint identification method to further verify the legality of the user identity.
  • the user when detecting an abnormal transaction, the user is first prompted to pay an abnormality, and at the same time, the user is reminded to input the fingerprint for identity verification within a predetermined time, and then the fingerprint information input by the user is compared with the pre-stored reference fingerprint, if two If the match is matched, the user identity is legalized, and the pre-loss loss processing is exited, and the payment process is continued to complete the payment; if the two do not match, the user does not pass the identity authentication, and the payment is regarded as an illegal payment by the illegal user.
  • the suspension payment process of the present invention controls the payment account to enter the pre-failure state, and simultaneously informs the user to report the account loss in time through the notification manner preset by the user, for example, reserve reserved for the user.
  • the mobile phone number sends a prompt message, or sends a reminder email to the email address reserved by the user, or informs the user by other means of easily notifying the owner.
  • the “pre-failure status” in the present application means that the mobile terminal detects the payment abnormality and notifies the owner in time, but the owner has not confirmed the loss. That is, the final report loss process still needs to be implemented by the owner himself. If the owner calls the issuer's customer service phone to report the loss or go directly to the bank counter to report the loss reporting procedure, the mobile terminal does not perform the loss reporting process. This design can prevent accidental loss. To avoid affecting the user experience.
  • the present invention detects whether the currently performed payment transaction belongs to an abnormal transaction according to a preset abnormal condition; and when the detection result is an abnormal transaction, performs a preset pre-loss loss processing to prevent the payment account from being stolen. brush. Therefore, different from the prior art, since the user can only passively rely on the user to report the loss of the account, and the mobile terminal is lost, the user's payment account has the characteristics of being stolen, and the present invention can pass the illegal payment by the illegal user. Proactively perform the set exception handling to avoid the occurrence of the payment account being stolen and improve the user experience.
  • the second embodiment of the present invention discloses a payment exception processing device, which can be applied to a mobile terminal such as a smart phone or a tablet computer having an NFC payment function.
  • the device includes a detection module 100 and a pre-loss loss processing module 200.
  • the detecting module 100 is configured to detect whether the currently performed payment transaction belongs to an abnormal transaction according to a preset abnormal payment condition.
  • the pre-loss processing module 200 is configured to perform the configured pre-loss processing when detecting that the payment transaction is an abnormal transaction, so as to prevent the payment account from being stolen.
  • the pre-loss processing module 200 includes an authentication unit 210 , a first processing unit 220 , and a second processing unit 230 .
  • the authentication unit 210 is configured to perform legality authentication on the user identity by using a preset authentication manner.
  • the authentication unit 210 includes a prompting subunit, a receiving subunit, and an identifying subunit.
  • the prompting subunit is configured to prompt the user to pay an abnormality, and remind the user to input a fingerprint for identity verification within a prescribed time;
  • the receiving subunit is configured to receive fingerprint information input by the user; and
  • the identifying subunit is configured to identify based on the pre-stored reference fingerprint Whether the fingerprint information input by the user is legal.
  • the first processing unit 220 is configured to continue the payment process when the user identity passes the authentication to complete the payment.
  • the second processing unit 230 is configured to suspend the payment process when the user identity fails to pass the authentication, and notify the user to report the account loss in time by using a preset notification manner.
  • the second processing unit includes a first transmitting subunit or a second transmitting subunit.
  • the first sending subunit is configured to send the prompting short message to the user according to the reserved mobile phone number reserved by the user; and the second sending subunit is configured to send the prompting email to the email address reserved by the user.
  • the present application can be implemented by means of software plus a necessary general hardware platform. Based on such understanding, the technical solution of the present application may be embodied in the form of a software product in essence or in the form of a software product, which may be stored in a storage medium such as a ROM/RAM or a disk. , an optical disk, etc., includes instructions for causing a computer device (which may be a personal computer, server, or network device, etc.) to perform the methods described in various embodiments of the present application or portions of the embodiments.
  • a computer device which may be a personal computer, server, or network device, etc.

Landscapes

  • Business, Economics & Management (AREA)
  • Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Computer Security & Cryptography (AREA)
  • Theoretical Computer Science (AREA)
  • Strategic Management (AREA)
  • Physics & Mathematics (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Finance (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Signal Processing (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)

Abstract

支付异常处理方法和装置,依据预先设定的支付异常条件,检测当前进行的支付交易是否属于异常交易(S101);并在检测结果为属于异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷(S102)。从而,区别于现有技术由于仅能被动地依靠用户进行账户挂失,而导致移动终端遗失后,用户的支付账户存在被盗刷隐患这一特点,在非法用户进行非法支付时,可通过主动执行设定的异常处理,来避免支付账户被盗刷这一状况的发生,保障了用户利益,提升了用户体验。

Description

一种支付异常处理方法和装置
本申请要求于2015年4月27日提交中国专利局、申请号为201510203296.1,发明名称为“一种支付异常处理方法和装置”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明属于移动支付中的信息安全技术领域,尤其涉及一种支付异常处理方法和装置。
背景技术
移动支付(MP,Mobile Payment),是指允许用户使用其持有的移动终端(通常是手机)对所消费的商品或服务进行账务支付。继卡类支付、网络支付后,移动支付成为支付方式发展的一种必然趋势。
支付账户的安全性是移动支付中的一个重要问题,目前,在手机等移动终端遗失后,为降低支付账户被盗刷的风险,一般由移动用户通过拨打发卡行客服电话或直接去银行柜台面对面办理业务的方式,办理支付账户挂失手续(可参考普通银行卡的挂失处理)。然而,此种方式下,在用户因某些原因未能及时办理挂失时,譬如未及时发现手机遗失等情况下,仍存在支付账户被盗刷的隐患。
发明内容
有鉴于此,本发明的目的在于提供一种支付异常处理方法和装置,旨在通过在异常支付发生时执行设定的异常处理,来消除支付账户被盗刷的隐患,保障用户利益。
为此,本发明公开如下技术方案:
一种支付异常处理方法,包括:
依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易;
若检测出所述支付交易为异常交易,则执行设定的预挂失处理,以避免支 付账户被盗刷。
上述方法,优选的,所述异常条件为如下条件中的任意一项或多项:
用户连续预设次数错误输入支付密码;
支付交易的发生时间与预设的合法时间不相符;
支付交易的发生地点与预设的合法地点不相符;
支付交易所涉及的物品种类或服务类型分别与预先设定的合法物品种类或合法服务类型不相符。
上述方法,优选的,所述执行设定的预挂失处理包括:
采用预设认证方式对用户身份进行合法性认证;
若用户身份通过认证,则继续支付流程,以完成支付;
若用户身份未通过认证,则中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
上述方法,优选的,所述采用预设认证方式对用户身份进行合法性认证包括:
提示用户支付异常,并提醒用户在规定时间内输入指纹进行身份验证;
接收用户输入的指纹信息;
基于预先存储的基准指纹,识别用户输入的指纹信息是否合法。
上述方法,优选的,所述采用预设通知方式通知用户及时办理账户挂失为:
依据用户预留的备用手机号码,向用户发送提示短信息;或,
向用户预留的邮箱地址发送提示邮件。
一种支付异常处理装置,包括:
检测模块,用于依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易;
预挂失处理模块,用于在检测出所述支付交易为异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷。
上述装置,优选的,所述预挂失处理模块包括:
认证单元,用于采用预设认证方式对用户身份进行合法性认证;
第一处理单元,用于在用户身份通过认证时,继续支付流程,以完成支付;
第二处理单元,用于在用户身份未通过认证时,中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
上述装置,优选的,所述认证单元包括:
提示子单元,用于提示用户支付异常,并提醒用户在规定时间内输入指纹进行身份验证;
接收子单元,用于接收用户输入的指纹信息;
识别子单元,用于基于预先存储的基准指纹,识别用户输入的指纹信息是否合法。
上述装置,优选的,所述第二处理单元包括第一发送子单元或第二发送子单元,其中:
第一发送子单元,用于依据用户预留的备用手机号码,向用户发送提示短信息;
第二发送子单元,用于向用户预留的邮箱地址发送提示邮件。
由以上方案可知,本发明的支付异常处理方法和装置,依据预先设定的支付异常条件,检测当前进行的支付交易是否属于异常交易;并在检测结果为属于异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷。从而,区别于现有技术由于仅能被动地依靠用户进行账户挂失,而导致移动终端遗失后,用户的支付账户存在被盗刷隐患这一特点,本发明在非法用户进行非法支付时,可通过主动执行设定的异常处理,来避免支付账户被盗刷这一状况的发生,保障了用户利益,提升了用户体验。
附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的实施例,对于本领域普通技术人员来讲,在不付出创造性劳动的前提下,还可以根据提供的附图获得其他的附图。
图1是本发明实施例一提供的支付异常处理方法的一种流程图;
图2是本发明实施例一提供的支付异常处理方法的另一种流程图;
图3是本发明实施例二提供的支付异常处理装置的一种结构示意图;
图4是本发明实施例二提供的支付异常处理装置的另一种结构示意图。
具体实施方式
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
实施例一
本实施例一公开一种支付异常处理方法,该方法可应用于具有NFC(Near Field Communication,近距离无线通信技术)支付功能的智能手机、平板电脑等移动终端,参考图1,所述方法可以包括以下步骤:
S101:依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易。
应用本发明时,可由用户依据其支付习惯自行设定异常支付条件,一般来讲,支付异常条件可包括如下条件:
1)用户连续预设次数错误输入支付密码。
例如,用户连续两次或三次错误输入支付密码时,可将本次支付认定为异常支付。
2)支付交易的发生时间与预设的合法时间不相符。
假设用户仅在法定的非工作日或工作日的非工作时间才使用移动终端的移动支付功能,则可将合法支付时间设置为非工作日以及工作日的非工作时间。
3)支付交易的发生地点与预设的合法地点不相符。
若用户的工作、生活等日常活动固定在某一特定区域,譬如,某用户在一段时间内固定在某几个城区进行工作、生活,则此段时间内,该用户可将其工作、生活所涉及的几个城区设定为合法支付地点,从而当该用户的移动终端遗失后,非法用户使用其支付账户在其他城区进行支付交易时,可有效识别出该交易为异常交易。
4)支付交易所涉及的物品种类或服务类型分别与预先设定的合法物品种类或合法服务类型不相符。
为了提升用户移动支付时的账户安全度,一般情况下,可由用户同时设置 多项条件共同作为异常支付的检测依据,譬如同时设置以上四项条件构成异常支付条件,并在当前的支付交易符合异常支付条件中的任意一项时,即认定当前的支付交易为异常交易。
S102:若检测出所述支付交易为异常交易,则执行设定的预挂失处理,以避免支付账户被盗刷。
如果依据用户设定的异常支付条件,检测出当前的支付交易为异常交易,则为了避免支付账户被盗刷,保障用户利益,参考图2,本步骤执行如下的预挂失处理:
S201:采用预设认证方式对用户身份进行合法性认证;
S202:若用户身份通过认证,则继续支付流程,以完成支付;
S203:若用户身份未通过认证,则中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
为了有效识别所检测出的异常支付究竟属于合法用户临时的不当支付(如用户忘记密码,或用户临时在所设定合法区域之外的其他位置进行支付等),还是属于非法用户的非法支付,本实施例采用指纹识别方式来进一步验证用户身份的合法性。
具体地,在检测出异常交易时,首先提示用户支付异常,并同时提醒用户在规定时间内输入指纹进行身份验证,之后,将用户输入的指纹信息与预先存储的基准指纹进行比对,若两者相匹配,则表征用户身份合法,从而退出预挂失处理,并继续支付流程,完成支付;反之,若两者不匹配,则用户未通过身份认证,将本次支付视为非法用户的非法支付,此种情况下,为保证用户账户的安全,本发明中止支付流程控制支付账户进入预挂失状态,并同时通过用户预设的通知方式通知用户及时办理账户挂失,例如,向用户预留的备用手机号码发送提示短信息,或向用户预留的邮箱地址发送提示邮件,亦或采用其他易通知到机主的方式通知用户等。
需要说明的是,本申请中的“预挂失状态”是指移动终端检测到支付异常,并及时通知了机主,但机主还未确认挂失。即最终的挂失流程仍然须由机主本人实施,如机主拨打发卡行客服电话挂失或直接去银行柜台面对面办理挂失手续等,而并非由移动终端执行挂失流程,此种设计可防止发生误挂失,避免影响用户体验。
由以上方案可知,本发明依据预先设定的异常条件,检测当前进行的支付交易是否属于异常交易;并在检测结果为属于异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷。从而,区别于现有技术由于仅能被动地依靠用户进行账户挂失,而导致移动终端遗失后,用户的支付账户存在被盗刷隐患这一特点,本发明在非法用户进行非法支付时,可通过主动执行设定的异常处理,来避免支付账户被盗刷这一状况的发生,提升了用户体验。
实施例二
本实施例二公开一种支付异常处理装置,该装置可应用于具有NFC支付功能的智能手机、平板电脑等移动终端,参考图3,所述装置包括检测模块100和预挂失处理模块200。
检测模块100,用于依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易。
预挂失处理模块200,用于在检测出所述支付交易为异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷。
其中,参考图4,所述预挂失处理模块200包括认证单元210、第一处理单元220和第二处理单元230。
认证单元210,用于采用预设认证方式对用户身份进行合法性认证。
所述认证单元210包括提示子单元、接收子单元和识别子单元。其中,提示子单元用于提示用户支付异常,并提醒用户在规定时间内输入指纹进行身份验证;接收子单元用于接收用户输入的指纹信息;识别子单元用于基于预先存储的基准指纹,识别用户输入的指纹信息是否合法。
第一处理单元220,用于在用户身份通过认证时,继续支付流程,以完成支付。
第二处理单元230,用于在用户身份未通过认证时,中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
所述第二处理单元包括第一发送子单元或第二发送子单元。其中,第一发送子单元用于依据用户预留的备用手机号码,向用户发送提示短信息;第二发送子单元用于向用户预留的邮箱地址发送提示邮件。
对于本发明实施例二公开的支付异常处理装置而言,由于其与实施例一公 开的支付异常处理方法相对应,所以描述的比较简单,相关相似之处请参见实施例一中支付异常处理方法部分的说明即可,此处不再详述。
综上所述,在移动支付中应用本申请提供的方案具有如下优势:
1)发生可疑(非法)支付时,可尽快通知机主;
2)发生可疑支付时,可进入预挂失状态,支付不能完成,从而避免了非法用户盗刷支付账户这一状况的发生,保障了用户利益。
需要说明的是,本说明书中的各个实施例均采用递进的方式描述,每个实施例重点说明的都是与其他实施例的不同之处,各个实施例之间相同相似的部分互相参见即可。
为了描述的方便,描述以上系统或装置时以功能分为各种模块或单元分别描述。当然,在实施本申请时可以把各单元的功能在同一个或多个软件和/或硬件中实现。
通过以上的实施方式的描述可知,本领域的技术人员可以清楚地了解到本申请可借助软件加必需的通用硬件平台的方式来实现。基于这样的理解,本申请的技术方案本质上或者说对现有技术做出贡献的部分可以以软件产品的形式体现出来,该计算机软件产品可以存储在存储介质中,如ROM/RAM、磁碟、光盘等,包括若干指令用以使得一台计算机设备(可以是个人计算机,服务器,或者网络设备等)执行本申请各个实施例或者实施例的某些部分所述的方法。
最后,还需要说明的是,在本文中,诸如第一、第二、第三和第四等之类的关系术语仅仅用来将一个实体或者操作与另一个实体或操作区分开来,而不一定要求或者暗示这些实体或操作之间存在任何这种实际的关系或者顺序。而且,术语“包括”、“包含”或者其任何其他变体意在涵盖非排他性的包含,从而使得包括一系列要素的过程、方法、物品或者设备不仅包括那些要素,而且还包括没有明确列出的其他要素,或者是还包括为这种过程、方法、物品或者设备所固有的要素。在没有更多限制的情况下,由语句“包括一个……”限定的要素,并不排除在包括所述要素的过程、方法、物品或者设备中还存在另外的相同要素。
以上所述仅是本发明的优选实施方式,应当指出,对于本技术领域的普通技术人员来说,在不脱离本发明原理的前提下,还可以做出若干改进和润饰,这些改进和润饰也应视为本发明的保护范围。

Claims (9)

  1. 一种支付异常处理方法,其特征在于,包括:
    依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易;
    若检测出所述支付交易为异常交易,则执行设定的预挂失处理,以避免支付账户被盗刷。
  2. 根据权利要求1所述的方法,其特征在于,所述异常条件为如下条件中的任意一项或多项:
    用户连续预设次数错误输入支付密码;
    支付交易的发生时间与预设的合法时间不相符;
    支付交易的发生地点与预设的合法地点不相符;
    支付交易所涉及的物品种类或服务类型分别与预先设定的合法物品种类或合法服务类型不相符。
  3. 根据权利要求1所述的方法,其特征在于,所述执行设定的预挂失处理包括:
    采用预设认证方式对用户身份进行合法性认证;
    若用户身份通过认证,则继续支付流程,以完成支付;
    若用户身份未通过认证,则中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
  4. 根据权利要求3所述的方法,其特征在于,所述采用预设认证方式对用户身份进行合法性认证包括:
    提示用户支付异常,并提醒用户在规定时间内输入指纹进行身份验证;
    接收用户输入的指纹信息;
    基于预先存储的基准指纹,识别用户输入的指纹信息是否合法。
  5. 根据权利要求3所述的方法,其特征在于,所述采用预设通知方式通知用户及时办理账户挂失为:
    依据用户预留的备用手机号码,向用户发送提示短信息;或,
    向用户预留的邮箱地址发送提示邮件。
  6. 一种支付异常处理装置,其特征在于,包括:
    检测模块,用于依据预先设定的异常支付条件,检测当前进行的支付交易是否属于异常交易;
    预挂失处理模块,用于在检测出所述支付交易为异常交易时,执行设定的预挂失处理,以避免支付账户被盗刷。
  7. 根据权利要求6所述的装置,其特征在于,所述预挂失处理模块包括:
    认证单元,用于采用预设认证方式对用户身份进行合法性认证;
    第一处理单元,用于在用户身份通过认证时,继续支付流程,以完成支付;
    第二处理单元,用于在用户身份未通过认证时,中止支付流程,并采用预设通知方式通知用户及时办理账户挂失。
  8. 根据权利要求7所述的装置,其特征在于,所述认证单元包括:
    提示子单元,用于提示用户支付异常,并提醒用户在规定时间内输入指纹进行身份验证;
    接收子单元,用于接收用户输入的指纹信息;
    识别子单元,用于基于预先存储的基准指纹,识别用户输入的指纹信息是否合法。
  9. 根据权利要求7所述的装置,其特征在于,所述第二处理单元包括第一发送子单元或第二发送子单元,其中:
    第一发送子单元,用于依据用户预留的备用手机号码,向用户发送提示短信息;
    第二发送子单元,用于向用户预留的邮箱地址发送提示邮件。
PCT/CN2015/082898 2015-04-27 2015-06-30 一种支付异常处理方法和装置 WO2016173114A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510203296.1A CN105654300A (zh) 2015-04-27 2015-04-27 一种支付异常处理方法和装置
CN201510203296.1 2015-04-27

Publications (1)

Publication Number Publication Date
WO2016173114A1 true WO2016173114A1 (zh) 2016-11-03

Family

ID=56481700

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2015/082898 WO2016173114A1 (zh) 2015-04-27 2015-06-30 一种支付异常处理方法和装置

Country Status (2)

Country Link
CN (1) CN105654300A (zh)
WO (1) WO2016173114A1 (zh)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111882321A (zh) * 2020-07-08 2020-11-03 支付宝(杭州)信息技术有限公司 身份核验处理方法、装置及系统
CN111881434A (zh) * 2020-08-03 2020-11-03 施兴明 一种电商平台账户的身份认证方法
CN113052608A (zh) * 2021-04-19 2021-06-29 中国工商银行股份有限公司 小额盗刷识别方法及装置

Families Citing this family (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106096953A (zh) * 2016-06-27 2016-11-09 宇龙计算机通信科技(深圳)有限公司 安全支付方法及系统
CN106446628A (zh) * 2016-09-12 2017-02-22 珠海格力电器股份有限公司 一种终端的保护方法及终端
CN106920170B (zh) * 2017-03-02 2021-07-27 北京小米移动软件有限公司 交易提醒方法和装置
CN107133797B (zh) * 2017-04-28 2020-11-10 努比亚技术有限公司 一种支付异常自动检测方法、终端及计算机可读存储介质
CN109978317A (zh) * 2018-09-17 2019-07-05 招商银行股份有限公司 异常交易处理方法、互动平台及计算机可读存储介质
CN109447654A (zh) * 2018-11-09 2019-03-08 银河水滴科技(北京)有限公司 一种基于步态特征的支付系统、方法及装置
CN109858227B (zh) * 2019-02-02 2021-04-06 Oppo广东移动通信有限公司 指纹录入方法、装置、电子设备及存储介质
CN110381144A (zh) * 2019-07-22 2019-10-25 中国联合网络通信集团有限公司 基于合法用户充电习惯的充电认证方法及移动终端
CN110503516A (zh) * 2019-08-13 2019-11-26 蚌埠聚本电子商务产业园有限公司 一种用于电子商务的交易保障防护方法
CN110490587B (zh) * 2019-08-23 2022-08-02 中国联合网络通信集团有限公司 一种快速锁定银行卡的方法及装置
CN113240421B (zh) * 2021-06-15 2024-01-02 中国银行股份有限公司 一种支付方法及装置
CN113947401A (zh) * 2021-09-27 2022-01-18 浪潮卓数大数据产业发展有限公司 一种基于非智能终端线下支付的实现方法及系统

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101588577A (zh) * 2008-05-19 2009-11-25 罗邵波 用于银行交易系统的安全系统与方法
CN102034182A (zh) * 2010-11-29 2011-04-27 深圳市爱贝信息技术有限公司 支付平台账户安全交易的方法及装置
WO2012121983A2 (en) * 2011-03-04 2012-09-13 Brighterion, Inc. Systems and methods for adaptive identification of sources of fraud

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
AT501236B1 (de) * 2004-06-29 2007-07-15 Keba Ag Lesevorrichtung für kartenförmige datenträger und betriebsverfahren hierfür
CN103093346A (zh) * 2011-10-31 2013-05-08 深圳光启高等理工研究院 一种移动终端支付方法及移动终端
CN103699997B (zh) * 2013-12-27 2018-04-13 Tcl集团股份有限公司 一种锁止移动支付业务的方法、装置和电子设备

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101588577A (zh) * 2008-05-19 2009-11-25 罗邵波 用于银行交易系统的安全系统与方法
CN102034182A (zh) * 2010-11-29 2011-04-27 深圳市爱贝信息技术有限公司 支付平台账户安全交易的方法及装置
WO2012121983A2 (en) * 2011-03-04 2012-09-13 Brighterion, Inc. Systems and methods for adaptive identification of sources of fraud

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111882321A (zh) * 2020-07-08 2020-11-03 支付宝(杭州)信息技术有限公司 身份核验处理方法、装置及系统
CN111881434A (zh) * 2020-08-03 2020-11-03 施兴明 一种电商平台账户的身份认证方法
CN113052608A (zh) * 2021-04-19 2021-06-29 中国工商银行股份有限公司 小额盗刷识别方法及装置

Also Published As

Publication number Publication date
CN105654300A (zh) 2016-06-08

Similar Documents

Publication Publication Date Title
WO2016173114A1 (zh) 一种支付异常处理方法和装置
US11706212B2 (en) Method for securing electronic transactions
US20150058220A1 (en) Payment pre-authorization
US10362136B2 (en) Device profile data usage for state management in mobile device authentication
EP3440583B1 (en) Systems and methods for paired device authentication
US8302187B1 (en) System and method for preventing large-scale account lockout
CN103745538B (zh) 金融账户的密码保护方法及系统
WO2017128975A1 (zh) 基于移动终端p2p的信用支付方法及装置
US20150161609A1 (en) System and method for risk and fraud mitigation while processing payment card transactions
US20080035725A1 (en) Method to use cell phone location to authenticate or enable/disable authorization of credit cards
KR20160015375A (ko) 모바일 디바이스 기반의 규칙들을 이용한 거래 승인
US9489669B2 (en) Secure contactless payment systems and methods
KR20140070606A (ko) 거래 지불 방법 및 시스템
US20210406909A1 (en) Authorizing transactions using negative pin messages
US20160171476A1 (en) Mobile Application Solution for Payment (Debit and Credit) Card Validation
JP2015111329A (ja) ネットワークサービス提供システム、ネットワークサービス提供方法、及びプログラム
CA3166099A1 (en) System and method for detecting fraudulent bank transactions
WO2015083159A1 (en) A system and methods thereof for monitoring financial transactions from a credit clearing device
CN109255617A (zh) 智能支付方法、移动终端及计算机可读储存介质
US10445736B2 (en) Wallet management system
KR20150063197A (ko) 단문 메시지를 이용한 결제 처리 방법
US20160042178A1 (en) Information processing device
KR101407593B1 (ko) 사용자 단말기에서 불법 수신 메시지를 확인하는 방법
US20230342748A1 (en) Enhanced credential security based on a usage status of a wearable device
WO2018141488A1 (en) User authorization for cards and contactless payment devices

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15890493

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

32PN Ep: public notification in the ep bulletin as address of the adressee cannot be established

Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205 DATED 08/01/2018)

122 Ep: pct application non-entry in european phase

Ref document number: 15890493

Country of ref document: EP

Kind code of ref document: A1