US 11,842,349 B1
Multifactor authentication systems and methods
Ashutosh Sureka, Coppell, TX (US); Rajesh Mondkar, Jacksonville, FL (US); and Sathish Nandagopal, St. Johns, FL (US)
Assigned to CITICORP CREDIT SERVICES, INC. (USA), Long Island City, NY (US)
Filed by CITICORP CREDIT SERVICES, INC. (USA), Long Island City, NY (US)
Filed on Feb. 13, 2023, as Appl. No. 18/108,816.
Application 18/108,816 is a continuation of application No. 15/830,289, filed on Dec. 4, 2017, granted, now 11,605,083.
This patent is subject to a terminal disclaimer.
Int. Cl. G06Q 20/40 (2012.01); H04L 9/40 (2022.01); G06Q 20/32 (2012.01); G06Q 20/34 (2012.01); G06Q 20/36 (2012.01)
CPC G06Q 20/40145 (2013.01) [G06Q 20/3223 (2013.01); H04L 63/083 (2013.01); H04L 63/0861 (2013.01); G06Q 20/351 (2013.01); G06Q 20/36 (2013.01); H04L 2463/082 (2013.01); H04L 2463/102 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A system comprising:
an online payment server processor coupled to memory and programmed to:
send data representing a secure user login cookie to a user device processor over a communication network based on an authentication of the user device processor in an online session with a merchant website server processor;
determine if the secure login cookie created in the first online session is associated with the user device during a subsequent online session;
based on the determination that the secure user login cookie created in the first online session is associated with the user device in the subsequent online session, send a push notification to the user device processor comprising:
instructions to the user device that cause the user device to launch a mobile payment application program on the user device; and
instructions to the user device that cause the user device to display, after the mobile payment application program is launched, a prompt on the mobile payment application program for the user to enter an authorization via a second predefined authentication factor; and
authenticate the user in the subsequent online session with the merchant website server processor based in part on identifying the data representing the secure user login cookie on the user device and in part on data representing the second predefined authentication factor.