Patents by Inventor Jan Eichholz

Jan Eichholz has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Publication number: 20250203377
    Abstract: A method for managing an application for the electronic identification of a user of a mobile terminal has a subscriber identity module in a mobile network.
    Type: Application
    Filed: March 28, 2023
    Publication date: June 19, 2025
    Inventors: Jan EICHHOLZ, Michael EDWARDS
  • Patent number: 11848929
    Abstract: A chip set for a terminal comprises at least one secure processor, in which a one-time programmable memory is integrated. At least one terminal serial number of the terminal is stored in the chip set. Information for securing the terminal serial number against tampering is stored in the one-time programmable memory.
    Type: Grant
    Filed: December 17, 2020
    Date of Patent: December 19, 2023
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Frank Götze, Claus Dietze, Jan Eichholz
  • Patent number: 11698994
    Abstract: A method is for a first-time startup of a not fully personalized secure element, which serves for the use of services of a mobile communication network, in a mobile terminal. In the method, the secure element is started and requested to transmit a status message. The secure element transmits a status message in which it is stated whether the secure element: S1) contains only a bootloader but as yet no firmware image for the secure element; S2) contains a firmware image for the secure element but is not yet fully personalized; or S3) is fully personalized. The secure element is accepted in the cases S1), S2) and S3) and rejected in other cases. In the case S1), a download for a firmware image of the secure element is initiated for a first-time startup.
    Type: Grant
    Filed: April 28, 2017
    Date of Patent: July 11, 2023
    Assignee: GIESECKE+DEVREINT MOBILE SECURITY GMBH
    Inventors: Frank Götze, Claus Dietze, Jan Eichholz
  • Patent number: 10979429
    Abstract: A chip set for a terminal comprises at least one secure processor, in which a one-time programmable memory is integrated. At least one terminal serial number of the terminal is stored in the chip set. Information for securing the terminal serial number against tampering is stored in the one-time programmable memory.
    Type: Grant
    Filed: April 13, 2017
    Date of Patent: April 13, 2021
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Frank Götze, Claus Dietze, Jan Eichholz
  • Publication number: 20210105273
    Abstract: A chip set for a terminal comprises at least one secure processor, in which a one-time programmable memory is integrated. At least one terminal serial number of the terminal is stored in the chip set. Information for securing the terminal serial number against tampering is stored in the one-time programmable memory.
    Type: Application
    Filed: December 17, 2020
    Publication date: April 8, 2021
    Inventors: Frank GÖTZE, Claus DIETZE, Jan EICHHOLZ
  • Patent number: 10944741
    Abstract: A method for reading an identity document, a readout terminal and a readout system, which simplifies the multiple reading of identity documents. According to the method, an authentication key and an information item are stored in hidden fashion in the chip of the identity document.
    Type: Grant
    Filed: July 10, 2015
    Date of Patent: March 9, 2021
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Frank Schmalz, Jan Eichholz, Christopher Schmid
  • Patent number: 10496985
    Abstract: The invention creates a method for loading an electronic amount of money represented as a random number sequence to a portable data carrier, with a conversion of the random number currency to the data carrier currency, and a disbursement of one or several money unit(s) from a portable data carrier, with a conversion of the data carrier currency to the random number currency.
    Type: Grant
    Filed: October 11, 2013
    Date of Patent: December 3, 2019
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Gisela Meister, Jan Eichholz
  • Publication number: 20190147193
    Abstract: A method is for a first-time startup of a not fully personalized secure element, which serves for the use of services of a mobile communication network, in a mobile terminal. In the method, the secure element is started and requested to transmit a status message. The secure element transmits a status message in which it is stated whether the secure element: S1) contains only a bootloader but as yet no firmware image for the secure element; S2) contains a firmware image for the secure element but is not yet fully personalized; or S3) is fully personalized. The secure element is accepted in the cases S1), S2) and S3) and rejected in other cases. In the case S1), a download for a firmware image of the secure element is initiated for a first-time startup.
    Type: Application
    Filed: April 28, 2017
    Publication date: May 16, 2019
    Inventors: Frank GÖTZE, Claus DIETZE, Jan EICHHOLZ
  • Publication number: 20190104122
    Abstract: A chip set for a terminal comprises at least one secure processor, in which a one-time programmable memory is integrated. At least one terminal serial number of the terminal is stored in the chip set. Information for securing the terminal serial number against tampering is stored in the one-time programmable memory.
    Type: Application
    Filed: April 13, 2017
    Publication date: April 4, 2019
    Inventors: Frank GÖTZE, Claus DIETZE, Jan EICHHOLZ
  • Patent number: 10050790
    Abstract: A method for authorizing a transaction has the following steps: inputting transaction data on a first mobile device, transmitting the transaction data from the first device to a background system by means of a first over-the-air interface, transmitting in encrypted manner at least a password to a second mobile device through the intermediary of the first mobile device, and authorizing the transaction by inputting the password displayed on the second device on the first device.
    Type: Grant
    Filed: January 19, 2015
    Date of Patent: August 14, 2018
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Florian Gawlas, Jan Eichholz
  • Patent number: 10050788
    Abstract: The invention creates a method for the contactless readout of an electronic identification document by means of a terminal, wherein in a data reading step encrypted identification data from a data memory are transmitted to the terminal, and in a key reading step the data key with which the identification data can be decrypted is transmitted to the terminal, and in the terminal the identification data are decrypted with the data key. The data reading step is carried out employing a long-range radio connection, and the key reading step is carried out employing a short-range radio connection.
    Type: Grant
    Filed: December 18, 2012
    Date of Patent: August 14, 2018
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Jan Eichholz, Gisela Meister, Thomas Aichberger
  • Publication number: 20170195309
    Abstract: A method for reading an identity document, a readout terminal and a readout system, which simplifies the multiple reading of identity documents. According to the method, an authentication key and an information item are stored in hidden fashion in the chip of the identity document.
    Type: Application
    Filed: July 10, 2015
    Publication date: July 6, 2017
    Inventors: Frank SCHMALZ, Jan EICHHOLZ, Christopher SCHMID
  • Publication number: 20160337126
    Abstract: A method for authorizing a transaction has the following steps: inputting transaction data on a first mobile device, transmitting the transaction data from the first device to a background system by means of a first over-the-air interface, transmitting in encrypted manner at least a password to a second mobile device through the intermediary of the first mobile device, and authorizing the transaction by inputting the password displayed on the second device on the first device.
    Type: Application
    Filed: January 19, 2015
    Publication date: November 17, 2016
    Inventors: Florian GAWLAS, Jan EICHHOLZ
  • Patent number: 9411981
    Abstract: The invention relates to a method for activating a portable data carrier (1) in which a first portable data carrier (1) is supplied in an inactive state to a user, after the user has requested the first data carrier (1) with the aid of a second portable data carrier (2) from a central instance, whereby the first and the second data carrier (1, 2) have access to authentication data for mutual authentication. In the method according to the invention a communication connection is set up between the first and the second data carrier (1, 2), via which the first and the second data carrier (1, 2) mutually authenticate each other on the basis of the authentication data and establish a cryptographically secured end-to-end connection. Via this end-to-end connection then the second data carrier (2) activates the first data carrier (1) by transmitting activation data to the first data carrier (1).
    Type: Grant
    Filed: September 1, 2010
    Date of Patent: August 9, 2016
    Assignee: GIESECKE & DEVRIENT
    Inventors: Jan Eichholz, Gisela Meister, Henning Daum
  • Patent number: 9325504
    Abstract: A method and a system for secure transfer of an application from a server (S) into a reading device unit (2) with authentication of a user with a data carrier unit (1), the server (S) making available the application, wherein, between the data carrier unit (1) and the server (S), a first cryptographically secured channel (K1) is set up based on first cryptographic information (A), and between a security module (3) of the reading device unit (2) and the server (S) a second cryptographically secured channel (K2) is set up based on second cryptographic information (B). The application is transferred from the server to the reading device unit via the second cryptographically secured channel (K2).
    Type: Grant
    Filed: March 25, 2011
    Date of Patent: April 26, 2016
    Assignee: GIESECKE & DEVRIENT GMBH
    Inventors: Dieter Weiss, Gisela Meister, Jan Eichholz, Florian Gawlas
  • Publication number: 20150302399
    Abstract: The invention creates a method for loading an electronic amount of money represented as a random number sequence to a portable data carrier, with a conversion of the random number currency to the data carrier currency, and a disbursement of one or several money unit(s) from a portable data carrier, with a conversion of the data carrier currency to the random number currency.
    Type: Application
    Filed: October 11, 2013
    Publication date: October 22, 2015
    Inventors: Gisela MEISTER, Jan EICHHOLZ
  • Patent number: 8966275
    Abstract: A method for authenticating a portable data carrier (10) to a terminal device by the following steps: In the data carrier (10) a public session key (PKSession) is derived (S5) from a public key individual to the data carrier (PKi) which has in its turn been derived (TS32; S1) from a public group key (PK). Further, a secret session key (SKSession) is derived (S4) from a secret key individual to the data carrier (SKi) which has in turn been derived (TS31) from a secret group key (SK). Subsequently, a secret communication key (KK) is agreed on (S7) between the data carrier (10) and the terminal device. Finally, the terminal verifies (S8) the public session key (PKSession) of the data carrier (10).
    Type: Grant
    Filed: March 7, 2011
    Date of Patent: February 24, 2015
    Assignee: Giesecke & Devrient GmbH
    Inventors: Jan Eichholz, Gisela Meister
  • Patent number: 8953804
    Abstract: In a method for establishing a secure communication channel between a portable data carrier (10) and a terminal on the basis of an asymmetric cryptosystem, a value (X; Y; V; W) derived from a public key (PKD; PKT) of the cryptosystem is displayed on a display device (40) of the data carrier (10).
    Type: Grant
    Filed: September 22, 2010
    Date of Patent: February 10, 2015
    Assignee: Giesecke & Devrient GmbH
    Inventors: Jan Eichholz, Gisela Meister, Dirk Wacker, Markus Sauermann
  • Publication number: 20140333416
    Abstract: The invention creates a method for the contactless readout of an electronic identification document by means of a terminal, wherein in a data reading step encrypted identification data from a data memory are transmitted to the terminal, and in a key reading step the data key with which the identification data can be decrypted is transmitted to the terminal, and in the terminal the identification data are decrypted with the data key. The data reading step is carried out employing a long-range radio connection, and the key reading step is carried out employing a short-range radio connection.
    Type: Application
    Filed: December 18, 2012
    Publication date: November 13, 2014
    Inventors: Jan Eichholz, Gisela Meister, Thomas Aichberger
  • Patent number: 8549161
    Abstract: The invention relates to a method for the data communication between a portable data carrier (10) and an external communication device, which both in each case comprise a TCP/IP protocol stack (24). In a first step the communication device sends communication data to the data carrier (10), the communication data comprising at least commands according to an Internet protocol of the application layer of the TCP/IP reference model and commands in the form of APDUs according to ISO/IEC 7816-4. The method additionally comprises the steps of transmitting the communication data between the communication device and the data carrier (10), of receiving the communication data by the data carrier (10) and of separating the received APDUs and the received Internet protocol commands from each other by means of the allocator unit (32) of the data carrier (10).
    Type: Grant
    Filed: August 20, 2008
    Date of Patent: October 1, 2013
    Assignee: Giesecke & Devrient GmbH
    Inventors: Stephan Spitz, Jan Eichholz