Patents by Inventor Klaus Finkenzeller

Klaus Finkenzeller has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11449858
    Abstract: A method in a system comprising at least one portable data carrier, an authentication server and at least one reading device of at least one service provider which is couplable to the authentication server. The data carrier is adapted to communicate contactlessly with the reading device and comprises a security marking which can be read contactlessly by the reading device and on the basis of which the data carrier can be authenticated by the authentication server. The method comprises the step of equipping the data carrier with a data-carrier management marking that encodes a piece of data-carrier management information and readable contactlessly by a portable terminal. The method includes contactlessly reading out the data-carrier management marking by a portable terminal, transferring the data-carrier management information encoded in the data-carrier management marking to the authentication server, and managing the data carrier in the system employing the data-carrier management information.
    Type: Grant
    Filed: August 22, 2016
    Date of Patent: September 20, 2022
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Stephan Rasch, Dirk Riesenbeck, Hans-Jürgen Roth
  • Patent number: 11341391
    Abstract: A portable data carrier comprises a first electrical oscillating circuit, which includes a first antenna coil and a first electrical load, and at least one second electrical oscillating circuit, which comprises a second antenna coil and a second electrical load. The first antenna coil and the second antenna coil are geometrically arranged relative to each other such that there is no mutual inductance between the first antenna coil and the second antenna coil.
    Type: Grant
    Filed: July 10, 2017
    Date of Patent: May 24, 2022
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Stefan Kluge
  • Patent number: 11263302
    Abstract: A method for managing portable data carriers in a system having at least one portable data carrier, an authentication server, and several service providers systems each including reading devices and a service provider unit. The reading devices may request an authentication information item of the data carrier and relay the authentication information item to the authentication server. The authentication server may authenticate the data carrier on the basis of the authentication information item and establish an application identity associated with the data carrier in the service provider system with the help of the security identity The established application identity associated with the data carrier may be transmitted from the authentication server to the reading device of the service provider system.
    Type: Grant
    Filed: August 22, 2016
    Date of Patent: March 1, 2022
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Stephan Rasch, Dirk Riesenbeck, Hans-Jürgen Roth
  • Patent number: 11023600
    Abstract: A method for protection against a relay attack on a system is composed of at least a first and a second communication device. Data are transmitted wirelessly between the first and the second communication device. The first communication device ascertains a first spectrum of all wirelessly transmitted signals to be received at the location of the first communication device within a frequency band. The second communication device likewise ascertains a second spectrum of all wirelessly transmitted signals to be received at the location of the second communication device within the frequency band. The frequency band is limited by a minimum and a maximum frequency. The second communication device transmits the second spectrum to the first communication device. The first communication device compares the first spectrum with the second spectrum in order to ascertain whether the second communication device is located at the location of the first communication device.
    Type: Grant
    Filed: February 5, 2018
    Date of Patent: June 1, 2021
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Volker Stöhr
  • Publication number: 20210019433
    Abstract: A method for protection against a relay attack on a system is composed of at least a first and a second communication device. Data are transmitted wirelessly between the first and the second communication device. The first communication device ascertains a first spectrum of all wirelessly transmitted signals to be received at the location of the first communication device within a frequency band. The second communication device likewise ascertains a second spectrum of all wirelessly transmitted signals to be received at the location of the second communication device within the frequency band. The frequency band is limited by a minimum and a maximum frequency. The second communication device transmits the second spectrum to the first communication device. The first communication device compares the first spectrum with the second spectrum in order to ascertain whether the second communication device is located at the location of the first communication device.
    Type: Application
    Filed: February 5, 2018
    Publication date: January 21, 2021
    Inventors: Klaus FINKENZELLER, Volker STÖHR
  • Publication number: 20200410473
    Abstract: A method for registering electronic payment means and a registration arrangement which is adapted accordingly. Further, a computer program product is proposed having control commands that implement the proposed method and/or operate the proposed registration arrangement.
    Type: Application
    Filed: March 11, 2019
    Publication date: December 31, 2020
    Inventors: Thomas TARANTINO, Sascha BEHLENDORF, Klaus FINKENZELLER, Michael BALDISCHWEILER, Stefan KLUGE
  • Publication number: 20190213460
    Abstract: A portable data carrier comprises a first electrical oscillating circuit, which includes a first antenna coil and a first electrical load, and at least one second electrical oscillating circuit, which comprises a second antenna coil and a second electrical load. The first antenna coil and the second antenna coil are geometrically arranged relative to each other such that there is no mutual inductance between the first antenna coil and the second antenna coil.
    Type: Application
    Filed: July 10, 2017
    Publication date: July 11, 2019
    Applicant: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus FINKENZELLER, Stefan KLUGE
  • Patent number: 10249125
    Abstract: A method for sealing and checking a product for manipulation with a seal and to a corresponding seal, wherein the seal comprises an antenna, a chip, a measuring element, and a measurement device. For sealing and checking the product for manipulation, a step of arranging the seal at the product to be sealed is carried out, wherein the product is mechanically sealed. The seal receives a check query by means of contactless data transmission from a read-write device, determines the physical property of the measuring element as a first measurement value by the seal, prepares a response to the query by the chip, sends by means of contactless transmission the response to the read-write device, the response of the chip relating to the first measurement value, and compares the first measurement value with a reference value.
    Type: Grant
    Filed: April 29, 2016
    Date of Patent: April 2, 2019
    Assignee: GIESECKE+DEVRIENT CURRENCY TECHNOLOGY GMBH
    Inventors: Klaus Finkenzeller, Volker Stöhr, Ferdinand Burianek, Wilfried Rill, Carsten Bohn
  • Patent number: 10084461
    Abstract: A method for producing an output bit stream for a first signal of a first carrier frequency by a security module involves the security module receiving an input signal comprising the first signal and a second signal of a second carrier frequency. A mixed signal is formed which has the first signal at the first carrier frequency, the second signal at the second carrier frequency, and a mixed product at an intermediate frequency. The mixed product is demodulated by a second nonlinear component to output a second baseband signal for generating a second bit stream relating to the first signal in the mixed product. The output logic produces the output bit stream for the first signal, and selects either the first bit stream or the second bit stream as the output bit stream for the first signal.
    Type: Grant
    Filed: September 22, 2015
    Date of Patent: September 25, 2018
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Florian Pfeiffer
  • Patent number: 10074087
    Abstract: A method for carrying out a transaction between a portable data carrier, such as a chip card, and a terminal is described. An information item (TID) about the terminal is transferred to the portable data carrier upon the transmission of transaction data by a communication between the portable data carrier and the terminal. As a result, the portable data carrier obtains from the information item a locational position (ZID, WID, GID) of the terminal. Further, there is ascertained a locational position (OP) of the portable data carrier to which the portable data carrier has access. Finally, the portable data carrier compares the locational position (ZID, WID, GID) of the terminal with its locational position (OP), and initiates a measure for protecting the transaction in case a deviation between the two locational positions (ZID, WID, GID; OP) exceeds a predetermined threshold.
    Type: Grant
    Filed: January 13, 2011
    Date of Patent: September 11, 2018
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Wolfgang Rankl
  • Publication number: 20180253541
    Abstract: A method in a system comprising at least one portable data carrier, an authentication server, and several service providers systems. The service provider systems have reading devices and a service provider unit. The method comprises the following steps: Requesting an authentication information item of the data carrier comprising a safety identity from the data carrier by a reading device of the service provider. Supplying the authentication information item by the data carrier to the reading device. Relaying the authentication information item by the reading device to the authentication server. Authenticating the data carrier by the authentication server on the basis of the authentication information item. Establishing an application identity associated with the data carrier in the service provider system by the authentication server with the help of the security identity. Transmitting the established application identity associated with the data carrier to the reading device of the service provider system.
    Type: Application
    Filed: August 22, 2016
    Publication date: September 6, 2018
    Inventors: Klaus FINKENZELLER, Stephan RASCH, Dirk RIESENBECK, Hans-Jürgen ROTH
  • Publication number: 20180240102
    Abstract: A method in a system comprising at least one portable data carrier, an authentication server and at least one reading device of at least one service provider which is couplable to the authentication server. The data carrier is adapted to communicate contactlessly with the reading device and comprises a security marking which can be read contactlessly by the reading device and on the basis of which the data carrier can be authenticated by the authentication server. The method comprises the step of equipping the data carrier with a data-carrier management marking that encodes a piece of data-carrier management information and readable contactlessly by a portable terminal. The method includes contactlessly reading out the data-carrier management marking by a portable terminal, transferring the data-carrier management information encoded in the data-carrier management marking to the authentication server, and managing the data carrier in the system employing the data-carrier management information.
    Type: Application
    Filed: August 22, 2016
    Publication date: August 23, 2018
    Inventors: Klaus FINKENZELLER, Stephan RASCH, Dirk RIESENBECK, Hans-Jürgen ROTH
  • Publication number: 20180144573
    Abstract: A method for sealing and checking a product for manipulation with a seal and to a corresponding seal, wherein the seal comprises an antenna, a chip, a measuring element, and a measurement device. For sealing and checking the product for manipulation, a step of arranging the seal at the product to be sealed is carried out, wherein the product is mechanically sealed. The seal receives a check query by means of contactless data transmission from a read-write device, determines the physical property of the measuring element as a first measurement value by the seal, prepares a response to the query by the chip, sends by means of contactless transmission the response to the read-write device, the response of the chip relating to the first measurement value, and compares the first measurement value with a reference value.
    Type: Application
    Filed: April 29, 2016
    Publication date: May 24, 2018
    Inventors: Klaus FINKENZELLER, Volker STÖHR, Ferdinand BURIANEK, Wilfried RILL, Carsten BOHN
  • Patent number: 9906247
    Abstract: A method and a circuit are arranged for adapting a first reference value for generating a first bit stream from an input signal by a first amplitude adapting unit. The input signal comprises a first and a second signal. The first signal and the second signal form a baseband sum signal. A first non-linear component demodulates the input signal and outputs a demodulated input signal. The amplitude adapting unit outputs the first bit stream from the demodulated input signal on the basis of a first reference value. A reference-value adapting unit comprises a detection unit which detects the first and the second signal. Upon discontinuation of the first and second signals, an adjusting unit adjusts the first reference value to a basic reference value.
    Type: Grant
    Filed: September 22, 2015
    Date of Patent: February 27, 2018
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Florian Pfeiffer
  • Patent number: 9851399
    Abstract: A method for checking a circuit devised for contactless data communication, which comprises an antenna and an electronic component coupled with the antenna, comprises the following steps: generating an alternating magnetic field of a field strength, and arranging the circuit in the alternating field region. Then the electronic circuit is excited by means of an energy pulse. In a further step, an oscillation of the circuit in response to the excitation of the circuit by the energy pulse is captured. The captured oscillation of the circuit is finally evaluated, in particular with regard to a self-resonant frequency of the circuit.
    Type: Grant
    Filed: February 5, 2014
    Date of Patent: December 26, 2017
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Klaus Finkenzeller, Michael Baldischweiler
  • Publication number: 20170302313
    Abstract: A method and a circuit are arranged for adapting a first reference value for generating a first bit stream from an input signal by a first amplitude adapting unit. The input signal comprises a first and a second signal. The first signal and the second signal form a baseband sum signal. A first non-linear component demodulates the input signal and outputs a demodulated input signal. The amplitude adapting unit outputs the first bit stream from the demodulated input signal on the basis of a first reference value. A reference-value adapting unit comprises a detection unit which detects the first and the second signal. Upon discontinuation of the first and second signals, an adjusting unit adjusts the first reference value to a basic reference value.
    Type: Application
    Filed: September 22, 2015
    Publication date: October 19, 2017
    Inventors: Klaus FINKENZELLER, Florian PFEIFFER
  • Publication number: 20170294916
    Abstract: A method for producing an output bit stream for a first signal of a first carrier frequency by a security module involves the security module receiving an input signal comprising the first signal and a second signal of a second carrier frequency. A mixed signal is formed which has the first signal at the first carrier frequency, the second signal at the second carrier frequency, and a mixed product at an intermediate frequency. The mixed product is demodulated by a second nonlinear component to output a second baseband signal for generating a second bit stream relating to the first signal in the mixed product. The output logic produces the output bit stream for the first signal, and selects either the first bit stream or the second bit stream as the output bit stream for the first signal.
    Type: Application
    Filed: September 22, 2015
    Publication date: October 12, 2017
    Inventors: Klaus FINKENZELLER, Florian PFEIFFER
  • Patent number: 9544021
    Abstract: An apparatus for communicating with a portable data carrier comprises a first communication interface, based on wireless data transfer technology, for receiving and/or transmitting data via a first communication channel, and a second communication interface, based on different contactless data transfer technology, for receiving and/or transmitting data via a second communication channel. A first software interface to the first communication interface via which an application program stored in the apparatus can communicate with the first communication interface. The apparatus has a second software interface via which the application program can communicate with the second communication interface, with the communication from the first software interface to the first communication interface, and vice versa, being passed via the second software interface.
    Type: Grant
    Filed: December 17, 2012
    Date of Patent: January 10, 2017
    Assignee: GIESECKE & DEVRIENT GMBH
    Inventors: Klaus Finkenzeller, Rainer Schmidtke
  • Patent number: 9490970
    Abstract: Methods and a system involve secure communication between an RFID tag and a reader via the over-the-air interface, and to corresponding RFID tags and corresponding readers. A modification of the Rabin method is employed wherein within the framework of the encryption of a plaintext M into which an identification element of the RFID tag or of an object furnished therewith is incorporated, there is computed by the RFID tag, the Montgomery residue (Montgomery reduction) of the square of the plaintext M modulo n with respect to a Montgomery base R, i.e. C*=M2R?1 mod n, and the resultant ciphertext C* is employed for authenticating the RFID tag. The modulus n=p·q is the public key of the reader, the prime numbers p, q are the private key of the reader, and the Montgomery base R is an integer that is larger than the modulus n.
    Type: Grant
    Filed: December 8, 2015
    Date of Patent: November 8, 2016
    Assignee: GIESECKE & DEVRIENT GMBH
    Inventors: Walter Hinz, Klaus Finkenzeller, Martin Seysen
  • Patent number: 9450949
    Abstract: A method for access control to a computer with a mobile end device relies on using contactless interfaces. An authentication to the computer is carried out with the mobile end device and upon a successful authentication the access to the computer is granted or maintained. For preparing the authentication, a certificate is loaded into the mobile end device from a portable data carrier separate from the mobile end device. For authentication, authentication data comprising the certificate or obtained from the certificate are provided to the computer from the mobile end device via the contactless interfaces.
    Type: Grant
    Filed: February 26, 2013
    Date of Patent: September 20, 2016
    Assignee: GIESECKE & DEVRIENT GMBH
    Inventors: Helmut Scherzer, Klaus Finkenzeller