Patents by Inventor Ullrich Martini

Ullrich Martini has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).

  • Patent number: 11364875
    Abstract: The present invention is directed to a method for preventing a relay attack between a mobile phone and a starting device of an automobile, which allows to prevent stealing a vehicle. According to the invention, very specific movement profiles of an authorized driver or user are recognized and thereby it is prevented that an unauthorized user starts the vehicle and then steals it, in various application scenarios. This is based, among other things, on the underlying hardware components' sensor technology used. Further, the invention relates to an analogously arranged system arrangement and to a computer program product with control commands which implement the method or operate the system arrangement.
    Type: Grant
    Filed: June 17, 2019
    Date of Patent: June 21, 2022
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventor: Ullrich Martini
  • Patent number: 11315126
    Abstract: A method for checking the validity of a ticket involves transferring information from a control entity to a mobile device. A code is computed on the basis of this information, of a derived key and of a property individual for the mobile device, the code being subsequently checked by the control entity.
    Type: Grant
    Filed: November 10, 2015
    Date of Patent: April 26, 2022
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Bernhard Inderst, Ullrich Martini, Dietmar Maierhöfer
  • Publication number: 20210362677
    Abstract: The present invention is directed to a method for preventing a relay attack between a mobile phone and a starting device of an automobile, which allows to prevent stealing a vehicle. According to the invention, very specific movement profiles of an authorized driver or user are recognized and thereby it is prevented that an unauthorized user starts the vehicle and then steals it, in various application scenarios. This is based, among other things, on the underlying hardware components' sensor technology used. Further, the invention relates to an analogously arranged system arrangement and to a computer program product with control commands which implement the method or operate the system arrangement.
    Type: Application
    Filed: June 17, 2019
    Publication date: November 25, 2021
    Inventor: Ullrich MARTINI
  • Patent number: 10237731
    Abstract: A PKI key pair comprising a private key and a public key is arranged for the end device. The public key is stored at the communication partner. The communication partner is arranged to provide a session key, encrypt data using the session key, encrypt the session key using the public key and convey the encrypted data to the end device. The communication system is further characterized in that it comprises a server system, remote from the mobile end device, in which the private key is stored in a secure environment. For this, the communication partner is furthermore arranged to transmit the encrypted session key to the server system. Moreover, the server system is arranged to decrypt the session key for the end device with the private key and to transmit it in decrypted form to the end device for decrypting the data.
    Type: Grant
    Filed: July 28, 2015
    Date of Patent: March 19, 2019
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventors: Frank Schäfer, Ullrich Martini
  • Patent number: 9875366
    Abstract: Microprocessor system that is implemented or can be implemented in a mobile terminal and comprises: a normal operating system designed to generate and maintain a non-secure runtime environment and a security operating system designed to generate and maintain a secured runtime environment, and an operating system interface between the normal operating system and the security operating system, said operating interface being designed to control communication between the non-secure runtime environment and the secured runtime environment on the operating system level, and at least one filter interface that is designed to securely control communication between the non-secure runtime environment and a secured runtime environment on a level different from the operating system level.
    Type: Grant
    Filed: October 4, 2012
    Date of Patent: January 23, 2018
    Assignee: TRUSTONIC LIMITED
    Inventors: Stephen Spitz, Markus Kohler, Ullrich Martini
  • Publication number: 20170316423
    Abstract: A method for checking the validity of a ticket involves transferring information from a control entity to a mobile device. A code is computed on the basis of this information, of a derived key and of a property individual for the mobile device, the code being subsequently checked by the control entity.
    Type: Application
    Filed: November 10, 2015
    Publication date: November 2, 2017
    Inventors: Bernhard INDERST, Ullrich MARTINI, Dietmar MAIERHÖFER
  • Patent number: 9792445
    Abstract: The invention provides a method for securely inputting an access code to an input interface of a mobile end device. During an input time period covering the process of inputting the access code, at least one or some sensors of the end device that are uninvolved in the input of the access code, said sensors being respectively arranged for capturing sensor variables by sensor, are hindered from capturing and/or passing on the respective sensor variable. Possible sensors are acceleration sensors or a digital camera. The method prevents the access code from being spied out by means of the deactivated sensors.
    Type: Grant
    Filed: February 25, 2014
    Date of Patent: October 17, 2017
    Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
    Inventor: Ullrich Martini
  • Publication number: 20170223529
    Abstract: A PKI key pair comprising a private key and a public key is arranged for the end device. The public key is stored at the communication partner. The communication partner is arranged to provide a session key, encrypt data using the session key, encrypt the session key using the public key and convey the encrypted data to the end device. The communication system is further characterized in that it comprises a server system, remote from the mobile end device, in which the private key is stored in a secure environment. For this, the communication partner is furthermore arranged to transmit the encrypted session key to the server system. Moreover, the server system is arranged to decrypt the session key for the end device with the private key and to transmit it in decrypted form to the end device for decrypting the data.
    Type: Application
    Filed: July 28, 2015
    Publication date: August 3, 2017
    Inventors: Frank SCHÄFER, Ullrich MARTINI
  • Patent number: 9400901
    Abstract: A method for operating a communication system comprises a transponder having at least one antenna, in particular in the form of a portable data carrier, and a reading device having at least one antenna. The reading device is configured to exchange data with the transponder. An exchange of data between the transponder and the reading device is possible within a predetermined range. A measurement and evaluation is effected of the time of a command transmitted from the reading device to the transponder and the receipt of a corresponding response of the transponder by the reading device. In so doing, a processing is effected of a card-individual length of time T_icc, wherein the card-individual length of time T_icc specifies how long the transponder takes for the receipt and the processing of a command received from the reading device and the sending of a corresponding response.
    Type: Grant
    Filed: November 19, 2013
    Date of Patent: July 26, 2016
    Assignee: Giesecke & Devrient GmbH
    Inventors: Dirk Wacker, Ullrich Martini
  • Publication number: 20150371050
    Abstract: The invention provides a method for securely inputting an access code to an input interface of a mobile end device. During an input time period covering the process of inputting the access code, at least one or some sensors of the end device that are uninvolved in the input of the access code, said sensors being respectively arranged for capturing sensor variables by sensor, are hindered from capturing and/or passing on the respective sensor variable. Possible sensors are acceleration sensors or a digital camera. The method prevents the access code from being spied out by means of the deactivated sensors.
    Type: Application
    Filed: February 25, 2014
    Publication date: December 24, 2015
    Inventor: Ullrich MARTINI
  • Publication number: 20150302230
    Abstract: A method for operating a communication system comprises a transponder having at least one antenna, in particular in the form of a portable data carrier, and a reading device having at least one antenna. The reading device is configured to exchange data with the transponder. An exchange of data between the transponder and the reading device is possible within a predetermined range. A measurement and evaluation is effected of the time of a command transmitted from the reading device to the transponder and the receipt of a corresponding response of the transponder by the reading device. In so doing, a processing is effected of a card-individual length of time T_icc, wherein the card-individual length of time T_icc specifies how long the transponder takes for the receipt and the processing of a command received from the reading device and the sending of a corresponding response.
    Type: Application
    Filed: November 19, 2013
    Publication date: October 22, 2015
    Applicant: Giesecke & Devrient GmbH
    Inventors: Dirk WACKER, Ullrich MARTINI
  • Patent number: 9104895
    Abstract: The invention describes a method for accessing a portable storage data carrier (10) having a controller (12) for managing a standardized storage element (14) and having an additional module (16), wherein a data block is transferred to the storage data carrier (10) in a first transmission protocol. The data block comprises routing information and application data, whereby the routing information contains an identifier which can be detected by the controller (12). Furthermore, it is determined whether a data block received on the storage data carrier (10) contains routing information. The data block is relayed to a storage area (18) of the storage element (14), said storage area being hidden to a terminal (50), when the data block comprises routing information and the routing information comprises, besides the identifier contained therein, at least one further, predetermined parameter indicating the access to the hidden storage area (18).
    Type: Grant
    Filed: May 5, 2010
    Date of Patent: August 11, 2015
    Assignee: GIESECKE & DEVRIENT GMBH
    Inventor: Ullrich Martini
  • Publication number: 20140237621
    Abstract: Microprocessor system that is implemented or can be implemented in a mobile terminal and comprises: a normal operating system designed to generate and maintain a non-secure runtime environment and a security operating system designed to generate and maintain a secured runtime environment, and an operating system interface between the normal operating system and the security operating system, said operating interface being designed to control communication between the non-secure runtime environment and the secured runtime environment on the operating system level, and at least one filter interface that is designed to securely control communication between the non-secure runtime environment and a secured runtime environment on a level different from the operating system level.
    Type: Application
    Filed: October 4, 2012
    Publication date: August 21, 2014
    Applicant: TRUSTONIC LIMITED
    Inventors: Stephen Spitz, Markus Kohler, Ullrich Martini
  • Publication number: 20120110292
    Abstract: The invention describes a method for accessing a portable storage data carrier (10) having a controller (12) for managing a standardized storage element (14) and having an additional module (16), wherein a data block is transferred to the storage data carrier (10) in a first transmission protocol. The data block comprises routing information and application data, whereby the routing information contains an identifier which can be detected by the controller (12). Furthermore, it is determined whether a data block received on the storage data carrier (10) contains routing information. The data block is relayed to a storage area (18) of the storage element (14), said storage area being hidden to a terminal (50), when the data block comprises routing information and the routing information comprises, besides the identifier contained therein, at least one further, predetermined parameter indicating the access to the hidden storage area (18).
    Type: Application
    Filed: May 5, 2010
    Publication date: May 3, 2012
    Inventor: Ullrich Martini
  • Patent number: 7526653
    Abstract: A method is described for identifying and initializing digitized biometric features to provide encryption or coding of secret data.
    Type: Grant
    Filed: August 4, 2000
    Date of Patent: April 28, 2009
    Assignee: Giesecke & Devrient GmbH
    Inventors: Kolja Vogel, Stephan Beinlich, Ullrich Martini