IP Library Granted Patent US 12,493,878
Granted Patent B2
US 12,493,878 · App. 17/256,366 · Granted Dec 9, 2025

System for inputting a pin block to a network

Inventors: David William Kuchenski (Tallmadge, OH); Richard Harris (Southampton, GB); Anne Konecny (Uniontown, OH)
Assignee: Diebold Nixdorf, Incorporated
G06Q20/4012G06Q20/18G07F19/211H04L9/3263H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,493,878
App. No.
17/256,366
Granted
Dec 9, 2025
Kind
B2
Abstract

A method for inputting pin blocks to a network can include receiving a first pin from a key pad with an encryption module, which is then encrypted to a first pin block with a network encryption key and transmitted to a first computing device that inputs the first pin block to a secure network. The encryption module can also receive a second pin block from a second computing device that is physically separate from the key pad. Prior to receiving the second pin block, the encryption module can transmit a certificate and a second certificate to the second computing device. The encryption module can decrypt the second pin block to a second pin and encrypt the second pin to a third pin block with the network encryption key, for inputting the third pin block to the secure network.

Claims (49)

1 . A method for inputting pin blocks to a network with an automated transaction machine (ATM) comprising:

placing a key pad of the ATM in communication with an encryption module of the ATM having one or more processors;

receiving, at the encryption module, a first pin from the key pad;

encrypting, at the encryption module, the first pin to a first pin block with a network encryption key;

placing the encryption module in communication with a first computing device of the ATM having one or more processors;

transmitting, with the encryption module, the first pin block to the first computing device;

inputting, with the first computing device, the first pin block to a secure network;

receiving, at the encryption module, from a second computing device that is a mobile computing device and is physically separate from the key pad, a request to transmit a second pin;

receiving, at the encryption module, over a wireless link, a second pin block from the second computing device;

transmitting, with the encryption module, prior to said receiving the second pin block from the second computing device, a certificate and a second certificate to the second computing device, the certificate including a first public encryption key, the first public encryption key different than the network encryption key and the second certificate being a public signature certificate including a first public signature key;

decrypting, with the encryption module, the second pin block to a second pin;

encrypting, with the encryption module, the second pin to a third pin block with the network encryption key; and

inputting, with the first computing device, the third pin block to the secure network.

2 . The method of claim 1 further comprising:

generating, at the encryption module, a first encryption key pair including the first public encryption key and a first private encryption key, prior to said receiving the second pin block from the second computing device.

3 . The method of claim 2 wherein said generating is further defined as:

generating, at the encryption module, the first encryption key pair in response to said receiving the request to transmit the second pin.

4 . The method of claim 2 wherein said decrypting further comprises:

decrypting the second pin block to the second pin, at the encryption module after said receiving the second pin block, with the first private encryption key, the first private encryption key different than the network encryption key, said decrypting prior to said encrypting the second pin with the network encryption key.

5 . The method of claim 2 further comprising:

utilizing, at the encryption module, the first private encryption key only once.

6 . The method of claim 5 further comprising:

receiving, at the encryption module, from a third computing device physically separate from the key pad, a request to transmit a third pin, the third computing device different from the second computing device and the third pin different than the second pin;

generating, at the encryption module, a second encryption key pair including a second public encryption key and a second private encryption key, the second private encryption key different than the first private encryption key and the second public encryption key different than the first public encryption key;

transmitting, from the encryption module, the second public encryption key to the third computing device, the second public encryption key different than the network encryption key;

receiving, at the encryption module, over the wireless link, a fourth pin block from the third computing device;

decrypting the fourth pin block to the third pin, at the encryption module, with the second private encryption key, the second private encryption key different than the network encryption key;

encrypting, with the encryption module, the third pin to a fifth pin block with the network encryption key; and

inputting, with the first computing device, the fifth pin block to the secure network.

7 . The method of claim 1 wherein said transmitting the certificate and the second certificate is further defined as:

transmitting the certificate and the second certificate to the second computing device in response to said receiving the request to transmit the second pin.

8 . The method of claim 1 further comprising:

receiving, at the encryption module, a random number from the second computing device, said receiving the random number prior to said receiving the second pin block from the second computing device and after said transmitting the certificate having the first public encryption key.

9 . The method of claim 8 further comprising:

transmitting, with the encryption module, a message with the random number back to the second computing device.

10 . The method of claim 9 further comprising:

signing the message, with the encryption module, with a first private signature key, the first private signature key different than the network encryption key.

11 . The method of claim 10 further comprising:

verifying, with the second computing device, the signature of the message using the first public signature key of the public signature certificate.

12 . The method of claim 11 further comprising:

encrypting, with the second computing device, the second pin with the first public encryption key associated with the certificate.

13 . The method of claim 1 further comprising:

receiving, at a third computing device having one or more processors, a first input defining a pre-staged transaction and including details of an exchange of at least one physical article at the first computing device and an account associated with a user, the third computing device remote from the first computing device, the encryption module, and the second computing device;

storing, with the third computing device, the first input in a database;

receiving, at the third computing device, a second input including the account associated with the user and indicative of the second computing device positioned proximate to the encryption module;

retrieving, with the third computing device, the first input from the database in response to said receiving the second input; and

communicating, with the third computing device, at least part of the first input to the first computing device in response to said receiving the second input, said communicating prior to said receiving the second pin block from the second computing device.

14 . The method of claim 13 further comprising:

generating, at the encryption module, an encryption key pair including the first public encryption key and a first private encryption key, both of the first public encryption key and the first private encryption key distinct from the network encryption key, said generating prior to said receiving the second pin block from the second computing device and in response to said communicating at least part of the first input to the first computing device.

Assignments (20)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS RECORDED AT R/F 066545/0078 Recorded Dec 19, 2024
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 069743/0001 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT RECORDED AT R/F 066599/0767 Recorded Dec 19, 2024
From: PNC BANK, NATIONAL ASSOCIATION, AS AGENT
To: DIEBOLD SELF-SERVICE SYSTEMS; DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 069743/0497 →
SECURITY INTEREST Recorded Dec 18, 2024
From: DIEBOLD NIXDORF, INCORPORATED
To: REGIONS BANK, AS COLLATERAL AGENT
Reel/Frame 069738/0001 →
SECURITY INTEREST Recorded Dec 18, 2024
From: DIEBOLD NIXDORF, INCORPORATED
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 069740/0014 →
SECURITY INTEREST Recorded Feb 14, 2024
From: DIEBOLD NIXDORF, INCORPORATED; DIEBOLD SELF-SERVICE SYSTEMS
To: PNC BANK, NATIONAL ASSOCIATION
Reel/Frame 066599/0767 →
SECURITY INTEREST Recorded Feb 9, 2024
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 066545/0078 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (2026 NOTES REEL/FRAME 062299/0794) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064642/0202 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (2025 EUR NOTES REEL/FRAME 062294/0014) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064642/0079 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (2025 USD NOTES REEL/FRAME 062293/0976) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064642/0124 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (NEW TERM LOAN REEL/FRAME 062299/0717) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064642/0288 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (R/F 062299/0618) Recorded Jun 16, 2023
From: GLAS AMERICAS LLC
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064008/0852 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jun 7, 2023
From: JPMORGAN CHASE BANK, N.A.
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 064021/0405 →
PATENT SECURITY AGREEMENT - 2025 EUR Recorded Jan 5, 2023
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062294/0014 →
PATENT SECURITY AGREEMENT - SUPERPRIORITY Recorded Jan 5, 2023
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062299/0618 →
PATENT SECURITY AGREEMENT - 2025 USD NOTES Recorded Jan 5, 2023
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062293/0976 →
PATENT SECURITY AGREEMENT - TERM LOAN Recorded Jan 5, 2023
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062299/0717 →
PATENT SECURITY AGREEMENT - 2026 NOTES Recorded Jan 5, 2023
From: DIEBOLD NIXDORF, INCORPORATED
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062299/0794 →
SECURITY INTEREST (ABL) Recorded Dec 29, 2022
From: DIEBOLD NIXDORF, INCORPORATED
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 062250/0387 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 3, 2021
From: KONECNY, ANNE
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 055128/0841 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 3, 2021
From: KUCHENSKI, DAVID WILLIAM; HARRIS, RICHARD
To: DIEBOLD NIXDORF, INCORPORATED
Reel/Frame 055128/0759 →