Brought to you as a public service of the Open Spectrum Foundation (Stichting Open Spectrum), Amsterdam - Prague

openspectrum.info logo

NEWS

RFID: "a slow motion train wreck"?

From "RFID: Readily Fooled Indeed" by Richard Martin, Unstrung, 30 August:

"Among the presentations that raised eyebrows at the recent DefCon convention in Las Vegas was one from RFID Guardian: A portable device that 'offers personal RFID security and privacy management for people, as the Website of the RFID Guardian Project puts it.

"In other words, the RFID Guardian can detect RFID tags and readers in the immediate vicinity and emulate tags, and then spoof RFID readers into believing that there tags present when there are none, or that there are no tags when they're actually present.

"Developed by a team led by Melanie Rieback, a Ph.D. student at Vrije University in the Netherlands, the Guardian is currently in the prototype stage. But Rieback, an American doing her graduate work under Professor Andrew Tanenbaum of Vrije, definitely sees it as the forerunner of a consumer device.

" 'As this technology becomes more and more prevalent, we want to make the whole RFID world transparent to consumers,' explains Rieback. 'So people can do something about all this RFID around them and make conscious choices about whether they want to have it.'

"The implications for providers and users of RFID technology are clear: If a handheld device can jam, fool, or otherwise disrupt RFID signals, the usefulness of RFID tags for theft-prevention, inventory tracking, and merchandise identification could quickly evaporate...

"Security researcher Jonathan Westhues, known for producing a 'clone' of a Motorola Flexpass RFID 'proximity card' for unlocking doors and similar applications, demonstrated earlier this year that he could do the same with a VeriChip - an implantable, RFID chip for various medical applications.

" 'It took me a month of evenings to clone my first Flexpass, with basically no equipment,' Westhues writes on his Website. 'Using my latest hardware, I was able to clone a VeriChip - which, like the Flexpass, is an ID-only tag with no security - with only a few hours' work.'

" 'What's important to realize here is that RFID is a really good tracking technology that doesn't stand up at all to a determined attacker,' observes Dan Kaminsky, senior security researcher for DoxPara Research. 'The entire computer security community looks at RFID as a slow motion train wreck.'

"Rieback, who has published her work online and in academic journals, is a 'white-hat' hacker who says she's alerting the RFID industry to the vulnerabilities inherent in the technology. 'Yes, we've introduced this concept of the RFID Guardian and it has dual uses,' Rieback explains. 'It's the same with a chainsaw: You can use it for good or for bad. [The RFID industry] needs to be aware of the potential vulnerabilities, so they can take action to correct them.'

"What's more, says Rieback, the genesis of the RFID Guardian was a basic flaw in the technology design that keeps the cost of tags high. 'I realized it would be better to externally regulate the access to RFID tags, as opposed to having the access control mechanism on the tag itself,' she explains. 'If you offload the authentication controls and the access control to a full-fledged computer, then you can bring the cost per-tag down.'

"Security expert Richard Stiennon, the founder and chief research analyst at IT-Harvest Inc., doesn't quite buy that argument. Offloading the security and control mechanisms, he says, requires a third device. 'Up to now if you incorporate those in the tag, then the total cost of management is much lower. Any time you introduce a third element like that you're increasing the complexity the system.'

"Rieback and her colleagues are working on miniaturizing the Guardian components so that it can be plugged into - or even built into - a device like a PDA.

" 'The idea is if we can build something about the size of a little card, with a compact Flash interface, it's conceivable we could come up with a version that can be mass produced and then commercially distributed.'

"In the meantime, if you're worried about RFID readers in your environment, security experts suggest getting a Mylar-lined purse or backpack. 'That's the passive line of defense as opposed to the active,' notes Stiennon."

[: 3 September 2006]

Click here for the LATEST HEADLINES

Recent News...

"Wi-Fi black magic boasts super signal range" (1 September 2006)

"Over 565 million High-Frequency RFID Tag ICs Shipped in 2005" (31 August)

"Broader RFID standards necessary" (31 August)

Spectrum wall-chart and WiFi "camera" make the invisible visible (30 August)

Will short-range radio help celcos develop machine-to-machine data services? (30 August)

Denmark liberalizing spectrum management (29 August)

Hams use rain clouds in 40-km laser link (29 August)

UK survey shows fast growth in WLAN popularity (29 August)

Africa: Wi-Fi Hot Spots Come of Age (29 August)

"Singapore: One nation under Wi-Fi" (28 August)

Russia: 61% growth in 802.11-based services in first half of 2006 (28 August)

Taiwan to invest up to US$66 million to expand RFID industry (28 August)

Nevada gambling commission licenses portable wireless slot machines (25 August)

RFID, satellites and Internet combined for global livestock monitoring net (25 August)

Innovative wireless medical devices based on NFC (23 August)

Near-Field Communication specs issued (23 August)

"US Begins Rollout of RFID Passports" (21 August)

Japan adopts indoor UWB rules (21 August)

Nepal to de-license WiFi soon (20 August)

Sony's new WiFi personal communicator (9 August)

Solar-powered WiFi for India and elsewhere (9 August)

"Underground Radio"® a boon in emergencies (9 August)

Prediction: Bluetooth in 30% of New Vehicles by 2012 (28 July)

Windows Vista lacks "native support" for Wireless USB (27 July)

Global annual sales of home wireless devices: 314 million units by 2010 (27 July)

Automatic tracking antenna supports WiFi mobility (25 July)

Online seminar, 25 July: WiFi Mesh for Efficient Cities (24 July)

Wireless Internet on trains in China (24 July)

Identity theft: implanted RFID's "unique ID" cloned (24 July)

"One of the most promising and innovative ideas in communications": unlicensed use of vacant TV channels (24 July)

Petition against WiFi and Bluetooth licensing in Bahrain (21 July)

"Researcher Developing Anti-RFID Device" (21 July)

"A UWB-Enabled iPod: Too Cool, For School?" (20 July)

Study says all-in-one radios will rule (20 July)

Toronto reviews WiFi health risk (20 July)

British Telecom's "Wireless Cities" combine WiFi, VoIP and surveillance support (16 July)

Spectrum Sharing Test Beds to help "cognitive" radio (15 July)

Nike+iPod wireless kit for runners goes on sale (14 July)

Ofcom proposes to deregulate CB and allow unlicensed low-power FM (14 July)

"Smart" fitting room uses RFID to suggest matching apparel (13 July)

Study finds WiFi more valued than iPods or home phones (13 July)

South Korea allocates large blocks of "Flexible Access Common Spectrum" above 3 GHz (12 July)

Railroads respond to strong demand for WiFi/WiMax on trains (12 July)

Bahrain proposes "light licensing" of WiFi (10 July)

First wireless wrist-worn PC due this month (6 July)

First Bluetooth watches released (6 July)

UWB firms giving up on spectrum below 6GHz? (6 July)

European Commission's online consultation for RFID (5 July)

New Zealand proposes wireless "managed parks" (5 July)

"RFID Hits a Bump" (1 July)

Visit our News Archive for additional stories.

To receive the openspectrum.info newsfeed by email, enter your email address:

(Email subscriptions managed by FeedBurner)