RFID Passports Raise Safety Concerns 459
CurtMonash writes "CNNMoney.com features a skeptical article about the US State Department's plans to soon issue RFID passports (currently being tested on State Department employees). One fear is that they can be hacked for information about you. And even if they can't, carrying around a little transmitter saying 'I'm an American! I'm an American!' isn't a fun and safe thing to do in all parts of the world." From the article: "Basically, you've given everybody a little radio-frequency doodad that silently declares 'Hey, I'm a foreigner,' says author and futurist Bruce Sterling, who lectures on the future of RFID technology. 'If nobody bothers to listen, great. If people figure out they can listen to passport IDs, there will be a lot of strange and inventive ways to exploit that for criminal purposes.'"
RFID security (Score:5, Interesting)
Re:yeah (Score:2, Interesting)
What happens if the RFID doesnt work (Score:3, Interesting)
Will you still be allowed to travel with just the written portion of the passport. Hell, just go around burning up other peoples passports and the riots will soon begin in the security line....
Easy Way To Stop Skimming (Score:2, Interesting)
Re:Hows about.. (Score:3, Interesting)
Yeah well. Not good. (Score:3, Interesting)
So, the issue, you consider is that the transmitter is giving away your nationality and NOT that it's a....I dunno. a BLOODY TRANSMITTER?( worst case scenaria, and I'm really going off the top of my head here, how about professional passport thieves:"Hey, there is a city building with 24 passports in there, let's see which suits are empty at the moment, and do some damage."(I'd think anybody smart enough to detect the signal would be smart enough to block it afterwards)). I'd be appalled if other countries follow suit, I fear that they will. Let's just hope that there is enough damage done the moment they try to use RFID's so the launch fails.
Re:yeah (Score:3, Interesting)
You can have a thousand native citizens walk down a busy street, and the bomb doesn't go off until an American (or possibly, even a native with US embassy employee-ID) walks right past it.
I know it's an essential part of the whole "keep 'em fat, stupid, scared and easily-trackable" agenda the US/UK governments have going, but I find it hard to believe the USA (especially!) is actually making it easier to identify its tourists and overseas personnel.
Why RFID and not smart cards? (Score:4, Interesting)
I can only think of two possibilities. One is just good old fashioned corruption. It's no secret that the GOP has pretty much put a 'For Sale' sign out front of the Capital, so it may just be a way to send a bunch of money to a valuable 'doner'. Or they have some requirement which needs RFID, but is being kept secret.
I suppose they could almost completely automate letting US citizens back into the country. Will I be able to use my RFID passport to scan in to the country just like I do with my work badge to get into the machine room or co-lo? I can see benefits for having an express lane at immigration for citizens with RFID passports so we don't have to wait behind all the riff-raff
Re:yeah (Score:3, Interesting)
Of course, this was not difficult were I lived as, usually people from USA get stuck in Cancun or Los Cabos were they find all their beloved touristic heaven. It is only European (and sometimes Canadian) tourism the one we (in Mexico) call "tourism with culture" that gets a bit away from Cancun to see the Mayan ruins [bill-in-tulsa.com] or Campeche [en-yucatan.com.mx] fortresses/history and all the incredible historical and natural wonders that are the real marvels of Mexico.
Of course the Estadounidenses dont know that because they are happy drinking Tequila and dancing until they fall in their expensive (not a lot for them of course) hotels and "Planet Hollywod" and "Hard Rock Cafe" (I have always wondered *why* do they bother to travel to Cancun if they are going to get into the same places they have in the USA).
And, as I lived in Campeche, the blonds that arrived there were usually Europeans or Canadians (although CAnadians were more often found in La Paz which is close to Los Cabos, but without all the "touristic" commercialization)
Re:yeah (Score:3, Interesting)
And, for added juice, an additional transmitter in the absorbent sleeve announcing that you're CowboyNeal! Who says the era of Cowboy Diplomacy is over?
Re:yeah (Score:1, Interesting)
It's the same principle McCarthyists used to find "communists". All communists are atheists, after all, so if you put "under God" in the pledge, the only people who won't say the pledge must, naturally, be communists.
Believe it or not, this is exactly how the current Administration here and its supporters think. They can't possibly fathom that there is anything in the world except absolute shades of white (you're with us) and black (you're against us). You're either all in gung-ho 100% American (e.g. - you do whatever Bush says) or you're not (e.g. - you have any negative opinion about Bush in any way, shape or form).
As insane as it sounds, this is the reasoning behind things like this. They don't do "nuance", so things like "uh, gee, if people hate Americans shouldn't we NOT be doing things to make them easier to find" never even crosses their hardwired little minds. You're either a terrorist who refuses to use them, regardless of your reason, or you're an American who gets one.
Anti-intellectualism in the states is so extreme right now that having anything but a purely black and white view of things, where you either unquestionably follow George Bush or you're absolutely the enemy, is to the point where the biggest threat on the planet to freedom may well be the American public.
Re:yeah (Score:2, Interesting)
Re:New uses for microwave ovens ... (Score:1, Interesting)
I've tried this on an RFID embedded object (not a passport, but a similar document). It did leave a small scorch mark right above where the RFID tag had been before it popped.
My verdict: this is an effective way to destroy the RFID tag, but it isn't undetectable.
Re:yeah (Score:3, Interesting)
RFID only has the edge if the data has to be read at high speed or where putting something in actual contact with a reader is awkward (Packages etc). There are a couple of exceptions (Such as 'hidden' door locks like at my school, to stop idiots filling card readers with chewing gum) but for the vast majority of cases it's just "Ooh new technology, lets use!"
I'm all in favour of digital passports, but RFID?
Re:What's the range? (Score:3, Interesting)
Better yet "minimum target count".
Place a bomb at desired location... have it count the number of 'mericans in the vicinity... when the number exceeds a certain threshold... detonate.
Cool new way to make sure you don't waste explosive!
Other variations abound.
Place bomb inside but trigger at doorway. Count number of individuals that pass through door. Detonate when target amount reached. Of course this method can't account for persons leaving vs. entering... but you get the idea.
Hey... you could even have it wait for a specific passport! Great for those times when you need to knock off someone and collect insurance while making it look like random violence.
Gotta remember to thank the state department for such a convenient tool...
Re:yeah (Score:3, Interesting)
1) Most contact chips don't last past 5 years, and they wanted a longer validity (10 years in the US case)
2) The chip specification was for the 28 (?) Visa-waiver countries and each of them can have a different passport form factor, so it would be very difficult/expensive to implement a single contact based reader or set of readers for them all. Contactless solves this issue and allows each country to keep whatever form factor they want.
The specifications for this were acutally developed by the International Civil Aviation Organization. Anti-Skimming is not a part of any of those specifications, however data encryption schemes are.
OK OK here you go, but you will have to buy them:
http://www.icao.int/ [icao.int]
Re:Why RFID and not smart cards? (Score:3, Interesting)
So... they aren't the ones that did the lobbying.
When it comes to politics... "why" is always easy.
Just follow the money.
*constituent: the people that bribed you