25/12  More RFID Security Flaws: Hackable Passports

Category: NFC, RFID    By editor at 10:23
From Foreign Policy: The Top Ten Stories You Missed in 2006
In October, the U.S. State Department began issuing biometric “ePassports” that contain a radio frequency identification (RFID) tag under the back cover. The tiny chip holds the usual passport data, including a digital photo. The motive behind adding the chips is ostensibly good: to combat counterfeiting and illegal immigration.

But a German hacker quickly found a vulnerability. With a laptop and a chip reader he bought for $200, he was able to steal data from an encrypted RFID tag, potentially allowing him to clone an ePassport. And it’s not just Americans who are at risk. Twenty-seven countries (mostly in Europe) that participate in the U.S. Visa Waiver Program are required by U.S. law to issue the new electronic passports to their citizens. The Dutch and British media have already reported major security flaws in the new IDs.

So, what’s a security conscious citizen to do? Again, the answer may come out of Germany. A group of hackers there recommends that people microwave the new passports to destroy the chips. The State Department may want to go back to relying on a paper trail.
Via Digitalsushi (de)

See also:
Do you still want to RFID?