RFID Technical Tutorial
|
|
|
- Cory Jackson
- 10 years ago
- Views:
Transcription
1 RFID Technical Tutorial Presented by: Dale R. Thompson Dept. of Computer Science and Computer Engineering University of Arkansas 1
2 Goals Understand the details of RFID with focus on EPCglobal UHF Class-1 1 Generation-2 (Gen-2) passive tags being introduced into retail. Introduce the security threats to RFID and the privacy threats by RFID. Convince you that Privacy Assurance is necessary. 2
3 University of Arkansas RFID Research Center Fully student staffed with 24 industry members, which recently became b the first open laboratory to be accredited by EPCglobal Inc. 3
4 What is RFID? Stands for Radio Frequency Identification Uses radio waves for identification New frontier in the field of information technology One form of Automatic Identification Provides unique identification or serial number of an object (pallets, cases, items, animals, humans) 4
5 Applications Mobil Speedpass systems Automobile Immobilizer systems Fast-lane and E-Zpass E road toll system Secure Entry cards Animal Identification Humans Supply chain management 5
6 RFID System 6
7 RFID Reader Also known an interrogator Reader powers passive tags with RF energy Can be handheld or stationary Consists of: Transceiver Antenna Microprocessor Network interface 7
8 RFID Frequency range Frequency Band < 135 KHz MHz MHz MHz MHz 433 MHz MHz MHz GHz GHz Description Low frequency HF HF HF HF UHF UHF UHF SHF SHF 8
9 FCC Rules for ISM Band Wireless Equipment Federal Communications Commission (FCC) regulates frequencies in United States FCC regulations appear in title 47 of the United States Code of Federal Regulations (47CFR) and radio spectrum issues are the subject of part 15 of the FCC rules Industrial, Scientific and Medical (ISM) devices 9
10 FCC Rules for MHz Maximum transmitter power limited to 1 watt for systems that frequency hop across at least 50 channels (Gen-2 2 readers typically run 1 watt and frequency hop across 50 channels) Maximum EIRP (effective isotropic radiated power) is limited to 4 watts (36 dbm). For antenna gain greater than 6 dbi must reduce power. (For 1 watt reader transmitter the maximum gain antenna can be up to 6 dbi.) When frequency hopping, the transmitter must not use one frequency greater than 0.40 seconds within a 20 second period 10
11 RFID Tag Tag is a device used to transmit information such as a serial number to the reader in a contact less manner Classified as : Passive energy from reader Active - battery Semi-passive battery and energy from reader 11
12 Printers 12
13 Middleware Each reader manufacturer Commercial middleware Open source middleware work at UofA 13
14 Database Store attributes related to the serial number of the RFID tag Examples What is it? Who made it? Who bought it? Where has it been? 14
15 Contactless Smart Cards ISO A set of international standards covering the basic characteristics of contactless smart cards, such as physical and electrical characteristics, communication protocols and others. Proximity Smart Cards (13.56 MHz) Range = 4 inches (10 centimeter) Baud rate = 106 kilobaud ISO/IEC Vicinity Smart Cards (13.56 MHz) Range = 3 feet (1 meter) Baud rate = kilobaud ISO/IEC
16 Animal Identification Standards International standard khz ISO 11784: Radio-frequency identification of animals code structure ISO 11785: Radio-frequency identification of animals Technical concept ISO 14223: Radio-frequency identification of animals Advanced transponders U.S. standard 125 khz At these frequencies the RF can penetrate mud, blood, and water 16
17 VeriChip Human implantable RFID tag operating at about 134 KHz because at these frequencies the RF can penetrate mud, blood, and water About the size of uncooked grain of rice Oct. 22, 2002 US Food and Drug Administration ruled VeriChip not regulated device Oct FDA ruled serial number in VeriChip could be linked to healthcare information Healthcare applications Implanted medical device identification Emergency access to patient-supplied health information Portable medical records access including insurance information In-hospital patient identification Medical facility connectivity via patient Disease/treatment management of at-risk populations (such as vaccination history) 17
18 Supply Chain Management RFID adds visibility as the items flow through the supply chain from the manufacturer, shippers, distributors, and retailers. The added visibility can identify bottlenecks and save money. Wal-Mart requested in June 2003 that their top 100 suppliers use RFID at the pallet and case level by January Wal-Mart currently has 300 suppliers sending products to 500 RFID-enabled Wal-Mart and Sam's Club stores.* Wal-Mart wants 1,000 stores with RFID by January 2007.* *Source: +with+rfid/172888_1.aspx 18
19 Does RFID Reduce Out of Stocks? A Preliminary Analysis Study by UA RFID Research Center Authors: Bill C. Hardgrave, Matthew Waller, Robert Miller, University of Arkansas From February 14 to September 12, 2005, out of stocks were examined daily in 24 Wal-Mart stores (12 RFID- enabled stores, 12 control stores) RFID reduced out-of of-stocks by approximately 16% because RFID was able to identify if items were in the back room itri.uark.edu/research/display.asp?article=itri- WP
20 Standardization Item Management ISO/IEC [International Standards Organization (ISO), ] and International Electrotechnical Commission, ] : 1: Generic air interfaces for globally accepted frequencies : Air interface for 135 KHz : Air interface for MHz : Air interface for 2.45 GHz : Air interface for 5.8 GHz : Air interface for 860 MHz to 930 MHz : Air interface at MHz EPCglobal Inc., HF (13.56 MHz) MHz ISM Band Class 1 UHF ( MHz) UHF Class-0 UHF Class-1 1 Generation-1 1 (Class-1 1 Gen-1) UHF Class-1 1 Generation-2 2 (Class-1 1 Gen-2) Moving toward ISO C 20
21 EPCglobal, Inc. Not-for for-profit organization developing commercial, world-wide wide RFID standards Joint venture between EAN International and the Uniform Code Council (UCC). UCC standardized Universal Product Code (UPC) barcodes in US EAN standardized barcodes in Europe UCC and EAN combined to form GS1 UHF Class-1 1 Generation-2 2 (Class-1 1 Gen-2 2 or commonly known as Gen-2) In process of becoming ISO C standard 21
22 Electronic Product Code (EPC) 96 bits can uniquely label all products for the next 1,000 years 22
23 EPC vs. UPC (Barcodes) Both are forms of Automatic identification technologies Universal Product Code (UPC) require line of sight and manual scanning whereas EPC do not UPC require optical reader to read whereas EPC reader reads via radio waves EPC tags possess a memory and can be written while UPC do not EPC tags cost 5 cents, UPC tags cost 1/10 cent 23
24 EPCglobal Inc. UHF Specification History EPCglobal UHF Class-0 EPCglobal UHF Class-1 1 Generation-1 EPCglobal UHF Class-1 1 Gen-2 2 (Gen-2) In process of becoming ISO C standard Item management standard Retail standard 24
25 EPCglobal UHF Class-1 1 Gen-2 2 Reader-to to-tag Physical and Link Layers Modulation Double sideband amplitude shift keying (DSB-ASK) Single-sideband ASK (SSB-ASK) Phase reversal ASK (PR-ASK) Encoding - Pulse interval encoding (PIE) Data rate based on Tari Tari 25 microsecond (TYPICAL SETTING) 40 Kilobits per second (Kbps) maximum 27 Kbps average Tari 12.5 microsecond 80 Kbps maximum 53 Kbps average Tari 6.25 microsecond 160 Kbps maximum 107 Kbps average 25
26 PIE Encoding 26
27 EPCglobal UHF Class-1 1 Gen-2 2 Tag-to to-reader Physical and Link Layers Backscatter modulation Varies reflection coefficient of antenna Switch load on antenna in time with bits, which varies input impedance Varies amount of energy reflected from tag to reader 80 to 90 db less signal than reader-to to-tag tag (10,000 times weaker!) Modulation Amplitude shift keying (ASK) Phase shift keying (PSK) Encoding Reader chooses type FM0 Miller (M=2, 4, or 8) Data rates are variable FM0 [single reader mode] 40 Kbps up to 640 Kbps Miller (M=2) [multi-reader mode] 20 Kbps up to 320 Kbps Miller (M=4) [dense reader mode] 10 Kbps up to 160 Kbps Miller (M=8) 5 Kbps up to 80 Kbps Typical rates in the lab vary between Kbps using Miller (M=4) 27
28 Class-1 1 Gen-2 2 Anti-Collision Protocol (media access control) Select phase Single out particular tag population with one or more bits with query tree protocol Inventory phase identify individual tag using Q protocol (slotted-aloha based) Reader sends Query with parameter Q and Session number (Q=4 is suggested s default) Reader creates slotted time Tags pick random 16-bit number for handle Tags in requested session pick a random number in the range [0,2^Q ^Q-1] for slot_number If slot_number = 0, backscatter handle If slot_number!= 0, wait that number of slots to backscatter handle Reader ACKs individual tag with handle and goes to access phase. All other tags wait. If more that one tag answers, reader can send same Q again or send modified Q Access phase Reader interacts with tags requesting EPC number and any other informationi 28
29 Class-1 1 Gen-2 2 Select (Query Tree) Time slice Reader-to-Tag 0** 00* 01* Tag-to-Reader collision no answer collision Tag1 (ID = 010) Tag2 (ID = 011) Tag3 (ID = 100) Time slice Reader-to-Tag ** Tag-to-Reader Tag1 (ID = 010) 010 Tag2 (ID = 011) 011 Tag3 (ID = 100)
30 Class-1 1 Gen-2 2 Select (Query Tree) 30
31 Class-1 1 Gen-2 2 Inventory (Q protocol, form of slotted Aloha) Time slice Slot number Reader-to-Tag Query Q=2 ACK handle1 Tag-to-Reader handle1 collision empty empty EPC1 Tag1 slot=0 handle1 EPC1 Tag2 slot=1 handle2 Tag3 slot=1 handle3 Time slice Slot number Reader-to-Tag QueryAdjust ACK handle2 Tag-to-Reader empty handle2 empty handle3 EPC2 Tag1 (ID = 010) wait Tag2 (ID = 011) slot=1 handle2 EPC2 Tag3 (ID = 100) slot=3 handle3 31
32 Class-1 1 Gen-2 2 Security Ability to generate 16-bit pseudo-random number Handle for singulation (better than using EPC) Encrypt (obscure) reader-to to-tag tag link Pick slots in Q protocol 16-bit CRC for error detection 32-bit access password 32-bit kill password 32
33 Trivia on Passive UHF RFID How far can a reader read a tag? Less than 20 feet using legal equipment What causes interference at these frequencies? Metal reflects the energy and can shield Water absorbs the energy. Microwaves operate at 2.4 GHz because water absorbs energy at these frequencies. Passive UHF operates around 900 MHz, which is close enough. 33
34 Hacking Cryptographically-Enabled RFID Device Team at Johns Hopkins University reverse engineer Texas Instrument s s Digital Signature Transponder Paid for gas with cloned RFID tag Started car with cloned RFID tag Lessons Security by obscurity does not work Use standard cryptographic algorithms with sufficient key lengths 34
35 RFID-enabled Passport May 2002: The Enhanced Border Security and Visa Entry Reform Act requires the USA and other countries whose citizens don't need visas for entering the USA to develop electronic passports. The act sets a deadline of October March 2004: The Bush administration asks Congress to delay the deadline d to October 2006 to allow participating countries more time to address technical issues. Congress agrees. January US Government Awards RFID Passport Contracts for testing RFID passports April 2005: The State Department closes comment period, begins to firm up plans for the new e-passport. e April 2005 State Department reconsiders adding security measures to RFID-enabled passports after public outcry because can be read at 30 feet (10 meters) instead of 4 inches (10 cm) [ISO 14443] August 2005 State Department adds metallic ant-skimming material to cover and spine of passport to limit reading distance to 1 inch November 2005: State Department plans to make e-passports e available to U.S. travelers by October 2006 that have features to prevent skimming and Basic Access Control (characters printed on passport act like PIN number) Before being read PIN must be entered into reader Encryption between reader and tag October 2005: E-passports E available for U.S. travelers 35
36 RFID-enabled passport Metallic anti-skimming material added in cover and spine to reduce read distance to 1 inch PIN number printed on cover must be entered in reader to read tag and it encrypts communication New industry for wallet makers creating Faraday cages for passports 36
37 Passport Solution! 37
38 RFDump Open source software tool for RFID ISO and ISO readers (13.56 MHz) Read/write data on RFID tags Integrated cookie feature Add cookie to tag and automatically increment counter when tag is in range of reader Track number of times shopper enters reader field or picks up item
39 RFID Virus M. R. Rieback,, B. Crispo,, and A. S. Tanenbaum, Is your cat infected with a computer virus?, in Proc. IEEE Int l. Conf. Pervasive Computing and Communications (PerCom),, Pisa, Italy, Mar , 17, More to do with attack against RFID middleware software than RFID SQL injection attack Buffer overflow attack 39
40 RFID Security and Privacy Threats Security threats to the RFID system Privacy threats by the RFID system 40
41 Threat Modeling Assemble team Decompose system into threat targets Identify/Categorize threats to threat targets Attack graphs for each threat target Assign risk to each threat Sort threats Mitigate threats with higher risks 41
42 Security Threats Categorized with STRIDE Spoofing identity Tampering with data Repudiation Information disclosure Denial of service Elevation of privilege 42
43 STRIDE Categories and Mitigation Techniques Category Spoofing identity Tampering with data Repudiation Information disclosure Denial of service Elevation of privilege Techniques Appropriate authentication Protect secrets Don t store secrets Appropriate authentication Hashes Message authentication codes Digital signatures Tamper-resistant protocols Digital signatures Timestamps Audit trails Authorization Privacy-enhanced protocols Encryption Protect secrets Don t store secrets Appropriate authentication Appropriate authorization Filtering Throttling Quality of Service Run with least privilege 43
44 Security Threats to RFID A competitor or thief performs an unauthorized inventory of a store by scanning tags with an unauthorized reader to determine the types and quantities of items. Spoofing Information disclosure An attacker modifies the EPC number on tags or kills tags in the supply chain, warehouse, or store disrupting business operations and causing a loss of revenue. Tampering with data Denial of service An attacker modifies a high-priced item s s EPC number to be the EPC number of a lower cost item. Tampering with data 44
45 Privacy Threats by RFID A bomb in a restaurant explodes when there are five or more Americans with RFID-enabled passports detected. A mugger marks a potential victim by querying the tags in possession of an individual. A fixed reader at any retail counter could identify the tags of a person and show the similar products on the nearby screen to a person to provide individualized marketing. A sufficiently powerful directed reader reads tags in your house or car. The ISO standard proposed for passports specifies about 4 inches (10 cm) as the typical range. However, NIST with a special purpose antenna read it at 30 feet (10 meters)! RFID enables tracking, profiling, and surveillance of individuals on a large scale. 45
46 Top Privacy Threats by RFID Tracking Determine where individuals are and where they have been Hotlisting Single out certain individuals because of the items they possess Profiling Identifying the items an individual has in their possession 46
47 How far can a passive tag be read? Assume distance limited by power available to run the tag s circuits. P λ = f T P T P G G R R T = ( 4π ) = power available to tag (100 µ W needed) = reader transmit power (1 watt) = reader antenna gain (6 dbi) = tag antenna gain (1dBi) c P G R f c = 3x10 = 8 G 2 R T 2 2 wavelength (meters) meters/s = frequency (915 MHz) r = distance in meters r λ 47
48 Maximum Distances to Read UHF Passive Tag Antenna Gain (dbi) 6 (legal) Distance (meters) Distance (feet) 19* *Reality: Today, in the lab 8 to 12 feet. 48
49 What is Privacy? Privacy includes the right to make decisions about one s s own life, to keep personal secrets, and to keep secrets about where we come and go. It is the right to make decisions without interference from the government or economic pressures from commercial entities. 49
50 What Privacy is Not! Privacy does NOT apply to an organization. It only applies to data about an individual, which is called personally identifiable data. Privacy is NOT security. Security is important to privacy. Security is only part of the story. 50
51 5 Principles of Privacy Notice.. There must be no personal-data, record-keeping systems whose very existence is a secret. Access.. There must be a way for a person to find out what information about the person is in a record and how it is used. Choice.. There must be a way to prevent personal information that was obtained for one purpose from being used or made available for f other purposes without the person s s consent. Recourse.. There must be a way for a person to correct or amend a record of identifiable information about the person. Security.. Any organization creating, maintaining, using, or disseminating records of identifiable personal data must assure the reliability of the data for their intended use and must take reasonable precautions to prevent misuse of the data. 51
52 Alan F. Westin s s Privacy Classifications Privacy Fundamentalist (11%) Very concerned Unwilling to provide data Privacy Unconcerned (13%) Mild concern Willing to provide data Privacy Pragmatists (75%) Somewhat concerned Willing to provide data if they are notified and get a benefit 52
53 Future Work Study and develop a systemic solution to quantify and control privacy when exchanging personally identifiable data. This will create a more secure RFID system that provides privacy assurance by protecting the privacy of individuals. 53
54 References N. Chaudhry, D. R. Thompson, and C. Thompson, RFID Technical Tutorial and Threat Modeling, ver.. 1.0, tech. report, Dept. of Computer Science and Computer Engineering, neering, University of Arkansas, Fayetteville, Arkansas, Dec. 8, Available: //csce.uark.edu/~drt/rfid S. Bono, M. Green, A. Stubblefield, A. Juels,, A. Rubin, and M. Szydlo, Security analysis of a cryptographically-enabled RFID device, in Proc.14th USENIX Security Symposium,, Baltimore, MD, USA, July-Aug. 2005, pp EPCglobal Inc., EPC Radio-Frequency Identity Protocols Class-1 1 Generation-2 2 UHF RFID Protocol for Communications at 860 MHz 960 MHz, ver , EPCglobal Inc., Jan. 31, Available: K. Finkenzeller, RFID Handbook: Fundamentals and Applications in Contactless Smart Cards and Identification,, R. Waddington, Trans., 2nd ed.,, Hoboken, New Jersey: John Wiley & Sons, S. Garfinkel and B. Rosenberg, Eds., RFID: Applications, Security, and Privacy,, Upper Saddle River, New Jersey: Addison-Wesley, S. Karthikeyan and M. Nesterenko, RFID security without expensive cryptography, in Proc. ACM Workshop on Security of Ad Hoc and Sensor Networks (SASN),, Alexandria, VA, USA, Nov. 2005, pp Opinion Research Corporation and Alan F. Westin. "Freebies" and Privacy: What Net Users Think. Sponsored by Privacy & American Business. Hackensack, NJ: P & AB,, July Available: M. R. Rieback,, B. Crispo,, and A. S. Tanenbaum, Is your cat infected with a computer virus?, in Proc. IEEE Int l. Conf. Pervasive Computing and Communications (PerCom),(, Pisa, Italy, Mar , Verichip,
55 Contact Information Dale R. Thompson, P.E., Ph.D. Department of Computer Science and Computer Engineering University of Arkansas 311 Engineering Hall Fayetteville, Arkansas Phone: +1 (479) FAX: +1 (479) WWW: csce.uark.edu/~drt/ 55
Contactless Smart Cards vs. EPC Gen 2 RFID Tags: Frequently Asked Questions. July, 2006. Developed by: Smart Card Alliance Identity Council
Contactless Smart Cards vs. EPC Gen 2 RFID Tags: Frequently Asked Questions July, 2006 Developed by: Smart Card Alliance Identity Council Contactless Smart Cards vs. EPC Gen 2 RFID Tags: Frequently Asked
Radio Frequency Identification (RFID)
Radio Frequency Identification (RFID) Raj Jain Washington University in Saint Louis Saint Louis, MO 63130 [email protected] These slides are available on-line at: http://www.cse.wustl.edu/~jain/cse574-06/
Security Issues in RFID systems. By Nikhil Nemade Krishna C Konda
Security Issues in RFID systems By Nikhil Nemade Krishna C Konda Agenda Introduction to an RFID System Possible Application Areas Need for Security Vulnerabilities of an RFID system Security Measures currently
Strengthen RFID Tags Security Using New Data Structure
International Journal of Control and Automation 51 Strengthen RFID Tags Security Using New Data Structure Yan Liang and Chunming Rong Department of Electrical Engineering and Computer Science, University
RFID Security: Threats, solutions and open challenges
RFID Security: Threats, solutions and open challenges Bruno Crispo Vrije Universiteit Amsterdam [email protected] 1 Table of Content RFID technology and applications Security Issues Privacy Proposed (partial)
RFID BASED VEHICLE TRACKING SYSTEM
RFID BASED VEHICLE TRACKING SYSTEM Operating a managed, busy parking lot can pose significant challenges, especially to a government organization that also owns some of the vehicles in the lot. The parking
RF-Enabled Applications and Technology: Comparing and Contrasting RFID and RF-Enabled Smart Cards
RF-Enabled Applications and Technology: Comparing and Contrasting RFID and RF-Enabled Smart Cards January 2007 Developed by: Smart Card Alliance Identity Council RF-Enabled Applications and Technology:
On the Security of RFID
On the Security of RFID Hung-Min Sun Information Security Lab. Department of Computer Science National Tsing Hua University slide 1 What is RFID? Radio-Frequency Identification Tag Reference http://glossary.ippaper.com
Various Attacks and their Countermeasure on all Layers of RFID System
Various Attacks and their Countermeasure on all Layers of RFID System Gursewak Singh, Rajveer Kaur, Himanshu Sharma Abstract RFID (radio frequency identification) system is one of the most widely used
RFID Basics HEGRO Belgium nv - Assesteenweg 25-29 - 1740 Ternat Tel.: +32 (0)2/582.31.97 Fax : +32 (0)2/582.11.24 email : info@hegrobelgium.
RFID Basics RFID Basics Introduction Radio Frequency Identification (RFID) technology has been attracting considerable attention with the expectation of improved supply chain visibility for both suppliers
RFID Security. April 10, 2006. Martin Dam Pedersen Department of Mathematics and Computer Science University Of Southern Denmark
April 10, 2006 Martin Dam Pedersen Department of Mathematics and Computer Science University Of Southern Denmark 1 Outline What is RFID RFID usage Security threats Threat examples Protection Schemes for
RF ID Security and Privacy
RF ID Security and Privacy EJ Jung 11/15/10 What is RFID?! Radio-Frequency Identification Tag Antenna Chip How Does RFID Work? 02.3DFEX4.78AF51 EasyToll card #816 Radio signal (contactless) Range: from
How To Understand The Power Of An Freddi Tag (Rfid) System
Radio Frequency Identification Done by: Haitham Habli. Table of contents Definition of RFID. Do they need license? RFID vs other identification systems. Classification of RFID systems. Emerge of passive
PAP: A Privacy and Authentication Protocol for Passive RFID Tags
PAP: A Privacy and Authentication Protocol for Passive RFID s Alex X. Liu LeRoy A. Bailey Department of Computer Science and Engineering Michigan State University East Lansing, MI 48824-1266, U.S.A. {alexliu,
tags Figure D-1 Components of a Passive RFID System
Attachment D: RFID Technology Overview The following sections provide an overview to RFID technology, the applications in which they are currently used and other considerations of RFID technology as it
RFID SECURITY. February 2008. The Government of the Hong Kong Special Administrative Region
RFID SECURITY February 2008 The Government of the Hong Kong Special Administrative Region The contents of this document remain the property of, and may not be reproduced in whole or in part without the
How To Attack A Key Card With A Keycard With A Car Key (For A Car)
Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars (NDSS ) Aurélien Francillon, Boris Danev, Srdjan Čapkun (ETHZ) Wednesday System Security April Group 6, 1 Agenda 1. Overview of Car
Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars
Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars Srdjan Čapkun (joint work with Aurélien Francillon, Boris Danev) 1 Agenda 1. Overview of Car Key Systems 2. Previous Attacks: In
Security Issues in RFID. Kai Wang Research Institute of Information Technology, Tsinghua University, Beijing, China [email protected].
Security Issues in RFID Kai Wang Research Institute of Information Technology, Tsinghua University, Beijing, China [email protected] Abstract RFID (Radio Frequency IDentification) are one
RFID Design Principles
RFID Design Principles Harvey Lehpamer ARTECH HOUSE BOSTON LONDON artechhouse.com Contents Introduction 2 2.1 2.1.1 2.1.2 2.1. 2.1.4 2.2 2.2.1 2.2.2 2. 2..1 2..2 2.4 2.4.1 2.4.2 2.5 2.5.1 2.5.2 Comparison
WHAT IS RFID & HOW WILL IT IMPACT MY BUSINESS?
WHAT IS RFID & HOW WILL IT IMPACT MY BUSINESS? TABLE OF CONTENTS What is RFID? 1 Will RFID replace Barcodes? 1 How does RFID work? 1 What is an RFID Tag? 3 What are Smart Labels? 4 Why use RFID? 5 Why
RFID Penetration Tests when the truth is stranger than fiction
RFID Penetration Tests when the truth is stranger than fiction Dr. Tomáš Rosa, [email protected] Raiffeisenbank, a.s. Agenda Technology overview Physical layer of LF and HF bands The Unique ID phenomenon
CHAPTER 1 Introduction 1
Contents CHAPTER 1 Introduction 1 CHAPTER 2 Short-Range Communications Systems 3 2.1 Radio-Frequency Spectrum and Propagation 3 2.1.1 Theory of Electromagnetism and Maxwell s Equations 3 2.1.2 RF Propagation
Feature. Security and Privacy Trade-offs in RFID Use. Operational Zone RFID Tag. RFID Reader
Feature Security and Privacy Trade-offs in RFID Use S. Srinivasan is a professor of computer information systems at the University of Louisville in Kentucky, USA. He can be reached at [email protected].
Using RFID Techniques for a Universal Identification Device
Using RFID Techniques for a Universal Identification Device Roman Zharinov, Ulia Trifonova, Alexey Gorin Saint-Petersburg State University of Aerospace Instrumentation Saint-Petersburg, Russia {roman,
Security and privacy in RFID
Security and privacy in RFID Jihoon Cho ISG PhD Student Seminar 8 November 2007 Outline 1 RFID Primer 2 Passive RFID tags 3 Issues on Security and Privacy 4 Basic Tags 5 Symmetric-key Tags 6 Conclusion
What standards ISO/CEI 14443 ISO/CEI 15693 EPC class 1 gen 2. RFID standards. ISO14443,ISO15693 and EPCGlobal. Mate SoosINRIA.
ISO14443,ISO15693 and EPCGlobal Mate Soos INRIA May 19, 2008 What standards Overview Background ISO/CEI 14443 Radio interface ISO/CEI 15693 Radio interface EPC class 1 gen 2 Radio Interface Table of Contents
rf Technology to automate your BUsiness
Motorola Tech Brief June 2011 Understanding the characteristics of the rfid spectrum: Choosing the Right rf Technology to automate your BUsiness How to choose the right rfid technology for your Identification,
If you are interested in Radio Frequency Identification technology, then this is the best investment that you can make today!
If you are interested in Radio Frequency Identification technology, then this is the best investment that you can make today! Here s Here's a training course on on RFID technology, with which CERTIFICATION
Automated Identification Technologies
Spec 2000 ebusiness Forum Automated Identification Technologies Jon Andresen President Technology Solutions [email protected] Budapest, Hungry 23 October 2008 Agenda 1. AIT Chapter 9 Intro - Jon A. AIT
Enabling the secure use of RFID
Enabling the secure use of RFID BLACK ME/FOTOLIA.com Enhancing security of radio frequency identification to connect safely to the Internet of Things UHF radio frequency identification (RFID) promises
Security Challenges for User-Oriented RFID Applications within the Internet of Things
Security Challenges for User-Oriented RFID Applications within the Internet of Things G.P. HANCKE, K. MARKANTONAKIS and K.E. MAYES ISG Smart Card Centre Royal Holloway, University of London UNITED KINGDOM
A Study on the Security of RFID with Enhancing Privacy Protection
A Study on the Security of RFID with Enhancing Privacy Protection *Henry Ker-Chang Chang, *Li-Chih Yen and *Wen-Chi Huang *Professor and *Graduate Students Graduate Institute of Information Management
RFID Design Principles
RFID Design Principles Second Edition Harvey Lehpamer ARTECH HOUSE BOSTON LONDON artechhouse.com Contents CHAPTER 1 Introduction CHAPTER 2 Short-Range Communications Systems 2.1 Radio-Frequency Spectrum
Best Practices for the Use of RF-Enabled Technology in Identity Management. January 2007. Developed by: Smart Card Alliance Identity Council
Best Practices for the Use of RF-Enabled Technology in Identity Management January 2007 Developed by: Smart Card Alliance Identity Council Best Practices for the Use of RF-Enabled Technology in Identity
SATO RFID White Paper
SATO RFID White Paper Rev_0710 1 Overview This white paper describes the basic components of a Radio Frequency Identification (RFID) system and explores the technology, applications, and competitive advantages
Privacy and Security in library RFID Issues, Practices and Architecture
Privacy and Security in library RFID Issues, Practices and Architecture David Molnar and David Wagner University of California, Berkeley CCS '04 October 2004 Overview Motivation RFID Background Library
UHF RFID protocols- Targeting increased application requirements. Speaker: Ulrich Friedrich, Atmel
UHF RFID protocols- Targeting increased application requirements Speaker: Ulrich Friedrich, Atmel An application scenario Summary of different packaging sizes related to pallets A collection of tags containing
Security in RFID Networks and Protocols
International Journal of Information and Computation Technology. ISSN 0974-2239 Volume 3, Number 5 (2013), pp. 425-432 International Research Publications House http://www. irphouse.com /ijict.htm Security
Radio Frequency Identification (RFID) An Overview
Radio Frequency Identification (RFID) An Overview How RFID Is Changing the Business Environment Today Radio frequency identification (RFID) technology has been in use for several decades to track and identify
Originally viewed as essentially remotely-readable
Editors: Ramaswamy Chandramouli, [email protected] Tim Grance, [email protected] Rick Kuhn, [email protected] Susan Landau, [email protected] Security Standards for the RFID Market Originally viewed as essentially
Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars
Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars Aurélien Francillon, Boris Danev, Srdjan Čapkun 1 Modern Cars Evolution Increasing amount of electronics in cars For convenience
Tackling Security and Privacy Issues in Radio Frequency Identification Devices
Tackling Security and Privacy Issues in Radio Frequency Identification Devices Dirk Henrici and Paul Müller University of Kaiserslautern, Department of Computer Science, PO Box 3049 67653 Kaiserslautern,
Why Has the Development in RFID Technology Made Asset Management More Urgent?
E-ISG Asset Intelligence, LLC Why Has the Development in RFID Technology Made Asset Management More Urgent? 3500 Boston Street Suite 316 Baltimore, MD 21224 Phone: 866.845.2416 Website: www.e-isg.com May,
RFID Security and Privacy: Threats and Countermeasures
RFID Security and Privacy: Threats and Countermeasures Marco Spruit Wouter Wester Technical Report UU-CS- 2013-001 January 2013 Department of Information and Computing Sciences Utrecht University, Utrecht,
Radio Frequency Identification (RFID) Vs Barcodes
Radio Frequency Identification (RFID) Vs Barcodes Which one to choose? Which one is the better technology? Why choose one over the other? Answer: It really depends on the application, and what you want
ABSTRACT. Keyword: - RFID, unauthorized transaction, security. Vol-1 Issue-3 2015 1. INTRODUCTION 2. RFID SYSTEM. 1237 www.ijariie.
Survey on Enhancing Security for RFID Smart Cards Shilpa S. Badhiye 1 Prof.Rupali S. Khule 2 1 student, Electronics and telecommunication Department, MCOERC, Maharashtra, India 2 Professor, Electronics
RF Attendance System Framework for Faculties of Higher Education
RF Attendance System Framework for Faculties of Higher Education Ms. Unnati A. Patel 1 Dr. Swaminarayan Priya R 2 1 Asst. Professor, M.Sc(IT) Department, ISTAR, V.V.Nagar-388120, India 2 Head & ProfessorHH,
RFID TECHNOLOGY: A PARADIGM SHIFT IN BUSINESS PROCESSES. Alp ÜSTÜNDAĞ. Istanbul Technical University Industrial Engineering Department
RFID TECHNOLOGY: A PARADIGM SHIFT IN BUSINESS PROCESSES Alp ÜSTÜNDAĞ Istanbul Technical University Industrial Engineering Department ABSTRACT: Radio Frequency Identification (RFID) is fast becoming an
a GAO-05-551 GAO INFORMATON SECURITY Radio Frequency Identification Technology in the Federal Government Report to Congressional Requesters
GAO United States Government Accountability Office Report to Congressional Requesters May 2005 INFORMATON SECURITY Radio Frequency Identification Technology in the Federal Government a GAO-05-551 Accountability
EPCglobal RFID standards & regulations. Henri Barthel OECD Paris, 5 October 2005
EPCglobal RFID standards & regulations Henri Barthel OECD Paris, 5 October 2005 Roots of EPCglobal Auto ID Center (launched in 1999) Six world-class academia Labs: MIT (US), Cambridge (UK), Adelaide (Australia),
USB Plus+ RFID Reader Setup Guide
875-0042-03 RevA USB Plus+ RFID Reader Setup Guide 1 Government Limited Rights Notice: All documentation and manuals were developed at private expense and no part of it was developed using Government funds.
UHF-Technology. Vorlesung RFID Systems Benno Flecker, Michael Gebhart TU Graz, Sommersemester 2014
UHF-Technology Vorlesung RFID Systems Benno Flecker, Michael Gebhart TU Graz, Sommersemester 2014 RFID System A traditional passive label (tag) is queried and it responds with it s ID accordingly. Power
OpenWay Radio Frequency FAQ
OpenWay Radio Frequency FAQ March 10, 2010 2010, Itron Inc. All rights reserved. 1 Overview This document provides general information about radiofrequency (RF) electromagnetic fields from OpenWay wireless
RFID Radio Frequency Identification
RFID Radio Frequency Identification 11 February 2004 Dr. Bradley J. Bazuin Assistant Professor, ECE Dept. With material from the ECE 481 & 482 project by Shen-Ping Lee, Young-Sun Kim, and Pradeep Kannan
Automated Meter Reading Frequently Asked Questions. What is AMR?
Automated Meter Reading Frequently Asked Questions What is AMR? AMR stands for Automated Meter Reading. It is a method of using advanced communications technology to read meters remotely. It reduces human
The Place of Emerging RFID Technology in National Security and Development
The Place of Emerging RFID Technology in National Security and Development Akintola K.G. Boyinbode O.K. Computer Science Department, Computer Science Department, University of Houston-Victoria, University
RFID Tags. Prasanna Kulkarni Motorola. ILT Workshop Smart Labels USA February 21, 2008
RFID Tags Prasanna Kulkarni Motorola ILT Workshop Smart Labels USA February 21, 2008 Agenda RFID tags Brief overview Roadmap of key attribute needs Existing tag technologies Emerging tag technologies Critical
Security in Near Field Communication (NFC)
Security in Near Field Communication (NFC) Strengths and Weaknesses Ernst Haselsteiner and Klemens Breitfuß Philips Semiconductors Mikronweg 1, 8101 Gratkorn, Austria [email protected] [email protected]
Ambient Intelligence WS 08/09 V8: RFID. Prof. Dr.-Ing. José L. Encarnação
WS 08/09 V8: RFID Prof. Dr.-Ing. José L. Encarnação TUD, FB20, Graphisch-Interaktive Systeme (GRIS) Gino Brunetti INI-GraphicsNet Stiftung Holger Graf Zentrum für Graphische Datenverarbeitung (ZGDV) Dr.-Ing.
RFID Technology, Security Vulnerabilities, and Countermeasures
19 RFID Technology, Security Vulnerabilities, and Countermeasures Qinghan Xiao 1, Thomas Gibbons 2 and Hervé Lebrun 2 1 Defence Research and Development Canada Ottawa 2 Canadian Operational Support Command
WIRELESS INSTRUMENTATION TECHNOLOGY
BS&B WIRELESS, L.L.C. BS&B WIRELESS, L.L.C. WIRELESS INSTRUMENTATION TECHNOLOGY Printed February 2004 BS&B WIRELESS, L.L.C. 7422-B East 46th Place, Tulsa, OK74145 Phone: 918-622-5950 Fax: 918-665-3904
Student Management System based on RFID Technology
Student Management System based on RFID Technology Unnati A. Patel 1 1 Assistant Professor, M.Sc. (IT) Department, ISTAR, V.V.Nagar, Gujarat, India Abstract: Educational institutions administrators are
NEW TECHNOLOGY. Figure 1. Simplified view of data transfer in low-frequency passive RFID tags (the tag is enlarged for clarity).
RFID offers tantalizing benefits for supply chain management, inventory control, and many other applications. Find out whether your company could benefit. Ron Weinstein RFID: A Technical Overview and Its
Understanding RFID (Radio Frequency Identification)
25 Valleywood Drive, Unit 19, Markham, ON L3R 5L9 CANADA Phone: +1 905.513.8919 Fax: +1 905.513.7651 [email protected] / www.rfidcanada.com Understanding RFID (Radio Frequency Identification) (Passive
Evolving Bar Codes. Y398 Internship. William Holmes
Evolving Bar Codes Y398 Internship By William Holmes Table of contents Introduction: What is RFID? Types of Tags: Advantages of Tags: RFID applications Conclusion: Introduction: Bar codes have evolved
An Overview of Approaches to Privacy Protection in RFID
An Overview of Approaches to Privacy Protection in RFID Jimmy Kjällman Helsinki University of Technology [email protected] Abstract Radio Frequency Identification (RFID) is a common term for technologies
Gemalto Mifare 1K Datasheet
Gemalto Mifare 1K Datasheet Contents 1. Overview...3 1.1 User convenience and speed...3 1.2 Security...3 1.3 Anticollision...3 2. Gemalto Mifare Features...4 2.1 Compatibility with norms...4 2.2 Electrical...4
WHITE PAPER. ABCs of RFID
WHITE PAPER ABCs of RFID Understanding and using Radio Frequency Identification Basics - Part 1 B.Muthukumaran Chief Consultant Innovation & Leadership Gemini Communication Ltd #1, Dr.Ranga Road, 2nd Street,
Radio Transmission Performance of EPCglobal Gen-2 RFID System
Radio Transmission Performance of EPCglobal Gen-2 RFID System Manar Mohaisen, HeeSeok Yoon, and KyungHi Chang The Graduate School of Information Technology & Telecommunications INHA University Incheon,
Guidelines for Securing Radio Frequency Identification (RFID) Systems
Special Publication 800-98 Guidelines for Securing Radio Frequency Identification (RFID) Systems Recommendations of the National Institute of Standards and Technology Tom Karygiannis Bernard Eydt Greg
Monitores Equipos Móviles Especificaciones de Producto
EquipManager -4 F/-20 C to +140 F/+60 C (optional heater available for cold room applications) 0 100% noncondensing User-adjustable threshold 0.3G to 7G 10G (nondestructive)/100g (destructive) Piezoelectric
Manufacturing Control Systems {SCADA} Vulnerability and RFID Technologies
Manufacturing Control Systems {SCADA} Vulnerability and RFID Technologies DR. O. GEOFFREY EGEKWU and JIM RIDINGS Institute for Infrastructure and Information Assurance (IIIA) James Madison University Functions
Christoph Jechlitschek, [email protected]
1 of 13 11/27/2013 2:11 AM Christoph Jechlitschek, [email protected] This paper provides a survey on radio frequency identification (RFID) technology. Initially RFID tags were developed to
Location-Aware and Safer Cards: Enhancing RFID Security and Privacy
Location-Aware and Safer Cards: Enhancing RFID Security and Privacy 1 K.Anudeep, 2 Mrs. T.V.Anantha Lakshmi 1 Student, 2 Assistant Professor ECE Department, SRM University, Kattankulathur-603203 1 [email protected],
RFIDs and European Policies
ICTSB Seminar on RFID Standardisation CEN/CENELEC Meeting Centre Brussels, Belgium RFIDs and European Policies Gérald SANTUCCI, Head of Unit [email protected] European Commission Directorate
Security and Privacy in Cloud Computing
Security and Privacy in Cloud Computing Ragib Hasan Johns Hopkins University en.600.412 Spring 2010 Lecture 2 02/01/2010 Threats, vulnerabilities, and enemies Goal Learn the cloud computing threat model
EPC C-1 G-2 / ISO 18000-6C RFID IC
EM MICROELECTRONIC - MARIN SA EPC C-1 G-2 / ISO 18000-6C RFID IC Description is a certified EPC TM Class-1 Generation-2 (Gen2) IC and compliant with ISO/IEC 18000-6:2010 Type C. Each chip is manufactured
Time & Access System An RFID based technology
Time & Access System An RFID based technology OpenWorks TIME Technical Specification V1.0.2 M. I. Suhile Ahamed KCP Technologies Limited 2, Dr. P. V. Cherian Crescent, Egmore, Chennai - 600 008, INDIA.
RFID in the Hospital Environment
RFID in the Health Care Industry RFID in the Hospital Environment Speaker: Daniel Engels, Ph.D. Director of Research MIT Auto-ID Labs I. Mun, Ph.D. Director, Bio-Medical Research Aventura Hospital & Medical
An Overview of RFID Security and Privacy threats
An Overview of RFID Security and Privacy threats Maxim Kharlamov [email protected] The University of Auckland October 2007 Abstract Radio Frequency Identification (RFID) technology is quickly deploying
How To Make A Multi-User Communication Efficient
Multiple Access Techniques PROF. MICHAEL TSAI 2011/12/8 Multiple Access Scheme Allow many users to share simultaneously a finite amount of radio spectrum Need to be done without severe degradation of the
A Semi-Passive UHF RFID Tag Chip Applied for Electronic Vehicle Identification (EVI)
A Semi-Passive UHF RFID Tag Chip Applied for Electronic Vehicle Identification (EVI) Egas Henes Neto, Eduardo Conrad Junior, Daniel Barcelos, Rafael Soares, Antonio Souza, Josias Mainardi, Rafael Cantalice,
AN RFID BASED SUPPLY CHAIN INVENTORY MANAGEMENT SOLUTION FOR THE PETROLEUM DEVELOPMENT INDUSTRY: A CASE STUDY FOR SHELL NIGERIA
Journal of Theoretical and Applied Information Technology 10 th April 2014. Vol. 62 No.1 2005-2014 JATIT & LLS. All rights reserved. ISSN: 1992-8645 www.jatit.org E-ISSN: 1817-3195 AN RFID BASED SUPPLY
Basic Concepts in RFID Technology
Basic Concepts in RFID Technology By Richard Moscatiello Introduction This paper explains the basic concepts of RFID technology. The presentation is (hopefully) in an easy to understand format. Topics
Design And Implementation Of Bank Locker Security System Based On Fingerprint Sensing Circuit And RFID Reader
Design And Implementation Of Bank Locker Security System Based On Sensing Circuit And RFID Reader Khaing Mar Htwe, Zaw Min Min Htun, Hla Myo Tun Abstract: The main goal of this system is to design a locker
Using ISO 15693 Compliant RFID Tags in an Inventory Control System
Using ISO 15693 Compliant RFID Tags in an Inventory Control System University: Louisiana State University, Baton Rouge, Louisiana Course: Undergraduate Capstone Project Student Team Members: Joseph Gates,
Efficient Novel Anti-collision Protocols for Passive RFID Tags
Efficient Novel Anti-collision Protocols for Passive RFID Tags Three methods for fast tag identification: bislotted tree based RFID tag anti-collision protocols, query tree based reservation, and the combining
Data Protection Technical Guidance Radio Frequency Identification
Data Protection Technical Guidance Radio Frequency Identification This technical guidance note is aimed at those using or contemplating using RFID technology. It gives a brief summary of the technology
entigral whitepaper Understanding RFID and Barcode Differences www.entigral.com 877.822.0200
entigral whitepaper Understanding RFID and Barcode Differences www.entigral.com 877.822.0200 Understanding RFID and Barcode Differences Don t misuse RFID with applications built for Barcodes Radio Frequency
