Study: RFID Tags Carry Potential Virus Threat

By Ed Oswald | Published March 15, 2006, 4:38 PM

Radio chips being marketed as a replacement for the barcode threaten consumer privacy and are able to carry a virus, Dutch university scientists revealed on Wednesday. An infected radio frequency identity (RFID) tag is able to disrupt the database that reads information on the chip.

Scientists at Amsterdam's Free University were able to create a chip infected with a virus, and then use it to infect the database. Before this study, supporters of RFID assumed that the technology could not modify the back-end software that reads it.

"In our research, we have discovered that if certain vulnerabilities exist in the RFID software, an RFID tag can be (intentionally) infected with a virus and this virus can infect the backend database used by the RFID software," the researchers wrote in a paper discussing the flaw.

"From there it can be easily spread to other RFID tags."

The group says their experience in warning those using the technology about its security issues shows that many are dismissing such a notion as academic and theoretical. Thus, the group is making the malware code publicly available in order to convince users that the problem is potentially serious.

Several scenarios were given on how an RFID virus could be very dangerous, such as a prankster uploading a virus to a supermarket computer that could be used to change prices, or using his cat to pass a computer virus from animal to computer and back to animal through another RFID tag.

However, what may be the scariest of all is the potential airline scenario, where a virus could be used to disrupt baggage-handling systems, potentially hiding suspicious cargo.

"Merely infecting other tags is the most benign case," the group wrote. "An RFID virus could also carry a payload that did other damage to the database, for example, helping drug smugglers or terrorists hide their baggage from airline and government officials."

While in most cases, the critical response to RFID has been due to privacy issues, the scientists' discovery of potentially malicious ways to use the technology is even more troubling, they say.

In turn, the group is advocating action be taken now. "It is a lot better to lock the barn door while the prize race horse is still inside than to deal with the consequences of not doing so afterwards," they said.

Comments

A logical defence would seem to be to encapsulate RFID tag data and buffer/screen it before sending it for downstream processing.

Other potential threat scenarios involving RFIDS: a competitor can walk around rival's store gathering data on available merchandise. Even without a complete and accurate inventory, trends over time could be of critiacal marketing value.

As RFID tags drop in price, simply distributing them around a competitor's store could skew the inventory processing.

I'm not an expert on RFID technology and I don't know if the protocols already protect against such attacks. I would hope so.

Dev

Score: 0

|

I luv it!! And i think it already has spread to some folks' brains...

Score: 0

|

The paper is basically talking about SQL injection, buffer overflows and SSI exploits. While the application would have to be written pretty poorly to actually perform one of these, there are a lot of poorly written applications out there. You can read the paper here:
http://www.rfidvirus.org/papers/percom.06.pdf

Score: 0

|

That's what I thought so. There is no assumption in software because it would only make an ASS-U-ME. Moreover security is a consideration in any technolgy and should be considered in the planning.

Score: 0

|

Hopefully it will at least make programmers more aware of the threats. I remember learning about SQL injections way back when. It was so simple and obvious, I just never though about it until someone showed me.

Score: 0

|

Don't wait for Microsoft's patch: Secure Windows now from today's 0-day

Microsoft is recommending users simply get rid of a vulnerable ActiveX control that no one even uses any more. We'll show you how to do that right now.

Nokia: Android? Are you crazy?

Rumors about new Android devices abound, but Nokia squashes this one.

Symantec goes live with Norton 2010 betas

Norton Internet Security and Norton Antivirus 2010 are now available for testing.

What's Now: Drenched with 'Purple Ra1n,' iPhone users caught eating 'redsn0w'

Plus: Symantec and McAfee go to war, and what's LucasArts building in its top-secret, moon-shaped orbital facility?

In New York, online booze loses a Circuit Court decision

Court worried about gangster influence if liquor purchased directly.

British Telecom sacks bitterly unpopular Phorm ad platform

Phorm under BT is no more, but the targeted ad service could still go on under Virgin or TalkTalk.

CBS is the last man standing against Hulu

Popular streaming syndication site Hulu now has all the major networks in its camp except CBS.

Not just Vista: The operating system is dying, too

Carmi Levy: Wide Angle Zoom Vista's troubles point to a bigger shift that will affect more than just Microsoft.

Bolt: the dark horse mobile browser

Bitstream's small-footprint mobile browser is available in Beta 3

IE8 WSUS update push to begin August 25

After months of availability to users willing to seek it out, Internet Explorer 8 will be rolled into Windows Server...

Geeks vs. journalists: A tale of two worldviews

Recovery with Angela Gunn Why geeks think most mainstream journalism is flaky, and why the mainstream thinks geeks are trying to kill them. (They're both right.)

Can Linux do BitLocker better than Windows 7?

Betanews kicks off a new series with a look at how the Linux operating system's FDE stacks up against BitLocker, the Windows feature that today commands a $120 premium.

Windows 7 ISO Verifier 1.0

July 6 - 5:40 PM ET

ProgDVB 6.10.2

July 6 - 5:19 PM ET

FreeBSD 8.0 Beta 1

July 6 - 4:58 PM ET

K-Lite Codec Pack 64-bit 2.5.0

July 6 - 3:55 PM ET

SysCheckUp 1.4.0

July 6 - 3:34 PM ET