Serialized TID numbers - A headache or a blessing for RFID crackers?

Mikko Lehtonen, A. Ruhanen, F. Michahelles, E. Fleisch
{"title":"Serialized TID numbers - A headache or a blessing for RFID crackers?","authors":"Mikko Lehtonen, A. Ruhanen, F. Michahelles, E. Fleisch","doi":"10.1109/RFID.2009.4911183","DOIUrl":null,"url":null,"abstract":"Though transponder ID (TID) numbers of RFID tags were originally introduced to identify the chip model, serialized TID numbers are currently advertised as security features of UHF chips. Serialized TID numbers do not provide any cryptographic protection, but they do introduce a practical hurdle against adversaries who want to clone RFID tags today. Furthermore, serialized TID numbers are important for end-users who want to protect their current UHF tags from cloning since cryptographic tags are not yet commercially available in that frequency range. In this overview paper, we analyze the suitability of serialized TID numbers for security applications by evaluating the effort to bypass the TID check based on known vulnerabilities and we compare this effort to the needed level of protection in an example of anti-counterfeiting in the tobacco industry. The analysis illustrates that the practical hurdle of TID checks is not high enough for industrial-scale security applications and that it can completely diminish due to commodification of the RFID technology. However, end-users of security applications can still benefit from the increased tag cloning resistance that serialized TID numbers provide before migrating to more secure solutions.","PeriodicalId":417077,"journal":{"name":"2009 IEEE International Conference on RFID","volume":"11 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-04-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"25","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 IEEE International Conference on RFID","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/RFID.2009.4911183","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 25

Abstract

Though transponder ID (TID) numbers of RFID tags were originally introduced to identify the chip model, serialized TID numbers are currently advertised as security features of UHF chips. Serialized TID numbers do not provide any cryptographic protection, but they do introduce a practical hurdle against adversaries who want to clone RFID tags today. Furthermore, serialized TID numbers are important for end-users who want to protect their current UHF tags from cloning since cryptographic tags are not yet commercially available in that frequency range. In this overview paper, we analyze the suitability of serialized TID numbers for security applications by evaluating the effort to bypass the TID check based on known vulnerabilities and we compare this effort to the needed level of protection in an example of anti-counterfeiting in the tobacco industry. The analysis illustrates that the practical hurdle of TID checks is not high enough for industrial-scale security applications and that it can completely diminish due to commodification of the RFID technology. However, end-users of security applications can still benefit from the increased tag cloning resistance that serialized TID numbers provide before migrating to more secure solutions.
序列化的TID号码——RFID破解者的头痛还是祝福?
虽然RFID标签的应答器ID (TID)数字最初是用来识别芯片型号的,但序列化的TID数字目前被宣传为UHF芯片的安全功能。序列化的TID号码不提供任何加密保护,但它们确实为今天想要克隆RFID标签的对手引入了一个实际障碍。此外,由于加密标签在该频率范围内尚未商业化,因此序列化的TID号对于希望保护其当前UHF标签免受克隆的最终用户非常重要。在这篇概述文章中,我们通过评估基于已知漏洞绕过TID检查的努力来分析序列化TID号对安全应用程序的适用性,并将这种努力与烟草行业反假冒示例中所需的保护级别进行比较。分析表明,对于工业规模的安全应用来说,TID检查的实际障碍还不够高,并且由于RFID技术的商品化,它可以完全减少。但是,安全应用程序的最终用户在迁移到更安全的解决方案之前,仍然可以从序列化TID号提供的更强的标签克隆阻力中获益。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信