Skip to content
Search AI Powered

Latest Stories

rfidwatch

how secure is your RFID credit card?

The next time you pull up to the drive-through window at McDonald's, you might want to reach into your pocket for some good-old fashioned cash. The "swipe free" credit card you've gotten accustomed to using to pay for a Big Mac and fries might actually be putting your personal information at risk.

In tests conducted this fall, researchers from the RFID Consortium for Security and Privacy were able to hack into the information stored on first-generation "swipe free" credit cards that use RFID technology. Though the information is supposedly encrypted, the group reported that all of the cards it tested revealed important personal information whose disclosure could lead to identity fraud and theft.


Nearly 20 million of the RFID-enabled cards have been issued by credit card companies like American Express and MasterCard, and are now being used by consumers at a growing number of retail outlets, including CVS drug stores and McDonald's.

Researchers from the consortium, which includes members from both industry and academia, found problems with all of the cards they tested, although they tested fewer than two dozen cards. "Every single RFID credit card and debit card that I have seen in my lab has revealed at the least the full user name and card expiration date, and the vast majority also revealed the full credit card number," says Tom Heydt-Benjamin, a graduate student at the University of Massachusetts and one of the study's architects.

Because the information is transmitted via radio waves, the cards can be read through a wallet, an item of clothing or an envelope. To illustrate how easily personal data could be skimmed from cards, Heydt-Benjamin outlined a scenario in which somebody posing as a campaign volunteer walked the streets stuffing fliers into mailboxes. It would be a simple matter for that person to use a concealed RFID reader to skim information from any credit cards that happened to be in those mailboxes, he said.

Privacy advocates called for credit card issuers to recall all of the cards in question and replace them with more secure versions. The group Consumers Against Supermarket Privacy Invasion and Numbering (CASPIAN) advised consumers to remove the credit cards from their wallets immediately and request an RFID-free replacement card. The group is cautioning consumers not to mail the cards back because of the risk that their personal information might be exposed.

Although he acknowledges that RFIDenabled cards have security flaws that must be addressed, Heydt-Benjamin says that when it comes to the overall risk of identity theft, "leaky" cards pose only a minor risk. Practices like phishing, he says, represent a much bigger threat to individual consumers.

"I hope this doesn't set the whole technology back," says Heydt-Benjamin. "We firmly believe that RFID is not a dangerous technology. Our research is about bringing appropriate security and privacy mechanisms into the RFID world. Our message is that while this issue is something that very much should be part of the RFID privacy debate, we don't see it as indicating that RFID technology is an evil or dangerous technology."

The Latest

More Stories

AI sensors on manufacturing machine

AI firm Augury banks $75 million in fresh VC

The New York-based industrial artificial intelligence (AI) provider Augury has raised $75 million for its process optimization tools for manufacturers, in a deal that values the company at more than $1 billion, the firm said today.

According to Augury, its goal is deliver a new generation of AI solutions that provide the accuracy and reliability manufacturers need to make AI a trusted partner in every phase of the manufacturing process.

Keep ReadingShow less

Featured

AMR robots in a warehouse

Indian AMR firm Anscer expands to U.S. with new VC funding

The Indian warehouse robotics provider Anscer has landed new funding and is expanding into the U.S. with a new regional headquarters in Austin, Texas.

Bangalore-based Anscer had recently announced new financial backing from early-stage focused venture capital firm InfoEdge Ventures.

Keep ReadingShow less
Report: 65% of consumers made holiday returns this year

Report: 65% of consumers made holiday returns this year

Supply chains continue to deal with a growing volume of returns following the holiday peak season, and 2024 was no exception. Recent survey data from product information management technology company Akeneo showed that 65% of shoppers made holiday returns this year, with most reporting that their experience played a large role in their reason for doing so.

The survey—which included information from more than 1,000 U.S. consumers gathered in January—provides insight into the main reasons consumers return products, generational differences in return and online shopping behaviors, and the steadily growing influence that sustainability has on consumers.

Keep ReadingShow less

Automation delivers results for high-end designer

When you get the chance to automate your distribution center, take it.

That's exactly what leaders at interior design house Thibaut Design did when they relocated operations from two New Jersey distribution centers (DCs) into a single facility in Charlotte, North Carolina, in 2019. Moving to an "empty shell of a building," as Thibaut's Michael Fechter describes it, was the perfect time to switch from a manual picking system to an automated one—in this case, one that would be driven by voice-directed technology.

Keep ReadingShow less

In search of the right WMS

IT projects can be daunting, especially when the project involves upgrading a warehouse management system (WMS) to support an expansive network of warehousing and logistics facilities. Global third-party logistics service provider (3PL) CJ Logistics experienced this first-hand recently, embarking on a WMS selection process that would both upgrade performance and enhance security for its U.S. business network.

The company was operating on three different platforms across more than 35 warehouse facilities and wanted to pare that down to help standardize operations, optimize costs, and make it easier to scale the business, according to CIO Sean Moore.

Keep ReadingShow less