Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Conferences, Workshops, Symposiums, and Seminars
  4. Privacy of Recent RFID Authentication Protocols
 
conference paper

Privacy of Recent RFID Authentication Protocols

Ouafi, Khaled  
•
Phan, Raphael C.-W.  
2008
Information Security Practice and Experience. ISPEC 2008
Information Security Practice and Experience, 4th International Conference, ISPEC 2008

Privacy is a major concern in RFID systems, especially with widespread deployment of wireless-enabled interconnected personal devices e.g. PDAs and mobile phones, credit cards, e-passports, even clothing and tires. An RFID authentication protocol should not only allow a legitimate reader to authenticate a tag but it should also protect the privacy of the tag against unauthorized tracing: an adversary should not be able to get any useful information about the tag for tracking or discovering the tag’s identity. In this paper, we analyze the privacy of some recently proposed RFID authentication protocols (2006 and 2007) and show attacks on them that compromise their privacy. Our attacks consider the simplest adversaries that do not corrupt nor open the tags. We describe our attacks against a general untraceability model; from experience we view this endeavour as a good practice to keep in mind when designing and analyzing security protocols.

  • Files
  • Details
  • Metrics
Type
conference paper
DOI
10.1007/978-3-540-79104-1_19
Web of Science ID

WOS:000255180400019

Author(s)
Ouafi, Khaled  
Phan, Raphael C.-W.  
Date Issued

2008

Publisher

Springer

Publisher place

Berlin

Published in
Information Security Practice and Experience. ISPEC 2008
Series title/Series vol.

Lecture Notes in Computer Science; 4991

Start page

263

End page

277

Subjects

RFID

•

authentication protocols

•

privacy

•

untraceability

•

provably secure

Editorial or Peer reviewed

REVIEWED

Written at

EPFL

EPFL units
LASEC  
Event nameEvent placeEvent date
Information Security Practice and Experience, 4th International Conference, ISPEC 2008

Sydney, Australia

21-23 April 2008

Available on Infoscience
September 17, 2008
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/27935
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés