Security approaches for Radio Frequency Identification systems

Thesis (S.M.)--Massachusetts Institute of Technology, Dept. of Mechanical Engineering, 2007.

Bibliographic Details
Main Author: Foley, Joseph Timothy, 1976-
Other Authors: Sanjay Sarma.
Format: Thesis
Language:eng
Published: Massachusetts Institute of Technology 2007
Subjects:
Online Access:http://hdl.handle.net/1721.1/38710
_version_ 1811098468971708416
author Foley, Joseph Timothy, 1976-
author2 Sanjay Sarma.
author_facet Sanjay Sarma.
Foley, Joseph Timothy, 1976-
author_sort Foley, Joseph Timothy, 1976-
collection MIT
description Thesis (S.M.)--Massachusetts Institute of Technology, Dept. of Mechanical Engineering, 2007.
first_indexed 2024-09-23T17:15:39Z
format Thesis
id mit-1721.1/38710
institution Massachusetts Institute of Technology
language eng
last_indexed 2024-09-23T17:15:39Z
publishDate 2007
publisher Massachusetts Institute of Technology
record_format dspace
spelling mit-1721.1/387102019-04-10T21:23:44Z Security approaches for Radio Frequency Identification systems Security approaches for RFID systems Foley, Joseph Timothy, 1976- Sanjay Sarma. Massachusetts Institute of Technology. Dept. of Mechanical Engineering. Massachusetts Institute of Technology. Dept. of Mechanical Engineering. Mechanical Engineering. Thesis (S.M.)--Massachusetts Institute of Technology, Dept. of Mechanical Engineering, 2007. Includes bibliographical references (p. 253-270) and index. In this thesis, I explore the challenges related to the security of the Electronic Product Code (EPC) class of Radio Frequency Identification (RFID) tags and associated data. RFID systems can be used to improve supply chain performance and automate asset management. However, an antagonist could use the functionality of the RFID tags and the EPC data to invade personal privacy or acquire access to unauthorized corporate information such as inventory levels. In addition, current RFID mechanisms expose secrets to the readers, which opens an avenue for exploits and information leakage. I examined the RFID security and privacy issues and designed a number of systems to improve tag authentication, privacy protection, and secure sharing of EPC data. The specific solutions I propose include TagCheck to protect tags from counterfeiting, JanusTag to allow recoverable dynamic recoding of tags, TagFolio for privacy policy enforcement, and TagDirective for secret management and access control. To prevent leakage at the application level during Object Name System (ONS) resolution, I propose the use of an anonymizing TorONS system. (cont.) Lastly, to protect tags from being "mass killed", I designed two different categories of RFID tag kill-resistance mechanisms: active protection using Neighborhood Watch communities of readers and Exponential Rampup for tag self-defense. These technologies are combined under one umbrella called TinFoil, creating a comprehensive security solution that successfully protects the data in an EPC-enabled RFID system while minimizing required modifications to existing architecture. by Joseph Timothy Foley. S.M. 2007-08-29T20:47:42Z 2007-08-29T20:47:42Z 2007 2007 Thesis http://hdl.handle.net/1721.1/38710 166144024 eng M.I.T. theses are protected by copyright. They may be viewed from this source for any purpose, but reproduction or distribution in any format is prohibited without written permission. See provided URL for inquiries about permission. http://dspace.mit.edu/handle/1721.1/7582 270 p. application/pdf Massachusetts Institute of Technology
spellingShingle Mechanical Engineering.
Foley, Joseph Timothy, 1976-
Security approaches for Radio Frequency Identification systems
title Security approaches for Radio Frequency Identification systems
title_full Security approaches for Radio Frequency Identification systems
title_fullStr Security approaches for Radio Frequency Identification systems
title_full_unstemmed Security approaches for Radio Frequency Identification systems
title_short Security approaches for Radio Frequency Identification systems
title_sort security approaches for radio frequency identification systems
topic Mechanical Engineering.
url http://hdl.handle.net/1721.1/38710
work_keys_str_mv AT foleyjosephtimothy1976 securityapproachesforradiofrequencyidentificationsystems
AT foleyjosephtimothy1976 securityapproachesforrfidsystems