Breaking News
Comments
Newest First | Oldest First | Threaded View
fmotta
User Rank
Author
More Correct: Lack of security in NFC is slowing NFC-based payment programs
fmotta   5/21/2014 5:25:49 PM
NO RATINGS
For a short time the USA credit card companies were automatically sending NFC-based cards.  Everyone I know that received one watched as I used an Arduino and cloned it.  Then they sent the card back requesting the safer cards without the silicon-based security hole (called NFC).

SIMs have been more secure than NFC for quite some time.  So, I assert that the the need for improved security should be to bar the ability for attack by a script-kiddie with $30 worth of equipment (or an Android phone now - see Electronic Pickpocket app at Play store - Free).

 

ngpd
User Rank
Author
Security... for whom?
ngpd   5/13/2014 11:02:58 AM
NO RATINGS
While many might like the speed and convenience of ticketless payments, lots of people are worried about the security aspects. Witness, for example, all the adverts for wallets and passport covers that act as NFC shields. The idea of having a payment card that broadcasts my account details makes me very concerned!

The idea of a single card (or device) that authenticates my payments is all very good, provided that it cannot be cloned, it stops working if it is lost or stolen (and I can get a replacement very quickly, even if abroad), and it does not reveal information about me beyond that which is necessary for the transaction. A tall order!

There is also the issue of how the information about payments is stored and used. If I contact my mobile phone operator, my identity is validated by easily-discoverable information... and a PIN which can be discovered by many employees. I do not call this secure, so entrusting more information to them does not seem wise. basically, all 'security' and 'trust' seems to run one way, so it seems sensible to limit ones vulnerability until systems offering mutual trust are put in place.

Pablo Valerio
User Rank
Author
Re: Want more
Pablo Valerio   5/12/2014 5:44:51 PM
@ip2design, I agree with you. There is no reason for SIM based security to be slower. But the security layers implemented by the service providers --and mostly by the SIM system integrators-- have serious implications on speed.

Looks like TfL and other transit authorities have been working closer with cell companies and system integrators and the issue is being resolved.

ip2design
User Rank
Author
Re: Want more
ip2design   5/11/2014 3:01:36 AM
NO RATINGS
Hi Pablo,

We all know that NFC-SIMs and embedded Secure Elements are fast enough to perform access control the right way at the right speed. Most of the ICs are now based on 32-bit core running at 30MHz with hardware crypto and secure OS.So, there may be some tricks to optimize the solution.

 

Pablo Valerio
User Rank
Author
Re: Want more
Pablo Valerio   5/10/2014 4:59:02 PM
NO RATINGS
Susan Rambo
User Rank
Author
Want more
Susan Rambo   5/10/2014 9:59:14 AM
NO RATINGS
Hi Pablo, thanks for the interesting blog. You say you've written frequently about this issue. Where can we find more of blogs?



Datasheets.com Parts Search

185 million searchable parts
(please enter a part number or hit search to begin)
Radio
LATEST ARCHIVED BROADCAST

What are the engineering and design challenges in creating successful IoT devices? These devices are usually small, resource-constrained electronics designed to sense, collect, send, and/or interpret data. Some of the devices need to be smart enough to act upon data in real time, 24/7. Specifically the guests will discuss sensors, security, and lessons from IoT deployments.

Brought to you by:

Most Recent Comments
dt_hayden
 
dt_hayden
 
dt_hayden
 
ywidjaja
 
MeasurementBlues
 
MeasurementBlues
 
MeasurementBlues
 
TonyTib
 
realjjj
Like Us on Facebook
Special Video Section
Once the base layer of a design has been taped out, making ...
In this short video we show an LED light demo to ...
The LTC2380-24 is a versatile 24-bit SAR ADC that combines ...
In this short video we show an LED light demo to ...
02:46
Wireless Power enables applications where it is difficult ...
07:41
LEDs are being used in current luxury model automotive ...
With design sizes expected to increase by 5X through 2020, ...
01:48
Linear Technology’s LT8330 and LT8331, two Low Quiescent ...
The quality and reliability of Mill-Max's two-piece ...
LED lighting is an important feature in today’s and future ...
05:27
The LT8602 has two high voltage buck regulators with an ...
05:18
Silego Technology’s highly versatile Mixed-signal GreenPAK ...
The quality and reliability of Mill-Max's two-piece ...
01:34
Why the multicopter? It has every thing in it. 58 of ...
Security is important in all parts of the IoT chain, ...
Infineon explains their philosophy and why the multicopter ...
The LTC4282 Hot SwapTM controller allows a board to be ...
This video highlights the Zynq® UltraScale+™ MPSoC, and sho...
Homeowners may soon be able to store the energy generated ...
The LTC®6363 is a low power, low noise, fully differential ...