More info on the RFID virus. - Adventures in Engineering — LiveJournal
The wanderings of a modern ronin.

Ben Cantrick
  Date: 2006-03-16 02:54
  Subject:   More info on the RFID virus.
There have been a lot of news stories about Melanie Reiback et al discovering an RFID virus capable of infecting RFID tags and the back-end databases that use the info on them. Unfortunately, it doesn't seem that many of these stories give much in the way of technical details of the attack.

However, heavy duty technical info is out there for anyone who wants it. Reiback et al put up a whole website just to share the details of the threat with everyone. Though you'd never know it by reading 99% of the stories. So here it is:


(Easy enough URL for ya?)

Basically, we have another set of buffer overflow attacks caused by dumb programmers who said "nobody will EVER slip an invalid RFID tag into MY pile!" Oh yes they will, buck-o. Especially if your RFID tags are inventorying "secure" airline luggage or expensive retail merchandise.
