Attacks on and Countermeasures for Two RFID Protocols

作者:Chen, Xiuqing*; Cao, Tianjie; Doss, Robin; Zhai, Jingxuan
来源:Wireless Personal Communications, 2017, 96(4): 5825-5848.
DOI:10.1007/s11277-017-4449-z

摘要

Radio Frequency Identification (RFID) technology is expected to play a key role in the Internet of Things (IoT) and has applications in a wide variety of domains ranging from automation to healthcare systems. Therefore, the security and privacy of RFID communication is critical. In this paper, we analyze two recent RFID protocols proposed by researchers. Specifically we show that the ownership transfer protocol proposed by Wang et al., is vulnerable to tracing attacks while the mutual authentication protocol proposed by Cho et al. is vulnerable to key disclosure and backward traceable attacks. We propose secure improvements to these protocols to address the vulnerabilities, and improve the scalability of these schemes making them suitable for large-scale deployments.