Quantcast

The 10 Biggest Security Risks You Don't Know About

Hackers, scammers, and identity thieves are constantly coming up with new ways to attack your PC and your privacy. Here are the newest perils--and how to foil them.

Andrew Brandt

  • 0 Yes
  • 0 No

Malware on Your Passport?

Danger level: Medium | Likelihood: Low | Target: Most consumers

Could your passport, a pack of razor blades, or even your pet cat carry a computer virus? It may seem farfetched, but recent findings from a trio of Dutch researchers serve to demonstrate the possibility.

RFID (Radio-Frequency Identification) chips are small, inexpensive devices that can be embedded in stickers and in pet ID tags, and soon they'll show up in driver's licenses and U.S. passports. They're used for electronically transmitting information--say, inventory data for shipping pallets, or your passport number--over short distances.

Though highly useful, some implementations of the RFID technology have security weaknesses. For example, the information on some tags can be rewritten, and other tags can be read from an unusually great distance.

In an attempt to exploit some of these weaknesses, the Dutch university researchers conducted a controversial proof-of-concept study using modified RFID tags and a viruslike command to "infect" the back-end database that stored the tag's records. Theoretically, an RFID system could thus be made to crash or run malicious code--a scary prospect for a critical business or government technology.

Numerous computer security experts have pointed out that a reasonably well-built system with effective "middleware" between the RFID reader and the database probably wouldn't be vulnerable to such an assault. And sensitive RFID chips can use encryption and shielding covers to protect against acquiring an unasked-for malicious payload. The planned U.S. passports will use both measures.

Still, the study illustrates a basic point: Nearly every system has exploitable flaws. Keep an eye on your cat.

Defense
  1. RFID signals can't pass through metal or foil-lined cases. If you carry an RFID security pass, keep it in a metal business-card holder or similar enclosure.
  • Recommend this story?
  • 0 Yes
    0 No

"The 10 Biggest Security Risks You Don't Know About" Comments

Featured APC Accessories

  • APC Back-UPS ES Safeguards your equipment from damaging surges and spikes that travel along your utility & data lines.
  • APC SurgeArrest Performance Highest level of protection for your professional computers, electronics and connected devices, as well as provides surge protection.

Deal Breakers

Special Offers for PC World Users

People who read this also read:

  • 15 Minutes to a Secure Business Get the Secure in 15 toolkit starting with the "15 Minutes Month-at-a-Glance" calendar. McAfee will send you additional tools and tricks to stay protected around the clock.
  • A Buyer's Guide to Data Protection Implementing data protection products and processes can be daunting. Make the right decisions by exploring what is available and what makes sense for your organization. Use this simple guide to evaluate different vendor offerings.

Sponsored Links