Recently the US National Institute for Standards and Technology (NIST) published guidance on how to securely use RFID technology.
SP800-98 delivers as follows:
- explains RFID technology,
- places RFID in context,
- reviews risk involved with each of its uses and
- suggests mitigative controls.
You can download the document here:
The document addresses such issues as:
- business process,
- business intelligence and privacy risk, in addition to
- ‘external risks’ such as those involved with electromagnetic radiation.
These important issues where also addressed here:
e-passports cracked 1 – safety is non-existant
e-passports cracked 2 – German, Dutch and UK citizens beware and take care
- e-passports cracked 4 – will more biometrics make a difference?
The NIST document is 150 pages long and, as a result, very detailed.
Previous NIST documents:
- Best practice – NIST documents released – SP 800-45, SP 800-94, SP 800-97