Passports: More Gaping Security Holes

| | Comments (0)
Thanks to The Inquirer for this article which details how the details of passport applications of millions of people can be viewed online by a bit of simple URL tweaking (reminds me of the good old days of online games where session IDs consisted of an incremental number making it easy to hijack someone's session). What's more, it's been known about by the authorities for a year. So even before you receive your insecure RFID chipped passport someone could quite easily have received all your details anyway.

Beggars belief.

Leave a comment

About this Entry

This page contains a single entry by Robbie Bow published on May 15, 2007 11:34 PM.

This game is so hard was the previous entry in this blog.

Authentication versus Identification is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Powered by Movable Type 4.21-en