<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The RFID Ecosystem Blog &#187; EDL</title>
	<atom:link href="http://rfid.cs.washington.edu/blog/tag/edl/feed/" rel="self" type="application/rss+xml" />
	<link>http://rfid.cs.washington.edu/blog</link>
	<description>A blog from a living laboratory for research in user-centered RFID systems</description>
	<lastBuildDate>Mon, 16 Mar 2009 03:07:38 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Washington Gov. Gregoire Signs RFID Bills into Law</title>
		<link>http://rfid.cs.washington.edu/blog/2008/03/30/washington-gov-gregoire-signs-rfid-bills-into-law/</link>
		<comments>http://rfid.cs.washington.edu/blog/2008/03/30/washington-gov-gregoire-signs-rfid-bills-into-law/#comments</comments>
		<pubDate>Sun, 30 Mar 2008 16:43:21 +0000</pubDate>
		<dc:creator>Evan Welbourne</dc:creator>
				<category><![CDATA[RFID Security and Privacy]]></category>
		<category><![CDATA[RFID legislation]]></category>
		<category><![CDATA[EDL]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[WHTI]]></category>

		<guid isPermaLink="false">http://rfid.cs.washington.edu/blog/?p=10</guid>
		<description><![CDATA[ Last week Washington State Governor Christine Gregoire signed into law two bills that affect RFID in Washington  State. The first is House Bill 2729, “addressing the reading and handling of certain identification documents”, which was proposed by Rep. Deborah Eddy (D-Kirkland). HB 2729, which Prof. Balazinska testified in support of, makes it a [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://rfid.cs.washington.edu/images/wa-rfid-legislation.jpg" border="0" alt="" hspace="5" vspace="5" width="240" height="249" align="left" /> Last week Washington State Governor Christine Gregoire signed into law two bills that affect RFID in Washington  State.<span> </span>The first is House Bill 2729, “addressing the reading and handling of certain identification documents”, which was proposed by <a href="http://www1.leg.wa.gov/house/Eddy" target="_self">Rep. Deborah Eddy (D-Kirkland)</a>.<span> </span><a href="http://apps.leg.wa.gov/billinfo/summary.aspx?year=2008&amp;bill=2729" target="_self">HB 2729</a>, which <a href="http://rfid.cs.washington.edu/blog/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/" target="_self">Prof. Balazinska testified in support of</a>, makes it a felony and a violation of the Consumer Protection Act (with a few exceptions) for a party to read an Enhanced Driver’s License’s RFID tag without consent.<span> </span>It also protects the documentation and information provided upon applying for an EDL from public disclosure.</p>
<p>The second bill is House Bill 1031, “changing provisions concerning electronic devices”, which was proposed by <a href="http://www1.leg.wa.gov/house/Morris" target="_self">Rep. Jeff Morris (D-Mt. Vernon)</a>.<span> </span>The bill was originally introduced in early 2007 as an “Electronic Bill of Rights” which would give consumers “the power to know who is collecting information and what has been collected”, <a href="http://housedemocrats.wa.gov/members/morris/20061227_electronic_billofrights.asp" target="_self">as Morris explained it in late 2006</a>.<span> </span>A series of revisions since that time have shifted the bill&#8217;s focus from regulating RFID technology to regulating <em>the behavior of those seeking to abuse it</em>.<span> </span>This shift is highly significant from both a public policy and an RFID industry perspective. <span> </span>More information on the bill can be found in <a href="http://www.rfidjournal.com/article/articleview/3066/1/1/" target="_self">an RFID Journal blog entry</a> and on <a href="http://apps.leg.wa.gov/billinfo/Summary.aspx?bill=1031&amp;year=2007" target="_self">the Bill’s information page</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://rfid.cs.washington.edu/blog/2008/03/30/washington-gov-gregoire-signs-rfid-bills-into-law/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Expert Testimony From Prof. Balazinska on Privacy Risks of the EDL</title>
		<link>http://rfid.cs.washington.edu/blog/2008/01/30/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/</link>
		<comments>http://rfid.cs.washington.edu/blog/2008/01/30/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/#comments</comments>
		<pubDate>Thu, 31 Jan 2008 07:36:12 +0000</pubDate>
		<dc:creator>Evan Welbourne</dc:creator>
				<category><![CDATA[RFID Security and Privacy]]></category>
		<category><![CDATA[RFID legislation]]></category>
		<category><![CDATA[EDL]]></category>
		<category><![CDATA[ORCA]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[service]]></category>
		<category><![CDATA[WHTI]]></category>

		<guid isPermaLink="false">http://rfid.cs.washington.edu/blog/2008/02/12/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/</guid>
		<description><![CDATA[Prof. Magdalena Balazinska testified at a public hearing today in the Washington State House Committee on Technology, Energy &#38; Communications. The hearing was on House Bill 2729, which addresses “the reading and handling of certain identification documents” and is sponsored by Rep. Deborah Eddy among others.  This is an especially timely bill in that [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://rfid.cs.washington.edu/images/olympia_sm.jpg" align="left" height="307" hspace="5" vspace="5" width="205" />Prof. Magdalena Balazinska testified at a public hearing today in the Washington State House Committee on Technology, Energy &amp; Communications. The hearing was on <a href="http://apps.leg.wa.gov/billinfo/summary.aspx?year=2008&amp;bill=2729">House Bill 2729</a>, which addresses “the reading and handling of certain identification documents” and is sponsored by <a href="http://www.housedemocrats.wa.gov/members/eddy/">Rep. Deborah Eddy</a> among others.  This is an especially timely bill in that it addresses privacy concerns raised by emerging public RFID systems such as the <a href="http://travel.state.gov/passport/ppt_card/ppt_card_3926.html">U.S. Passport Card</a>, the <a href="http://www.dol.wa.gov/driverslicense/edlfaq.html">Enhanced Driver’s License (EDL)</a>, and the new Puget Sound area transit pass, the <a href="http://www.orcatest.com/">ORCA card</a>.  The bill essentially limits the reading of RFID licenses and identicards as well as the use of the information contained on them. From the bill:</p>
<p>&#8220;[...] Washington state recognizes the importance of protecting the confidentiality and privacy of an individual&#8217;s personal information contained in drivers&#8217; licenses and identicards.&#8221;</p>
<p>&#8220;[...] A nongovernmental entity may only electronically read an individual&#8217;s driver&#8217;s license or identicard to verify the authenticity of the document or verify the individual&#8217;s age or identity. [...] When a nongovernmental entity electronically reads a driver&#8217;s license or identicard for one of the purposes permitted in (a) of this subsection, and except as otherwise permitted in subsection (3) of this section, the entity may not store, sell, or share personal information collected from the driver&#8217;s license or identicard without written consent of the individual.&#8221;</p>
<p>Magda provided expert testimony on the privacy risks of such systems.   Using examples from our research in the RFID Ecosystem project, Magda described how the lack of security features&#8230;<br />
(<a href="http://rfid.cs.washington.edu/blog/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/">Read complete post &gt;&gt;</a>)</p>
]]></content:encoded>
			<wfw:commentRss>http://rfid.cs.washington.edu/blog/2008/01/30/expert-testimony-from-prof-balazinska-on-privacy-risks-of-the-edl/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>RFID Security: From Theory to Practice</title>
		<link>http://rfid.cs.washington.edu/blog/2008/01/27/rfid-security-from-theory-to-practice/</link>
		<comments>http://rfid.cs.washington.edu/blog/2008/01/27/rfid-security-from-theory-to-practice/#comments</comments>
		<pubDate>Mon, 28 Jan 2008 05:42:04 +0000</pubDate>
		<dc:creator>Evan Welbourne</dc:creator>
				<category><![CDATA[RFID Security and Privacy]]></category>
		<category><![CDATA[EDL]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[RFID]]></category>
		<category><![CDATA[RFID CUSP]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[talks]]></category>
		<category><![CDATA[WHTI]]></category>
		<category><![CDATA[workshops]]></category>

		<guid isPermaLink="false">http://rfid.cs.washington.edu/blog/2008/01/29/rfid-security-from-theory-to-practice/</guid>
		<description><![CDATA[ I was fortunate to participate in the RFID CUSP workshop at Johns Hopkins University last week.  The goal of the workshop was to bring together a broad cross-section of the RFID community in an effort to shape research agendas in service of pressing, real-world problems.
About half the speakers had government and/or industry backgrounds; [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.jhu.edu/~tour/images/wyman.jpg" alt="Johns Hopkins University" align="left" border="0" height="461" hspace="5" vspace="5" width="207" /> I was fortunate to participate in the <a href="http://www.rfid-cusp.org/">RFID CUSP</a> workshop at Johns Hopkins University last week.  The goal of the workshop was to bring together a broad cross-section of the RFID community in an effort to shape research agendas in service of pressing, real-world problems.</p>
<p>About half the speakers had government and/or industry backgrounds; the rest were RFID researchers.  Among the government speakers was <a href="http://www.dhs.gov/xabout/structure/bio_1166549785058.shtm">Hugo Teufel III</a>, the CPO of the U.S. Department of Homeland Security, who spoke about his office’s work on authoring <a href="http://www.dhs.gov/xinfoshare/publications/editorial_0511.shtm">Privacy Impact Assessments</a> for RFID-related issues such as WHTI and the EDL; he also said that he or someone from his office will go <em>anywhere</em> to speak on matters of privacy and homeland security (good to keep in mind!).  <a href="http://www.smartcardalliance.org/pages/alliance-management">Randy Vanderhoof</a> of the Smart Card Alliance also gave an interesting presentation on his organization’s work with privacy – this included a note on their <a href="http://www.smartcardalliance.org/pages/publications-whti-passport-card">strong opposition to the use of EPC Gen 2 technology for WHTI</a>.</p>
<p align="left">The research portion of the program included presentations from <a href="http://www.rsa.com/rsalabs/node.asp?id=2029">Ari Juels</a> and <a href="http://www.thingmagic.com/html/about/ravipappu.htm">Ravi Pappu</a> on practical key management techniques for crypto in real-world RFID applications.  <a href="http://www.crypto.ruhr-uni-bochum.de/en_paar.html">Christof Paar</a> reviewed some lightweight crypto techniques which his group had developed for RFID, while <a href="http://www.cs.vu.nl/~melanie/">Melanie Rieback</a> and <a href="http://www.cs.virginia.edu/~kn5f/index.html">Karsten Nohl</a>&#8230;<br />
(<a href="http://rfid.cs.washington.edu/blog/?page_id=4" title="RFID Security: From Theory to Practice">Read complete post &gt;&gt;</a>)</p>
<p align="left">&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://rfid.cs.washington.edu/blog/2008/01/27/rfid-security-from-theory-to-practice/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
