New travel rules kick in June 1 amid concerns over RFID-tagged passport cards
New travel requirements go into effect June 1 at U.S. land and sea borders amid security concerns over an RFID-enabled passport card that has been approved for U.S. travelers.
The passport cards are being issued by the U.S. State Department under a program aimed at better securing U.S. borders against terrorist threats. Under the program, called the Western Hemisphere Travel Initiative (WHTI), U.S. citizens returning from Canada, Mexico, Bermuda and the Caribbean by land or sea will be required to show a valid passport, the RFID-enabled passport or a WHTI-compliant driver's license starting June 1. Currently, U.S. citizens can re-enter the country from these four regions with a driver's license and proof of citizenship, such as a birth or naturalization certificate.
The passport cards, about 1 million of which have been issued so far, are designed to be a secure but cheaper alternative to regular passports. The card costs $45 for those 16 and older and $35 for those under 16. In contrast, a regular passport costs $100 for those over 16 and $85 for minors.
The credit card-size passport cards have a vicinity-read radio frequency identification tag that allow Customs and border protection officials to read the cards from 20 to 30 feet away. The goal is to reduce wait times by allowing officials to access an individual's information even before the traveler reaches the border. (The Customs Department provides details on how to use the card for U.S. land border entry on its Web site.)
Critics of the passport card maintain that those features that makes the card convenient to use also pose security and privacy risks. Organizations including the Center for Democracy and Technology (CDT) and the Electronic Privacy Information Center (EPIC) have noted that the use of vicinity-read or long-range RFID tags heightens the risk of data being skimmed by those with unauthorized card readers because the data is unencrypted as it travels over the air.
Cardholders could unknowingly broadcast their identity information while traveling, opening up the possibility for the data to be stolen and the cards cloned, these groups say.
Sign up for ITworld's Daily newsletter
Follow ITworld on Twitter @IT_world
On Twitter now
rfid
Powered by Twitter
Esther Schindler
If the comments are ugly, the code is ugly
claird
SVG a graphics format for 21st century
pasmith
Take Chrome OS for a test spin
Sandra Henry-Stocker
Solaris Tip: Have Your Files Changed Since Installation?
jfruh
Android fragments vs. the iPhone monolith
mikelgan
What Gizmodo missed about the Pro WX Wireless USB disk drive
Where Google Chrome security fails: the password
I heard mention that the Chrome OS will have some sort of encryption available a la bitlocker. If it's possible to encrypt personal data using another password or key, then it may have potential for very secure data.... And Ubuntu has an 'encrypt home directory' option, perhaps google should follow suit.
- Dann
Join the conversation here
Quick, practical advice for IT pros. Made fresh daily.
Want to cash in on your IT savvy? Send your tip to tips@itworld.com. If we post it, we'll send you a $25 Amazon e-gift card.













