August 11, 2005 (Computerworld) -- The U.S. government plans to begin issuing electronic passports in December that feature a built-in chip that contains information about the passport holder and facial-recognition capabilities.
In an announcement Tuesday, the U.S. Department of State said the first electronic passports will be issued only through the department; By October 2006 domestic passport agencies, such as local government offices and post offices, will be able to provide them.
The use of electronic passports is being implemented to enhance document and border security and to make identification for international travel easier and more secure for U.S. citizens, the department said.
The new passports will combine facial-recognition and contactless chip technology. The chip, which will be embedded in the cover of the passport, will hold the same information that is printed in today's paper passports, including the passport holder's name, date of birth, gender, place of birth, dates of passport issuance and expiration, passport number and photo image. A digital signature will be used to protect the stored data from alteration and mitigate against photo substitutions. The digital photograph will also allow biometric comparisons using facial-recognition technology available at international borders, according to the agency.
To prevent unauthorized reading, or "skimming" of the data, antiskimming technology will be built into each electronic passport's front cover, according to the agency. Officials are also considering inclusion of basic access control technology that would prevent the data from being accessed until the passport is opened and its machine-readable zone on the data page is read electronically.
Those built-in safeguards may not be enough, said Lee Tien, a senior staff attorney at the Electronic Frontier Foundation, a San Francisco-based privacy group. Earlier this year, the group joined other privacy groups in submitting comments to the State Department about the new passports, arguing that the security efforts don't do enough to protect Americans from unauthorized data theft. The proposed shielding may not work in all scenarios when a passport is opened and read, Tien said.
"We are very dubious of the need for any kind of electronic ID for security purposes," he said. "We have concerns that if they do implement it ... that they are not planning on using any technological safeguards other than shielding to protect [the passports] from unauthorized reading. We believe more needs to be done.
"Given that they do seem to be going forward, they need to study and implement better privacy protection," Tien said.
Paper passports now in use would be replaced as they are renewed, according to a State Department spokesman. About 8 million passports are renewed annually out of some 57 million passports in circulation. The passports would be printed and manufactured by private companies, and the technical specifications on the built-in chips -- and details on how information will be stored -- are not being released.
Fees for the new passports are expected to remain unchanged, according to the agency. The fee for applicants 16 and older is $55, plus a $12 security surcharge and a $30 processing fee, for a total of $97.
Specialists have retrieved about 99% of the data on a disk drive on board the crashed space shuttle Columbia. Don't miss the photographs of the recovered drive.
Nearly 20 years after the first Internet worm, Steven J. Vaughan-Nichols takes stock of the malware/anti-malware landscape and spotlights how the two sides are approaching the battle.
Download this Computerworld Report, free, compliments of HP. (Source: Computerworld) Data Storage has emerged from the back room to become a key part of regulatory compliance, disaster recovery and strategic tecnhology plans. Learn more in this new this Computerworld report, a $49.95 value, available free for a limited time, compliments of HP.
Download this executive briefing
Developing FIPS 140-validated Solutions for the Federal Government Using RSA BSAFE Software
Get this white paper! (Source: RSA) The U.S. House of Representatives' Committee on Government Reform recently released the 2005 edition of its Federal Information Security Management Act (FISMA) report card. Unfortunately, the news was not good. The 25 major government agencies reported 15% of the IT systems remained uncertified/unaccredited while 6 agencies lacked effective corrective action plans, illustrating little improvement in the level of information security for government agencies compared to previous reports. Government agencies at all levels are entrusted with sensitive information about citizens, military personnel and others. As is the case with private industry, breaches of that information can create a public relations debacle and end up costing dearly-not just monetarily, but in public trust. Defense, security and diplomatic agencies are entrusted with even more sensitive information, which, in the wrong hands, could threaten national and international security.
Download this white paper
Why SaaS is Vital to Email and Web Security
Why SaaS is Vital to Email and Web Security
Download this webcast, free, compilments of Webroot Software
Go to the webcast
White Papers
Read up on the latest ideas and technologies from companies that sell hardware, software and services.
Eliminate SPAM, Gain Productivity Learn all about the dangers and the costs of spam in all its forms – from stock-touting to spreadsheet. Also, understand the drawbacks of traditional hardware- and software-based defenses – and the unique benefits of MessageLabs multi-layered, managed Anti-Spam solution; as illustrated by a real-world case study where MessageLabs stopped spam cold.
Download this white paper now! See more Whitepapers
Planning Virtualization for Production Environments The overwhelming complexity of the modern data center compounds the problem of how to safely virtualize IT environments. This paper provides an in-depth guide to analyzing complex environments for virtualization opportunities, particularly within production environments where stability, service levels and performance are of the upmost performance. Download this
white paper now