Where academic tradition
meets the exciting future

How to Abuse Biometric Recognition Systems

Olli I. Heimo, Antti Hakkala, Kai K. Kimppa, How to Abuse Biometric Recognition Systems. Journal of Information, Communication & Ethics in Society 10(2), 68–81, 2012.

Abstract:

Purpose – The purpose of this paper is to show that most, if not all RFID/Biometric passports have clear technical and social problems in their intended use and that there are clear problems with the databases to which biometric data is being collected due to use of this data for other, (publicly) non-intended uses.
Design/methodology/approach – The approach of this paper is both a meta-study of the flaws in the technological specifications as well as the social implementation of RFID/Biometric passports. Finland is used as a case, but the results extend beyond Finland in most, if not all the topics presented – not necessarily all results to all implementations, but all to some others.
Findings – The current implementations of RFID/Biometric passports are lacking in both technical and social implementations and pose clear risks to their use, both due to lax implementation of the technology itself but specifically due to the social changes brought about. These problems cause both erosion of privacy and trust.
Research limitations/implications – Further research to other potential social implications on national level is required. The authors fear that the cases presented do not necessarily reflect all the potential problems, but just the most evident ones.
Practical implications – The problems with the technological implications can be averted by using the best technological solutions, and thus the best technological solutions should be used instead of the ones proven to be lacking.
Social implications – The social implications should at least be brought forth for public discourse and acknowledged, which currently does not seem to happen.
Originality/value – The paper contributes to the understanding of problems with current RFID/Biometric passport implementations as well as inherent social problems that are hard, if not impossible to avoid. The problems belong under the category of critical eGovernment applications, and similar issues are visible in other eGovernment applications.

BibTeX entry:

@ARTICLE{jHeHaKi12a,
  title = {How to Abuse Biometric Recognition Systems},
  author = {Heimo, Olli I. and Hakkala, Antti and Kimppa, Kai K.},
  journal = {Journal of Information, Communication & Ethics in Society},
  volume = {10},
  number = {2},
  publisher = {Emerald publishing},
  pages = {68–81},
  year = {2012},
  keywords = {Biometric Identification, Biometrics, Function Creep, eGovernment, Information Security, Information Systems, Passports.},
}

Belongs to TUCS Research Unit(s): Communication Systems (ComSys)

Edit publication