Security Test Lab 

 
.:: home ::: about Riscure ::: smart card testing ::: embedded testing ::: security tools ::: publications ::.

 

 

 

 

 

 

 

 

 

 

Publications

Riscure regularly publishes on known and emerging  threats. The links below are a selection from our articles and presentations.

Is Contactless Indeed so Vulnerable? - May 2007
Harko Robroch from Riscure presented at CTST in the Contactless Payment Technologies track: "Is contactless indeed so vulnerable?".

How to Secure Electronic Passport - Feb 2007
Marc Witteman and Harko Robroch presented at the RSA Conference in San Francisco on electronic passport security.

Privacy issues with digital passport - July 2005
At the What The Hack conference on July 28 2005, Riscure revealed a weakness in the digital passport system that is under development in the Netherlands. more...

Launch of Inspector tool - May 2005
Riscure launched the new security tool Inspector. Inspector is the first side-channel analysis tool on the market with a graphical user interface. The CardsNowAsia magazine published an article on Inspector [0.7 MB].

CardsNowAsia magazine - Jan 2005
Marc Witteman from Riscure features with an article in CardsNowAsia on how Java card penetration testing has advanced and how this leads to high quality cards. more...

Press Release - Nov 15, 2004
Riscure demonstrates the perfect GSM attack scenario by eliminating a SIM card remotely. more...

Advances in Smart Card Security [283 kb]

An article on contemporary threats and counter measures, published in 2002 in the Information Security Bulletin.
 

Java Card Security [140 kb]

A security exploration in the emerging Java Card technology, published in 2003 in the Information Security Bulletin.

Java Card Security [2,460 kb]

A presentation given at the RSA Security Conference 2004.


 

Relevant web sources:

  Riscure CEO M. Witteman for Security Focus  
  Modeling Security Threats - Bruce Schneier  
  Smart Card Technology and Security  - University of Chicago  
GlobalPlatform - standards for card management
EMVco - Standards for smart card payments
Java Card Forum
SUN Micro systems - Java Card Technology
RSA Security