« January 2007 | Main | March 2007 »

February 2007 Archives

February 13, 2007

The card that accesses YOU

Your personal information will soon be held in a centralised database in the Office of Access Card. When the inevitable Centrelink/Immigration department style glitches happen, you may be wrongfully arrested as a super-villain and unlawfully deported to Venezuela, which this week is listed as your "place of birth" - by accident. This is much more likely to happen to you if you are disabled like Vivian Solon, since they are testing the system live on Disability Support Pensioners first. Next they'll come after the unemployed, and then they'll come after you.

Hidden away in the newspapers are a small Federal announcement about the Access Card Bill asking for public submissions to the Senate Committee before Wednesday 28th February. This new Australian Identity Card will centralize all Federal government databases into one that can easily be corrupted, hacked and abused. You are invited to write to the Senate Committee at fpa.sen@aph.gov.au

Identity theft is easy when there's just one database with all of your personal information. Its a honey-pot with a giant target painted on the top.

There is no plan to give out card readers with the computer chipped cards, so how can you confirm that the information stored about you is correct? If its wrong, you may not be able to buy your prescription medicines.

The Model 204 databases used by Centrelink and all the other departments are so badly written and maintained that they constantly report wrong information. Model 204 was released in 1967. At the moment the worst Centrelink have done is starve people due to payments refused by database glitches. "The computer says no."

Americans should be aware that the NSA uses the same database.
There were 790 abuses by Centrelink staff recorded in 2006 alone.

This Bill is being pushed through with minimal media coverage, and no debate. Hardly anyone is aware of it, and very few understand that the guinea pigs are those least able to protest - those who still qualify for a Disability Support pension under a Howard government.

Why does the central database need to know where you were born? What difference could it make?

Every doctor's surgery and pharmacy will have to replace their medicare card readers with Access card readers, its going to be very expensive, and for what? Right now, the Medicare card system is so simple that very few mistakes happen. Its a name, a number, and an expiry date. Nothing else is necessary.

Every train and bus ticket machine will have to be replaced, along with extra readers for cinemas, banks and supermarkets. Instead of glancing at a card to see that its valid, every card will have to be validated through the network.

They propose to put digital cash on the card, starting with payments for natural emergencies, but possibly leading up to Centrelink benefits. Imagine being able to hack the card and get a payout from any ATM. Or leaving the card in the washing and losing your month's rent.

Only 17 cards will be replaced in your lifetime. The information is to be kept on file forever after your death.

The Access Card will also hold your title with your name. I propose that as many people as possible ordain themselves for free as Universal Life Church ulc.org ministers with the title of "Reverend". This way, you don't have to be treated as a second class citizen if you don't have already have a title. At http://ulc.org they offer all kinds of titles.

There is no guarantee against your gender, race, religion being recorded, which guarantees discrimination. The card could easily be used to round people up. There's no protection against it being used the same way it has been used in the authoritarian regimes around the world that have national identification databases.

The Access Card Bill proposes that the Federal Government will have Crown Copyright over your name, signature and all your personal information!

At the moment, you can confirm your identity over the phone with your date of birth and your middle name. When all of this is in one database that will be hacked and copied very quickly, there will be no way to authenticate yourself over the phone. The central database is planned to have a digitized copy of your birth certificate, passport, driver's license, marriage license and everything else. There is nothing they can't believe they don't know about you. There are no protections proposed to stop this information being data-mined and sold.

Joe Hockey's Access Card isn't just cricket.

References:
http://www.accesscard.gov.au/submissions_exposure_draft.html
http://www.accesscardnoway.net/
http://www.privacy.org.au/Campaigns/ID_cards/HSAC.html
http://www.efa.org.au/Issues/Privacy/accesscard.html
http://www.efa.org.au/Publish/efasubm-dhs-acbill-200701.html

http://www.cyberlawcentre.org/privacy/id_card/index.htm
http://en.wikipedia.org/wiki/Vivian_Solon
http://en.wikipedia.org/wiki/Model_204
http://www.theregister.co.uk/2006/08/28/oz_id_database_misused/
http://abc.net.au/rn/backgroundbriefing/stories/2006/1805501.htm


February 14, 2007

Access Card Bill

I guess "Enhanced Service Delivery" is to National ID Card, what "Surge" is to Escalation, and "Defense" is to Attack. George Orwell and Sir Humphrey Appleby would be proud.

Colbert Reports on John Howard

Stephen Colbert tips his hat AND wags his finger at John Howard


Colbert Report 12th February 2007

Radio ID skim scam

The Access Card Bill proposes to allow the computer on a card to act as a cash card for emergency relief as well as an ID card storing all your personal information.

By an amazing coincidence, the "Pay Pass" digital cash card is being trialled in Australia this month by Mastercard. Its RFID. Radio Frequency IDentification allows people with card readers to access your information or cash remotely, without you having to remove the card from your wallet.

Hackers have built devices that passively "listen" to the radio traffic between the card and a reader to get your personal information or steal your digital cash Its called "skimming".

The Australian Department of Immigration bought into RFID cards which is a shame because Security experts have already hacked your RFID Passport

Will the Australian Access Card with its biometric face recognition, its huge store of personal information and its digital cash use RFID?
This question was asked in Parliament in 2006 by the West Australian Senator Christopher Evans. Minister Joe Hockey refused to rule it out:

Question 8. Can DHS rule out the employment of Radio Frequency Identification (RFID) technology within the Smartcard?
Answer 8. Whether or not the access card uses RFID technology is a matter for decision by
government.

You can stop the Government tracking you, the fraudsters stealing your identity and the thieves stealing your digital cash by building an RFID-proof wallet with foil and duct-tape.

Could KPMG who won the tender for the card indicate whether the models they sell come with RFID normally?

1998 KPMG White Paper on Smart cards. It sounds exactly like the Access Card, including the digital cash.

Then in 2003 they sold biometric RFID access cards for the US Department of Defense

In 2005 they explained the many benefits for RFID cards

I wonder if they'll just sell us the same model? Why won't Joe Hockey play ball and rule out RFID?

References:
http://www.the-gold-blog.com/?p=186
http://www.rfidproductnews.com/issues/2006.07/18.php
http://www.technewsworld.com/rsstory/52270.html
http://www.aph.gov.au/senate/committee/fapa_ctte/estimates/bud_0607/human_services/hs35.pdf
http://www.rpi-polymath.com/ducttape/RFIDWallet.php
http://crec.mccombs.utexas.edu/works/articles/smartcardswp.html
http://www.rfidnews.org/news/2003/01/30/department-of-defense-selects-bearingpoint-for-third-phase-of-biometric-demonstrations/

http://www.kpmg.com.au/newsletters/LOBS/ice_com_ment-September2005.htm



February 17, 2007

The card that listens!

Bugged ID Card

BeepCard are selling a radio microphone bug on a credit card, with a computer, memory, and rechargeable battery. Their RFID (Radio Frequency IDentification) card allows anyone with the remote card reader to listen in on your conversations.

The battery will be recharged whenever it's in range of a reader.

References:
http://en.wikipedia.org/wiki/Radio_Frequency_Identification
http://www.beepcard.com/docs/ComTalk.pdf
mirror
http://news.thomasnet.com/fullstory/471386/rss/2463
http://scitation.aip.org/getabs/servlet/GetabsServlet?prog=normal&id=JBENDY000127000006001030000001&idtype=cvips&gifs=yes

February 28, 2007

Ax-Sex Card

If you want to hear anonymous interviews with interesting people about an important issue, then go to http://www.diffusionradio.com/2007/03/id_card_is_big_brother_stalkin.html and download the MP3 and listen and think about whether there should be a public debate about the Access Card and the total lack of protection of any right to privacy or appeal.

If you like what you hear please email your friends with http://www.diffusionradio.com/2007/03/id_card_is_big_brother_stalkin.html so they can listen, too.

Because everybody's welfare status will be on the card's chip and backup database, the card will necessarily have entries about whether or not you sleep with the people you live with. If you start sleeping with them, as the TV ads tell you, Centrelink needs to know, and so will the Office of Access Card.

About February 2007

This page contains all entries posted to Here's Why in February 2007. They are listed from oldest to newest.

January 2007 is the previous archive.

March 2007 is the next archive.

Many more can be found on the main index page or by looking through the archives.