Advertisement
Promo

Become a member of the ZDNet UK community

David Meyer

View blog's RSS Feed

Communication Breakdown

Communications from the world of, er, communications. And other stuff.

Thursday 19 June 2008, 9:58 AM

TfL reponds to Oyster crack claims

Posted by David Meyer

Transport for London has been quick to hit back at claims, made by Dutch security researchers, that the Oyster card is crackable and clonable. Not only did the researchers apparently get a free ride on the underground, but they also seem to have perpetrated a DDOS attack on a Tube gate.

While we work on a complete story on this series of events, here's TfL's statement on the matter:

"Londoners can have total confidence in the security of their Oyster cards. We run daily tests for cloned or fraudulent cards and any found would be stopped within 24 hours of being discovered. Therefore the most anyone could gain from a rogue card is one day's travel. Security is the key aspect of the Oyster system and Londoners can have confidence in the security of their Oyster cards. Using a fraudulent card for free travel is subject to prosecution."

And here's a statement from TranSys - the consortium responsible for delivering Oyster on behalf of TfL:

"Oyster has been designed with security at the forefront of its functionality. It has robust security, which operates at different points within the system. This ensures that should one security measure be breached, another will protect Oyster cards and the system as a whole. No personal information is stored on an Oyster card and specific information relating to the individual card holder (name, address, telephone etc) is stored on a central database and kept separate from journey data."

More soon!

Comments on this post

David Meyer

The full story is now up here.

Posted by David Meyer on Jun 24, 2008 11:01 AM

David Meyer
  • David Meyer
  • London, UK
  • Member since: October 2006
ZDNet Staff

Contacts' Latest Discussions

Number of Tracked Discussions: 2,342

manek manek

IPv6: don't be so US-centric

Friday 20 November 2009, 6:12 PM

3 comments
manek manek

Will we believe the telcos?

Friday 20 November 2009, 3:43 AM

9 comments
manek manek

Client sorted, what about the network?

Thursday 19 November 2009, 9:45 PM

9 comments

Contacts' Latest Blogs

Number of Contacts Blogs: 11

Avatar Tom Espiner

Climate research centre compromised

Friday 20 November 2009, 5:12 PM

1 comment
Avatar Jonathan Bennett

Did Microsoft violate the GPL?

Wednesday 11 November 2009, 10:19 AM

0 comments

Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters