You are here: silicon.com > Public Sector > News

Oyster card security vulnerabilities uncovered

Chip concerns

Tags: chip, travel, oyster

By Tom Espiner

Published: 8 October 2008 08:53 GMT

Details of vulnerabilities in the chipset used in London's Oyster travel smartcard have been released by Dutch researchers.

The details were made public at the Esorics security conference in Malaga on Monday. An academic paper with details of the cryptographic vulnerabilities was also published on the Radboud University Nijmegen website.

Bart Jacobs, the professor of computer security at Radboud University who led the research team, told silicon.com sister site ZDNet.co.uk on Tuesday that the security of the Mifare Classic chipset, used in Oyster cards and in the Dutch OV-Chipkaart travelcards, was completely ineffectual.

Security from A to Z

Click on the links below to find out more...

A is for Antivirus
B is for Botnets
C is for CMA
D is for DDoS
E is for Extradition
F is for Federated identity
G is for Google
H is for Hackers
I is for IM
J is for Jaschan (Sven)
K is for Kids
L is for Love Bug
M is for Microsoft
N is for Neologisms
O is for Orange
P is for Passwords
Q is for Questions
R is for Rootkits
S is for Spyware
T is for Two-factor authentication
U is for USB sticks/devices
V is for Virus variants
W is for Wi-fi
X is for OS X
Y is for You
Z is for Zero-day

Jacobs said: "The chip is fundamentally broken. The only thing you can do is strengthen it with additional security measures and improve overnight checks. People involved should migrate to different chips, unless their assets are only of low value."

In their paper, the researchers claim to demonstrate that the proprietary Crypto1 encryption algorithm used on Mifare Classic smartcards allows the 48-bit cryptographic key to be "easily retrieved". The paper gives mathematical details of the algorithm, as well as information about the cryptographic architecture of the cards.

According to the Radboud University website, the researchers intercepted a "trace" of the communication between a smartcard and a Mifare reader, computed the cryptographic key, and decrypted it. Once the key was decrypted, the card could be copied and cloned, as the researchers demonstrated on the London Underground in April.

Jacobs told ZDNet.co.uk that the security of the cards had been further undermined by the publication of the doctoral thesis of Henryk Plötz, a German researcher who publicised Mifare vulnerabilities with fellow researcher Karsten Noehl in December 2007. Plötz's thesis, which was published on Monday, contains attack code in an appendix that Jacobs said could be used to crack Mifare Classic cards.

Jacobs said: "This goes to a different level. We deliberately tried to stay away from the hacker community. We do not publish attack code."

In the wake of his team's publication of the hack details, Jacobs said, the implication for Oyster card administrators at Transport for London (TfL) was that public confidence in the travelcards could be undermined, and that criminals could feasibly clone a new card every day.

"The great danger for [TfL] is how easy it is to clone cards," said Jacobs. "If you can clone a new one every day, it becomes a [paying] proposition. And suppose I clone your card. Transport for London will see that and block the card number but that will block the clone and the original. That is where the risk is. At some stage people will lose confidence in the card."

However, TfL told ZDNet.co.uk that, while the Mifare Classic chipset itself had been compromised, additional safeguards had been put in place after consultation with an academic team from the Royal Holloway information security group.

"The Mifare Classic chip is just one of a number of safeguards in place around the Oyster card system, and Transport for London continues to review security around the system," said a TfL spokesperson. "As part of this we've been working with an independent academic team to appraise any risks, and have put in place a number of additional safeguards on the system."

The spokesperson said TfL had no plans to migrate to another chipset.

The spokesperson said: "It's not unusual for IT systems to come under attack. At this time we do not believe there's a need to change the Mifare system. We do not expect this type of ticketing fraud to become a widespread problem but we will continue to closely monitor the situation."

The spokesperson said that a fraudster could hope to gain only a maximum of £15 per day by continually cloning cards, adding that such criminals would be taking a large risk.

"Producing a fraudulent card remains complex and risky, and manipulating the card is of limited value," added the spokesperson. "It needs a qualified computer specialist to set up, and risks detection by our staff or police."

Semiconductor company NXP, which manufactures the Mifare Classic chips, claimed on Tuesday that publication of the details had gone against the principles of responsible disclosure.

"NXP Semiconductors regrets that the Radboud University Nijmegen has revealed details of the protocol and the algorithm of Mifare Classic, as well as some practical attacks on Mifare Classic infrastructures," said an NXP spokesperson. "A broad publication of detailed information to carry out attacks with limited means is, at this moment in time, contradictory to the scientific goal of prevention and the responsible disclosure of sensitive information."

However, Jacobs said the researchers had disclosed their findings to NXP in March, and were only now publishing the details to the wider public in October. Jacobs added that, because of the fresh publication of those findings, organisations using Mifare Classic could now make a solid analysis of security risks to their systems.

NXP, which had sought an injunction from a Dutch court to halt publication of the paper, said it had advised customers to urgently review the security of their systems.

"NXP will continue working closely with its Mifare Classic customers and partners and advises them to urgently take appropriate security measures to protect their systems," said the spokesperson.

Original article: Dutch researchers release Oyster-hack details from ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

silicon.com Public Sector
Get the latest public sector news straight to your inbox. Sign up for the PS newsletter today!


  • Jobs
Treasury Market Risk Business Analyst - Asset/liability management, Treasury, Risk

Candidates should be experienced in Treasury Market Risk, and have experience in various market risk measures and methods. Working within the Market ...

Quantitative Analyst South West, Pricing and Forcasting

Skills for this role include: -An impeccable academic background focused on numerate-centric subject -In depth knowledge of risk analysis and ...

Computer Vision PhD Algorithm Researcher - Oxford

My client is looking for a 1st class postgraduate with a top academic career to join their Computer Vision algorithmic research team. Senior Computer ...

Nick Heath
Let's shine a light into the public sector IT money pit
With £16bn being spent, why is productivity still falling?

Tim Ferguson
BBC is taking tech seriously, so give it a break!
Auntie is the envy of the world but doesn't get the credit it deserves at home...

Peter Cochrane
Peter Cochrane's Blog: Open info for all?
Government stonewalling citizens

Nick Heath
Home Office CIO on taming tech and why ID cards are good news
Interview: Annette Vernon, Home Office CIO

Nick Heath
NHS records, Google and Microsoft: Where do you want your data?
Politicians: Heal thyself

Alan Hunt
NHS network: Time to get secure
Patient data in need of a check up

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.




Quick Sitemap Links: