Transport for London Oyster system pulled offline after miscreants enter customers' accounts

Transport for London Oyster system pulled offline after miscreants enter customers' accounts

Public sector bods blame users recycling logins


Exclusive Transport for London's online Oyster travel smartcard system has been accessed by miscreants using customer credentials, The Reg can reveal, as the transport authority keeps the website offline for a second day.


Some Oyster customers have had their accounts broken into, and the transport authority has blamed users who recycled their login creds with other websites.


A TfL spokesperson told us: "We believe that a small number of customers have had their Oyster online account accessed after their login credentials were compromised when using non-TfL websites. No customer payment details have been accessed, but as a precautionary measure and to protect our customers' data, we have temporarily closed online contactless and Oyster accounts while we put additional security measures in place."


In fiscal year 2018/19 nearly a billion rail, tram and bus journeys were ..

Support the originator by clicking the read the rest link below.