Dutch Transport Card 0wned

So, it's not just me being sloppy with security after all. My Dutch colleagues will be happy to know that they can now travel for free (via Glyn Moody). Much less so, when they understand that 2B$ of taxpayer money went down the drain thanks to a stupid security design relying on a secret algorithm and a short secret key. 

Security by obscurity. Did the Netherlands hit a worm hole and travel in time to sometimes before 1883? Or, considering how the Dutch government has been smart with Open Source, is it just a case of split personality?



