Public transport chip card website contains privacy problem since January
The OV-chipkaart website has had a security vulnerability since at least January that sometimes allows users to see data from other travelers. However, the technical service of the company behind the public transport chip card was not informed earlier.
Trans Link Systems was already informed of the privacy problem at the end of January. As a result, the name, address, travel overview and balance of another person could by chance be viewed, NU.nl reports. However, the reports about the problem turned out not to have been forwarded to the technical service, so the organization only took action last week.
The leak was probably only fixed on Tuesday, so it is still possible that people who log in to ov-chipkaart.nl can see information from others. It is not known in how many cases this actually happens. TLS says the site will not be taken offline until the issue is resolved. The website is used too much for that, the company says.