1. 11

  2. 2

    I take it these are the ‘enterprise’ nespresso machines?

    1. 1

      Lovely practical walkthrough of how this was reverse-engineered, thanks.

      I assume this is a low priority fix as most people are not interested in endangering their jobs by stealing coffee!

      However I have worked at more than one place where people noticed that the coffee machine’s “free vend” mode could be activated with the default PIN of 1234…

      1. 1

        most people are not interested in endangering their jobs by stealing coffee

        Why would it? What’s the connection between these two?

        1. 1

          Mainly a guess, but I’m assuming these smart card machines are used in a corporate setting. In that case I doubt many people would go as far as loading up a smart card with fake money just to get free coffee at work - although perhaps “endangering their jobs” is a bit extreme since it would be hard to detect.

          Either way, what I meant is that I don’t see this happening enough for the person paying for the vending machine to really notice the lost revenue. If so, Nespresso might move to newer cards but the business impact is minimal - they don’t have a lot of incentive to hurry, or to upgrade existing machines to fix this.

          1. 2

            Ah ok, I understand now, thanks!

            Having to pay for coffee at work sounds weird though, is this a US thing?

            1. 3

              Coffee here is free, but we have to pay for soft drinks and snacks. It’s in Sweden though, charging for coffee in the workplace would cut your hiring pool by ~85%…