Showing posts with label CAPTCHAs. Show all posts
Showing posts with label CAPTCHAs. Show all posts
Friday, December 5, 2014
Google gets rid of the nasty reCAPTCHAs for humans
If you're tired of proving you're human by deciphering increasingly undecipherable texts shown on the CAPTCHA tests, you'll like to know that Google seems to have finally put an end to it - and from now on... you'll be able to prove you're human with a single click thanks to the "no CAPTCHA reCAPTCHA".
Thursday, January 23, 2014
Snapchat ghost Captcha took less than 30 minutes to crack
Snapchat has been highly criticized for the way they've been dealing with the security issues some security researchers have reported - completely ignoring them at first, then publicly dismissing it as being "nothing serious" no one would take advantage of, etc. But people did take advantage and leaked millions of user records online; and each "fix" they stubbornly implemented has been shown to still leave some open doors.
One of the last changes was adding a ghost captcha system to prevent automated fake user account creation at massive scales, where people need to prove they're human by selecting images where their ghost logo is present. But just like we predicted... it didn't last long.
Usually, computers can't make any sense from what's in a image: its just digital data. That's why you need to manually tag your photos, instead of being able to tell your computer to show you just the pictures you took in a mountain, or with your car on frame, etc. But when it comes to find a specific pattern in a imagem, well, that's a lot easier. Something proven by Steven Hickson, who created a small program that cracks Snapchat ghost captcha in under 30 minutes and less than 100 lines of code.
This is particularly worrying because it shows that besides the "attitude" problem, Snapchat really doesn't have a clue on how to make things secure. And worst of all, while you might not give a damn to what Snapchate security issues are, it makes us wonder just how many other startups or rising services might fall under the same category, unwittingly lacking the knowledge or the skills required to keep your/our data reasonably safe.
Saturday, October 26, 2013
Google to make reCAPTCHAs easier (but just for humans)
One might consider it as our biggest enemy on the web: the infamous CAPTCHAs - the tests conceived to confirm we are in fact humans, and not mindless automated systems trying to abuse the system. CAPTCHAs started simple enough, but with automated tools popping up promising to bypass them, thing began to get increasingly more complex.... to the point that even a human will have a hard time answering it these days. Google is finally making it easier... but only if you're human.
Google bought reCAPTCHA a while back. It's an interesting take on CAPTCHAs because not only it does a "are you human" test, but it also serves to identify and recognize words and numbers that will be used by Google in its projects.
Now, it's about to get easier for humans. Google will start actively considering the user’s entire engagement with the CAPTCHA—before, during and after they interact with it. This means that Google will "know" (or at least have a very good idea) if you're human even before you start answering the captcha, based on your behavior. For instance, a human user will most likely spend some time reading the page, scrolling, etc. A automated bot, on the other hand, might try and answer the captcha a few milliseconds after opening the page.
When the system thinks you're a human being, it will present you with easier CAPTCHAs to solve, like ones containing only numeric values.
In the name of the entire human race... I thank them! :)
Subscribe to:
Posts (Atom)





