Automating Multi-Factor Authentication | Or Polaczek

  Рет қаралды 11,626

Selenium Conference

Selenium Conference

Күн бұрын

The use of Multi-Factor Authentication is becoming more and more common online, especially in E-commerce. I believe that a true end-to-end monitoring system should be able to cover MFA steps without special tweaks.
This talk will describe the 3 most common methods used today to implement MFA:
- SMS code verification
- Automated phone-call that either reads a X-digits code or requires you to dial one yourself
- Time-based One Time Password (TOTP) algorithm using dedicated apps such as Google Authenticator / 1Password / Okta /etc.
After understanding the differences between the above methods, we'll walk through one way to automate each form of MFA. While SMS and TOTP are relatively easy to automate, automating phone calls and speech-to-text is more complicated. In order to address that challenge, this talk will introduce a new technology: Asterisk - an open-source telecommunications engine.
The talk will feature 3 live demos, one for automating each MFA form:
- How to use Twillio's API to automate the reception of SMS with verification code
- How to use a Python library and a pre-configured user account to automate TOTP
- How to use Asterisk and Amazon's ASR (automatic speech recognition) to automate the reception OR typing of a verification code of an automated phone call
All the demos and code-samples (including a dedicated Asterisk Dockerfile with the relevant configuration) will be open-sourced before the conference will start.

Пікірлер: 8
@MarcelVerkerk
@MarcelVerkerk 6 жыл бұрын
Well done Or! Liked the demos and the backup video to cover the failed demo :D - will keep this video in mind in case i ever need to deal with MFA!
@hemchanderrao338
@hemchanderrao338 4 жыл бұрын
Could you please share the github link for the code
@pottimurthyharshini3702
@pottimurthyharshini3702 2 жыл бұрын
Figured out ways to automate FaceID, Fingerprints and other Biometrics by now? Please post your insights about these as well.
@PratikGhodsad7
@PratikGhodsad7 2 жыл бұрын
Super awesome
@Sherloklol
@Sherloklol 4 жыл бұрын
Do you have any code examples to share on a code repo like github?
@cmrd
@cmrd 3 жыл бұрын
github.com/orpolaczek/seconf-2017-demo/blob/master/totp/facebook_login.py
@osaynlatongchongya1582
@osaynlatongchongya1582 2 жыл бұрын
Nice app
@osaynlatongchongya1582
@osaynlatongchongya1582 2 жыл бұрын
Nice video
Advanced Automated Visual Testing With Selenium -
48:47
Selenium Conference
Рет қаралды 18 М.
Automating Multi-factor auth (MFA) based application with Katalon Studio
16:08
Inside Out Babies (Inside Out Animation)
00:21
FASH
Рет қаралды 11 МЛН
Каха заблудился в горах
00:57
К-Media
Рет қаралды 7 МЛН
MFA Can Be Easily Bypassed - Here's How
9:22
Grant Collins
Рет қаралды 89 М.
2 Factor Or Multi Factor Authentication Automation #UiPath #RPA #TwoFactorAuthentication
6:38
Simply Learn RPA UiPath - Rahul Patil
Рет қаралды 8 М.
Selenide: Concise UI Tests in Java
45:30
Selenium Conference
Рет қаралды 30 М.
Zero to Test, How to Run Your First Beta Testing Program | Crystal Yan
32:05
Docker Selenium. Getting Started
48:00
Selenium Conference
Рет қаралды 40 М.
ОБСЛУЖИЛИ САМЫЙ ГРЯЗНЫЙ ПК
1:00
VA-PC
Рет қаралды 2,4 МЛН
iPhone 15 Pro Max vs IPhone Xs Max  troll face speed test
0:33
Ноутбук за 20\40\60 тысяч рублей
42:36
Ремонтяш
Рет қаралды 404 М.