The Living Dead: Hacking Mobile Face Recognition SDKs with Non-Deepfake Attacks

  Рет қаралды 3,140

Black Hat

Black Hat

Күн бұрын

Face recognition is increasingly popular in mobile apps, especially for critical tasks like opening a bank account. To prevent identity spoof using injected images, liveness detection is crucial. This is particularly important due to the widespread availability of stolen identity documents and selfies on the black market.
While many researchers have studied deepfake or presentation attacks that target machine learning models, few have addressed the protocol design or implementation issues in face recognition systems that can enable low-cost and easy-to-scale attacks. Starting from several real-world incidents of non-deepfake attacks, we will delve into the technical aspect of mobile face recognition spoofing. Our analysis of 18 mobile face recognition libraries, including those from industry leaders, reveals their security flaws that can result in liveness detection bypasses....
By: Wing Cheong Lau , Kaixuan Luo , Xianbo Wang
Full Abstract and Presentation Materials: www.blackhat.c...

Пікірлер
Players vs Pitch 🤯
00:26
LE FOOT EN VIDÉO
Рет қаралды 128 МЛН
Человек паук уже не тот
00:32
Miracle
Рет қаралды 4,3 МЛН
CPU Reviews, How Gamers Are Getting It Wrong (Short Version)
14:07
Hardware Unboxed
Рет қаралды 110 М.
Keynote: Black Hat at 25: Where Do We Go from Here?
1:05:22
Black Hat
Рет қаралды 29 М.
7 Cybersecurity Tips NOBODY Tells You (but are EASY to do)
13:49
All Things Secured
Рет қаралды 803 М.
A Software Defined Radio (SDR) Approach to Radar
10:43
QIQ Systems
Рет қаралды 85 М.
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
32:30
DEFCONConference
Рет қаралды 43 М.
Tactics of Physical Pen Testers
44:17
freeCodeCamp Talks
Рет қаралды 913 М.
Solving a REAL investigation using OSINT
19:03
Gary Ruddell
Рет қаралды 186 М.