Live data from Hacker News

An Empirical Study and Evaluation of Modern CAPTCHAs

arxiv.org

231–240 of 338 posts

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#231

The solution could be a cryptocurrency which can be mined in the browser. Hashcash, which was one of the inspirations for Bitcoin, was initially invented to prevent email spam. Consumer devices have a lot of spare CPU and RAM. So a proof-of-work algorithm which consumes those resources for a minute might work? If it generates $0.01 for the website owner in that minute, maybe that would work?

It works well, for example with Monero's proof of work algorithm that is purposely designed for consumer hardware. There was an irrational turn against it because some websites did it without consent. I would so much prefer to mine to view a site than have to be exposed to ads and captchas...

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#232
post #66

Does HN ever require CAPTCHAs? It seems to do pretty well with its basic but battle-tested moderation/antispam tools, and rate-limiting that seems to repel all but the most concerted DDoS attacks. I don't think HN has any unreasonable restrictions on scraping or third-party clients, either. And it manages to serve 5M unique visitors a month and 10M views a day[0]. [0] https://news.ycombinator.com/item?id=33454140

It struggles whenever there's a story more popular than usual though

Only for those logged in, because we bypass caches/cdn. Logout helps both you and HN in these cases.

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#233

Earlier quoted context omitted.

It’s from here: https://cdn.openai.com/papers/gpt-4.pdf (search for "CAPTCHA"). It was an artificial exercise that got massively exaggerated. It was explicitly instructed to do nefarious things like lie to people, it didn’t do those things of its own accord.

The underlying issue is anyone can ask chatgpt to lie, and many people try because it's even fun to try to work around things.

Well you see, this wouldn’t be a problem at all if we just didn’t have the humans involved. No need for concern!

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#234

I guess validating a payment card is going to be the next step to sign up for whatever. Don’t allow pre paid BINs and let’s go. Gonna be pretty miserable, however someone needs to find something as I currently would rather pay 0.01$ instead of solving a captcha. Especially the select all the bicycles; it’s a waste of life.

Please. Last time I had to solve a captcha it was wasted 15 minutes (not exaggerating!) of my life, clicking on an endless stream of bikes, motorcycles, buses and stoplights. As punishment for using a vpn.

If you are using cloudflare DNS for accessing archive.is, you will get that too. archive.is name resolution is broken, and even if you pass the captcha you will go back to the same page, giving the illusion that it didn't pass.

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#235
post #81

Earlier quoted context omitted.

A recall for essential maintenance is just that. I would focus on the need for an urgent update due to the flaws rather than the issuing agency's lack of more accurate terminology for a relatively new element to cars. Rolling around in semantic mud on the term recall is not sensible, as the definition in regards to cars is fairly specific [0]. Basically a recall just means there is a safety defect that must be addres…

It would be much more expensive and a bigger mistake to have the vehicles physically returned. The distinction is very important. There's also a difference whether a safety defect last for 1 hour/1 day/1 week or a year.

I don’t think anyone cares about what is the recall’s cost to Tesla owners. They care about the fact there are two million unsafe vehicles driving around at high speed near their loved ones. Especially ones driven by people who respond to such complaints with, “ehrm actually it just updated overnight so it wasn’t even a hassle for me ¯\_(ツ)_/¯”

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#236
It does not suprise me since lately I have a lot of mistakes with CAPTCHAs. Mainly the ones with characters with different colors, superposed, and rotated. I think there are some that we as humans just guess because the final image is not clear enough.

I think in the same way AI can beat us recognizing unfocused photos.

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#237

Earlier quoted context omitted.

If the self driving system were worth it's salt, it wouldn't matter if the drivers weren't paying attention. Ergo, the system sucks, or is at the very least not nearly as good as Tesla likes to tout.

Well it's not like there's a self driving car system in operation today that does not require a human in the driver seat at all. Waymo has so much catching up to do.

[deleted]

Re: An Empirical Study and Evaluation of Modern CAPTCHAs

#238

Earlier quoted context omitted.

But you can't send in 1000 people per second into most establishments you visit either. It's not an apt comparison.

No comparison can be made if everything has to be equal

If the only analogy you can think of removes the challenge of the problem your facing to be applicable, it's not an appropriate analogy.

The entire difference is that from my mobile phone I can send more traffic in an hour than most services will ever see legitimate traffic in their entire lifetime, and the cost to me is minimal.

The comparison is as invalid as comparing piracy to theft - piracy isn't theft, it's piracy, and understanding the difference between them is the key to dealing with the problem.

Post reply on HN