Live data from Hacker News

CAPTCHAs can still detect AI agents

research.roundtable.ai

21–30 of 76 posts

Re: CAPTCHAs can still detect AI agents

#21
Captchas are primarily to punish users for not allowing tracking, or using the “right” services, they may prevent some bots as a side effect (or a pretence from the provider) but it’s mostly for google and cloudflare to abuse their monopolies.

Re: CAPTCHAs can still detect AI agents

#23
post #19

This feels like the kind of thing where, "you must be at least this human to pass" and that it just otherwise mostly wastes your time if you're a robot would cover most of what Captchas are useful for. Like, if it takes you 3-5 seconds to get through a captcha as a human, as long as every single event has that effort added, the impact to something trying to use/reuse the end-page is way worse if you're a robot than i…

Isn't this solveable by Anubis or similar? if you just want to add some costs to bots you can do that directly and it'll be pretty invisible to humans

Re: CAPTCHAs can still detect AI agents

#26
post #21

Captchas are primarily to punish users for not allowing tracking, or using the “right” services, they may prevent some bots as a side effect (or a pretence from the provider) but it’s mostly for google and cloudflare to abuse their monopolies.

Google I would say yes, but what does Cloudflare gain? They don't run an ad network. Generally I'd say Cloudflare is pretty good to have as a guardian of the web compared to other options.

They protect free speech and allow Tor users. Ever tried completing a reCaptcha on Tor?

Re: CAPTCHAs can still detect AI agents

#27

I had to do a Captcha the other day, and the letters looked awful, so I clicked the speaker for an audible Captcha instead. I was even more horrified. The sound was almost painful. Sharp noise blasting as a high pitched tinny voice bellowed numbers at me. I honestly don't know how blind people use the internet these days with such blockers in place, and that's kind of sad. The cookie banners, the captchas and the bot…

This always felt like a giant ADA lawsuit waiting to happen.

Re: CAPTCHAs can still detect AI agents

#28
But.. the task was never "detect this" but always "detect this within acceptable constraints".

Sure, once you collect enough bits, you can tell that its me. And if you know from other sources that I am human, that solves your immediate problem. But if you do that, you have still failed at the task of detecting certain kind of abusive behavior without harming my anonymity.

Re: CAPTCHAs can still detect AI agents

#29
post #21

Captchas are primarily to punish users for not allowing tracking, or using the “right” services, they may prevent some bots as a side effect (or a pretence from the provider) but it’s mostly for google and cloudflare to abuse their monopolies.

Google I would say yes, but what does Cloudflare gain? They don't run an ad network. Generally I'd say Cloudflare is pretty good to have as a guardian of the web compared to other options. They protect free speech and allow Tor users. Ever tried completing a reCaptcha on Tor?

Cloudflare gains things like this:

https://blog.cloudflare.com/introducing-pay-per-crawl/

https://developers.cloudflare.com/browser-run/quick-actions/...

They create a new problem and sell the solution.

Re: CAPTCHAs can still detect AI agents

#30
post #20

- LLMs can't learn, therefore, LLMs are only good for things on which they are trained. - Captchas are not friendly with trial and error, so agentic solutions also don't help. - It's impractical to train LLMs on everything . - We humans are capable of creating infinite ways of captchas. While each of these sentences is true, captchas will always win against LLMs.

A captcha a LLM can't be trained to defeat is likely a captcha humans will struggle quite a bit with.
Post reply on HN