Relevant link: "Fingerprints are usernames, not password" (applies to all biometrics): http://blog.dustinkirkland.com/2013/10/fingerprints-are-user... Long story short, it's a bad idea, and it's really not secure.
It's much worse for pictures than fingerprints because most people have tons of pictures of themselves online now, and many are also public. It's probably just a matter of time before malicious hackers start spoofing their identities.
MasterCard to start verifying transactions through selfies
31–40 of 56 posts
Re: MasterCard to start verifying transactions through selfies
#32I'm starting to feel like a grey neckbeard. In my day, when I wanted to hang out with my friends, I called them, from a landline, known simply as "the phone". These days, I'm at or near a desktop/laptop computer almost 24/7 so don't see much need for a smartphone. I dread the day when a smartphone is required to be a part of society. It's shifting in that direction rapidly. If being on Facebook/LinkedIn also becomes…
Re: MasterCard to start verifying transactions through selfies
#33Re: MasterCard to start verifying transactions through selfies
#34Relevant link: "Fingerprints are usernames, not password" (applies to all biometrics): http://blog.dustinkirkland.com/2013/10/fingerprints-are-user... Long story short, it's a bad idea, and it's really not secure.
It's much worse for pictures than fingerprints because most people have tons of pictures of themselves online now, and many are also public. It's probably just a matter of time before malicious hackers start spoofing their identities.
The idea to protect against this kind of replay attack was that if the algorithm was unsure of the scan it could request a new one, validate it and present it to the user in case of low confidence biometric match or high confidence forgery: the point being that humans are good at detecting the kind of tampering that could fool an algorithm and vice versa.
This required to send the biometric scan to the peer and to validate it on the other side of the communication channel instead that on the device.
Well, we weren't technically using it as password in the end, I guess I'll have a closer look at what they're doing. And check if that old patent is still good. Eheh not that I have any rights to it left of course.
Re: MasterCard to start verifying transactions through selfies
#35I'm starting to feel like a grey neckbeard. In my day, when I wanted to hang out with my friends, I called them, from a landline, known simply as "the phone". These days, I'm at or near a desktop/laptop computer almost 24/7 so don't see much need for a smartphone. I dread the day when a smartphone is required to be a part of society. It's shifting in that direction rapidly. If being on Facebook/LinkedIn also becomes…
Re: MasterCard to start verifying transactions through selfies
#36I'm starting to feel like a grey neckbeard. In my day, when I wanted to hang out with my friends, I called them, from a landline, known simply as "the phone". These days, I'm at or near a desktop/laptop computer almost 24/7 so don't see much need for a smartphone. I dread the day when a smartphone is required to be a part of society. It's shifting in that direction rapidly. If being on Facebook/LinkedIn also becomes…
Re: MasterCard to start verifying transactions through selfies
#37Didn't they get the memo from Japan? http://pinktentacle.com/2008/06/magazine-photos-fool-age-ver...
Re: MasterCard to start verifying transactions through selfies
#38Earlier quoted context omitted.
In the two years since that article was written, how many cases have there been of iPhones actually hacked in the wild through TouchID?
How would one measure that, even if it is happening?
Re: MasterCard to start verifying transactions through selfies
#39I'm starting to feel like a grey neckbeard. In my day, when I wanted to hang out with my friends, I called them, from a landline, known simply as "the phone". These days, I'm at or near a desktop/laptop computer almost 24/7 so don't see much need for a smartphone. I dread the day when a smartphone is required to be a part of society. It's shifting in that direction rapidly. If being on Facebook/LinkedIn also becomes…
Re: MasterCard to start verifying transactions through selfies
#40My question is: "Selfie as a Password", - Is it really secure?
Its a terrible idea. Its a password you can't change, can't even choose, leave lying about all over the place. Its everything a password shouldn't be.
We recently learned that one of our service providers, was the victim of an illegal and unauthorized intrusion into its network during the first quarter of 2016. In response, the service provider enhanced the security of its network systems, cooperated with law enforcement including the United States Secret Service (“USSS”), and investigated using leading outside security firms.
Out an abundance of caution we are recommending all of our customers to get plastic surgery to their face in order to secure your identity and financial accounts. As a token of our apology, we will be paying 80% of all related surgical costs. Again we apologize for this incident and we will be taking steps to ensure it does not happen again.