New Attack Could Make Website Security Captchas Obsolete

It has been reported that researchers have created new artificial intelligence that could spell the end for one of the most widely used website security systems. The new algorithm, based on deep learning methods, is the most effective solver of captcha security and authentication systems to date and is able to defeat versions of text captcha schemes used to defend the majority of the world’s most popular websites.

Shane Martin, Software Consultant at NuData Security:

“What makes some captchas raise above these sophisticated attacks are not the captchas or challenges themselves, but the risk assessment behind the challenge. If an attacker used this method to solve captcha challenges that are built on top of enhanced security solutions such as behavioural biometrics technology, the risk assessment would recognise that an automated system was completing the challenge and would then increase the challenge complexity until the challenge could not be solved. This is why it’s important to avoid captchas as standalone products and have them as an interdiction that appears after an accurate risk assessment.”

