Slashdot Mirror


Fingerprint Scanners Fooled By Play-Doh

* * Beatles-Beatles writes to tell us YubaNet is reporting that in recent tests by Stephanie C Schuckers, an associate professor of electrical and computer engineering at Clarkston University, she has shown that, among other things, biometric security measures were fooled 90% of the time by simple attacks like Play-Doh molds. From the article: "Schuckers' biometric research is funded by the National Science Foundation (NSF), the Office of Homeland Security and the Department of Defense. She is currently assessing spoofing vulnerability in fingerprint scanners and designing methods to correct for these as part of a $3.1 million interdisciplinary research project funded through the NSF."

12 of 302 comments (clear)

  1. Old Hat by TheAcousticMotrbiker · · Score: 4, Informative

    This is old hat, sortof.
    German computer magazine C'T defeated fingerprint scanners a few years ago using gummibears. Im sure www.heise.de should ahve a (german) copy of that still online somewhere

  2. Play-Doh is... by TorKlingberg · · Score: 5, Informative

    For all us not not from the same cultural sphere as the submitter, Play-Doh is a clay-like compound used by children to form various things. http://en.wikipedia.org/wiki/Play-Doh

  3. Re:Wow by sam_paris · · Score: 3, Informative

    Its actually three in a row. IT: Fingerprint Scanners Fooled By Play-Doh

    Science: Nano Tech. Spurs Continued Health Concerns

    NewsWeek Looks at Search Engine Optimization

  4. You would think Beatles-Beatles could at least by antifoidulus · · Score: 2, Informative

    spell the name of the University correctly if he is going to spam slashdot. It's CLARKSON, there is no T in there!

  5. More fingerprint spoofing techniques by BeermanAtCampus · · Score: 5, Informative

    Last summer on WTH: Spoofing fingerprints in 10 minutes shown at WTH last summer. The guy on the video also says that he never encountered a fingerprint reader which couldn't be fooled. Interesting is also to see is that he does not make a fake finger, but only a thin acryl layer placed over ones real finger. And also on the CCC website: A image gallery with text (EN) how to copy a finger print. So it's not all about the Play-Doh

  6. Re:It's sad "fake news" keeps appearing on Slashdo by wraith0x29a · · Score: 2, Informative

    1. Get some sort of funding/investment for a start-up business or a research project of some sort.
    2. Generate traffic to a site to improve ad revenue or subscribers.
    3. Sell a product or service of some sort.
    4. ???
    5. Profit.

    --
    ~ Better a freak than a sheep. ~
  7. Understandable Frustration by ObsessiveMathsFreak · · Score: 4, Informative

    Now ordinarily the parent would simply be regarded as a troll, but all you have to do is look through a few Slashdot journals to see examples of quality submissions that have been rejected. The fact that a search engine spammer's articles get preference really explains this kind of frustration.

    I'd like to hear some kind of explanation from the editor(s). I'd like to think that this is simply some kind of failure of process rather than something fundamentally wrong with Slashdot itself. It would be nice if the next Slashback dealt with these issues in some way.

    --
    May the Maths Be with you!
  8. The truth about * *Beatles-Beatles by dorkygeek · · Score: 3, Informative

    Looks like ScuttleMoney^H^Hkey still doesn't get. Interesting thing is, ScittleMonkey seems to use some standard template for * *Beatles-Beatles submissions, since ALL of them start by: "* * Beatles-Beatles writes to tell us ...".

    So, let me repost some earlier post of mine:

    Ok, let's have a look at his george-harrison.info website. Aha, maybe the links at the bottom of the page? Yes, I see: http://george-harrison.info/reciprocal-links.html.

    Sooo, what may be on that page? Quoting:

    Our reciprocal links page. These links are useful for website promotion, link trades, and generating traffic to your site. There are many sites with useful products, services, programs, business opportunities, information, and free stuff.

    All reciprocal links have been manually screened before getting on this page. Webmasters that post links on this page, also promote this Links Page on their site too. If you want to add your link and become a member of this reciprocal links page, just click on the top link for details. It's free to join.

    Looking at the link list (just a small excerpt):

    Guaranteed Dropship Wholesalers business directory source

    Good Vibrations for Singles - Free Dating, Love, Romance, and Friendship

    Collection Agency - Williams, Cohen & Gray

    Trade Links - Link Swap Page

    Personals Dating Affiliate Program - Instant Sign-Up

    ProfitsRup2U For Successful Internet Marketing

    Trade links page - reciprocal links page

    HTH!

    --
    Windows is like decaf - it tastes like the real thing, but it won't get you through the day.
  9. Re:Is i just me by dorkygeek · · Score: 4, Informative
    Because * *Beatles-Beatles is a link-farmer and uses the high page rank of slashdot to increase the page rank of the links he's farming on his website.

    --
    Windows is like decaf - it tastes like the real thing, but it won't get you through the day.
  10. Re:Is i just me by brunes69 · · Score: 3, Informative
    Mind you, it's not like we should be surprised - they acted in exactly the same way about the Roland Piquepaille(sp?) stories, and have acted the same in the past too (anyone else remember the troll report thread and related mod bombing and moderation blacklisting? I *still* can't moderate). The bottom line is that for all slashdot seems to rail against poor customer service, they're quick to ignore their own customers.

    Actually, far more likely is that they don't have time to read /. comments all day since they are busy doing other stuff and managing the sbumission queue.

    I toally agree this whole ScuttleMonkey thing is BS and the guy should be fired, but if you want to make your point known, you should be emailing OSTG about it, not ranting on here where no one sees you.

  11. Re:Is i just me by jamie · · Score: 4, Informative

    Of course nobody's paying anybody. Seriously, what would make you think that? If there were paid stories, don't you think we would make that blatantly obvious? Since it was created, Slashdot has been one of the best sites on the internet as far as keeping up the wall between advertising and content.

    Apparently this person submits a lot of stories that our editors think our readers want to read. That's all there is to it. Our editors review Beatles-Beatles submissions with the same skepticism (probably more) as any other.

    I normally don't bother responding to paranoid threads like this because there is so much paranoia and no way for us to respond to it all. But lately the comment volume devoted to silly speculation is just out of control. I kind of doubt this response will help stem the tide but it's worth a shot...