Research on the Security of Visual Reasoning CAPTCHA

被引:0
|
作者
Gao, Yipeng [1 ]
Gao, Haichang [1 ]
Luo, Sainan [1 ]
Zi, Yang [1 ]
Zhang, Shudong [1 ]
Mao, Wenjie [1 ]
Wang, Ping [1 ]
Shen, Yulong [1 ]
Yan, Jeff [2 ]
机构
[1] Xidian Univ, Sch Comp Sci & Technol, Xian, Peoples R China
[2] Linkoping Univ, Dept Comp & Informat Sci, Linkoping, Sweden
来源
PROCEEDINGS OF THE 30TH USENIX SECURITY SYMPOSIUM | 2021年
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
CAPTCHA is an effective mechanism for protecting computers from malicious bots. With the development of deep learning techniques, current mainstream text-based CAPTCHAs have been proven to be insecure. Therefore, a major effort has been directed toward developing image-based CAPTCHAs, and image-based visual reasoning is emerging as a new direction of such development. Recently, Tencent deployed the Visual Turing Test (VTT) CAPTCHA. This appears to have been the first application of a visual reasoning scheme. Subsequently, other CAPTCHA service providers (Geetest, NetEase, Dingxiang, etc.) have proposed their own visual reasoning schemes to defend against bots. It is, therefore, natural to ask a fundamental question: are visual reasoning CAPTCHAs as secure as their designers expect? This paper presents the first attempt to solve visual reasoning CAPTCHAs. We implemented a holistic attack and a modular attack, which achieved overall success rates of 67.3% and 88.0% on VTT CAPTCHA, respectively. The results show that visual reasoning CAPTCHAs are not as secure as anticipated; this latest effort to use novel, hard AI problems for CAPTCHAs has not yet succeeded. Based on the lessons we learned from our attacks, we also offer some guidelines for designing visual CAPTCHAs with better security.
引用
收藏
页码:3291 / 3308
页数:18
相关论文
共 50 条
  • [31] Research on intelligent visual surveillance for public security
    Kang, Wenxiong
    Deng, Feiqi
    6TH IEEE/ACIS INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION SCIENCE, PROCEEDINGS, 2007, : 824 - +
  • [32] Recognizing objects in adversarial clutter: Breaking a visual CAPTCHA
    Mori, G
    Malik, J
    2003 IEEE COMPUTER SOCIETY CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, VOL 1, PROCEEDINGS, 2003, : 134 - 141
  • [33] CAPTCHA as a Visual Performance Metric in Active Macular Disease
    Vangipuram, Gautam
    Lee, Aaron Y.
    Rezaei, Kasra A.
    De Koo, Lisa C. Olmos
    Chee, Yewlin E.
    Chao, Jennifer R.
    Egan, Catherine
    Lee, Cecilia S.
    JOURNAL OF OPHTHALMOLOGY, 2019, 2019
  • [34] Learning visual features for the Avatar Captcha Recognition Challenge
    Korayem, Mohammed
    Mohamed, Abdallah A.
    Crandall, David
    Yampolskiy, Roman V.
    2012 11TH INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA 2012), VOL 2, 2012, : 584 - 587
  • [35] Research on Visual Question Answering Based on GAT Relational Reasoning
    Miao, Yalin
    Cheng, Wenfang
    He, Shuyun
    Jiang, Hui
    NEURAL PROCESSING LETTERS, 2022, 54 (02) : 1435 - 1448
  • [36] Research on Visual Question Answering Based on GAT Relational Reasoning
    Yalin Miao
    Wenfang Cheng
    Shuyun He
    Hui Jiang
    Neural Processing Letters, 2022, 54 : 1435 - 1448
  • [37] A CAPTCHA based on the human visual systems masking characteristics
    Ferzli, Rony
    Bazzi, Rida
    Karam, Lina J.
    2006 IEEE INTERNATIONAL CONFERENCE ON MULTIMEDIA AND EXPO - ICME 2006, VOLS 1-5, PROCEEDINGS, 2006, : 517 - 520
  • [38] CAPTCHA: a solution for computer security or a problem to access/ use the web?
    Antonio Vega, Omar
    Eduardo Vinasco-Salazar, Ronald
    E-CIENCIAS DE LA INFORMACION, 2014, 4 (02):
  • [39] Enhancing Security of Urdu Language Websites through Urdu CAPTCHA
    Dahar, Imtiaz Ahmed
    Alvi, Fizza Abbas
    Rajput, Ubaidullah
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2020, 20 (11): : 142 - 152
  • [40] Research on Network Security Risk Assessment Method Based on Bayesian Reasoning
    Li, Xiangna
    Li, Mengao
    Wang, Hui
    PROCEEDINGS OF 2019 IEEE 9TH INTERNATIONAL CONFERENCE ON ELECTRONICS INFORMATION AND EMERGENCY COMMUNICATION (ICEIEC 2019), 2019, : 102 - 108