pwshub.com

AI bots can now solve those pesky traffic light Captchas with 100% accuracy

Serving tech enthusiasts for over 25 years.
TechSpot means tech analysis and advice you can trust.

The big picture: Captcha tests, which require users to click on grids of images to verify they are human, are among the most annoying things on the internet. Nevertheless, most users accept that they are necessary to prevent bots from clogging traffic, enabling fraud, or scraping data. However, as bots become increasingly advanced, the effectiveness of Captcha tests has diminished, with custom machine-learning software now able to bypass Google's implementation entirely.

Researchers from ETH Zurich have devised a machine learning program that can solve Google reCAPTCHA v2 image recognition challenges with perfect accuracy. Although these often-maligned tests are becoming obsolete, they still play an important role in internet security.

Captcha defenses have long been engaged in an arms race against bots designed to circumvent them. A study from last year found that bots could pass almost all CAPTCHA variants more quickly and accurately than humans, thus defeating the purpose of a security measure intended to allow humans to pass while stopping bots.

The method from the Zurich study builds upon prior machine-learning models and significantly boosts their success rate. Open-source efforts and previous studies saw varying results with You Only Look Once (YOLO) models, but the latest experiment achieved 100 percent accuracy. Initially, these models could easily identify images of objects like traffic lights or cars but struggled with security measures that check for other signs of human activity.

Many Captcha tests also attempt to detect human-like mouse movements and read cookies to differentiate humans from bots. Some, like Cloudflare, consist of a simple page that checks for these signs while requiring minimal human input. Google's first line of defense is similar, but it can fall back on reCAPTCHA v2 image recognition tests in certain situations, making it potentially vulnerable to bots.

Achieving perfect accuracy with a YOLO model required modifying YOLOv8 with additional software to emulate mouse movements and simulate browser history. Furthermore, the researchers employed a VPN that dynamically changes IP addresses so the challenges wouldn't recognize multiple login attempts as originating from the same address.

The experiment demonstrates that the emergence of machine learning and generative AI might put Captcha technology in a critical position, as combinations of widely available software can now overcome these tests. Moreover, YOLOv8 can run locally on relatively modest hardware, increasing the potential for automated attacks on a massive scale using numerous inexpensive devices. Tech giants continue to search for alternative methods to protect internet traffic from bots.

Source: techspot.com

Related stories
1 day ago - Are you a robot? — I, for one, welcome our traffic light-identifying overlords. Enlarge / Examples of...
1 month ago - Get up to speed on the rapidly evolving world of AI with our roundup of the week's developments.
4 days ago - Cloudflare may charge an app store-like fee for its AI-scraping data marketplace.
1 month ago - AI chatbots are taking the world by storm. We analyzed thousands of conversations to see what people are really asking them and what topics are most discussed.
1 week ago - Automation is driving the next wave of commoditization, threatening to replace skilled workers Part 1 As we have said before, the software industry has a decades-long history of cost-cutting, commoditization, and a successful sales model...
Other stories
28 minutes ago - Relieve hip pain and improve sleep quality no matter your sleep position with these CNET-tested mattresses.
28 minutes ago - The haptic chair cushion that debuted as Project Esther has arrived, as Freyja, and the same updated Sensa haptics are in the flagship Kraken V4 Pro headset.
28 minutes ago - Chia seed water can help increase your hydration levels and fiber intake. Here are the benefits, risks and a few recipe ideas.
28 minutes ago - Whether you're building an alarm system for the first time or already own Ring cameras, this second-gen Ring alarm security system is worth the investment.
28 minutes ago - Keep your home safe and supervised for less with these Ring and Blink camera deals and bundles just before Prime Day.