Feeds

Video CAPTCHAs target cyberbaddies

Animated Turing tests

The Power of One eBook: Top reasons to choose HP BladeSystem

NuCaptcha has extended its video-based CAPTCHA service that it claims will make things easier for users while making life more difficult for spammers and other cyber-baddies.

The technology, which is customisable, involves asking users to identify moving text in an animation against a video background. NuCaptcha is positioned the technology as an alternative to traditional distorted text-based Captchas from the likes of Google and others.

The software is available in free, ad-supported or paid-for enterprise formats featuring varying levels of complexity, refinement and security, as explained in a short (but somewhat cheesy) video clip here.

The Canadian start-up began offering NuCaptcha Basic, a freemium security service for websites and blogs that offers up to 25,000 CAPTCHAs per month, last year. It extended this portfolio with ad-supported, enterprise and branded versions of the product on Thursday, alongside a campaign designed to encourage webmaster to make the switch.

Applications include everything from website sign-ups for the free product, to challenge screens for corporate password resets for the enterprise product.

The system is designed to detect unusual behaviour, increasing the complexity of the CAPTCHA while slowing down the video. The approach is designed to make it difficult for both bots and human-farms to solve CAPTCHAs in high volumes.

The CAPTCHA (Completely Automated Public Turing test to tell Computers and Humans Apart) has been used for years to prevent automated sign-ups to webmail accounts and the like. Users are typically asked to identify distorted letters as depicted in an image, although a variety of other approaches – including pictures of cats and calculus puzzles – have been applied to the problem.

Cybercrooks have responded to the challenge by devising techniques to circumvent controls, for example by creating ready-to-spam webmail accounts from established providers that are less likely to be blocked by basic anti-spam filters.

Sign-up for new accounts can be automated, but solving the CAPTCHA puzzles themselves is normally farmed out to the human cogs in 21st century sweatshops, often based in India, where worker drones are paid as little as $4 a day to defeat security checks. ®

Designing a Defense for Mobile Applications

More from The Register

next story
Secure microkernel that uses maths to be 'bug free' goes open source
Hacker-repelling, drone-protecting code will soon be yours to tweak as you see fit
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Roll out the welcome mat to hackers and crackers
Security chap pens guide to bug bounty programs that won't fail like Yahoo!'s
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
Researcher sat on critical IE bugs for THREE YEARS
VUPEN waited for Pwn2Own cash while IE's sandbox leaked
Four fake Google haxbots hit YOUR WEBSITE every day
Goog the perfect ruse to slip into SEO orfice
Putin: Crack Tor for me and I'll make you a MILLIONAIRE
Russian Interior Ministry offers big pile o' roubles for busting pro-privacy browser
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Seven Steps to Software Security
Seven practical steps you can begin to take today to secure your applications and prevent the damages a successful cyber-attack can cause.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.