Machine Learning Masters the Fingerprint to Fool Biometric Systems
Fingerprint authentication systems are a widely trusted, ubiquitous form of biometric authentication, deployed on billions of smartphones and other devices worldwide. Yet a new study from New York University Tandon School of Engineering reveals a surprising level of vulnerability in these systems. Using a neural network trained to synthesize human fingerprints, the research team evolved a fake fingerprint that could potentially fool a touch-based authentication system for up to one in five people.
Much the way that a master key can unlock every door in a building, these “DeepMasterPrints” use artificial intelligence to match a large number of prints stored in fingerprint databases and could thus theoretically unlock a large number of devices.
The research team was headed by NYU Tandon Associate Professor of Computer Science and Engineering Julian Togelius and doctoral student Philip Bontrager, the lead author of the paper, who presented it at the IEEE International Conference of Biometrics: Theory, Applications and Systems, where it won the Best Paper Award.
The work builds on earlier research led by Nasir Memon, professor of computer science and engineering and associate dean for online learning at NYU Tandon. Memon, who coined the term “MasterPrint,” described how fingerprint-based systems use partial fingerprints, rather than full ones, to confirm identity. Devices typically allow users to enroll several different finger images, and a match for any saved partial print is enough to confirm identity. Partial fingerprints are less likely to be unique than full prints, and Memon’s work demonstrated that enough similarities exist between partial prints to create MasterPrints capable of matching many stored partials in a database.
Bontrager and his collaborators, including Memon, took this concept further, training a machine-learning algorithm to generate synthetic fingerprints as MasterPrints. The researchers created complete images of these synthetic fingerprints, a process that has twofold significance. First, it is yet another step toward assessing the viability of MasterPrints against real devices, which the researchers have yet to test; and second, because these images replicate the quality of fingerprint images stored in fingerprint-accessible systems, they could potentially be used to launch a brute force attack against a secure cache of these images.
“Fingerprint-based authentication is still a strong way to protect a device or a system, but at this point, most systems don’t verify whether a fingerprint or other biometric is coming from a real person or a replica,” said Bontrager. “These experiments demonstrate the need for multi-factor authentication and should be a wake-up call for device manufacturers about the potential for artificial fingerprint attacks.”
This research has applications in fields beyond security. Togelius noted that their Latent Variable Evolution method used here to generate fingerprints can also be used to make designs in other industries — notably game development. The technique has already been used to generate new levels in popular video games
Learn more: Machine Learning Masters the Fingerprint to Fool Biometric Systems
The Latest on: Synthetic fingerprints
[google_news title=”” keyword=”synthetic fingerprints” num_posts=”10″ blurb_length=”0″ show_thumb=”left”]
via Google News
The Latest on: Synthetic fingerprints
- Are synthetic diamonds really better for the planet? The answer isn't clear-cut.on March 26, 2024 at 7:51 am
Diamonds made in a lab are touted as both more socially ethical and environmentally friendly than mined diamonds. We asked experts to weigh in on those claims.
- Our "fingerprints" are all over climate change, research on warming ocean temperatures findson March 20, 2024 at 10:58 pm
Now a recent study in the journal Nature Climate Change has discovered a "robust human ‘fingerprint’" behind increasing sea surface temperatures, one that the authors say is "likely to have ...
- Combating The Rising Threat Of Synthetic Identity Fraudon March 19, 2024 at 7:15 am
In this relatively new realm of synthetic identity fraud, businesses have a two-fold responsibility: safeguarding their customers' information and protecting themselves.
- Using a non-destructive, light diffraction fingerprint technique to detect viral infections in cellson March 17, 2024 at 5:00 pm
A combined team of engineers from Jiangsu University and Harvard University used a non-destructive, light diffraction fingerprint technique to detect viral infections in cells. Their paper is ...
- Can fingerprints be re-created just from the sounds they make?on March 12, 2024 at 11:07 am
Researchers from the U.S. and China have been able to digitally re-create fingerprints from analyzing the sounds of said fingers using a touchscreen. Called PrintListener, the technique involves ...
- How fingerprint scanners work: Optical, capacitive, and ultrasonic explainedon March 10, 2024 at 5:01 pm
From Disney World to the smartphone in your pocket, fingerprint scanners have become commonplace these days. Even budget phones sport the tech these days, sometimes alongside other biometric ...
- Kalispell business offers fingerprinting serviceson March 10, 2024 at 1:01 am
Flathead Fingerprinting is located at 17 Second Street East, Suite 206, Kalispell. Hours are 9 a.m. to 5 p.m. Monday through Friday by appointment, with off hours options available.
- Detection of Fingerprints by the Ninhydrin Reactionon March 5, 2024 at 4:00 pm
IN connexion with some recent legal proceedings, a new method for detecting fingerprints has been discovered by one of us (S. O.). The method involves the well-known ninhydrin test for amino-acids ...
- Two held for cloning employees’ finger prints to claim salarieson March 1, 2024 at 8:07 pm
The accused along with 35 synthetic fingerprints and two biometric devices, were handed over to the Amberpet Police Station and a case has been registered under various sections of the IPC.
via Bing News