DocumentCode
2350585
Title
The Failure of Noise-Based Non-continuous Audio Captchas
Author
Bursztein, Elie ; Beauxis, Romain ; Paskov, Hristo ; Perito, Daniele ; Fabry, Celine ; Mitchell, John
fYear
2011
fDate
22-25 May 2011
Firstpage
19
Lastpage
31
Abstract
CAPTCHAs, which are automated tests intended to distinguish humans from programs, are used on many web sites to prevent bot-based account creation and spam. To avoid imposing undue user friction, CAPTCHAs must be easy for humans and difficult for machines. However, the scientific basis for successful CAPTCHA design is still emerging. This paper examines the widely used class of audio CAPTCHAs based on distorting non-continuous speech with certain classes of noise and demonstrates that virtually all current schemes, including ones from Microsoft, Yahoo, and eBay, are easily broken. More generally, we describe a set of fundamental techniques, packaged together in our Decaptcha system, that effectively defeat a wide class of audio CAPTCHAs based on non-continuous speech. Decaptcha´s performance on actual observed and synthetic CAPTCHAs indicates that such speech CAPTCHAs are inherently weak and, because of the importance of audio for various classes of users, alternative audio CAPTCHAs must be developed.
Keywords
Web sites; audio signal processing; security of data; speech processing; bot-based account creation; noise-based non-continuous audio CAPTCHA; web sites; Cepstrum; Discrete Fourier transforms; Humans; Noise; Semantics; Speech; Training;
fLanguage
English
Publisher
ieee
Conference_Titel
Security and Privacy (SP), 2011 IEEE Symposium on
Conference_Location
Berkeley, CA
ISSN
1081-6011
Print_ISBN
978-1-4577-0147-4
Electronic_ISBN
1081-6011
Type
conf
DOI
10.1109/SP.2011.14
Filename
5958019
Link To Document