<![CDATA[Gawker: valleywag, captchas]]> http://tags.gawker.com/assets/base/img/thumbs140x140/gawker.com.png <![CDATA[Gawker: valleywag, captchas]]> http://gawker.com/tag/valleywag/captchas http://gawker.com/tag/valleywag/captchas <![CDATA[Google audio security measure broken, or so we hear]]> The distorted images websites use for logins, known as captchas, or Completely Automated Public Turing test to Tell Computers and Humans Apart, work by distorting a set of numbers and letters in such a way that only humans would recognize them. For blind Internet users, websites use audible captchas, which do the same thing with sound. For a while, both types effectively prevented spammers from registering Gmail addresses with automated scripts. But Russians looking for a little extra cash — about $3 a day — helped crooks break Google's image captchas earlier this year. Now Wintercore Labs says Google's audio captchas are broken too. IDG reports:

There are repeatable patterns evident in the audio file and by applying a set of complex but straightforward processes, a library can be built of the basic signal for each possible character that can appear in the captcha.
]]>
http://gawker.com/index.php?op=postcommentfeed&postId=386551&view=rss&microfeed=true
<![CDATA[Google's Blogger flooded by spammers]]> Over the last few months, wily spammers may have figured out how to crack the security feature known as "captchas." With an army of compromised Windows PCs known as botnets, they've been using their new power to flood Google's Blogger with spam. Why Blogger?

Likely because of the rumored privilege afforded to it by Google's search algorithm. Blogger blogs appear on the blogspot.com domain, which has high rank in search results, and Google makes it easy to run profitable AdSense text links on the site. That adds up to easy money.Researchers aren't clear if spammers have managed to compromise captchas through automation or simply by employing cheap labor, but if the latter, then even KittenAuth won't be able to stem the tide of spam blogs gaming keywords for clickfraud riches. Your move, Google.

]]>
http://gawker.com/index.php?op=postcommentfeed&postId=384107&view=rss&microfeed=true