Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse

Report 324

Associated Incidents

Incident 2624 Report
Hackers Break Apple Face ID

Loading...
Apple iPhone X Face ID Biometrics Hacked Again
pymnts.com · 2017

Vietnamese hackers who previously said they could bypass Apple’s Face ID biometric phone security with a mask claim to have hacked the iPhone X again, this time with more evidence of their success.

According to news from Forbes, Vietnamese cybersecurity company Bkav posted a video that shows how a researcher was able to reset the facial recognition enrollment, enroll his own face and then unlock the iPhone X seconds later. The researcher used a mask made of a 3D printed visage and 2D printed eyes — which cost less than $150. The researchers called their mask the artificial twin, since it was similar to the mask it used when it first hacked Face ID.

“About two weeks ago, we recommended that only very important people, such as national leaders, large corporation leaders, billionaires, etc., should be cautious when using Face ID,” said Bkav VP of Cybersecurity Ngo Tuan Anh in the report. “However, with this research result, we have to raise the severity level to every casual [user]: Face ID is not secure enough to be used in business transactions.”

A spokesperson for Bkav told Forbes it has decided not to alert Apple to the new way it was able to fool Face ID, since the company hasn’t responded to media reports about the security of the facial recognition biometrics technology on the iPhone X following the initial hack.

While Bkav was able to use a mask to unlock a user’s iPhone X, the cybersecurity firm didn’t address if a mask-based attack could happen in the real world. After all, the bad guys would need an accurate scan of the target’s face and then would have to spend the time and effort to create the mask. They would also have to make sure the mask is aligned with the phone at a specific angle in order for the hack to work.

“What the experiment does show is that a static mask can fool the Apple technology that is supposed to ensure that only a living face is recognized. Once that is possible, it then becomes theoretically possible to produce a static mask to open the device,” security and encryption expert Professor Alan Woodward from the University of Surrey in the U.K said in the report.

Read the Source

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2024 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • e1b50cd