Google's reCAPTCHA briefly cracked
h-online.com
h-online.com
However, if they're sampling radio programs to use as background noise, reCAPTCHA could become a learning tool for radio programs as well.
A reliable algorithm for splitting a source stream into high-probability individual-word portions would need to be devised - then, just like the visual version, combine one known word and one unknown word, combine with the background distortion, and this brand of attack is essentially defeated.
I suspect that spoken-word digitization is at least a potential future plan, although I also suspect the audio version of captchas are requested infrequently enough that learning new words might take a long time.
Yes, but you don't have to input those. Try it for yourself and see. (I never input them.)
When you do input them, it helps Google digitize books, street numbers, etc.--sort of like a "Mechanical Turk"--but it's completely optional. So you could devise a text-to-speech algorithm, but only for the word Google's CAPTCHA actually knows. (It's probably in the works as we speak.)
No. The reality is: the vulnerability has been public for a brief moment. And that's true for all the software in the world. Sometimes really good exploits stay secret for years and years. Sometimes (often?) they get fixed by a side effect before even going public, after a year or two.
So not. You're not secure.
- I heard 50+ distinct words, plus the numbers 1-9
- Numbers are not written out anymore (e.g. "nine" does not work, it must be "9")
- You must get 9 out of 10 words correct to complete the CAPTCHA
So they're still working with a very small dictionary of words, and with a little practice it's not hard to nail these consistently (as a human). The extra noise makes it a little more difficult to split the samples, but that's a solvable problem. I bet they can re-break it with their existing program and not too much additional effort to retrain the system.The benefits of using this kind of system are shrouded in the user's cost.
But how is this (cracking audio CAPTCHA) an example of how image CAPTCHA is a weak spam deterrent? I don't see the connection.
It's sad that I'm not exaggerating. I get the captcha on YT everyday because apparently my subnet attacks YT a lot.
Now, It's not Google's fault, but the whole captcha thing is getting more and more broken.