FB pixel

Hack of Samsung Galaxy S10 ultrasonic fingerprint sensor suggests no liveness detection

 

The ultrasonic biometric fingerprint scanner on a Samsung Galaxy S10 has been hacked with a 3D-printed copy of the phone owner’s thumbprint taken from a photograph of a latent print on a wine glass, Forbes reports. A security researcher going by the handle darkshark on Imgur says the technique could be replicated to steal latent prints from a distance and break into a stolen smartphone, as well as biometrically-secured accounts.

The researcher used the photograph to create an alpha mask in Photoshop, and then rendered it into 3D using 3ds Max software. The fake print was printed with an AnyCubic Photon LCD resin printer with 10 micron-accuracy in 13 minutes, and with three attempts to set the correct ridge height, a fake was generated which consistently opens the flagship Samsung smartphone.

The ultrasonic sensor is supposed to detect liveness by sensing blood flow, which darkshark points out seems not to be the case, perhaps due to changes made when Samsung updated the software for the in-display sensor to deal with performance issues a few weeks ago. The face authentication system of the Samsung Galaxy S10 has also been criticized as too easy to hack after images from the web or of siblings were found to unlock the device.

“The whole biometric authentication movement at consumer level of electronics is never going to be very secure” Ian Thornton-Trump, head of cybersecurity at AmTrust Europe told Forbes. “I’m not a fan of facial recognition, voice recognition or fingerprint authentication but consumers are and that’s not a bad thing.”

The same researcher said in a Reddit thread that the ultrasonic scanner is probably safer than other sensor types, and noted that some optical sensors can be spoofed with a paper printout.

Article Topics

 |   |   |   | 

Latest Biometrics News

 

authID integrates biometric authentication into contact center ecosystem in major deal

Call centers and customer assistance relies on trust. Due to the rise of genAI and scams, the need to verify…

 

Vietnam’s NamiTech secures $4m to expand voice biometrics across APAC

Vietnam’s Nami Technology (NamiTech) is attracting investor interest as the voice biometrics start-up develops its products and looks to expand….

 

3D face biometrics and liveness back Universal Wallet Infrastructure issuance process

The Universal Wallet Infrastructure project uses 3D face biometrics and liveness detection for the identity binding process between individuals and…

 

UNDP launches framework for Arab countries to boost digital inclusion

Arab states are facing uneven progress in digital transformation: The use of e-government services, for instance, hovered at 45 percent…

 

London police says facial recognition contributed to murder rate drop

Police forces across the UK are showcasing improved arrest statistics resulting from the use of live facial recognition (LFR) systems….

 

TikTok rolls out Yoti FAE across Europe as social media debate rages

TikTok is introducing age assurance across Europe in response to regulatory pressure. The ByteDance-owned platform’s age assurance methods include facial…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events