Hackers innovate at a pace most of us would be proud of

Common Risks

Physical Spoofing

Using plastic/clay to model fingerprints, using pictures, video, and masks to spoof face biometrics even when special hardware is used (for example iPhone X, and Microsoft hello)

Compromised Devices

Inserting frames of video into the camera feed coming from the device to fool the face authentication mechanism.

Intercepting Communications

Intercepting communications between the device and server and faking the result of the biometric verification. This is referred to as a Man in the Middle attack.

How we secure against Spoofing

Liveness Detection

When the picture is taken we use the phone/computer screen to flash a series of coloured lights at the subject. The captured picture and video of the subject with the lights reflecting off them is then securely sent to backend servers.

Deep Learning

A proprietary neural network running on custom hardware then analyses these images and determines whether the subject matches the picture on file, and whether the subject is a real person or a picture/video/mask. This does not require any custom camera hardware or end-user device.

Anomaly Detection

The neural net also determines whether the image that is captured is real or has been inserted digitally into the camera feed.

How we secure against man in the middle attacks

Tokenised Sessions

When starting a biometric verification, our app/webapp firstly contacts the backend server in order to start a secure tokenised session. The token and some other information is then passed to the server along with the biometric data for verification.

Validating Tokens

After the biometric verification is done, the app/webapp then contacts to the server again to ensure that there was a valid biometric authentication that was run for this user and confirms the result. This ensures that the result cannot be faked by intercepting the app communications as its validated by a session token plus secret information.

At SmilePass we apply security best practice to every part of our platform to ensure that you and your customer’s information is protected and authentic. If you want to build a trusted community, you can trust us to help you achieve that.

Contact Details

1 Knightsbridge Green

Tel: +44 (0) 203 130 0291

Latest News

Mobile and Social Apps At Ever-increasing Risk Of Phishing

Mobile and Social Apps At Ever-increasing Risk Of Phishing

A newly released report shows an alarming movement of phishing attacks to mobile messaging and social apps. It’s another sign of just how attracted cyber criminals increasingly are to phishing through corporate mobile devices. The findings of the research – by a...

read more
Why Cryptocurrencies And KYC Don’t Need To Be At Loggerheads

Why Cryptocurrencies And KYC Don’t Need To Be At Loggerheads

Cryptocurrencies are unquestionably among the hottest current dinner-party topics of conversation. They are an investment vehicle offering a new means of trading goods and services. More than that, though, they also represent a way of circumventing the world’s...

read more

SmilePass © 2018 All Rights Reserved.