No vein, no gain: Wax hand beats the latest vein-recognition systems

wax hand fools vein reading system hand2

We’re bored by voice identification, fatigued by Face ID, and totally over fingerprint-reading technology. Here in the closing days of 2018, it’s all about unusual new biometric technologies like “vein authentication.” As its name suggests, this technology involves reading the unique pattern of veins on a person’s palm to confirm that they are who they say they are. Such technology is reportedly being increasingly used in high-security facilities around the world.

Only it might not turn out to be quite as secure as people think — at least if a recent demonstration at the hacker-centric Chaos Communication Congress is to be believed.

This week, a small team of security researchers showcased how the latest vein-reading security systems are no match for something as basic as a fake wax hand containing printed vein details.

“We showed how to use a modified DLSR [camera] to capture hand vein patterns from a distance of around 5 meters,” security researcher Jan Krissler, aka Starbug, told Digital Trends. “After adjusting the contrast, we then printed the vein patterns with a standard laser printer and covered the print with a layer of bee wax to simulate human tissue. With those dummies, we were able to fool the latest systems of both major vendors of vein recognition systems, Fujitsu and Hitachi.”

As exploits go, it’s pretty ingenious — but also alarmingly straightforward. It’s not quite as easy as fooling a facial-recognition system by holding up a photograph of the person, but it’s not too far off. (Although actually getting a good photo of someone’s hand with their veins visible might be a little tough.) According to Krissler, until now the accepted wisdom was that veins are buried inside the body and were thought to be difficult to capture. Just as facial recognition has had to improve, however, it seems that vein authentication must also ramp up its efforts.

“There are ways to measure blood flow that would detect our dummy,” Krissler continued. Even then he thinks that there would be ways to fool the technology, though. It appears that there is more that needs to be done before we can rely on reading veins as a foolproof security system.

Hey, maybe one of these other oddball biometric technologies will have better luck.

Product Review

Galaxy Watch Active is the right size, no matter how big or small your wrist is

Launched among a massive array of other new products, the Samsung Galaxy Watch Active could easily have been missed at Galaxy Unpacked 2019 -- which would be unfortunate. This is a sensibly designed, correctly sized smartwatch suitable for…
Mobile

The 2019 iPhone could put a charge into your other Apple gadgets

While it's not been long since the last iPhones launched, rumors for the next iPhone are already surfacing. Apple's 2019 flagship could include a variety of upgrades ranging from a new design to enhanced features.
Gaming

This list of PlayStation 4 exclusives puts its competitors to shame

The PlayStation 4's game library and incredible selection of exclusive games could make anyone with an Xbox One or Nintendo Switch think twice. Here's our list of the latest and greatest PS4 exclusives.
Emerging Tech

Underground volcanoes could explain possible liquid water on Mars

Last year scientists discovered there could be liquid water on Mars. Now a research team argues that for there to be liquid water, there must be an underground source of heat -- and they believe underground volcanoes could be responsible.
Emerging Tech

Israel will launch world’s first privately funded moon mission tomorrow

This week will see the world's first privately funded lunar mission launch. Israel's first mission to the moon will be launched aboard SpaceX's Falcon 9 rocket on Thursday, February 21.
Emerging Tech

FDA warns about the dangers of anti-aging blood transfusions

It turns out injecting old people with blood from healthy youngsters may not be the answer to health rejuvenation. That’s according to the FDA, which says such claims are dangerous junk science.
Emerging Tech

Bees can do arithmetic, setting the scientific community abuzz

A new study has found something remarkable: Bees can do basic arithmetic. Researchers showed that bees could use colors as representations for numbers and then use those colors for addition and subtraction.
Emerging Tech

DeepSqueak is a machine learning A.I. that reveals what rats are chatting about

Want to know what rats are squeaking about? You'd better check out DeepSqueak, the new deep learning artificial intelligence developed by researchers at the University of Washington.
Health & Fitness

Immune cell discovery takes us one step closer to a universal flu vaccine

A group of international researchers have made a discovery which could take us one step closer to the universal, one-shot flu vaccine that people around the world have been dreaming of.
Photography

NASA celebrates Earth’s incredible natural beauty with free photo book

NASA has published a fabulous new book featuring stunning imagery captured by its satellites over the years. A hardback version is available for $53, though it can also be downloaded to ebook readers for free, and enjoyed online.
Deals

This new all-in-one flashlight is a power bank, lighter, and screwdriver

The Pyyros modular flashlight can perform numerous field tasks, from hammering to starting fires. If you back it on Kickstarter now, you can score some savings on this innovative flashlight and multi-tool, but act fast: This early-bird…
Movies & TV

Hilarious new Kickstarter aims to fix Scorcese’s last scene in The Departed

A fan of The Departed and apparent hater of rat-as-symbolism imagery has launched a Kickstarter campaign to digitally erase the rodent from the end of Martin Scorsese’s 2006 movie.
Emerging Tech

Baristas beware, Bbox cafe uses robots to brew your morning coffee

Want your morning coffee and pastry prepared by robot? Bbox, a new coffee shop in downtown Berkeley, California, lets customers place their order by app and then uses automation to take care of the rest.
Emerging Tech

This ridiculous new flamethrower makes Elon Musk’s look like a cigarette lighter

The XL18 Flamethrower is a flame-shooting beast on steroids, capable of firing off bursts of flame more than 110 feet in length. The best part? You can order it over the internet today.