{"id":27258,"date":"2025-01-17T18:51:39","date_gmt":"2025-01-17T10:51:39","guid":{"rendered":"https:\/\/www.1ai.net\/?p=27258"},"modified":"2025-01-17T18:51:39","modified_gmt":"2025-01-17T10:51:39","slug":"%e5%9b%bd%e5%ae%b6%e7%bd%91%e7%bb%9c%e5%ae%89%e5%85%a8%e9%80%9a%e6%8a%a5%e4%b8%ad%e5%bf%83%e9%a2%84%e8%ad%a6%e6%96%b0%e5%9e%8b%e7%8a%af%e7%bd%aa%e6%89%8b%e6%b3%95%ef%bc%9a%e5%88%a9%e7%94%a8-ai","status":"publish","type":"post","link":"https:\/\/www.1ai.net\/en\/27258.html","title":{"rendered":"National Cybersecurity Notification Center warns of new criminal tactic: using AI to bypass graphic-based authentication mechanisms"},"content":{"rendered":"<p>January 17, 2012 - The National<a href=\"https:\/\/www.1ai.net\/en\/tag\/%e7%bd%91%e7%bb%9c%e5%ae%89%e5%85%a8\" title=\"[Sees articles with [net security] labels]\" target=\"_blank\" >Cybersecurity<\/a>Briefing Center today informed that recently, Guangxi Guilin public security net security department work found that Guilin City, Yangshuo County, an attraction ticket reservation platform there are traces of abuse. Upon investigation.<strong>The \"scalper\" gang used the platform's CAPTCHA component flaws to carry out illegal ticket-snatching behavior.<\/strong>Guangxi Guilin public security net security department through the investigation successfully arrested the \"scalping\" gang. Guangxi Guilin public security network security department through the investigation, successfully arrested the \"scalper\" gang, seized a number of computers and other tools. At the same time found that<strong>Some graphical CAPTCHA components have outstanding risks and are very easy to be utilized by unscrupulous elements.<\/strong>, reminding the majority of units and individuals to take greater precautions.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-27259\" title=\"09c30d85j00sq8bfc001hd000cx00d1p\" src=\"https:\/\/www.1ai.net\/wp-content\/uploads\/2025\/01\/09c30d85j00sq8bfc001hd000cx00d1p.jpg\" alt=\"09c30d85j00sq8bfc001hd000cx00d1p\" width=\"465\" height=\"469\" \/><\/p>\n<p>1<a href=\"https:\/\/www.1ai.net\/en\/tag\/ai\" title=\"[View articles tagged with [AI]]\" target=\"_blank\" >AI<\/a>Case-specific information is attached below:<\/p>\n<p>I. Status of cases<\/p>\n<p>2024 During the National Day holiday, the Guangxi Guilin public security network security department worked to discover that the<strong>A large number of netizens reflected that it was \"difficult to find a ticket\" for a certain attraction, and travel agencies and \"scalpers\" colluded to release advertisements on behalf of ticket-snatching on social media platforms<\/strong>The Guangxi Guilin public security network security department attaches great importance to, immediately set up a task force to carry out investigations.<\/p>\n<p>After analyzing the running logs of this ticket reservation platform, it was found that there were<strong>High frequency and uninterrupted duration of appointment behavior<\/strong>Obviously by the \"plug-in\" software abuse traces. Through further investigation, successfully locked the implementation of crime \"scalper\" gang, the task force went to Beijing, Chongqing, Sichuan, Guangxi arrested 12 suspects, seized a number of computers and other tools. After verification, the \"scalper\" gang using external software<strong>Illegally grabbed approximately 10,000 tickets during the 2024 Fourth of July vacation<\/strong>.<\/p>\n<p>ii. modus operandi of the crime<\/p>\n<p>It was found that the suspects pre-empted the plug-in software in the<strong>Enter the name of the visitor, cell phone number and other necessary information, the platform release tickets when the plug-in software automatically initiates a request to grab tickets<\/strong>The software has been analyzed and found to have a technical core. Upon analysis, the technical core of the plug-in software was found to be<strong>Graphical Class Validation Mechanism for Automated Quick Answer Ticket Reservation Platforms<\/strong>.<\/p>\n<p>Under normal circumstances, visitors reserving tickets need to<strong>Manually select randomly arranged patterns to pass validation.<\/strong>The suspects advance by initiating frequent registration requests.<strong>Downloaded tens of thousands of captcha images of the same type<\/strong>, manually label the correct answers in the validation images, and then use the labeled data to<strong>Training a highly accurate image recognition model<\/strong>, utilizing the model when grabbing tickets<strong>Automatically and quickly deduce the correct CAPTCHA<\/strong>.<\/p>\n<p>III. Risk Warning<\/p>\n<p>The graphic class CAPTCHA components involved in this case are used in a wide range, coupled with the current popularity of image recognition tools easily accessible, the relevant network application verification mechanism is cracked (bypass) the risk of outstanding. The Spring Festival holiday is approaching, in order to prevent the recurrence of similar cases, prompted the relevant units and individuals to strengthen prevention:<\/p>\n<ul>\n<li>First, the majority of network operating units, individual users should be network applications such as registration, login, key business operations and other aspects of the verification code components to check, in particular, the use of<strong>Pattern selection, text selection<\/strong>types of authentication methods, assess the security risk of CAPTCHA schemes, and simultaneously strengthen the monitoring and blocking of abnormal behaviors such as short-time and high-frequency network requests, and block abnormal IPs in a timely manner.<\/li>\n<li>Second, CAPTCHA service providers should take<strong>Adding noise, distorting and warping, changing fonts<\/strong>and other measures to enhance the complexity of the CAPTCHA to make it difficult for automated tools to recognize it, and continuously investigate the security defects and risk vulnerabilities of the CAPTCHA component, provide upgrading and improvement solutions, and fulfill the statutory notification obligations.<\/li>\n<\/ul>","protected":false},"excerpt":{"rendered":"<p>January 17 news, the national network security notification center today informed that recently, guangxi guilin public security net security department work found that guilin city yangshuo county a attraction ticket reservation platform there are traces of abuse. After investigation, the \"scalper\" gangs use the platform's CAPTCHA component flaws to implement illegal ticket-snatching behavior. Guangxi Guilin public security net security department through the investigation, successfully arrested the \"scalper\" gang, seized a number of computers and other tools. At the same time found that part of the graphic class authentication code component risk potential hazards prominent, very easy to be utilized by the lawless elements, to remind the majority of units, individuals to strengthen the precautionary. 1AI attached to the case specific information is as follows: First, the case situation 2024 National Day holiday period, Guangxi Guilin public security net security department work found that a large number of netizens reflect a certain attraction \"hard to find a ticket\", travel agencies and \"scalper\" hook!<\/p>","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[148,146],"tags":[411,5580,826],"collection":[],"class_list":["post-27258","post","type-post","status-publish","format-standard","hentry","category-headline","category-news","tag-ai","tag-5580","tag-826"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/posts\/27258","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/comments?post=27258"}],"version-history":[{"count":0,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/posts\/27258\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/media?parent=27258"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/categories?post=27258"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/tags?post=27258"},{"taxonomy":"collection","embeddable":true,"href":"https:\/\/www.1ai.net\/en\/wp-json\/wp\/v2\/collection?post=27258"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}