Title :
Side-Channel Attack against the Capy HIP
Author :
Hernandez-Castro, Carlos Javier ; R-Moreno, Maria D. ; Barrero, David F.
Author_Institution :
Univ. Complutense, Madrid, Spain
Abstract :
One of the first approaches to proposed to prevent automated attacks on Internet were the Human Interactive Proofs(HIPs). Since their invention, a variety of designs have been proposed, yet most of them have been successfully attacked. In this paper we focus on a new HIP, based on a puzzle solving scheme, created to increase both security and usability: the Capy CAPTCHA. We have analyzed its design, finding some important flaws. Based on them, we propose a low-cost, side-channel attack. Initial results show that the attack is able to break Capy with a 61% success ratio.
Keywords :
Internet; interactive systems; security of data; Capy CAPTCHA; Capy HIP; Internet; automated attacks; human interactive proof; puzzle solving scheme; security; side-channel attack; usability; CAPTCHAs; Image coding; Image color analysis; Security; Servers; Shape; Transform coding; CAPTCHA; Capy; HIP; JPEG; attack; low-cost; side-channel;
Conference_Titel :
Emerging Security Technologies (EST), 2014 Fifth International Conference on
Conference_Location :
Alcala de Henares
DOI :
10.1109/EST.2014.30