A dangerous set of skills, but credit has to be given where deserved 

Jul 3, 2017 2:28 PM

iwasdoingfinelurking

Views

199773

Likes

4638

Dislikes

60

The hacker: Jan Krissler

https://www.theguardian.com/technology/2014/dec/30/hacker-fakes-german-ministers-fingerprints-using-photos-of-her-hands

The German Defense Minister: Ursula von der Leyen with ze thumb in question

Hacktum Fingerprintum Scannum

Locks just keep honest people from temptation, there's no such thing as 100% security...

8 years ago | Likes 2 Dislikes 0

Guys, more importantly, how did he get that high resolution picture? That's a really high resolution. That's the most important part.

8 years ago | Likes 2 Dislikes 0

MATLAB is you best friend - I say this from my experience in image processing. There are way more platforms that I don't know about.

8 years ago | Likes 2 Dislikes 0

NERD!

8 years ago | Likes 2 Dislikes 0

tho getting a thumprint from a photo is the same concept as in copying keys from just a photo, be careful out there people!

8 years ago | Likes 2 Dislikes 0

sounds like its straight out of scifi. today's scifi is tomorrow's science i guess

8 years ago | Likes 2 Dislikes 0

So what? I doubt she keeps government secrets hidden with just a fingerprint code. And could he even prove it was close enough to work?

8 years ago | Likes 2 Dislikes 0

I mean, for my phone I honestly don't care if anyone can enter. It's just so my screen doesn't unlock

8 years ago | Likes 2 Dislikes 0

He also defeated the samsung iris scan with a contact lens

8 years ago | Likes 4 Dislikes 0

Use a grape

8 years ago | Likes 2 Dislikes 0

v

8 years ago | Likes 3 Dislikes 0

Infrared finger vein pattern scanning is just as easy to do and just as specific without out the risk of being compromised by a pic or print

8 years ago | Likes 2 Dislikes 0

neither of the photos shown here are the actual photos used, nor are they high enough resolution to do so.

8 years ago | Likes 2 Dislikes 0

I'd give the guy a thumbs up, but nowhere near a camera.

8 years ago | Likes 6 Dislikes 0

What this dude did is not " hacking". Hacking would be if he actually *bypassed* the security control without using the fingerprint.

8 years ago | Likes 10 Dislikes 2

Thats a newer definition of the word

8 years ago | Likes 5 Dislikes 0

I've never seen the image, I was like OK I could do that if it's just the arm and hand, that's a bit harder (check that a lot harder)

8 years ago | Likes 2 Dislikes 0

swore it was ccc, now I gotta look these guys up, saw a vid of 'people' bypassing the apple id finger print in a minute and I laughed hard

8 years ago | Likes 2 Dislikes 0

was like 2 minutes

8 years ago | Likes 2 Dislikes 0

I use my penis and there is no know camera that can zoom in on such a small thing. So I'll be fine.

8 years ago | Likes 11 Dislikes 0

Yeah but logging in must be troublesome

8 years ago | Likes 2 Dislikes 0

No problem because I'm a grower and not a shower

8 years ago | Likes 1 Dislikes 0

Mythbusters did it: https://www.youtube.com/watch?v=3Hji3kp_i9k

8 years ago | Likes 18 Dislikes 0

What is the crucial step they omitted?

8 years ago | Likes 5 Dislikes 1

None, since in the end even the printed on paper one worked. So none of the fancy gel stuff needed in the first place.

8 years ago | Likes 1 Dislikes 0

Probably how to etch the ballistics gel from the transparency. But that is well known.

8 years ago | Likes 9 Dislikes 0

Ah

8 years ago | Likes 5 Dislikes 1

CURSE YOU HIGH RESOLUTION CAMERAS!

8 years ago | Likes 15 Dislikes 0

Well there's your problem. Just outlaw high resolution cameras and we'll all be secure

8 years ago | Likes 4 Dislikes 0

:p

8 years ago | Likes 2 Dislikes 0

Get this man a job in our gov to protect our systems bc he obviously knows how to hack em!

8 years ago | Likes 82 Dislikes 2

Snowden

8 years ago | Likes 1 Dislikes 0

Wouldn't take it probably due to a lot of the strict rules on it. Lot of folks won't due to drugs tests and the in-depth background checks.

8 years ago | Likes 27 Dislikes 0

Background checks will waive a lot of stuff if the rest of your past seems in good stable character. Drugs? As long is it isn't habitual.

8 years ago | Likes 5 Dislikes 1

A shocking number of white hat hackers start out as black hat hackers that get hired by antivirus companies and such.

8 years ago | Likes 13 Dislikes 0

Then we should use parts of our body that stay covered, who wants to sign petition for "dickerprints" and " viginaprints"

8 years ago | Likes 5 Dislikes 0

"I'll need a mushroom stamp please sir, and if your wife could press her lips here ..."

8 years ago | Likes 1 Dislikes 0

Phone in public place receives a message, suction noises all over the place.

8 years ago | Likes 2 Dislikes 0

Someone used their nipple to unlock their iphone. Just registered it as a fingerprint. Saw a vid on youtube about it.

8 years ago | Likes 1 Dislikes 0

He's whitehat right?

8 years ago | Likes 4 Dislikes 0

...RIGHT?!

8 years ago | Likes 4 Dislikes 0

No he's not wearing a hat jeez pay attention

8 years ago | Likes 2 Dislikes 0

He's invisible hat

8 years ago | Likes 2 Dislikes 0

We should have like bodily fluids type of verification.

8 years ago | Likes 2 Dislikes 0

You want people to use blood verification on a daily basis? Lol wtf

8 years ago | Likes 1 Dislikes 0

I was thinking other form of bodily fluids ????

8 years ago | Likes 1 Dislikes 0

That would make getting "jacked at the ATM" an interesting news headline.

8 years ago | Likes 1 Dislikes 0

Mein handy

8 years ago | Likes 49 Dislikes 1

Settle down, Stephen Fry.

8 years ago | Likes 10 Dislikes 0

I'm not sure if that should be a reference to something, but you just said "My smartphone" in german.

8 years ago | Likes 9 Dislikes 0

I honestly don't know where it's from I just hear the Yogscast say it from time to time.

8 years ago | Likes 1 Dislikes 0

It's from an episode of QI

8 years ago | Likes 4 Dislikes 0

Goddamn nerds.

8 years ago | Likes 10 Dislikes 0

Ja, but this was from A New Dawn, which was a little while ago. 2014.

8 years ago | Likes 5 Dislikes 0

Don't fucking say that. 2014 wasn't a while ago

8 years ago | Likes 1 Dislikes 1

Three years.

8 years ago | Likes 1 Dislikes 0

Ja. Hence Little while ago and not Big while ago. But I have just the thing for you. https://www.youtube.com/watch?v=DIXFC-h3upQ

8 years ago | Likes 1 Dislikes 0

......... I fucking hate you. +1

8 years ago | Likes 2 Dislikes 0

Which is why fingerprints as a method of verification alone should not be used

8 years ago | Likes 1030 Dislikes 15

But it is an excellent component in two factor authentication

8 years ago | Likes 3 Dislikes 0

What about the new ultrasound ones though? They capture depth as well so surely that could be secure enough?

8 years ago | Likes 3 Dislikes 0

this is why my asshole scanner will be a HUGE succes! HUGE!

8 years ago | Likes 35 Dislikes 0

one of many reasons. Though personally, the fact that the tech rarely works tops my list.

8 years ago | Likes 1 Dislikes 0

They use blood vessels now. That way even twins can be told apart.

8 years ago | Likes 6 Dislikes 0

Biometric + PIN. That's what the DoD is moving to as they phase out smart card + PIN.

8 years ago | Likes 1 Dislikes 0

As the SOLE verifier, correct. As part of multi-factor identification, it's excellent.

8 years ago | Likes 3 Dislikes 0

Also police have a right to your prints without warrant. While a PIN counts as key and needs one. Or such.

8 years ago | Likes 1 Dislikes 0

In the US, you cannot be forced to share passwords or pin numbers and are not required to unlock anything.

8 years ago | Likes 2 Dislikes 0

Thats fingerprint. I was referring to typed passwords.

8 years ago | Likes 1 Dislikes 0

Fingerprints and biometrics can be ordered.

8 years ago | Likes 1 Dislikes 0

That depends entirely on the sensor used. Most modern smartphones scan the pattern like a photo, but there are some that use sonar like tech

8 years ago | Likes 2 Dislikes 0

Those are a lot harder to crack because they scan depth as well

8 years ago | Likes 3 Dislikes 0

Maybe also do something like your voice being your password?..

8 years ago | Likes 2 Dislikes 0

My voice is my password. Verify me.

8 years ago | Likes 1 Dislikes 0

I am always worried about some next kid with these skills messing up some banking system or something.

8 years ago | Likes 136 Dislikes 2

Good thing I'm always negative in the bank! Can't steal from the poor.

8 years ago | Likes 7 Dislikes 0

Yes you can, big business and government do it all the time!

8 years ago | Likes 6 Dislikes 0

Zero Cool was able to crash 1,507 systems in a single day when he was 11.

8 years ago | Likes 4 Dislikes 0

#neverforgetti

8 years ago | Likes 1 Dislikes 0

I don't know if it can get any more messed up then it is.

8 years ago | Likes 20 Dislikes 2

I guarantee that it can

8 years ago | Likes 9 Dislikes 1

Just take Watchdogs as an example. A high tech city might be strong but all it takes is one flaw to allow someone to shut everything down.

8 years ago | Likes 3 Dislikes 0

Banking encryption is large prime numbers added together, decryption is similar to unmixing two colors of paint

8 years ago | Likes 2 Dislikes 0

You know that happens on a near daily basis or at least attempted on a daily basis. There are lots of people looking for quick easy money.

8 years ago | Likes 2 Dislikes 2

no

8 years ago | Likes 2 Dislikes 0

Definitely attempted, rarely successful.

8 years ago | Likes 2 Dislikes 0

Whats he gonna do? I dont need a hacker to mess up my bank account. I do that on my own. Tyvm

8 years ago | Likes 23 Dislikes 1

Maybe he makes you rich?

8 years ago | Likes 4 Dislikes 0

Yeah banks systems are already fucked. First midwest bank - you can enter space as user/pass 1/2

8 years ago | Likes 1 Dislikes 0

First midwest bank response: "not interested - sorry" Oh. Ok. Yeah.....

8 years ago | Likes 1 Dislikes 0

German defence minister you say? Huh, so the ads were right

8 years ago | Likes 285 Dislikes 3

They don't know me

8 years ago | Likes 3 Dislikes 0

You wouldn't download a German Defense Minister.

8 years ago | Likes 9 Dislikes 0

I mean, I might though.

8 years ago | Likes 2 Dislikes 0

I can still hear it.

8 years ago | Likes 2 Dislikes 0

That was an awesome gif; I've never seen it....+1...also, if I could, I would download an attack helicopter.

8 years ago | Likes 18 Dislikes 0

I don't see why you can't download a gender

8 years ago | Likes 5 Dislikes 0

I wouldn't steal a car but if I could download a car, I would.

8 years ago | Likes 29 Dislikes 0

So would I but then again I would also re-militarise the Rhineland too

8 years ago | Likes 11 Dislikes 1

8 years ago | Likes 6 Dislikes 0

635 terabyte

8 years ago | Likes 3 Dislikes 0

oh wow just need about 30k more for all the hard drives

8 years ago | Likes 1 Dislikes 0

servers omg the electrical bills and the raid, oh so much raid TT

8 years ago | Likes 1 Dislikes 0