Snapchat's brand new 'find the ghost' security feature gets hacked

Advertisement
By Robin Sinha | Updated: 23 January 2014 19:40 IST

Snapchat, the recently hacked mobile photo-sharing service, has introduced two new features to improve the overall security of its apps, out of which, one has been hacked within an hour of its release.

The company introduced a new picture-based security layer called 'find the ghost' to prevent bots from creating several dummy accounts that can potentially be used to procure user phone numbers. As it is like an image-based captcha security in function, the feature was humorously termed 'Snaptcha' by TechCrunch, which first reported the feature. According to the report, the feature was introduced after the discovery that some bots can successfully go through the company's regular captcha-security feature.

The new layer of security shows nine images to its new users while they create their accounts. Out of those nine images, the user would have to identify only those images which show Snapchat's ghost mascot. Snapchat created the 'ghost' security feature with the hope that bots would not be able to successfully identify the right images.

Advertisement

Additionally the photo-messaging service has also started server-side checks to ensure that the those users who use the Find Friends feature are real people with verified phone numbers. This security feature is meant to reduce the number of spammers and scammers dropping down the possibilities of hacking. However, users still not sure about this feature, can unlink their phone numbers to stay safe.

Advertisement

While Snapchat implemented the image-recognition based security layer, Steven Hickson, a computer science graduate student at Georgia Tech, has come up with a '100 lines of code' that can beat the image-based security layer. The news came from Hickson's blog.

The technique (seen in the image below) is said to find the best match between the nine ghost-check Snapchat pictures and the reference images, thereby with some accuracy choosing the pictures that actual contain the Snapchat ghost mascot. Interestingly, Hickson has in the past worked in the fields of computer vision and robot perception, which undoubtedly were handy when coding the Snaptcha-beater. This also makes him slightly more qualified to program such a bot than the average hacker, giving some slight credit back to Snapchat developers for having thought Snaptcha would have worked.

Advertisement

Hickson, on his blog says:

With very little effort, my code was able to "find the ghost" in the above example with 100% accuracy. I'm not saying it is perfect, far from it. I'm just saying that if it takes someone less than an hour to train a computer to break an example of your human verification system, you are doing something wrong. There are a ton of ways to do this using computer vision, all of them quick and effective. It's a numbers game with computers and Snapchat's verification system is losing.

Advertisement

It is not clear whether a fix for the hack will be addressed by the company or not, as the company as not responded. Additional security features for the messaging service are said to be on the way.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 3a Community Edition Launched: Here's What Makes It Special
  2. Redmi Note 15 5G 108 Master Pixel Edition Will Launch in India on This Date
  3. Vivo V70, Vivo T5x 5G Listed Certification Site Ahead of India Launch
  4. Lava Play Max Launched in India With Vapour Chamber Cooling at This Price
  5. Samsung Could Launch Three Galaxy A-Series Models Early Next Year
  6. OpenAI's Code Red to Reportedly Continue Till Two More AI Models Are Released
  7. Paramount Launches Hostile Bid to Derail Netflix-Warner Bros. Deal
  8. Google Announces an Extended Repair Program for These Pixel 9 Models
  9. Honor Magic 8 Lite With 7,500mAh Battery, 108-Megapixel Camera Launched
  10. Nothing Phone 3a Community Edition First Impressions
  1. Vivo V70, Vivo T5x 5G Allegedly Listed on BIS Certification Site Ahead of India Launch
  2. Samsung Galaxy A36, Galaxy A56 Launch Timeline Tipped; Galaxy A07 5G May Debut in December
  3. Microsoft to Invest $17.5 Billion to Scale India’s AI and Cloud, Joins Google and OpenAI’s Recent Push
  4. Massive Sunspot Complex on the Sun Raises Risk of Strong Solar Storms
  5. Ronkini Bhavan OTT Release: Know Where to Watch This Bengali Web Series Online?
  6. The Great Shamsuddin Family OTT Release Date: When and Where to Watch it Online?
  7. Angels Fallen OTT Release Date: When and Where to Watch it Online?
  8. OpenAI to Reportedly Release GPT-5.2 AI Model This Week, But ‘Code Red’ Will Continue
  9. Top Cooku Dupe Cooku Season 2 Now Streaming Online: Know Where to Watch This Reality Cooking Series
  10. Nothing Phone 3a Community Edition Launched in India With Custom Hardware Design and Custom UI Elements: Price, Features
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.