“Finger-swiping friction sounds can be captured by attackers online with a high possibility” – New research shows your fingerprints can be digitally recreated just from the sounds they make
New research has found that your fingerprints can be recreated just from the sounds they make on a touchscreen, and then used to attack biometric security measures.
While this sounds like something straight out of the plot of a budget spy film, the findings (PDF) from team of researchers from the US and China found that by using this technique, they were able to crack “up to 27.9% of partial fingerprints and 9.3% of complete fingerprints within five attempts at the highest security FAR [False Acceptance Rate] setting of 0.01%.”
The technique utilizes a side-channel attack called PrintListener to match an individual’s fingerprint to a MasterPrint or DeepMasterPrint dictionary to fool the Automatic Fingerprint Identification System (AFIS) into detecting a legitimate and authorized fingerprint.
Finger friction is now a security risk
The team of researchers tested their PrintListener technique “in real-world scenarios” that resulted in successful attacks using both partial and complete fingerprints, significantly outpacing the success rates of MasterPrint dictionary attacks.
As you would expect, the sophistication of the PrintListener algorithms is immense with a highly complex workflow required to generate a fingerprint from isolated friction sounds that are muddled in the background noise of a Discord or FaceTime call.
Physiological and behavioral factors then have to be taken into account as they can influence the sound a finger makes on a screen, which the researchers addressed by using a technique known as minimum redundancy maximum relevance (mRMR) alongside an adaptive weighting strategy.
These techniques identify the features of the left loop, right loop, and the whorl of a fingerprint from the frictional sound characteristics which can then be used to generate synthetic fingerprints. In one in four attacks, the PrintListener technique was able to successfully attack AFIS using partial fingerprints, and in almost one in ten cases using complete fingerprints.
There have been significant concerns about threat-actors using photographs of individuals’ hands to bypass biometric identification measures, with some people exercising extra care when having their pictures taken.
Via Tom’s Hardware
More from TechRadar Pro
New research has found that your fingerprints can be recreated just from the sounds they make on a touchscreen, and then used to attack biometric security measures. While this sounds like something straight out of the plot of a budget spy film, the findings (PDF) from team of researchers from…
Recent Posts
- I rode in a self-driving powered wheelchair that avoids obstacles and people, and can be summoned when you need it — it’s like Tesla’s Autopilot for personal mobility
- This $75 Philips 24-inch 100Hz monitor deal is the ultimate WFH upgrade for Labor Day
- I tested the DJI Osmo 360 II against the Insta360 X6 — the X6 is still the 360 camera king, but not by much
- Garmin Fenix 9 Pro review: The best gets better as we put Garmin’s new flagship through its paces in the French Alps
- How to watch Sydney vs Brisbane for FREE: Live streams & TV channels for AFL 2026 Qualifying Final
Archives
- September 2026
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023