<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Faking a fingerprint (part 1)</title>
	<atom:link href="http://secureportability.com/2008/06/tricking-fingerprint-sensors/feed/" rel="self" type="application/rss+xml" />
	<link>http://secureportability.com/2008/06/tricking-fingerprint-sensors/</link>
	<description>All you need to know about portability and security...</description>
	<pubDate>Fri, 12 Mar 2010 12:02:15 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
		<item>
		<title>By: patholog</title>
		<link>http://secureportability.com/2008/06/tricking-fingerprint-sensors/#comment-6</link>
		<dc:creator>patholog</dc:creator>
		<pubDate>Mon, 30 Jun 2008 12:14:32 +0000</pubDate>
		<guid isPermaLink="false">http://security4dummies.wordpress.com/?p=14#comment-6</guid>
		<description>It is much easier than you can imagine. Just see the &lt;a href="http://security4dummies.wordpress.com/2008/06/27/faking-a-fingerprint-part-2/" rel="nofollow"&gt; second part of tutorial&lt;/a&gt;</description>
		<content:encoded><![CDATA[<!-- wrapping ads -->
<p>It is much easier than you can imagine. Just see the <a href="http://security4dummies.wordpress.com/2008/06/27/faking-a-fingerprint-part-2/" rel="nofollow"> second part of tutorial</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: neosomosis</title>
		<link>http://secureportability.com/2008/06/tricking-fingerprint-sensors/#comment-5</link>
		<dc:creator>neosomosis</dc:creator>
		<pubDate>Mon, 30 Jun 2008 11:47:17 +0000</pubDate>
		<guid isPermaLink="false">http://security4dummies.wordpress.com/?p=14#comment-5</guid>
		<description>So, how would you copy the guy's fingerprint? Let's say he's a stranger...</description>
		<content:encoded><![CDATA[<!-- wrapping ads -->
<p>So, how would you copy the guy&#8217;s fingerprint? Let&#8217;s say he&#8217;s a stranger&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: patholog</title>
		<link>http://secureportability.com/2008/06/tricking-fingerprint-sensors/#comment-4</link>
		<dc:creator>patholog</dc:creator>
		<pubDate>Mon, 30 Jun 2008 11:18:15 +0000</pubDate>
		<guid isPermaLink="false">http://security4dummies.wordpress.com/?p=14#comment-4</guid>
		<description>Ed,
Optical fingerprint scanners are not reliable. Optical sensor cannot distinguish fake from real. Even those that cost more than $700, like Crossmatch and are used in visa program by UK and USA government.
Matrix capacitive scanners are also not reliable. Swipe-type sensors, like Upek, LTT, Authentec, Atmel are a bit more reliable, because they need some proficiency to fake a finger they will accept.
What I am trying to say is that Biometrics has nothing to do with Security, at least in the way it is currently used.

Biometrics can offer user convenience and ease of operation, and enhance security indirectly. For example, if you must not remember your password, and if it is filled automatically after your finger recognized – you may use long and strong ones. Another example - your digital signature is released after you are recognized.
Anyway, these applications must be used with personal devices and in no way with publically available biometric terminals.</description>
		<content:encoded><![CDATA[<!-- wrapping ads -->
<p>Ed,<br />
Optical fingerprint scanners are not reliable. Optical sensor cannot distinguish fake from real. Even those that cost more than $700, like Crossmatch and are used in visa program by UK and USA government.<br />
Matrix capacitive scanners are also not reliable. Swipe-type sensors, like Upek, LTT, Authentec, Atmel are a bit more reliable, because they need some proficiency to fake a finger they will accept.<br />
What I am trying to say is that Biometrics has nothing to do with Security, at least in the way it is currently used.</p>
<p>Biometrics can offer user convenience and ease of operation, and enhance security indirectly. For example, if you must not remember your password, and if it is filled automatically after your finger recognized – you may use long and strong ones. Another example - your digital signature is released after you are recognized.<br />
Anyway, these applications must be used with personal devices and in no way with publically available biometric terminals.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ed</title>
		<link>http://secureportability.com/2008/06/tricking-fingerprint-sensors/#comment-3</link>
		<dc:creator>Ed</dc:creator>
		<pubDate>Mon, 30 Jun 2008 10:48:51 +0000</pubDate>
		<guid isPermaLink="false">http://security4dummies.wordpress.com/?p=14#comment-3</guid>
		<description>alright you debunked finger scanning, but whats the real deal with optical scans?</description>
		<content:encoded><![CDATA[<!-- wrapping ads -->
<p>alright you debunked finger scanning, but whats the real deal with optical scans?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
