This event has ended. View the official site or create your own event → Check it out
This event has ended. Create your own
View analytic
Friday, May 12 • 10:20 - 11:05
Pentesting voice biometrics solutions

Sign up or log in to save this to your schedule and see who's attending!

Feedback form is now closed.
The era of scratch cards, RSA tokens, SMS codes and different variations of second factor authentication (and authorization) devices is soon to be over. The question is - what will replace current 2-FA methods - smart mobile applications or biometric solutions? And how quickly will the attackers find ways to bypass these methods.
One of the most popular biometric authentication already being widely implemented is voice biometrics. In this talk, expect to learn:
- how to pentest voice biometrics
- tools for automating calls to IVR channels
- how good is a good microphone
- how to fuzz the voice and identify key biometric characteristics and thresholds to bypass the algorithms
- how these kind of solutions compare to standard password metrics
I am sharing my experience of pentesting few voice biometrics systems, fuzzing voice in IVR channels, abusing implementation in mobile apps, and finally, I define security requirements for implementing this kind of solutions

avatar for Jakub Kaluzny

Jakub Kaluzny

Jakub is a Security Consultant at The Missing Link Security in Australia and performs penetration tests of high-risk applications, systems and devices. Previously securing online banking in Europe, working for European Space Agency and protecting instant bank transfers interm... Read More →

Friday May 12, 2017 10:20 - 11:05
Waterfront Center: Hall 1A

Attendees (29)