An equivalent of 500 years wasted on CAPTCHA every day, Cloudflare says

CAPTCHA stands for Completely Automated Public Turing test to tell Computers and Humans Apart, a way for online services to separate humans from bots.

May 24, 2021 10:42 am | Updated 10:42 am IST

An equivalent of 500 years wasted on CAPTCHA every day.

An equivalent of 500 years wasted on CAPTCHA every day.

(Subscribe to our Today's Cache newsletter for a quick snapshot of top 5 tech stories. Click here to subscribe for free.)

Delivery network services (DNS) provider Cloudflare said it wants to replace CAPTCHA with a new security system after the company’s analysis revealed that time equal to 500 years is wasted on CAPTCHA every day.

CAPTCHA stands for Completely Automated Public Turing test to tell Computers and Humans Apart, a way for online services to separate humans from bots. CAPTCHAs might include asking the user to tap the correct box with pictures of fire hydrants, crosswalks, traffic lights and so on.

The method can be frustrating at times as the user might not see the corner picture with a small part of traffic light on it.

“A real human should be able to touch or look at their device to prove they are human, without revealing their identity,” Cloudflare said in a blog post. “We want you to be able to prove that you are human without revealing which human you are.”

Cloudflare is introducing a new system called Cryptographic Attestation of Personhood. When challenged on a website, the user clicks on ‘I am human’ and is then prompted to use a security device to prove themselves. A hardware security key is sent to their computer or tapped on their mobile phone for wireless signature using NFC. A cryptographic attestation is then sent to the website upon verification of the test.

The company said that completing the process takes three clicks and about five seconds as compared with CAPTCHA’s average of 32 seconds.

Cloudflare noted that the challenge protects users’ privacy since the attestation is not uniquely linked to the user device. However, it added that the initial rollout is limited to a few devices such as YubiKeys, HyperFIDO keys; and Thetis FIDO U2F keys.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.