FaceApp Scandal Highlights Unfixable Flaw in Biometric Security
The recent FaceApp controversy reveals that using faces as passwords leaves people permanently vulnerable to data scraping. Protecting facial images from recognition software is now essential for safe biometric authentication.
The recent FaceApp scandal reveals a harsh reality about modern digital security: our faces are prime targets for data exploitation. High-profile outrage over this application brings much-needed attention to a systemic issue where companies and government agencies scrape, collect, and analyze facial images without user consent. Previous incidents involving the Ever app, IBM, and ICE show that unauthorized facial data harvesting is a widespread and deeply rooted problem.
This situation highlights a tragic irony in the evolution of digital authentication. People eagerly adopted facial recognition to escape the frustrating burden of remembering and updating complex passwords, believing their unique physical features provided an unbreakable lock. However, using a face as a password is essentially writing a permanent credential on one's forehead, completely ignoring the fact that unlike a compromised text password, a human face cannot be changed.
Since plastic surgery is not a practical solution for the general public, protecting the actual digital images of our faces becomes the only viable path forward. To maintain the convenience of facial recognition for access control without sacrificing security, technology must render these images unrecognizable to artificial intelligence algorithms. Fortunately, new methods allow systems to keep photos looking completely normal to human eyes while remaining entirely invisible to malicious facial recognition software.