Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Privacy

New iPhone Brings Face Recognition (and Fears) to the Masses

Apple will let you unlock the iPhone X with your face — a move likely to bring facial recognition to the masses, along with concerns over how the technology may be used for nefarious purposes.

Apple will let you unlock the iPhone X with your face — a move likely to bring facial recognition to the masses, along with concerns over how the technology may be used for nefarious purposes.

Apple’s newest device, set to go on sale November 3, is designed to be unlocked with a facial scan with a number of privacy safeguards — as the data will only be stored on the phone and not in any databases.

Unlocking one’s phone with a face scan may offer added convenience and security for iPhone users, according to Apple, which claims its “neural engine” for FaceID cannot be tricked by a photo or hacker.

FaceID from Apple - Facial Recognition While other devices have offered facial recognition, Apple is the first to pack the technology allowing for a three-dimensional scan into a hand-held phone.

But despite Apple’s safeguards, privacy activists fear the widespread use of facial recognition would “normalize” the technology and open the door to broader use by law enforcement, marketers or others of a largely unregulated tool.

“Apple has done a number of things well for privacy but it’s not always going to be about the iPhone X,” said Jay Stanley, a policy analyst with the American Civil Liberties Union.

“There are real reasons to worry that facial recognition will work its way into our culture and become a surveillance technology that is abused.”

A study last year by Georgetown University researchers found nearly half of all Americans in a law enforcement database that includes facial recognition, without their consent.

Civil liberties groups have sued over the FBI’s use of its “next generation” biometric database, which includes facial profiles, claiming it has a high error rate and the potential for tracking innocent people.

Advertisement. Scroll to continue reading.

“We don’t want police officers having a watch list embedded in their body cameras scanning faces on the sidewalk,” said Stanley.

Clare Garvie — the Georgetown University Law School associate who led the 2016 study on facial recognition databases — agreed that Apple is taking a responsible approach but others might not.

“My concern is that the public is going to become inured or complacent about this,” Garvie said.

– Advertisers, police, porn stars –

Widespread use of facial recognition “could make our lives more trackable by advertisers, by law enforcement and maybe someday by private individuals,” she said.

Garvie said her research found significant errors in law enforcement facial recognition databases, opening up the possibility someone could be wrongly identified as a criminal suspect.

Another worry, she said, is that police could track individuals who have committed no crime simply for participating in demonstrations.

Shanghai and other Chinese cities have recently started deploying facial recognition to catch those who flout the rules of the road, including jaywalkers.

Facial recognition and related technologies can also be used by retail stores to identify potential shoplifters, and by casinos to pinpoint undesirable gamblers.

It can even be used to deliver personalized marketing messages — and could have some other potentially unnerving applications.

Last year, a Russian photographer figured out how to match the faces of porn stars with their social media profiles to “doxx” them, or reveal their true identities.

This type of use “can create huge problems,” said Garvie. “We have to consider the worst possible uses of the technology.”

Apple’s system uses 30,000 infrared dots to create a digital image which is stored in a “secure enclave,” according to a white paper issued by the company on its security. It said the chances of a “random” person being able to unlock the device are one in a million, compared with one in 50,000 for its TouchID.

– Legal battle brewing –

Apple’s FaceID is likely to touch off fresh legal battles about whether police can require someone to unlock a device.

FaceID “brings the company deeper into a legal debate” that stemmed from the introduction of fingerprint identification on smartphones, according to ACLU staff attorney Brett Max Kaufman.

Kaufman says in a blog post that courts will be grappling with the constitutional guarantees against unreasonable searches and self-incrimination if a suspect is forced to unlock a device.

US courts have generally ruled that it would violate a user’s rights to give up a passcode because it is “testimonial” — but that situation becomes murkier when biometrics are applied.

Apple appears to have anticipated this situation by allowing a user to press two buttons for two seconds to require a passcode, but Garvie said court battles over compelling the use of FaceID are likely.

Regardless of these concerns, Apple’s introduction is likely to bring about widespread use of facial recognition technology.

“What Apple is doing here will popularize and get people more comfortable with the technology,” said Patrick Moorhead, principal analyst at Moor Insights & Strategy, who follows the sector.

“If I look at Apple’s track record of making things easy for consumers, I’m optimistic users are going to like this.”

Garvie added it is important to have conversations about facial recognition because there is little regulation governing the use of the technology.

“The technology may well be inevitable,” she said. “It is going to become part of everyone’s lives if it isn’t already.”

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Kim Larsen is new Chief Information Security Officer at Keepit

Professional services company Slalom has appointed Christopher Burger as its first CISO.

Allied Universal announced that Deanna Steele has joined the company as CIO for North America.

More People On The Move

Expert Insights

Related Content

Artificial Intelligence

Two of humanity’s greatest drivers, greed and curiosity, will push AI development forward. Our only hope is that we can control it.

Cybersecurity Funding

Los Gatos, Calif-based data protection and privacy firm Titaniam has raised $6 million seed funding from Refinery Ventures, with participation from Fusion Fund, Shasta...

Privacy

Many in the United States see TikTok, the highly popular video-sharing app owned by Beijing-based ByteDance, as a threat to national security.The following is...

Privacy

Employees of Chinese tech giant ByteDance improperly accessed data from social media platform TikTok to track journalists in a bid to identify the source...

Application Security

Open banking can be described as a perfect storm for cybersecurity. At one end, small startups with financial acumen but little or no security...

Government

The proposed UK Online Safety Bill is the enactment of two long held government desires: the removal of harmful internet content, and visibility into...

Mobile & Wireless

As smartphone manufacturers are improving the ear speakers in their devices, it can become easier for malicious actors to leverage a particular side-channel for...

Cloud Security

AWS has announced that server-side encryption (SSE-S3) is now enabled by default for all Simple Storage Service (S3) buckets.