OWASP Automated Threats

Solve anti-automation tests.

What is CAPTCHA Defeat?

Completely Automated Public Turing test to tell Computers and Humans Apart (CAPTCHA) challenges are used to distinguish normal users from bots. Automation is used in an attempt to analyze and determine the answer to visual and/or aural CAPTCHA tests and related puzzles. Apart from conventional visual and aural CAPTCHA, puzzle solving mini-games or arithmetical exercises are sometimes used. Some of these may include context-specific challenges.

The process that determines the answer may utilize tools to perform optical character recognition, or matching against a prepared database of pre-generated images, or using other machine reading or human farms.

CAPTCHA Defeat is also known by terms such as breaking CAPTCHA, CAPTCHA breaker, CAPTCHA breaking, CAPTCHA bypass, CAPTCHA decoding, CAPTCHA solver, CAPTCHA solving, puzzle solving.


The symptoms of CAPTCHA Defeat

  • 1
    High CAPTCHA solving success rate on fraudulent accounts
  • 2
    Suspiciously fast or fixed CAPTCHA solving times


Sectors targeted by CAPTCHA Defeat

  • Education
  • Entertainment
  • Financial
  • Government
  • Retail
  • Social Networking


Can InfiSecure prevent CAPTCHA Defeat?

InfiSecure can block all bots that try to defeat CAPTCHA’s. InfiSecure puts basic checks like monitoring log CAPTCHA generation and solution speed and usage, monitor rate of use relative to typical usage to more advanced detection technologies like bot fingerprinting to find indicators of suspicious/fraudulent account usage.