Portfolio · Machine learning · Biometrics · Security

Biometric security at consumer scale

Biometric security for ML-powered consumer products released to more than a million people. We build it, and then we attack it.

Facial-recognition test rig analyzing a synthetic face mesh on a lab display

The brief

Camera-driven biometrics, facial recognition and fingerprint scanning, are only as trustworthy as their resistance to spoofing. Our client needed both sides of that problem covered: rigorous validation of the biometric stack, and offensive testing that finds the failure modes attackers will find first.

What we do

We build and validate the biometric security for ML-powered products in production, and we run structured penetration testing against facial-recognition and fingerprint systems: presentation attacks, spoof artifacts, and hard edge cases, exercised at consumer scale.

The outcome

Shipped in products used by more than a million consumers, with vulnerabilities found and fixed before launch instead of after.

Client engagements are confidential, so this work is described in general terms.

More work