cross-posted from: https://lemmy.ml/post/47972724

i encountered this for the first time today while attempting to read something on archive.today.

i confirmed that decoding the qrcode using a computer and following the URL it contains is insufficient; the error it gave directed me here which is what the linked screenshot is of.

the old type of captcha remains available too, for now:

screenshot of text: Important: Mobile verification for Google Cloud Fraud Defense is an experimental challenge type in Preview. Visual and audio challenges are available as alternatives for users who can't complete mobile verification. To use them, click the Visual  or Audio  buttons.

  • Snot Flickerman@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    164
    ·
    3 days ago
    1. People without a mobile device are fucked out of being able to pass a captcha

    2. As if this isn’t a way for them to associate multiple sessions on multiple specific devices with one another, this is just another avenue for data collection, period. Hidden under the guise of “more secure.”

    • Chulk@lemmy.ml
      link
      fedilink
      English
      arrow-up
      58
      ·
      3 days ago

      I imagine scammers are already thinking of ways to use this for phishing too

    • MrKoyun@lemmy.world
      link
      fedilink
      arrow-up
      6
      ·
      2 days ago

      It really should be illegal to build systems that require a user’s access to any unrelated technology. You shouldn’t be forced to have a phone to pay a parking fee or to get on the bus. You shouldn’t need an app to charge your car. You shouldn’t need to use proprietary software from one spesific company to pass a captcha on a random site.

    • Corngood@lemmy.ml
      link
      fedilink
      arrow-up
      21
      ·
      3 days ago

      You don’t have to drink a verification can, but you do need to buy a verification phone.

    • adarza@lemmy.ca
      link
      fedilink
      English
      arrow-up
      10
      ·
      3 days ago

      i have one. but it isn’t android, or ios, or ‘smart’ in any way. it doesn’t even text. it’s just a telephone that fits in my pocket and connects to the cellular networks. it’s all i want. it’s all i use. it’s all i’ve needed ever since i got my first one about 25 years ago.

      • leadore@lemmy.world
        link
        fedilink
        arrow-up
        6
        ·
        3 days ago

        Same! Except mine does do SMS text and has the other flip phone stuff like alarms, timer, calendar.

      • explodicle@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 days ago

        Don’t worry you’re included. Simply visit one of our Accessibility Centers between 8am-9am on odd Wednesdays, with a valid birth certificate, filled-out form from here, and a notarized Charizard.

  • 0_o7@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    19
    ·
    2 days ago

    We are making side loading harder because scammers are using “these” tactics to install malware on your devices.

    It’s totally fine when we use the same tactics to install malware on your device.

  • itsjustachairmary@lemmy.world
    link
    fedilink
    arrow-up
    7
    ·
    2 days ago

    I got one of these. They had accessibility options so I just did the auditory one. It says a couple words, you write them out, and you’re done. Like hell am I using a Phone for this shit.

  • TrackinDaKraken@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    ·
    2 days ago

    I still won’t order online from a store that won’t show me shipping cost without a full address and phone number. I’ll give them the zip code, that’s all they need, that’s all they get before I decide.

  • antonim@lemmy.world
    link
    fedilink
    arrow-up
    36
    ·
    2 days ago
    1. Hype up AI.

    2. Everyone starts scraping the internet to obtain training data for their AI.

    3. To block the scrapers, countless sites implement stricter bot detection tools.

    4. The owners of the bot detection tools now effectively hold all of the internet by its throat, deciding who can access what and extorting more and more data from you to verify you’re human.

    Fucking genius.

  • BradleyUffner@lemmy.world
    link
    fedilink
    English
    arrow-up
    33
    ·
    2 days ago

    No malicious site would ever fake this kind of flow in order to get someone to scan a dangerous QR code. Nope, that would never happen.

  • brvslvrnst@lemmy.ml
    link
    fedilink
    arrow-up
    67
    ·
    3 days ago

    Nice captcha. Would be a shame if someone intentionally injected malicious code that had users scan a QR code under the guise of security.