This is crazy. Stable diffusion created a verification image of someone doing their KYC for a bank or similar. AI will impact Know-Your-Customer identity verification processes. As AI makes it easier & cheaper to impersonate someone’s likeness and identity markers (often found in a breach) it will become simpler for attackers to takeover accounts and steal money, data, impact brands, etc.
@nixCraft Sooo we just have people go inside the bank like it’s the 1800s.

@MIfoodie @nixCraft
We have been doing that via post offices in Germany for decades now. Works quite well.

But our government (the whole EU really) is trying to move towards being able to proof you are you via a chip in your ID card. (Actually works quite well if you ignore some security and privacy concerns and that basically nothing supports it)

@MIfoodie @nixCraft my first thought too. I’ve been wondering whether AI actually moves us back to traditional approaches in other ways.

@nixCraft A workaround is to have the person take a selfie with their id document, both at creating the account and when doing something very risky (like taking a big loan).

Automated face recognition should be used by the bank to match both face *and* id document - image AIs are notoriously bad at creating small details, like filigree in the id document's surface.

@jcastroarnaud @nixCraft

Image AIs were notoriously bad at everything just 2 years ago. They becoming better at an exponentially shocking exponential rate.

@nixCraft It still looks a bit too nice for just a quick selfie, but still very close. Concerning as it will prompt for even more ID when it comes to some verification. Anonymity might really be gone in the new web.

@nixCraft enthusiastically yes!

This kind of tech will be used in nefarious ways but ultimately it protects our right to privacy.

If this tech is left unchecked visual evidence will no longer hold the "proof" it does currently and the justice system will be required to do its job again and provide definitive evidence from multiple sources.

@GreenKnight23 @nixCraft It could also just continue to fail spectacularly though.

@GreenKnight23 @nixCraft and interesting (and idealized) take, but I have far less hope that humanity will take that lesson (particularly corporate boardrooms trying to find an angle).

I believe what we are in for, is -in common parlance- an epic cockup.

@nixCraft as much as I hate KYC laws, this tech is just gonna force companies and the government to push further invasive forms of online verification. Hopefully in person registration for banks n such still remains an option for those who value their privacy ​:sob:​
@nixCraft why can't I simply prove that it's me by a gov issued TOTP or other cryptographic key pair? #wishlist
@mamus @nixCraft We've had this in Slovenia for over 20 years; originally it was just a certificate from either a government agency, or one of the authorised CAs, nowadays the id cards are smartcards with a chip, and you can use them with standard smartcard readers.
@nixCraft if only this could stop the kyc madness and the invasion of #privacy it causes

@nixCraft

It was never secure to take presenting a webcam picture of an ID card and a person as some kind of evidence that you are who you say you are. Banks and other institutions need to stop deciding other people are you just because they can produce pictures of your stuff.

@nixCraft This is IMO good. This verification method was bonkers from day one. Merely an inconvenience for someone who really wants to impersonate someone and not-so-great for many reasons for ordinary people.
@nixCraft Next step: AI fakes a whole verification call with a Callcenter-Agent.
@nixCraft considering what the AIs are trained on I feel like ugly nonwhite people will be safer from this for a while longer.
@nixCraft Imagine when banks will introduce the "Verify your Bard" service.
@nixCraft this will change /r/gonewild forever
@nixCraft ну все, прощайте удобные банки и удаленные сервисы. Добро пожаловать снова в пение прогулки в МФЦ, банки и прочие собесы
@nixCraft
time to go back to hiding cash in secret places around the house.
@llewelly tax authorities joined chat session 😅
@nixCraft @homelessjun Don’t most systems use a depth map now? Could you really unlock an iPhone with someone’s picture?
@nixCraft only idiots use such "verification" like KYC or via phones SMS/push messages. really, all such things must be banned by normal banks and only phisical presence of a client or a predefined and verified RSA private key/bank card with similar key can identify a person.
@nixCraft KYC/AML laws and regulations are ineffective at detecting or stopping crime and only create massive additional risk for regular, law-abiding consumers of financial products & services. These laws and regulations should be repealed immediately.