Jan Krissler

from Wikipedia, the free encyclopedia

Jan Krissler , also known as Starbug , is a German computer scientist and scientist who achieved international fame primarily through his work on the manipulation of biometric systems and his participation in the European hacker scene. Krissler received his greatest attention to date for his publications on defeating the fingerprint sensor on Apple's iPhone .

Fingerprints of prominent politicians

As a protest action and to demonstrate the feasibility, Krissler and the Chaos Computer Club published the fingerprints of the then Interior Minister Wolfgang Schäuble in 2008 . For this purpose, traces on a glass he used were photographed with a digital camera and digitally processed. The reason for the action was the biometric passports introduced by the Interior Ministry under Schäuble , on which the passport holder's fingerprints were digitally stored.

He refined the attack in 2014 when he was able to reconstruct her fingerprint on the basis of press photos of Defense Minister Ursula von der Leyen and presented the attacks at the Chaos Communication Congress .

Scientific work

In addition to his work as an activist and his popular scientific publications on the security of biometric systems, Jan Krissler is also represented as a renowned scientist in several specialist publications. Earlier works deal primarily with the security of biometric systems. In later work, Krissler also dealt with basic research on fiber optic systems and the development of new types of attacks on microchips in smart cards.

His latest work, since 2014, deals again with new types of attacks against biometric systems. His work on the dangers of high-resolution cameras in cell phones, which enable the covert stealing of fingerprints, and his work on weaknesses in biometric payment systems also received international attention. In December 2018, Krissler and Julian Albrecht presented an attack on the biometric vein recognition systems PalmSecure from Fujitsu and VeinID from Hitachi at the 35th Chaos Communication Congress.

Jan Krissler is currently working as a research assistant at the Technical University of Berlin , where he mainly works with Jean-Pierre Seifert's group.

Individual evidence

  1. Alex Hern: Hacker fakes German minister's fingerprints using photos of her hands. December 30, 2014, accessed August 21, 2018 .
  2. Data protection: Schäuble's index finger hacked . In: ZEIT ONLINE . ( Online [accessed August 20, 2018]).
  3. heise Security: CCC publishes the fingerprints of Wolfgang Schäuble [Update]. Retrieved August 29, 2018 .
  4. CCC: I see, so I am ... you. Accessed August 20, 2018 .
  5. Lisa Thalheim, Jan Krissler, Peter-Michael Ziegler: Bodycheck Biometric Access Protection Devices and Their Programs put to the test . In: Heise (Ed.): C't . tape 2002 , no. 11 . Heise, Hanover November 2002, p. 114 .
  6. Guggi Kofod, Denis N. Mc Carthy, Jan Krissler, Günter Lang, Grace Jordan: Electroelastic optical fiber positioning with submicrometer accuracy: Model and experiment . In: Applied Physics Letters . tape 94 , no. 20 , May 18, 2009, ISSN  0003-6951 , p. 202901 , doi : 10.1063 / 1.3134002 .
  7. ^ Norbert Arndt-Staufenbiel, Guenter Lang, Jan Krissler, Henning Schroeder, Wolfgang Scheel: Specific glass fiber technologies: lensing and laser fusion . tape 5445 . SPIE, April 7, 2004, p. 83-87 , doi : 10.1117 / 12.558095 ( spiedigitallibrary.org [accessed August 21, 2018]).
  8. Clemens Helfmeier, Dmitry Nedospasov, Christopher Tarnovsky, Jan Starbug Krissler, Christian Boit: Breaking and entering through the silicon . ACM, 2013, ISBN 978-1-4503-2477-9 , pp. 733-744 , doi : 10.1145 / 2508859.2516717 ( acm.org [accessed August 21, 2018]).
  9. Tobias Fiebig, Jan Krissler, and Ronny Hänsch: Security Impact of High Resolution Smartphone Cameras | USENIX. In: Workshop on Offensive Technologies (WOOT). USENIX Association, August 2014, accessed August 21, 2018 .
  10. ^ Julian Fietkau, Starbug, and Jean-Pierre Seifert: Swipe Your Fingerprints! How Biometric Authentication Simplifies Payment, Access and Identity Fraud | USENIX. In: Workshop on Offensive Technologies (WOOT). USENIX Association, August 2018, accessed August 21, 2018 .
  11. Heise online: 35C3: Withdraw money with vein picture on dummy hand or break in at the BND. Retrieved December 28, 2018 .
  12. ^ TU Berlin: Institute for Software Technology and Theoretical Computer Science: Jan Krissler. Retrieved August 21, 2018 .