News
Are biometrics the backbone of personal security in smart cities?
By: Alexander Migutsky, Advanced Technologies Specialist, Positive Technologies
Alexandra Murzina, Head of Advanced Technologies Department, Positive Technologies
What makes smart cities so fascinating is the level of personalization the ecosystem promises across essential daily staples including work, transport, payments, and complete control over applications at home.
With immeasurable IoT applications and effective use of big data analytics, smart cities will emerge a phenomenon that seeks to make us question how we ever managed to operate any other way.
Achieving this level of personalization won’t be easy though. A larger interconnected network requires paths to identify users so they can tailor their experiences to themselves. Whether it be biometric ID cards or authentication portals, users should be able to authenticate themselves and connect to networks using their personal information.
Biometrics are widely used in enterprise security, access control, and banking operations, with facial recognition and fingerprint authentication systems now commonplace in companies, subways, stores, and restaurants.
The demand for biometric technologies is being driven, among other things, by the increasing adoption of biometric systems in the automotive and consumer electronics industries.
But are biometrics geared to provide comprehensive support to smart city infrastructure?
According to Fortune Business Insights, the global biometric system market size is projected to reach USD 76.70 billion by 2029.
However, there are still safety concerns about how these systems operate and make decisions; questions arise – Exactly how safe are these systems? How do they work under the hood, how do they make decisions?
Positive Technologies’ in-house team of cybersecurity experts conducted a white hat investigation focusing on physical and cyber threats to machine learning systems, including attacks that aim to compromise system confidentiality and obtain data.
The goal of the investigation was to discover gaps within biometric security systems leading up to their inevitable integration into smart infrastructure. We hope that our findings can shed some much needed light upon how the industry can collectively ensure seamless connectivity and functionality within biometric authentication systems supporting smart infrastructure.
During our investigation, we took apart two biometric devices and examined their internal electronics.
Device 1
The first device is expensive and uses advanced technology with the latest biometric algorithms. It has a depth camera, two conventional cameras, and an IR dot projector. A depth camera uses a combination of technologies to obtain depth information, increasing the reliability of the biometric system, which means attackers would need to know the user’s face geometry and have the ability to recreate it. Naturally, a device with such technology is used in access control systems at airports worldwide. Such a device is bound to be a staple of central transportation hubs in smart cities. So, how reliable is the device really?
During testing, we discovered that the device has liveness detection to identify whether the biometric source is real. The cameras capture the image, which is then received by deep neural networks for processing.
We found vulnerabilities in the system, particularly through remote code execution (RCE) attacks, which allowed us to extract machine learning models and user vectors to recreate the biometric authentication algorithm. We attempted to restore a user’s face from the representation hidden in the database.
Although we had a shot at carrying out a successful attack, there was probably a lot of optical distortion in real conditions, due to which we lost some points.
Security analysis:
- Developers did not use depth camera data for authentication which allowed us to circumvent the authorization algorithm.
- The algorithmic assessment failed when we attempted to generate an artificial face matching a real person’s biometric pattern, but attackers could potentially succeed with more time.
Device 2
The second device we studied was a biometric terminal for tracking employees’ work hours – crucial to supporting enterprise workforces within smart cities. It wasn’t as advanced as the first device as it lacked CUDA cores for complex neural networks. However, it used machine learning algorithms from the 2010s and had two cameras: one conventional and one infrared for biometric authentication.
The infrared camera is the key feature of the terminal. It captures invisible details, making it difficult to trick the system. The terminal uses a cascade classifier, 15 Gabor filters, and an algorithm for local binary patterns in the infrared range to detect and analyze facial features. Although it has some vulnerabilities, such as recognizing the same user with and without glasses as different people, the combination of technologies provides decent defense against attacks.
Security analysis: The biometric terminal is less flexible than the first device because it uses only the infrared range and classic algorithms. Nonetheless, this design makes it more resistant to attacks.
Conclusively
Having studied biometric access control terminals that use different algorithms, we discovered that the terminal with neural networks is flexible and can authenticate users wearing masks, helmets, or makeup, but it can be hacked through considerably antiquated mirroring tactics.
The terminal using classic machine learning algorithms is more resistant to illegal authentication attempts. However, both terminals are vulnerable to remote code execution attacks.
Our recommendations for developers looking to strengthen biometric device security include:
- Using data from the depth sensor to distinguish between individuals.
- Conducting independent device audits.
- Collaborating with security researchers and be open to receiving help.
Developing devices for smart city infrastructure is a complex process that requires experts conducting diligent trial and error routines to ensure frictionless operational capacity across the grid.
Even highly skilled teams can make mistakes, leading to vulnerabilities in the final product. Being open to feedback from real users and experts are key to optimizing biometric applications within smart infrastructure.
By eliminating passwords and PINs, biometric authentication provides a disruptive step in the field of cybersecurity and alleviates concerns around the security of copious amounts of data needed in a hyper-connected ecosystem.
While designing IoT applications for smart cities, biometrics are the ideal solution to achieving personalization and privacy backed by seamless authentication, provided the machinery involved is treated with a pristine level of care and pressure testing.
Financial
CFI Partners with Saadiyat Nights as Part of Its Collaboration with DCT Abu Dhabi
CFI Financial Group is proud to announce its official partnership with Saadiyat Nights, as part of CFI’s strategic partnership with the Department of Culture and Tourism – Abu Dhabi (DCT Abu Dhabi). This collaboration underscores CFI’s commitment to supporting its local community and providing its clients with unforgettable cultural and entertainment experiences in one of the world’s most dynamic destinations.
Currently captivating audiences, the second edition of Saadiyat Nights is bringing legendary international artists, performers and fans together at the iconic open-air venue on Saadiyat Island. Running from December to February, this extraordinary series features iconic acts like Boyz II Men, Christina Aguilera, Robbie Williams, Michael Bublé, Leningrad, Ebi and Omar Khairat, with some already dazzling the stage and others eagerly awaited.
Through this collaboration, CFI will benefit from exceptional brand visibility at each event, while offering its clients premium access to performances and money-can’t-buy experiences, including exclusive Meet & Greet opportunities with some of these legendary artists.
“Through this collaboration, CFI reinforces its brand presence and industry leadership by securing high brand visibility at each of the Saadiyat Nights events in Abu Dhabi, a key hub for culture and global connections,” said Hisham Mansour, Co-founder and Managing Director of CFI. “This partnership reflects our commitment to fostering meaningful connections, supporting cultural initiatives and providing our clients with opportunities to engage with world-class experiences that complement their journey with CFI.”
Through this partnership, CFI is proud to support Abu Dhabi’s position as a leading cultural destination in the region, while staying committed to its mission of providing traders with exceptional trading experiences and engaging with like-minded local communities.
Hospitality
Where There Is Trade, There Is Gulfood
There is only one place where the world gathers annually to witness an unparalleled F&B showcase, with products meticulously handpicked from every corner of the globe. This time, a new global chapter is unfolding in the future of food and it’s within the legacy of Gulfood that the world can anticipate a seismic impact.
The 30th edition of Gulfood, taking place at the Dubai World Trade Centre from 17 – 21 February, will host a record 5,500+ exhibitors from 129+ countries. It will unveil new business opportunities and solve new and evolving global challenges.
Celebrating 30 Editions of Informing the Global Foodscape
For over three decades, Gulfood has been the driving force at the heart of global food commerce—igniting innovation, sparking cross-cultural collaboration and redefining the next era of global F&B. As the world experiences a sweeping transformation in food systems—powered by groundbreaking technologies, sustainability breakthroughs, and forward-thinking ideas—Gulfood 2025 will be the epicentre of this revolution. This is where the next era of food begins, and you’re invited to be at the forefront.
Event date: 17 – 21 February 2025 at Dubai World Trade Centre & registration is now live.
Why Visit?
Where The World Connects for Their F&B Sourcing Success
- 5500+ Exhibitors: Explore 100k+ new products and innovations from a vast exhibitor showcase across eight distinct sectors.
- 129 Countries Exhibiting: Experience global diversity with the biggest lineup of participating countries.
- 43% New Exhibitors: Get the first look at the fresh offerings from exhibitors attending the show for the first time.
- 24 Huge Halls: Navigate 24 massive halls filled with exhibitors, country pavilions and culinary experiences.
- 1 Million Sq. Ft Exhibition Area: Gulfood 2025 boasts one million square feet of show floor space.
- Network And Pre-Schedule Meetings: Establish close connections with F&B industry leaders through pre-scheduled meetings via our official event app and meetings programme.
Show Sectors
Gulfood is set to showcase the latest trends and advancements in the F&B industry, spanning seven distinct sectors: Dairy, Beverage, Fats & Oils, Pulses & Grains, Meat & Poultry, Power Brands and World Food.
Anticipate exploring products spanning these sectors at Gulfood, the ultimate platform for connecting with industry leaders, discovering state-of-the-art innovations and forging valuable partnerships in the ever-evolving F&B landscape.
Features
The summit will unite global leaders to tackle key challenges, sparking discussions, and showcasing trends, featuring top CEOs, policymakers and innovators.
From talks like Visionaries: Exploring Cutting-Edge Technologies Driving Food Tech to Pioneering Smart Agricultural Systems in the F&B Sector and more, the summit aims to drive business, inspire change and fuel global economic growth.
GULFOOD DISCOVERY TOURS
Over five days, engage in curated tours that are designed to connect you directly with the products you’re most interested in sourcing. The tours focus on diverse food categories such as Gourmet, Alternative Proteins, Ready-to-Eat, and Plant-Based. F&B professionals, buyers and sourcing experts can gain valuable insights, access exclusive products and make informed business decisions while exploring key trends influencing global F&B.
Top Table
Top Table returns with a charismatic group of local and international chefs who are reimagining the way we create and enjoy food. With a bold focus on culinary futurism, the 2025 edition will debut new techniques, inventive flavour combinations and unconventional textures that surprise and delight audiences.
YOUTHX – YOUNG CHEF CHALLENGE
Witness a high-energy culinary competition between young hotel chefs from around the world. They will compete for a career-defining internship at some of the top restaurants and culinary schools in Europe. Gulfood’s YouthX brings together emerging culinary talent from diverse cultures, offering a global platform that unites chefs through healthy competition. They’ll be judged on futuristic techniques that set the event apart from previous editions, showcasing the next generation of global culinary leaders.
BLEND STUDIO
Celebrate the artistry of beverages with immersive masterclasses that showcase the latest trends and exclusive, never-seen-before creations crafted by industry experts. Explore the world of coffee and the trendiest crafted drinks while seizing opportunities to connect and learn from leading beverage professionals.
THE CULINARY DEBATE
Watch as global culinary icons debate the industry’s most critical challenges and exciting opportunities in the world of food. You’ll be captivated as they offer fresh perspectives on the rapidly evolving industry landscape.
THE TASTING ROOM
Experience the latest culinary creations from top brands and network with business leaders in the F&B industry. Whether you’re looking for the market’s most exciting products, new partnerships or upcoming trends, this is where opportunities come to life.
DUBAI WORLD CUISINE
Experience an exclusive four-hands dinner series that brings together celebrated international chefs and homegrown culinary talent. These unique collaborations offer a one-of-a-kind opportunity to savour bespoke menus, where local flavours and global expertise converge to create exceptional dining experiences.
GULFOOD AFTER HOURS
Explore Dubai’s vibrant food scene with Gulfood After Hours. We’ve teamed up with the city’s most iconic restaurants to give you an unforgettable culinary adventure. From casual eateries to fine dining, you’ll experience the very best Dubai has to offer, outside of the exhibition halls. Simply book, show your ticket, and enjoy exclusive offers at venues across the city.
INNOVATION AWARDS
The Gulfood Innovation Awards will celebrate brands setting a new standard for excellence in F&B. Recognising forward-thinking products that demonstrate creativity, ingenuity and impact, these prestigious awards highlight the best in the F&B industry across 10 categories.
Financial
MultiBank Group Secures Court Victory as Judge Declares Von Der Heydt Claims as “Fictitious” and “Untenable”
MultiBank Group has achieved a significant courtroom victory in the Eastern Caribbean Supreme Court against Von Der Heydt Invest S.A. (VDH), a Von Der Heydt Group subsidiary, which had brought claims against MultiBank FX International Corporation (MBFX), a MultiBank Group entity, and its founder, Naser Taher.
The court described the allegations brought by VDH as ‘fictitious’ and ‘untenable’, labelling VDH’s pursuit of these matters as an “abuse of process.” The court ordered VDH to cover over USD$25 million in legal costs incurred by Mr. Taher and MBFX.
The Honorable Justice Gerhard Wallbank’s decision rejected VDH’s claims and confirmed MultiBank Group’s adherence to transparency and integrity. Naser Taher, Founder and Chairman of MultiBank Group said: ‘The accusations levied against us by Von Der Heydt have always been unfounded, and this ruling is a testament to our strong adherence to the principles of fairness and lawful conduct.’
The court confirmed that the legal campaign by VDH and its affiliates over the past four years consisted of coordinated and unfounded allegations targeting MultiBank Group. The judgment also highlighted a “conspiratorial network” involving multiple parties.
A previous ruling by the court made in early 2024 compared the relationship between the Von Der Heydt Group, to the Bernie Madoff ponzi scheme.
This decision marks an end to VDH’s pursuit of claims against the MultiBank Group and runs parallel to the financial group’s broader collapse. Von Der Heydt Bank, a 250-year-old institution and VDH’s parent company, has surrendered its banking license and ceased to exist after being placed in liquidation by its founder Dietrich Von Boetticher. The court further commented on the plight of German noteholders allegedly represented by VDH, attributing their difficulties to mismanagement at the hands of the Von Der Heydt leadership.
A prior ruling by the London High Court found Colm Smith, CEO of CSM Securities, and his company in contempt of court for not adhering to a worldwide freezing order (WFO) obtained by MultiBank Group. This contempt stems from Smith’s failure to disclose assets related to a legal dispute involving Van Der Heydt Invest SA (VDHI), where significant losses were linked to investments in notes associated with the Multibank Index. His actions have raised the possibility of imprisonment as the court continues to address allegations of unlawful collusion against MultiBank Group, which are unfolding in various European courts.
MultiBank Group’s victory in the Eastern Caribbean Supreme Court further solidifies its position as a trusted leader in the financial derivatives market, operating under the oversight of 16 regulators across five continents and serving over one million clients worldwide. Naser Taher added: ‘We are delighted that the judiciary has recognised the baseless nature of these accusations and affirmed our global reputation for integrity and operational excellence. We remain steadfast in delivering the highest standards of financial services to our clients.’
-
Tech News6 months ago
Denodo Bolsters Executive Team by Hiring Christophe Culine as its Chief Revenue Officer
-
Tech Interviews10 months ago
Navigating the Cybersecurity Landscape in Hybrid Work Environments
-
Tech News10 months ago
Brighton College Abu Dhabi and Brighton College Al Ain Donate 954 IT Devices in Support of ‘Donate Your Own Device’ Campaign
-
Features8 months ago
Security in the Cloud Age: Combating Risks with Hybrid Cloud Solutions
-
Tech Features7 months ago
The Middle East to Lead with Next-generation Mission Critical Communication Advancement
-
VAR5 months ago
Samsung Galaxy Z Fold6 vs Google Pixel 9 Pro Fold: Clash Of The Folding Phenoms
-
Tech News1 year ago
Senet enters MENA’s Competitive Gaming Scene with ‘skill-to-earn’ Platform
-
Automotive11 months ago
Al-Futtaim Automotive Builds On 23-Year Legacy of Trust & Leadership in UAE’s Pre-Owned Car Market to Sell Over 25,000 Used Vehicles in 2023