A
A
Anton Molokoedov2016-08-16 14:22:57
CAPTCHA
Anton Molokoedov, 2016-08-16 14:22:57

Do you need a captcha in a mobile app?

There is a mobile application (more precisely, two - for Android and iOS) which has the function of creating a user account. Now there are fields for entering email and password, as well as captcha. But is it needed at all? Are there bots that can send automated requests through the mobile app?

Answer the question

In order to leave comments, you need to log in

4 answer(s)
A
Alexander, 2016-08-16
@jetfreeman

there are sniffer/proxies that can see what your application sends. After that, you can send exactly the same requests with anything. If you don’t have a million audience, then you can get by with SSL + certificate pinning, if you have a million audience, you can add captcha, but it won’t help much if SSL + certificate pinning is hacked, then captcha will be the least of the problems.

Алексей Скобкин, 2016-08-16
@skobkin

Что мешает достать из вашего приложения данные API и использовать их для массовой регистрации?

Сергей Зеленский, 2016-08-16
@SergeyZelensky-Rostov

нет не нужна, существуют, почитайте про двухфакторную аутентификацию

R
Rou1997, 2016-08-16
@Rou1997

Готовых не существует, но по принципам клиент-серверной архитектуры абсолютно любой клиент можно "подделать" с помощью сниффинга + реверс-инжиниринга оригинала, но это недешево и нелегко, вряд ли кто-то будет заниматься, пока приложение не наберет популярность, поэтому не торопитесь.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question