Skip to main content

tv   Click  BBC News  May 20, 2017 12:30pm-1:00pm BST

12:30 pm
in the championship at this stage last year. there is so much love for the players and the team and when you get beat, it is really disappointing. we use that disappointment quickly to galvanise oui’ disappointment quickly to galvanise our position. we have used it as inspiration for us. we have that experience and will lean on that. the expectations from the fans and the owners. we knew automatic way to wembley was never anything for us. they have been a good side this evening —— the season. england under 20s have beaten argentina in their opening group game at the world cup. everton‘s dominic calvert—lewin got
12:31 pm
the opening goal seven minutes before half—time in south korea. and seven minutes after the break, newcastle's adam armstrong doubled the lead. it finished three—nil as chelsea's dominic solanke added penalty spot in injury time. they face guinea next and then play their korean hosts. the tournament is trialling video assistants for referees and this elbow on another chelsea player fikayo tomori was spotted on replays and argentina's lautaro martinez was sent off. twickenham is playing host to the final round of the rugby sevens world series this weekend.. they have beaten spain in their opening match. australia and samoa stand between them and a place in the quarterfinals. scotland won their maiden gold medal here last year and have already made a winning start to their pool, running in three tries to beat russia 21—7. they'll face argentina and france later on today
12:32 pm
in pool a, wales have safely negotiated a tricky opening fixture against the united states. tom glyn williams ran in the third of four tries. it's playoff time in the english premiership. a week after retaining the champions cup, saracens face exeter, hoping to move a step closer, to the, ‘double double", while league leaders wasps host leicester tigers. they have the home game and that's hugein they have the home game and that's huge ina they have the home game and that's huge in a semifinal in knockout by. huge in a semifinal in knockout rugby. they are really deserve that. they were the best and they deserve that. we will have to make sure we are accurate early in the game and keep the creative squad do the things that make us a good team.“ leicester come out with a fantastic performance, you have to put your hand up sometimes. if we took us play to a potential and play like we have the most of the season, it
12:33 pm
should be ours. anything can happen on the day. we have worked hard to finish top of the table and worked ha rd finish top of the table and worked hard to get a home draw and are determined to put a performance in which we believe will be good enough to get results. newcastle's st james' park has seen its goal posts replaced by rugby ones because it's rugby league's magic weekend. this is when all the super league teams play over the same weekend, so today, widnes face wakefield, hull in second play st helens, and its wigan against warrington. three more matches on sunday. that's all sport for now. i'll have more in the next hour, now on the news channel it's time for click. guards!
12:34 pm
welcome to the south coast of england, and the country's biggest fortification, dover castle. they say an englishman's house is his castle. this week, this castle is mine. like every other home in the land, it needs to be well defended, because these days, it is constantly under attack. the walls make it out burglars, but today's digital invader is wily, and can worm its way in through the smallest gaps. last week's global cyber attack on companies in around 150 countries shows just how vulnerable systems
12:35 pm
can be, even if you are not called into clicking dodgy links. so this week, we're looking at cybersecurity. it's me versus the bad guys out there. and they might be small, but there's a lot of them. so what can i do to shore up my defences? one thing is through biometrics. gadgets already recognise our fingerprint, and now banks are starting to identify us using our voices. so how secure is it? is it possible, for example, to fake someone‘s voice? we asked dan simmons to give it a go, or most precisely, to find the one person who might stand a chance at breaking into his bank account. thanks, ben. well, one of the things that you might not know about me is that i am the only member of the click team to have a twin brother. hi. his name isjoe, and we kind of sound quite alike. we kind of do sound quite alike. but i came out first,
12:36 pm
and hejust copied me. yeah, well, for this report, it's going to bejoe trying to copy me... together: ..as we try to break into a bank. but first, we're going to need some help. yep, i really think this guy is going to help us. right, good, good. all right, nice to meet you. if you'd like to sit down... what we're going to do first is i have this little analysis tool here. and what this will do is just detect, first of all, the pitch of your voice. this system that you're trying to break in is analysing your voice in lots of different ways. so there will be about 100 different variables it is picking up on. hello, i'd like to access my account, please, today... hello, i wondered if i could access my account today. you see there are pretty big differences between them.
12:37 pm
so who do you think is the bigger adam's apple, out of both of you? i can't see mine. together: yayayayahh. .. it's the first time i've tried to use the telephone banking service, and i'm not set up, so i am hoping... laughs how many — how long do you want to make this? a bit shorter, ok, a bit shorter. that wasn't axactly the way you said it the first time. i'd like to take everything out, today, please.
12:38 pm
that was. i'd like to take everything out, today, please. that is — that is close. that's not true. that is not true. excellent, that is brilliant. thank you very much. no worries at all! what are you dressed like that for? well, we're doing a job, aren't we? i've got a gun. you don't need a gun, do you? your voice is your weapon. take that off! erica is the voice of nice — nice is the voice security provider for citibank credit ca rd—holders in the us, among others. hi, nice to meet you, too. joe's going to try to break into my account, what chances do you think he has? very slim. what advice can you give me to try and break into his account? well, you've known him your entire life, so try to imitate his voice. she seems very confident
12:39 pm
about this — what — what why is it that you think that, maybe, my twin brother can't break into my account? voice biometrics is the most accurate form of identification there is for access into financial institutions. why? it registers over 100 different characteristics with voice. half of them personality and the half are physical. and you do look a little bit different, and your voices are different, so you will have different vocal characteristics. so therefore, what percentage chance do you think i have? it would be one out of several hundred thousand. how do you make it so that i can access my account, even if, like, at the moment, i have a little bit ofa... coughs as i said, there's over 100 characteristics, and a cough or cold only affects about two. so we still have all those other characteristics to work with, and we can use those for identification. and has anybody fooled the system through the front door? basically, pretending to be somebody they're not? no.
12:40 pm
can i asked another question? it mightjust be a bit out the ballpark, but is this legal? joe kept himself busy. i'm here to break into the account of dan simmons.
12:41 pm
joe, you really don't need the gun. what do i have to do? let's give this a shot. 0k? hi, yes, i'd like to access my current account, if i can, please? yes, it's probably about £10, something like that. yeah. thanks very much. yeah, that's great. thank you. you failed — but close. wow, look at how close this is over here. look at that! if we come over here, it you can see there's the threshold level, and that — that is pretty close. that was not a bad first go. thatjust came out of nowhere. first go, very good. it came out of absolutely nowhere! very good. but that's how you test the system, isn't it? yes, we that's how we test the system. we test it with twins, and siblings, and imitators. you know, a fraudster wouldn't get three chances,
12:42 pm
and the reason a fraudster wouldn't get three chances is that we would register the multiple failures, and it would dynamically increase the threshold on the third, and put a flag on the account. right, that is not to say, of course, that it's impossible, is it? it's not impossible, it's just very improbable. so, dan, your bank account is still safe, although your twin got away with some pretty cool stationery. yeah, the old fashioned way. were you surprised that the voice attack didn't work? yeah, iwas, actually. we really tried hard to match up our voices. you know, we used the voice coach and the rest of it, and itjust bubbled under what we needed and couldn't get in. what about the simpler stuff that we have been asked by banks in the last few years, like "my voice is my password," did you try that? oh yeah, we had a crack at that. to get into my account, my twin needs my sort code and my account number, things i have already helped him outwith.
12:43 pm
he also needs to know my birthdate, but that's probably something he already knows. the question is, can my voiceprint give me any extra protection? secret bank, we're not getting any bank names away. good afternoon. welcome to hsbc. oh, it's... please enter your sort code, or... oh, i've got this one. now, interestingly, it's the pin number, and the account number, which, if you are from the days from the old cheque—book, then both of those things you'd use to print objects. so if you've got an old cheque from somebody you already know that. ..your date of birth. he knows my date of birth because we share the same date of birth. after the tone, please repeat the phrase "my voice your password". my voice is my password. i'm sorry, i didn't catch that.
12:44 pm
after the tone, please repeat the phrase "my voice your password". my voice is my password. welcome to hsbc advance. the balance of your account is £1.21p credit. i'm off to the bank! for your available balance... i thought it would be more than that, dan. laughs evil twin was in. perhaps more surprising when you consider the service providers test their systems with twins to improve security. i can get into other accounts, apparently, dan, so... hsbc told us: he did break into your real bank
12:45 pm
account. that wouldn't be a great defence. he is my twin and not many people have one of those. computers can emulate and clone voices. we have started to see people fooled in the same way we have been fooled by photo shop pictures.|j the same way we have been fooled by photo shop pictures. i don't think that will work. do you mind if we give that a go? be my guest. i record his voice and sent his recording to canada. i would have to
12:46 pm
say great, the best. we are working with security searches to find out what is the best way to send. this is why we haven't made it public yet. the developers hope it will give someone back their voice if they lose it through illness or an accident that they are aware it could be used to fake a voice id. sun—macro one idea i have to work on is to mark the samples. we have to detect this. they are not quite ready to help you. you could replicate their voice
12:47 pm
print. you still wouldn't be able to get in. i know because i've tried to hack in. major security no no man works at an undisclosed financial institution. 0h. he manages innovation, because they have an innovation unit. so what's he been innovating? just watch the way he uses his phone, because his security system is doing just that. and even with all his login details, i'll need to replicate how he holds, taps, and tilts his device. ha, hi! chris, would you mind lending me that for a moment? no luck.
12:48 pm
it's beaten me. that'll be yours, then. thank you very much. spying tools go ahead with its promise to release fresh batches of tools each month. it threatens to sell new code that could compromise phone handsets and windows temp as well as data stolen from banks. it
12:49 pm
was also revealed the squeeze cell—free phone. there was an app called lens which turns your smart code camera into a search engine. and there was serviced to take your loved one's remains into space. ca psules loved one's remains into space. capsules of ashes will orbit earth for two years capsules of ashes will orbit earth for two yea rs before capsules of ashes will orbit earth for two years before re—entering the atmosphere as a shooting star. it costs around £2000. the previous effo rts costs around £2000. the previous efforts didn't reach orbit. finally, over latvia, this man achieved the first—ever parachute jump from a drone. he landed safely with his parachute. not looking good out there. i've
12:50 pm
retired to the inner sanctum. dover castle was continuously defended the 900 years, right up until the 1950s. it was a successful defence. i wonder whether our homes are more ballmer both. —— 1850s. wonder whether our homes are more ballmer both. ——1850s. we are filling them with more and more connected devices. this is the family room at the heart of the castle with the lord of —— whether lord and his family can relax
12:51 pm
between some thick walls. the king can unwind with a game of chess. in the 13th century, they didn't have the 13th century, they didn't have the internet of things but they still have things. how do we make iot more secure? we keep hearing about these connected devices continually being hacked. why is it so continually being hacked. why is it so hard for manufacturers to make them more secure? it is not hard. it just needs thought, efford and time to do it right. —— effort. they have to do it right. —— effort. they have to get their product to market and somewhere, to get their product to market and somewhere, someone says to get their product to market and somewhere, someone says security. do they carry on chipping orders ship it out and expose us as consumers?” like to think security is getting better. i think it is getting worse at the moment. everyone wants to jump at the moment. everyone wants to
12:52 pm
jump on the bandwagon. there is less security, cheaper products and people are buying it. don't worry about that. it's fine. give mea give me a hand with this chest, please. in here, i've got some iot devices. here is one i like the look of. it sends an image of what is going on at your door to your phone so going on at your door to your phone so you going on at your door to your phone so you can answer going on at your door to your phone so you can answer the door when you are not at home. you can unhook it from the door, press this button and it'll give you a wi—fi key so you can hack the customer's network. ok, right. beggars belief. here we are ina right. beggars belief. here we are in a castle. this is a smart door lock. you cannot your doorfrom in a castle. this is a smart door lock. you cannot your door from your phone but it hooks up with voice
12:53 pm
control. with amazon eco, you can 90, control. with amazon eco, you can go, locked door. it locks the door for you. it doesn't do anything silly unless you hooked it up to siri. you could shout through the door, "a locked door," says the burglar and it unlocks the door. this is a next thing. this is a thermostat and you can control your heating from your home. we found that you could hack them and do crazy things like install ran somewhere on them so they could hold your heating system to ransom in the middle of winter. so you can turn the heating off and demand money to turnit the heating off and demand money to turn it back on. buy yourself a fan, like we've got. it seems these gaps in our defences are proving to be a gift for our attackers. really? a
12:54 pm
smart cattle? what's the problem with a smart cattle? you can boil a couple from your bed when you wake up. unfortunately, this early version wasn't secure and you could sit outside someone's house, port —— pointan sit outside someone's house, port —— point an aerial at your kitchen and get your wi—fi keys. point an aerial at your kitchen and get your wi-fi keys. good lord. not safe a ny get your wi-fi keys. good lord. not safe any more. let's go to the throne room. this is more secure. i've locked the doors. ok, right, how can we defend ourselves and our data if we have a phone —— a home full of connected devices? you have to update your phone. check the softwa re to update your phone. check the software is bang up—to—date because the manufacturers may have fixed the
12:55 pm
bug is. would you buy a connected device for your children?” wouldn't. i don't think they are enough yet. one extra word of advice. it is boring but please make sure you got a good strong password on app that you'd use to talk to your toys. ok, looks like we have some unwelcome guests. i will hand you over to lara who has some important security tips that we may be should have paid more attention to. it is every geek for himself. the recent ransom ware attack showed
12:56 pm
you don't have to be personally targeted to end up being a victim. this first tip would have protected you against that and many similar attem pts you against that and many similar atte m pts to you against that and many similar attempts to get inside the walls of your castle. one thing you need to do is to update the operating system, the browser and the applications you use. these pieces of software are complicated and they contain bugs. there are other ways we could be leaving ourselves vulnerable. don't jailbreak devices. use download applications because without that, you are bypassing the security that has gone into them.- one point, you will lose your devices. when you set it up, ask it to win crypts all the stores.“ devices. when you set it up, ask it to win crypts all the stores. if you don't think you've got anything of
12:57 pm
value, your contacts are worth a lot of money to cyber criminals. if you are putting documents that you don't wa nt are putting documents that you don't want other to people to see, i say don't do it. if you download something and you are not expecting it, don't do it. protect your family and friends. remove that risk. brilliant security tips there. unfortunately, i think they've arrived a little bit too late for me. still, there you go. thanks for watching and i really, really hope that i will see you soon! sunny spells and hefty showers will
12:58 pm
do it for many parts of the british isles today. not everywhere. we have low pressure and it is cloud and wind and rain right throughout the re st of wind and rain right throughout the rest of the day. elsewhere, after a decent start, the showers that with their work their way eastwards across england and wales. some of those sharp through the midlands. the odd shot one in northern ireland also. in the brightness, 18 celsius. many of those showers are fading away and the rain takes a time to push ever further north through scotland. that gets us off and running into a decent day on sunday with the exception of northern ireland, western scotland will have enough rain here. elsewhere, very pleasa nt enough rain here. elsewhere, very pleasant indeed and the sunshine
12:59 pm
pouring on through. a high of 21. good afternoon. donald trump has arrived in saudi arabia on his first foreign tour. but back in the united states, there are new claims about his sacking of the fbi chief, james comey. he's said to have told russian officials that mr comey was a " real nut—job" and that his departure eased "great pressure" on him. from riyadh, frank gardner sent this report. into the blazing heat of the saudi summerand into the blazing heat of the saudi summer and from the wave of political
1:00 pm

51 Views

info Stream Only

Uploaded by TV Archive on