Private Access Tokens: Apple's Quiet CAPTCHA Killer
How Apple shipped attestation-based bot detection to a billion devices using Privacy Pass blind signatures, and what it means for the CAPTCHA market.
bot-detectionInsights and updates on AI bot detection, web security, and digital threat mitigation. Discover best practices for protecting your online properties from automated threats and malicious bots.
Post 1 through 6 of 46 total posts
How Apple shipped attestation-based bot detection to a billion devices using Privacy Pass blind signatures, and what it means for the CAPTCHA market.
bot-detectionAn honest argument against ML-driven bot detection. Adversarial drift, training data poisoning, latency, and the explainability tax that nobody talks about.
bot-detectionA technical deep dive into Anubis, the proof-of-work AI scraper blocker now running in front of GNOME, KDE, FFmpeg, and dozens of public infrastructure sites.
bot-detectionLegacy CSS honeypots like display:none and offscreen positioning no longer fool vision-based AI agents. New placement strategies for 2026.
bot-detectionAn honest, technical look at why CAPTCHAs no longer stop bots, and the modern stack of behavioral biometrics, proof-of-work, and fingerprinting that does.
bot-detectionAI-generated form spam is harder to catch than the old kind. An honest technical breakdown of what works, what fails, and where the arms race is going.
security