Executive TL;DR:
- Google’s reCAPTCHA has broken for de-googled Android users.
- The new reCAPTCHA system uses remote attestation, potentially compromising user anonymity.
- Users are seeking alternative CAPTCHA solutions to avoid privacy concerns.
The Internet’s Verdict: 70% Hyped, 30% Skeptical
The Controversy Surrounding reCAPTCHA
Google’s reCAPTCHA has been a topic of discussion among users, with many expressing concerns over the new system’s potential to compromise anonymity.
My understanding is that this new reCAPTCHA is basically just remote attestation. Remote attestation doesn’t use blind signatures (as that would be ‘farmable’) so tying the device to the ‘attestee’ is technically possible with collusion of Google servers.
Impact on Users
Many users are finding it difficult to access certain websites due to the new reCAPTCHA system, with some even considering avoiding the internet altogether.
archive.is just asked me for a QR code scan, I’m so ashamed of that crap, forcing website visitors to KYC? Are you guys insane!? the web is ruined if you push for this, this is millions of websites that will suddenly force KYC?
As a result, users are looking for alternative CAPTCHA solutions that prioritize user privacy.
Eww. Ok, so, I’ve used reCAPTCHA on sites I maintain at work, just on forms to prevent excessive bot spam submissions. No way do I want to subject users to this BS, though. Does anyone have recommendations for other decent captchas that could be used instead?
Focus Keyword: reCAPTCHA Issue