Google introduces selfie video login to enhance account recovery as deepfake threat grows – Firstpost

AI Video & Visuals


Google is expanding its account security toolkit with a new selfie video verification feature that allows users to use facial biometrics to prove their identity when they can’t access their account through traditional methods. The feature is designed as an additional recovery option, not a replacement for existing authentication methods, and comes as technology companies increasingly move to passwordless sign-ins while dealing with a rapid increase in AI-powered identity fraud.

Story continues below this ad

This feature is rolling out to eligible Google Accounts, giving users another way to regain access if they lose their trusted device or have trouble signing in. It complements our existing authentication methods, such as passkeys and recovery contacts, as we continue to expand the ways users can securely verify their identity.

The announcement also reflects broader changes across the technology industry. As generative AI makes it easier to create convincing fake images and videos, companies that handle financial information, online identities, and sensitive personal data are investing more heavily in biometrics and “liveness” detection to distinguish real users from sophisticated impersonation attempts.

How to set it up?

Setting up a new authentication method requires users to record a short selfie video using their device’s front-facing camera. During registration, Google guides users through a series of simple head movements, allowing the system to capture multiple facial angles rather than relying on a single still image.

If a user is later locked out of their account, they can record another selfie video to verify their identity. Google will compare your new record to the previously registered version before deciding whether to restore account access.

According to the company, this process includes safeguards designed to ensure that the person in front of the camera is physically present. In a blog post announcing the feature, Google said, “When you use a selfie to sign in, we use multiple layers of security to protect against impersonation attempts, including fake photos and videos (deepfakes).”

Story continues below this ad

The company added that it will compare new recordings with saved selfie videos and require users to take a simple action to indicate that the footage is live. Google also said its existing security systems continue to monitor suspicious login attempts during the verification process.

Privacy remains a central concern when companies collect biometric information, and Google has been working to address these questions since the launch of the service. The company says selfies are stored in an encrypted format with your consent and are only used to sign in to your account unless you explicitly consent to further use. Users can also delete saved videos from their Google Account at any time.

Is it better than current measures?

Rather than replacing passwords, passkeys, or two-factor authentication, the selfie video feature serves as another recovery method for users who may struggle to regain access to their accounts. This can be especially useful if a trusted device is lost, damaged, or otherwise unavailable.

This approach also reflects the changing nature of online security. While traditional verification methods such as passwords remain vulnerable to phishing, one-time passcodes can be intercepted by increasingly sophisticated scams. Biometrics associated with biometrics provide an additional layer that is difficult to replicate using still photos or AI-generated video.

Story continues below this ad

However, the move could also lead to renewed scrutiny of biometric data collection. Regulators in several jurisdictions are focusing on how companies collect, store, and process facial recognition data, especially as AI technologies become able to analyze and generate more realistic human faces.

Google insists that user controls remain at the heart of the system. Selfie videos are encrypted at rest and can be deleted at any time. It is also intended solely to assist in account recovery unless you choose otherwise.

This latest addition underscores Google’s broader strategy to reduce reliance on passwords while making account recovery more resilient to evolving cyber threats. Whether selfie video authentication becomes a widely adopted security tool may ultimately depend on how comfortable users are with trusting their facial biometrics to online platforms in exchange for stronger protection against fraud.



Source link