System allows users to send identity verification challenges to each other on-demand during communication. The goal is to prevent identity takeover by real-time audio deepfakes.
It is inspired in 3DS credit card processing –taking away the UX nightmare; some similarities: decoupled rail for authentication, enrolment, user redirection to trusted authentication mechanism.
The method is based on cryptographic credential management, employing only open standards via a proprietary algorithm. The server relays messages and serves for message-hardening enforcement.
Cryptographic operations, source of truth and decisions are all on the client-side. The model could be considered P2P in essence and usability –despite the existence of a limited-role server as a minimal required infrastructure. Our servers do not process or store any PII.
Our first use case is applied to regular carrier mobile phone calls, and requires installing a mobile app to function. Also, the protocol can be applied and integrated into any communication.
It would be great if you’d like to have a look at it and let us know what you think. I will be here to discuss online.
You can download the app and test it (limited testers):
- Android link: https://play.google.com/store/apps/details?id=com.mistis.aut...
- iOS app link: https://testflight.apple.com/join/Rb5sXpwp
Testing involves at least two users, as the method requires pairing (cryptographic credential exchange) previously to establishing a regular phone call in which to send identity verification challenges. I can volunteer for testing if you cannot find a peer tester.
If you spot a weird bug or would like to mention anything in private, please drop a line to support@mistis.tech.
Justin (Founder)