This document summarizes research on revisiting photo-based social authentication. The researchers:
1) Demonstrate a new attack on social authentication that matches photos from challenges to a collection of the victim's photos, which is more effective than face recognition attacks.
2) Conduct a user study showing people can identify friends in photos with unrecognizable faces over 99% of the time, whereas software fails.
3) Design a new social authentication system that selects "medium" photos software cannot recognize but people can, and transforms photos via overlays and perspective changes to block matching attacks while retaining human usability, passing 94.38% of challenges in a preliminary study.