eff,
@eff@mastodon.social avatar

Using your face or thumbprint to unlock your phone is convenient, but courts may grant less legal protection to biometrics. EFF’s Andrew Crocker spoke to @Gizmodo about passwords and the Fifth Amendment. https://gizmodo.com/stop-using-your-face-or-thumb-to-unlock-your-phone-1851438205

SakuraZaku69,
@SakuraZaku69@mastodon.social avatar
argv_minus_one,
@argv_minus_one@mstdn.party avatar

Problem: if you use passcode unlock, anyone looking over your shoulder while you unlock your phone will immediately learn the code, and potentially use it against you.

mikey,
@mikey@friendsofdesoto.social avatar

@argv_minus_one Not a widespread option, but @GrapheneOS offers PIN scramble. Each time the PIN screen is offered the numbers are in different positions. Reeks havoc with muscle memory, but once you're used to it it's not that difficult.

GrapheneOS,
@GrapheneOS@grapheneos.social avatar

@mikey @argv_minus_one GrapheneOS will be shipping our 2-factor biometric unlock feature soon. You'll be able to set a PIN which has to be entered to use face/fingerprint unlock. For example, you could set an 8 diceware word passphrase as your primary unlock method required for first unlock and enable fingerprint unlock for convenience but set a random 4-6 digit PIN as a 2nd factor for fingerprint unlock. This will be our recommended lock method configuration for most users once we ship this.

JohannessNilsson,
@JohannessNilsson@mastodon.social avatar

@eff @Gizmodo
https://onlinelibrary.wiley.com/doi/full/10.1002/spy2.261

Multi-Level biometric passwords are a step further. It's interesting because many US agencies employ this methodology, and have done so for quite some time. It would be nice to see OEM options for this on smartphones, etc. A user effectively creates a pin code, that relies on a certain sequence of fingerprints being entered sequentially on the biometric scanner, this could be in combination with other biometrics or traditional passwords or alphanumerics.

BritishTechGuru,
@BritishTechGuru@techtoots.com avatar

@eff I never have used biometrics. They're an invasion of privacy.

nlpbot,
@nlpbot@mstdn.social avatar

@BritishTechGuru @eff

Removes plausible deniability from phone usage

elengale,
@elengale@mastodon.social avatar

@eff @Gizmodo It is such a pain to go back to PIN-based unlocks-- but as noted, it's the only line of defense right now against surveillance and law enforcement overreach.

It's always a shame when we have to deliberately kneecap ourselves because society won't allow us to have nice things.

Here's hoping that one day, precedent will change on this matter.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • tacticalgear
  • DreamBathrooms
  • InstantRegret
  • magazineikmin
  • khanakhh
  • Youngstown
  • ngwrru68w68
  • slotface
  • everett
  • rosin
  • thenastyranch
  • kavyap
  • GTA5RPClips
  • cisconetworking
  • JUstTest
  • normalnudes
  • osvaldo12
  • ethstaker
  • mdbf
  • modclub
  • Durango
  • tester
  • provamag3
  • cubers
  • Leos
  • anitta
  • megavids
  • lostlight
  • All magazines