I recommend against using biometric identification
11–20 of 239 posts
Re: I recommend against using biometric identification
#12... basically because in less than 3 months, you will see HN article of someone posting some sort of 3-d photo of your face stuck to a watermelon, and showing you how to fool the IOS and unlock your phone anyway.
Re: I recommend against using biometric identification
#13Re: I recommend against using biometric identification
#14The suggested alternative is to use passcodes, but then there's no way to unlock your phone without making the unlock code plainly visible.
I mean, it's less plainly visible then your face, or even pictures of your face. I bet you there's an algorithm somewhere that can take a picture of your face and turn it into a 3d model. Then you can take that model, 3d print it, then use it to unlock your phone.
Also, as far as I understand, the demo videos are misleading: these systems (this and Windows Hello) are taking infrared pictures of your face, not visible-light pictures. From their perspective, you look like a (3D depth-tested) network of hot capillaries. This is 1. rather hard to recreate with any amount of sculpture-work, and 2. still identifies you "through" things like foundation/concealer creams.
Re: I recommend against using biometric identification
#15Obviously facial recognition and fingerprints aren't as good as a passcode. But they're better than the previous alternative, nothing. Before fingerprint/facial recognition, for the most part the only people who used a passcode were forced to because it was a company phone.
Re: I recommend against using biometric identification
#16And I don't understand why I cant (on Android 7) combine fingerprint and then PIN/Pattern to unlock my device. It's mind boggling and completely stupid.
Re: I recommend against using biometric identification
#17Re: I recommend against using biometric identification
#18The suggested alternative is to use passcodes, but then there's no way to unlock your phone without making the unlock code plainly visible.
I mean, it's less plainly visible then your face, or even pictures of your face. I bet you there's an algorithm somewhere that can take a picture of your face and turn it into a 3d model. Then you can take that model, 3d print it, then use it to unlock your phone.
Sure, there are entities out there who could probably crack this if they were inclined to target you. But is that truly -- and don't be hyperbolic here -- a thing that you worry about on a day-to-day basis due to actual experience of having been personally targeted by those entities? And is it never acceptable for a consumer device to be only "secure against the angry ex" versus "secure against Mossad"?
Re: I recommend against using biometric identification
#19Re: I recommend against using biometric identification
#20- Case 1 : Imagine crossing security check or border crossing. Guards just take your phone and point it to you : UNLOCKED . No need to resis to give passwd
- Case 2 : drug the activist and point unconscious victim ! Voila !
- Case 3 : Steal the phone, and change the cover and flash it in front of the real owner !
could go on and on ...