Live data from Hacker News

Apple Unveils The iPhone 5S

techcrunch.com

401–410 of 715 posts

Re: Apple Unveils The iPhone 5S

#403
At some point you'll be able to pick up your friend's phone or tablet, touch it, and without entering usernames, emails, or passwords, have access to all your "stuff", including the same homescreen / desktop as your own phone / laptop.

There will be open source, open standard, secure authentication and identity systems chained together, kind of like an evolution of Persona or OpenID, and when you view a website on your friend's phone, it will recognize you immediately.

Re: Apple Unveils The iPhone 5S

#404
post #58

Earlier quoted context omitted.

That's even worse. I want to be able to set, at my option: 1) PIN-only 2) FPR + PIN (where you must use iCloud to get in if your FPR doesn't read) 3) for morons, FPR only. I currently use a much stronger than 4 digit numeric PIN, but it is honestly a pain. If I could set both the FPR and PIN as required to get in, I could use a shorter PIN. If I'm allowed to bypass the FPR entirely, the PIN has to remain as strong as…

I'm curious why you say FPR only is for morons. I feel like I'm missing something.

Only for morons is way harsher than I'd put it, but fundamentally it's a difficult to inspect security system that's based on a potentially vague analog signal.

In the security world, things which are novel are not to be trusted. The security of a system is measured in how many serious researches have attacked it, and to what degree they succeeded.

I expect that there are solid biometric security standards that have been subject of serious analysis and attack. If it turns out that Apple's implementation uses one of these standard and tested solutions then I think I'd trust it in place of a PIN. In the absence of that evidence, the Properly Paranoid position is the skeptical one.

A quote from Babbage in 1864 is apropos: "One of the most singular characteristics of the art of deciphering is the strong conviction possessed by every person, even moderately acquainted with it, that he is able to construct a cipher which nobody else can decipher."

Re: Apple Unveils The iPhone 5S

#405
post #73

Now that we have to consider the iPhones to be backdoored by the NSA, I wonder whether I really want to give them my fingerprint together with the rest of my data. I'm also not so sure whether a fingerprint can't still be easily faked (like it was possible on that Mythbusters episode for example). Personally, I think I'd rather stay with my passcode. Did you btw know that you can turn off "simple passcode" and then u…

Just a thought... the third-party doctrine is what enables perfectly legal surveillance of most communications. However, something residing on your device and never entering a third party's possession would seem to be directly covered by "your papers" in the 4th amendment. The bar for lifting fingerprints out of your CPU is much higher than the bar for lifting emails out of Yahoo.

Re: Apple Unveils The iPhone 5S

#406

Earlier quoted context omitted.

Actually, my gym (24 Hr Fitness) uses fingerprint scanners to sign people in. I hadn't really given it much thought before, but indeed, it would be possible for their system to be compromised and for my fingerprint data to be released into the wild...

Yes, hackers could compromise your gym's systems, steal your fingerprint data, and then use it to... mooch off your gym membership?

Or to generate an artificial fingerprint that can fool scanners, and then use that to access an other service or data you have/use that is "secured" with fingerprint as the single authentication factor.

Since fingerprints can't be changed, he more widely they are used for authentication, the more likely that they will be compromised and the less useful they are for authentication.

Re: Apple Unveils The iPhone 5S

#407
post #73

Now that we have to consider the iPhones to be backdoored by the NSA, I wonder whether I really want to give them my fingerprint together with the rest of my data. I'm also not so sure whether a fingerprint can't still be easily faked (like it was possible on that Mythbusters episode for example). Personally, I think I'd rather stay with my passcode. Did you btw know that you can turn off "simple passcode" and then u…

I live in England and I have been arrested.

This means that GCHQ (and by implication probably the NSA), already have my fingerprints.

Re: Apple Unveils The iPhone 5S

#409
post #73

Now that we have to consider the iPhones to be backdoored by the NSA, I wonder whether I really want to give them my fingerprint together with the rest of my data. I'm also not so sure whether a fingerprint can't still be easily faked (like it was possible on that Mythbusters episode for example). Personally, I think I'd rather stay with my passcode. Did you btw know that you can turn off "simple passcode" and then u…

Seeing as I get my fingerprints taken at the airport every time I enter the US, I personally don't care :)

Re: Apple Unveils The iPhone 5S

#410
post #389
post #370

Earlier quoted context omitted.

it HAS already leaked that emails, browsing, who knows what else, is being sucked up by NSA ... so apparently it doesn't matter. Apple is still selling plenty of iPhones, people are still using Gmail, etc etc. Apparently Americans don't much care.

[deleted]

Or just not buy the fucking thing to start with...
Post reply on HN