Earlier quoted context omitted.
> TouchID was removed because it took up space on the front of the phone and Apple wanted the screen to be bigger. There's no deeper reason than that. The Pixel handset has the fingerprint sensor on the back of the phone. It appears to work quite well. Much of this needless outrage could be obviated by allowing multiple simultaneous biometrics for auth; while taking the phone out of your pocket, place your finger on…
> The Pixel handset has the fingerprint sensor on the back of the phone. How would I use my phone on a desk without lifting it up? I can do that with TouchID, but if the sensor is on the back, I can’t.
Face ID, Touch ID, No ID, PINs and Pragmatic Security
261–270 of 314 posts
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#262> ...when you do use the biometric options we're about to get into, you're still going to need [a pin] on your phone anyway. For example, every time you hard-reboot an iPhone with Touch ID you need to enter the PIN This is what has been missing from every discussion of this issue that I've seen so far. The face scan isn't "insecure" even if you're worried about border searches. Just turn off your phone when you get i…
I don't want to be that 'if you've got nothing to hide then' guy but why are people so worried about what border agents in particular will see on their cell phone? I am not saying that I wouldn't mind at all if my phone was searched. But I can't think of anything in particular that I would be concerned about if it was. Sure in theory the agent could remember some personal information and come back later and use that…
I'd personally much rather the State fundamentally respected a right to private and family life, much like article 8 of the ECHR, but fat chance of seeing that in the USA any time soon.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#263Earlier quoted context omitted.
>All biometric security mechanisms are bad They are though, if bad == insecure. Customs can make you unlock with fingerprint or face. If you can't lock yourself out, it's not secure.
Customs can do that anyway if you have a password.
Allow me to repeat myself,
If you can't lock yourself out, it's not secure.
For example, some banks have time locks. Nobody gets into the vault, unless it is in a certain window of time.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#264Earlier quoted context omitted.
my phone is currently sat on my desk, about 10 inches from my right arm. I can, and do, check messages on it, by only repositioning my arm to unlock it. I easily read any messages by glancing at the phone, never coming into any decent imaging range.
Turn on the front camera, lay the phone on your desk. Can you see your face in the image? Then you can unlock your phone by glancing over at it.
My phone can see the very corner of my head and about half of my eyebrow. I do not want that to be enough to unlock my phone.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#265Earlier quoted context omitted.
I'm not sure how I feel about storing 100+ GB in icloud and restoring it via my data plan.
Local encrypted backups via itunes are an option too, if you are traveling with a laptop.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#266Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#267Earlier quoted context omitted.
> The Pixel handset has the fingerprint sensor on the back of the phone. How would I use my phone on a desk without lifting it up? I can do that with TouchID, but if the sensor is on the back, I can’t.
You can't really do that with the face id either, unless you loom over your desk in an awkward way.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#268Earlier quoted context omitted.
Also, the border is 100 miles from the Mexico/Canada borders and 100 miles from the shore. So, if you're concerned it's not when you're entering or leaving the country. It's any time you're in LA, NY, DC, SF, Huston or Detroit. Or any of the other thousands of miles of border.
Common misconception: If you have crossed the boarder, then within 100 miles of it they can search you. Of course, how you prove you didn't cross the boarder is an open question. But you can in fact refuse the search on that claim. I suppose they may detain you then.
edit
to clarify, US law pushes police right up to the edge. there is a preference for false positives rather than false negatives. it's more important to catch all of the criminals than it is to inconvenience some innocent people. The risk of letting one criminal go is much more than cost of detaining a doctor for a couple of hours.
Now, we're in this weird time where that doctor can have 20 years of hippa protected medical records in their pocket that they might be forced to disclose. Historically, that doctor may have some records in a briefcase, but not tens of thousands.
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#269> ...when you do use the biometric options we're about to get into, you're still going to need [a pin] on your phone anyway. For example, every time you hard-reboot an iPhone with Touch ID you need to enter the PIN This is what has been missing from every discussion of this issue that I've seen so far. The face scan isn't "insecure" even if you're worried about border searches. Just turn off your phone when you get i…
Re: Face ID, Touch ID, No ID, PINs and Pragmatic Security
#270> ...when you do use the biometric options we're about to get into, you're still going to need [a pin] on your phone anyway. For example, every time you hard-reboot an iPhone with Touch ID you need to enter the PIN This is what has been missing from every discussion of this issue that I've seen so far. The face scan isn't "insecure" even if you're worried about border searches. Just turn off your phone when you get i…
I don't want to be that 'if you've got nothing to hide then' guy but why are people so worried about what border agents in particular will see on their cell phone? I am not saying that I wouldn't mind at all if my phone was searched. But I can't think of anything in particular that I would be concerned about if it was. Sure in theory the agent could remember some personal information and come back later and use that…