3 ms·
The device could instead have a display that displays a password, QR code, one-time-key, etc... and then you would scan it using a webcam or your phone (or type
by privacy101 11y ago
The device could instead have a display that displays a password, QR code, one-time-key, etc... and then you would scan it using a webcam or your phone (or type it manually).
- anon4 11y agoYeah, but that way it's displayed out in the open and you can make a mistake copying it. I think just exchanging usb flash storage sticks is preferable unless you sufficiently distrust the system you're on.
- Skunkleton 11y agoMaybe like a phone running a TOTP application?
- privacy101 11y agoI would have more trust in a separate device that has no networking capabilities.
- dazmax 11y agoWhat if it's in a "secure element" whose hardware and firmware make it provably incapable of divulging the private key?
- privacy101 11y agoI don't think that's possible... it reminds me of Apple saying that they can't decrypt your phone, but it is decrypted when you use it and many apps have permissions to transfer basically everything over the network (and Apple has root too).