3 ms·
It seems like they could add a few less-predictable factors to improve the security of thumbprints without completely ruining their convenience. For instance:
by makecheck 10y ago
It seems like they could add a few less-predictable factors to improve the security of thumbprints without completely ruining their convenience.
For instance:
— Maybe you must use two or more particular fingerprints in sequence, selected by you in advance. This would require a “sleep attack” to at least try different combinations of your fingers (without knowing which to use first or how many fingers are required).
— Maybe you have to hold down your thumb in a pattern that you set in advance (e.g. at least 2 seconds on, followed by one second off and one second on).
— Maybe a 3-by-3 grid appears and you have to tap one of the squares that were set in advance by you before using your fingerprint. This is faster than having to enter a whole pass-code but slightly stronger than just tapping a finger.
Of course, each of these trades off time (convenience) for slightly better security.
- goda90 10y agoI'm just imagining the court case where they can force the defendant to put their finger to the reader, but they can't force them to say what order it has to be in, so they'll slowly make the defendant try all the combinations.
- spacehome 10y agoThen that's just back to the situation today with passwords/passcodes. The answer is rate limiting.
- backtoyoujim 10y agoThis will only end in nano-blood-draws with genotypic personalization built into my online refrigerator all over LDAP.
- TeMPOraL 10y agoOf course both the blood drawer and the genotype analytics service will both be operating on two different clouds. Don't forget to pay your Internet bill if you don't want to starve.
- darpa_escapee 10y agoDoes thumbprint + access code/grid/what-have-you exist on any phone? This is the one feature I've been dying for.