3 ms·
It's possible the device is storing a second key of some sort as well as regenerate each time a fingerprint is set. It may even regenerate it each time a scan i
by eksith 13y ago
It's possible the device is storing a second key of some sort as well as regenerate each time a fingerprint is set. It may even regenerate it each time a scan is done and reset the password.
I.E. hash( hash(fingerprint) + stored key ) = actual password.
- joshstrange 13y agoIIRC I think I saw someone else saying that each fingerprint hash was hashed with a key specific to each phone so that if you were able to extract the fingerprint hash it would be unusable on the target's other devices. I cannot find the source for this so please take this with a large grain of salt.