4 ms·
With this particular tool, probably. You're a lot better off using an alphanumeric passcode and Touch ID though.
by 13 12y ago
With this particular tool, probably. You're a lot better off using an alphanumeric passcode and Touch ID though.
- m-app 12y agoStrike out the Touch ID.
- peteretep 12y agoWithout the touch ID, a long password is too inconvenient.
- gambiting 12y agoCare to explain why? I know it's possible to clone someone's fingerprint, but that's doable in nearly clinical settings, where you have a very,very clear image of the fingerprint in the first place - a phone stolen out of a pocket or handbag is not going to have them.
- Flockster 12y agoThe demonstration by starbug, who won the bounty for cracking TouchID, was made using a fingerprint taken from the screen. https://vimeo.com/75324765 https://vimeo.com/75324765
- texec 12y agoIt's not too complicated, see starbugs latest talk: https://media.ccc.de/browse/congress/2014/31c3_-_6450_-_de_-_saal_1_-_201412272030_-_ich_sehe_also_bin_ich_du_-_starbug.html https://media.ccc.de/browse/congress/2014/31c3_-_6450_-_de_-... (Download MP4 and use a desktop player, it contains an English translation)
- Flockster 12y agoIn that talk he even describes, how they got the fingerprint from the German Secretary of Defense from a photograph taken in a distance of 3m at a press conference.
- TillE 12y agoIf your fingerprint is your password, it's much easier for authorities to get it. It becomes essentially impossible to refuse to divulge your password. If you're only concerned about thieves, sure, TouchID is probably fine.
- 13 12y agoYou need the passcode on reboot of the device anyway. I'd rather have a strong passcode and Touch ID than a weak passcode that's easily broken. A strong password and no Touch ID is almost completely unusable.