Android uses the fingerprint scanner as a more convenient unlocking method. CopperheadOS could offer a more interesting alternative to that.
@CopperheadSec e.g. if you logged in a minute ago, you only enter 5 chars. If you logged in an hour ago, 6 chars. A day ago, 10 chars.
-
-
@BRIAN_____ That might make sense. The current way works well though. It reboots after 5 attempts, forcing entry of the encryption password. -
@CopperheadSec Time, # of failed attempts, sensor input (is your phone near your smartwatch) can all factor into the substring length. -
@BRIAN_____ It's a good idea but it might interact poorly with features like at-rest encryption based on the unlock password. -
@BRIAN_____ Need to think about it for a while. It's tricky to approach these kinds of features without adding more attack surface too.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.