Thread about numeric passcode strength on iPhones. And *this* is why I consider my rooted Android phone to be more secure than iPhones under a whole category of attack scenarios. Because I can use separate 25-character full ASCII *startup* password and an 8-digit *unlock* code.https://twitter.com/matthew_d_green/status/985885001542782978 …
-
Prikaži ovu nit
-
Sure, you can try to attack my phone from a powered-but-locked state, but if you screw up and it reboots, or if you attempt any boot chain attacks, or if the battery runs out, you are *not* getting in. Period.
1 reply 1 proslijeđeni tweet 7 korisnika označava da im se sviđaPrikaži ovu nit -
I don't know why nobody offers this option of split FDE/unlock codes by default (neither iPhones nor stock Android). It's such a massive no-brainer to increase security to basically "unbreakable" under an entire class of practical attack scenarios.
1 proslijeđeni tweet 18 korisnika označava da im se sviđaPrikaži ovu nit -
(And we can already do this exact thing for FDE on desktops/laptops, so it's not like it's novel)
1 proslijeđeni tweet 5 korisnika označava da im se sviđaPrikaži ovu nit -
Odgovor korisniku/ci @marcan42
Android used to allow it. I suspect they stopped because phone reboot is so rare for most users they forget the passcode. Biometric + alphanumeric password isn't a bad split in modern android for some threat models. But then again, they took away true full disk encryption too.
0 proslijeđenih tweetova 0 korisnika označava da im se sviđa
I don't remember Android ever allowing it. It always required rooting and running a vdc command to change the FDE password, AFAIK.
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.