But of course we all know that none of you are picking your alphanumeric passcode at random. You’re all using Kitty123.
Yes. Ideally you'd want *both* schemes at once, but Google seems to think they can get fine grained data partitioning right (they can't) and thus forgo proper passphrase-controlled FDE when they use file-based encryption instead.
-
-
The reason why I prefer FDE is that runtime attacks are much more fragile - one misstep by the attacker and they're locked out, and the attack surface is smaller (physical attacks are very impractical if you can't shut the phone down); you have to get in through background SW.
-
Don't know about Android's security model but can't really see a significant upside vs using the passphrase as a passcode and relying on biometrics not to have to type it too often. I guess different security models?
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.