(Crap now I have to change my passcode.)
The reason why I prefer FDE is that runtime attacks are much more fragile - one misstep by the attacker and they're locked out, and the attack surface is smaller (physical attacks are very impractical if you can't shut the phone down); you have to get in through background SW.
-
-
Don't know about Android's security model but can't really see a significant upside vs using the passphrase as a passcode and relying on biometrics not to have to type it too often. I guess different security models?
-
The upside is it's FDE, which means *all* user data is encrypted. Both iOS and Android in FBE mode expose some user data not bound to a passphrase, and then you have to trust that *every single app developer* got it right and isn't accidentally leaking important secrets.
- Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.