Guide to iOS estimated passcode cracking times (assumes random decimal passcode + an exploit that breaks SEP throttling): 4 digits: ~13min worst (~6.5avg) 6 digits: ~22.2hrs worst (~11.1avg) 8 digits: ~92.5days worst (~46avg) 10 digits: ~9259days worst (~4629avg)
-
-
Honestly, this is why I still prefer a (rooted) Android phone where you can set a long FDE passphrase and a simpler unlock passphrase. If you shut the thing down the key material is gone unless you can crack a long scrypted passphrase.
-
I understand the trade-offs Apple is making with their more complex security implementation (and Android is moving in that direction with file-based crypto) but I'd rather have a much simpler to analyze FDE approach.
- Još 9 drugih odgovora
Novi razgovor -
-
-
Muscle memory probably kicks in quite quickly with that pin pad, whereas I actually have to memorize my PIN code (because my phone randomizes the pin pad). Although I use a separate encryption passphrase from the lock screen PIN at the moment.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
I suppose that if the passcode was sufficiently long, that information "leak" wouldn't even matter.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
Tweet je nedostupan.
-
-
what works for me as an iphone passphrase is the first letters of the words in some obscure poem. but, yes, the keyboard sucks. for the mac et alia, you might be amused byhttps://github.com/randyqx/public/blob/master/yubikey-static.md …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
Agreed. Great analysis. How long until Apple buys a GrayKey device and just patches the hole?
-
They seem to be very selective about who they sell to. Apple would have to get some police or intelligence agency to purchase one on their behalf somehow...
- Još 1 odgovor
Novi razgovor -
-
Tweet je nedostupan.
-
-
Verifiers SHOULD NOT impose other composition rules (e.g., requiring mixtures of different character types or prohibiting consecutively repeated characters) for memorized secrets. https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-63b.pdf …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
)