Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I understand it's difficult to test against the actual Touch ID, since it has aggressive hardware-enforced cooldowns and other defensive tech.


So it's a lock that's too hard to pick to prove how easy it is to pick?


It should be easy on a phone you control. You can try five times quickly, then it stops accepting fingerprints until you put in the password. This is a major problem for an attacker, but if you're just researching it then you can put in the password to reenable fingerprint authentication and then get five more tries. You should be able to try 20-30 fingerprints per minute.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: