Hacker News new | ask | show | jobs
by blaincate 3203 days ago
Just Realized : Face recognition unlock : Biggest Security Scare

- Case 1 : Imagine crossing security check or border crossing. Guards just take your phone and point it to you : UNLOCKED . No need to resis to give passwd

- Case 2 : drug the activist and point unconscious victim ! Voila !

- Case 3 : Steal the phone, and change the cover and flash it in front of the real owner !

could go on and on ...

3 comments

Case 1 and 2 are covered with FaceID - you have to be actively looking at the phone, drugged/eyes closed/looking away/etc. won't cut it.
> drugged eyes won't cut it.

This seems extremely inconvenient for binge drinkers* that need to Uber home or call a friend.

*or light drug users

You can always back up to your password (at least, with TouchID).
Case 1: "Look at the phone straight-ahead with your eyes or we'll beat you with the rubber-hose again"

Case 2: Hold open the eyelids with tape. Even if the eyes have rolled-back in their sockets they can be re-positioned with some manual adjustment enough to get the system to work.

Isn't Case 1 an attack on every possible method?
Case3: Give me you password or I beat you again.

How is this different?

For case 2 - I believe your eyes need to be open for this to work.

For case 1 - you can disable faceID prior to crossing borders.

Not sure why you're being downvoted.