|
|
|
|
|
by throwawayReply
2987 days ago
|
|
1. A fingerprint is something you cannot change, cannot revoke if leaked and cannot be unique across different sites. 2. A fingerprint hash isn't a cryptographic hash because you need to be able to match to nearby matches. A small variation in input needs to have a small variation in the hash so a distance function can be applied. Those are terrible properties for a password. |
|
Many builders/carpenters/etc will tell you this is not true. People who work in abrasive environments sometimes without proper protection often temporarily have no fingerprints as they are "warn off".
Many injuries can effectively modify or remove the too, at least temporarily.
This makes them bad usernames as well as bad passwords.