|
|
|
|
|
by ircdrone
2538 days ago
|
|
Specifically, how is a pin which is usually shorter, more secure than a password? Or how is it different from a password if it has the same characteristics? Edit: to me it seems like microsoft is using a password for their cloud account, and a rebranded password for offline access. |
|
It changes the threat model from "knows password" to "knows PIN and has physical access to user's device".
ETA: Something the article should probably have better underscored was Microsoft was specifically talking about "Windows Hello" PIN entry rather than PIN usage in general.