Hacker News new | ask | show | jobs
by durazabu 822 days ago
Biometrics like fingerprint scans can only be used as a username, not a password. Reusing passwords is a bad practice and having 200 different biometrics for 200 different services is not realistic. As soon as your fingerprint that you registered on your lost phone is leaked you will be in a world of trouble if you use it for other services. (Also biometrics can change with time)
2 comments

Biometrics are never a good idea in general.

You can be court ordered/forced to put your thumb on the home button.

You can’t be forced to remember a password you “forgot” ;)

You can be jailed until you remember.
You’re missing the point. Even doing that, they still don’t have access.
That makes sense - maybe something closer to a passphrase-protected SIM could work?
Passkeys.