Hacker News new | ask | show | jobs
by MattPalmer1086 164 days ago
It seems malicious code on the phone can get the public key and thus derive the secret keys. This is weaker protection than PassKeys provide (would have to crack the hardware, not just software).