Hacker News new | ask | show | jobs
by itistoday2 4134 days ago
> Encrypting them wouldn't add any security as the key for that cache would also be stored on the device.

That's why you use a user-derived key (i.e. based on the pin or w/e).