• ramble81@lemm.ee
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 year ago

    Reading the article it doesn’t sound like it’s Microsoft’s issue but the vendor’s implementation and lack of using the secure communication protocol.

  • psudojo@infosec.pub
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 year ago

    im all for the something you have + something you are , pb&j relationship, but i dont think lathering biometrics on top is a good idea,far too many spy movies have shown Tom Cruise doing the MOST for pictures of eyeballs and fingerprints for me to ever trust this type of auth

    • Herowyn@jlai.lu
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 year ago

      The main issue with biometrics is that you can’t change them. If your fingerprints or retina are compromised you’re fucked.

        • Herowyn@jlai.lu
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          It doesn’t need to be physical breach. If it’s stored somewhere it can (and might) be accessed by someone else and reconstructed.

          • MostlyHarmless@sh.itjust.works
            link
            fedilink
            English
            arrow-up
            0
            arrow-down
            1
            ·
            1 year ago

            And still useless unless they also steal your phone. You are still safe from the hackers on the other side of the planet