• JRaccoon@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 month ago

    I think it depends. Some people might be inclined to use too short or simple password because they don’t wanna constantly be typing a long password. It’s much better to have a strong password and fingerprint/face rec for convince than just a insecure password.

    • CubitOom@infosec.pubOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 month ago

      In the USA, they can legally force you to unlock a device using biometrics.

      Also, biometrics can be fooled in other ways.

      • JRaccoon@discuss.tchncs.de
        link
        fedilink
        English
        arrow-up
        0
        ·
        1 month ago

        Yes, but that’s besides the point. If the convenient options for a normie user are

        • Having a weak password
        • Having a strong password and a fingerprint

        Out of those the fingerprint with a strong password is way better option, imo.

        In the USA, they can legally force you to unlock a device using biometrics.

        Also, how does that work? Can’t they legally force you to enter your password too? Or can you claim you don’t remember it? If that works, can’t you just have a band-aid on your finger or something? Surely they cannot force you to take it off and risk getting an infection on the large wound you just happened to get yesterday…?

        • 0x0@infosec.pub
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 month ago

          A normal user will most likely never encounter a situation where their weak password would be at risk, but are much more likely to having their biometrics forced by law enforcement or border control.

          They will rip your bandaid off and force your finger or face to scan while holding your device.

          Any weak password at all would have been better in a situation like that.

  • m-p{3}@lemmy.ca
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 month ago

    As soon as the word “convenient” is used, you know it will affect security.

    • hades@feddit.uk
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 month ago

      Yep, they technically didn’t claim it was to make it more secure.

        • Appoxo@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 month ago

          Belongs to the category.
          Which is correct, because it concerns security.

          Where else should they put it? Display? Sounds? Accounts?
          Accounts maybe for work profiles.