rene_mobile’s avatarrene_mobile’s Twitter Archive—№ 6,609

      1. …in reply to @dbph
        @dbph @moxie My ideal solution for such a problem (entropy stretching of user PIN/password) would be if the current Android backup infrastructure could already generalize. It has server-side secure elements with minimal attack surface and insider attack prevention built in from the start ...
    1. …in reply to @rene_mobile
      @dbph @moxie instead of the insane complexity of SGX. However, this is hard for different reasons and unfortunately not yet possible. Giving the protection afforded by Android backup to users' lockscreen knowledge factors to arbitrary third-party apps in a scalable way is really non-trivial.
  1. …in reply to @rene_mobile