Hey, I am also on that Mastodon thing where all the cool peeps are moving! Mutuals already there, feel free to follow and I will follow you back :)
For some toots: @[email protected] https://t.co/R02NHa4Ubx
hey, I have decided I will be perma-deactivating my account in the next 24hrs. this is unrelated to the stuff happening on twitter itself, but more of a personal choice/mental health related. if you want to reach out, you probably know how. so long, and thanks for all the fish ☺️
@NoTubeZone@f4micom Hmm those in particular use the lockscreen itself, we are talking about apps the merchants would run on their phone to collect money from a purchaser, like in a store. When a transaction is above the card limit, it needs to request a CVM such as PIN through a custom keyboard…
@_xs@f4micom Yes, this is very true. I have seen implementations that use external seeding on mobile devices as well, given that the comms channel is considered secure enough to transfer seeds. It's a nice technique indeed :)
@f4micom The same goes for the camera (image tilt and angle of inclination), the gyroscope and accelerometer, as these (isolated or combined) can bring representative data as to how a screen is being pressed
@f4micom I work in the mobile payments security industry, and one interesting attack is abusing the microphone of a smartphone that's being used as a PoS to detect where the user placed their finger on a PIN pad shown on the screen.. That's just one more example of side-channel attacks :)