Last year someone demonstrated the possibility of dumping and restoring the state of the security hardware in between entry attempts, so that the phone always thought you were on your first try. I assume this is the technique being used by the GreyKey.
EDIT: Pretty sure this is the one I'm thinking of: https://www.digitaltrends.com/mobile/cambridge-researcher-ha...
I guess it was two years ago.