How law enforcement is trying to avoid disabling Face ID
9to5mac.com
9to5mac.com
Though practically, I doubt many people will want to scrunch their face each time.
I actually thought I did at first, and was a bit annoyed. But it turned out I was just holding the phone far too close to my face when I didn’t have glasses on.
If I understand current law, one cannot be forced to supply a password or passcode because of 5th Amendment rights against forced, potentially self-incriminatory speech.
A fingerprint is regarded differently. You can be forced to supply a fingerprint because it is something you are, not something you know, the latter being speech which cannot be compelled.
One could use biometrics like facial recognition and still enjoy 5th Amendment protections if a sequence of facial gestures were required to unlock a phone. While the biometric features comprising the sequence are indeed something you are, the sequence is something you know, and constitutes speech, which you cannot be compelled to supply.
So yeah, Officer - I'll stare at my iPhone for as long as you like. It won't unlock until I blink my right eye twice within 1 second and raise my left eyebrow immediately thereafter.
edit to add missing word
New step one when seizing an iphone: wrap it in something opaque...
Passcode requirements are pretty opaque though - as is, my Android and iOS devices ask for passcode (vs biometrics) randomly (from my perspective). Would be nice to have proper documentation of all the conditions that force passcode entry.
- after you restart your iPhone, iPad, or Mac;
- when more than 48 hours have passed from the last time you unlocked your device;
to add or delete a fingerprint to use with Touch ID;
- to change the iPhone or iPad passcode or Mac system password, and for other security settings like FileVault on your Mac;
- when there have been more than five unrecognized Touch ID authorization attempts in a row;
- after you log out of your Mac.
https://support.apple.com/en-us/HT204587
Face ID has the same document:
Either way, I think we need to be taking this more seriously - most international borders require you now to take a picture. But forget countries, Disneyland now takes your picture by having an employee point an iPhone at you, a device equipped theoretically with the same technologies to reproduce whatever face data is necessary to get into your phone. To me, the “triumph” of FaceID and TouchID is analogous to Apple having “solved” the password problem by just auto-selecting “123” for everyone. Part of the responsibility of privacy protection is in the culture you build and how you implicitly educate your user through your designs. Apple bends over backwards telling everyone how crazy secure FaceID is, while potentially setting them up to have their data entered into incredibly easily when dealing with the most dangerous adversaries.
There was a great opportunity here to make a great feature that also educated the user: FaceID could have for example been an Apple Wallet feature. Credit Cards are a system built to expect fraud. They are expected to be stolen, and that’s why they build in a system to reverse charges. Telling a user that an Apple Pay charge can be quick and painless with FaceID (and avoid a full phone unlock) since the danger is not permanent would have still been more convenient than before. At the same time, by requiring the user to type a full password to access their data, the user would implicitly be taught that data theft is for some reason more dangerous, and thus begin to build the same intuitions computer-literate users have. In fact, if all the user did was use FaceID for their credit cards and no password for their photos, it would account for most of “normal” people’s security concerns, without also inadvertently confusing the security conversation where activists may not know the proper way to secure their data.
I'm a little surprised that was mentioned in the article.
Security is a continuum.
How absolute do you think this is?
In the U.K. this would be an illustration that your face and/or fingerprints are passwords as the police can compel you to give any of them (or go to jail), including passwords that you don’t know.
There was recently a story of a married couple flying. The wife thought the husband was cheating, so after he fell asleep, she unlocked his phone right there and read everything. She didn't handle the news well.
Either way if you're paranoid about security you should use a passcode on top to boot.
Eyes closed, or even eyes looking away, and it just doesn't unlock in my experience.
The best advice if you think you're about to be stopped and have a digital device confiscated is to shut it down, requiring a passcode to open.
That disables biometrics at least on iPhone 7
- open the deceased's eyes
- position the eyes so that Face ID thinks the eyes are "looking into" the iPhone
- pump warm blood/liquid into the deceased's face in order to fool the infrared temperate monitoring
Seems possible, but sounds like an awful lot of work unless you did something that law enforcement really wants to look into.
And from my spy movie expertise:
Turn the heater in the room full blast to achieve the needed thermal level (The Saint, Sneakers)
It's not that OP worries they might be doing something sketchy enough that law enforcement would go through those lengths. The issue is that Face ID's difficulty to crack is a function of time, not knowledge. Thus, it is not the holy grail we seek, and if you have anything of interest on your phone, whether political, corporate or just illegal, it's not even an option if you wish to secure your system.
I’m much more worried about a court compelling me, while alive, to provide my face or fingerprint. They can easily force biometrics out of me, but they’d have to torture a passcode out. Even if I have nothing to hide and/or give it up in the first five minutes at least that was my choice and not one made for me.
You might have something on your device that incriminates another, living, person.
Could access Employee/Employer/Client Data?
Open the password manager with access to vendor/company login info, ssh keys. Could access company systems with access to more data. Could change data/commit code etc to those systems remotely/temporarily.
Be able to open 2 factor apps that could enable access to financial info (tax/theft etc), which could hurt loved ones/heirs. If you were an investment advisor/trader the offender could make trades/wire money on client accounts.
I think law enforcement is one concern but a wealthier/powerful user could attract other parties.
If you died over a long holiday weekend or vacation, that access could go undetected long enough to have consequences.
Yeah, but you probably want to avoid creating software-based incentives where some people would prefer other people to be dead.
No, I'm not aware of any thermal sensor used for FaceID. It builds an image of your face using an IR camera paired with an IR projector just like the first generation Kinect (made by PrimeSense that was bought by Apple in 2013). Keep in mind that this is near IR, not far IR that's used in thermal imaging.
No one tries this sort of thing on people or animals, and it's because they don't shut their perceptions off at all times except for a half second when they are authenticating someone.
Courts take an extremely dim view of the willful destruction of evidence.
However a self destruct mechanism that is either on a rolling timer or event driven for which you don’t need to take an action to initiate it but must take an action to stop it could be a legal loophole but it sure won’t look good in court.
It would be nice if it were even easier. E.g a triple click of the power button — something that you could do with one hand in your pocket in less than a second.