Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Dan Goodin
Dan Goodin
@dangoodin@infosec.exchange  ·  activity timestamp 2 days ago

Am I the only journalist who would opt to go to jail rather than provide my biometrics to open a device when raided by law enforcement?

  • Copy link
  • Flag this post
  • Block
Bert Driehuis
Bert Driehuis
@bertdriehuis@infosec.exchange replied  ·  activity timestamp yesterday

@dangoodin I've been pulled over for a minor traffic violation when I got lost in Michigan's highway system twenty years ago, and found that a harrowing experience. I can't imagine what it would feel like to be arrested as an enemy of the state. But I know one thing: I'm not going to be a hero.

  • Copy link
  • Flag this comment
  • Block
Dan Gillmor
Dan Gillmor
@dangillmor@mastodon.social replied  ·  activity timestamp yesterday

@dangoodin In the case of the Washington Post reporter, reading between the lines says they forced her to provide biomentric logon.

  • Copy link
  • Flag this comment
  • Block
Umbrella
Umbrella
@umbrella@aus.social replied  ·  activity timestamp yesterday

@dangillmor @dangoodin the biometric login was on a MacBook Pro with fingerprint sensor login. The iPhone with lockdown mode enabled was inaccessible to the FBI. Looks like the MacBook didn’t have lockdown mode enabled.

  • Copy link
  • Flag this comment
  • Block
scribbler
scribbler
@scribbler@mastodon.social replied  ·  activity timestamp yesterday

@dangoodin @dangillmor People need to stop using biometrics as a password...

  • Copy link
  • Flag this comment
  • Block
orbman
orbman
@orbman@infosec.exchange replied  ·  activity timestamp yesterday

@dangoodin BTW you can quickly and disable #biometrics in #emergency on #iPhone, most people don’t know about this simple trick https://www.macrumors.com/how-to/disable-touch-id-face-id-ios-11/

Update: With newer iOS versions, you might want to go into Settings (search “SOS”) and consider disabling automatic calling, depending on what kind of emergency you expect..

  • Copy link
  • Flag this comment
  • Block
Fuse Views
Fuse Views
@TimePencil@infosec.exchange replied  ·  activity timestamp 2 days ago

@dangoodin wrote,
"Am I the only journalist who would opt to go to jail rather than provide my biometrics to open a device when raided by law enforcement?"

These days, Dan, it would be fair enough for you to ask, simply,
"Am I the only journalist?"

  • Copy link
  • Flag this comment
  • Block
Claus Cramon Houmann
Claus Cramon Houmann
@claushoumann@mastodon.social replied  ·  activity timestamp 2 days ago

@dangoodin I think @dangillmor would too

  • Copy link
  • Flag this comment
  • Block
Victor Forberger
Victor Forberger
@vforberger@fosstodon.org replied  ·  activity timestamp 2 days ago

@dangoodin

You don't go to jail, because you cannot refuse. Police can physically force you to press your finger or look at a screen.

  • Copy link
  • Flag this comment
  • Block
Pseudonymous :antiverified:
Pseudonymous :antiverified:
@VictimOfSimony@infosec.exchange replied  ·  activity timestamp 2 days ago

@dangoodin

The current U.S. law is that the judge can order your phone to be biometrically unlocked by force but can't force you to give the password. Use 2F with a password or P.I.N. as one of the two factors. There are phones with a fingerprint reader on the back that you can put a pointer on while your thumb hits the P.I.N. numbers, which is a reasonable method with both involved. blobcatthinksmart

  • Copy link
  • Flag this comment
  • Block
lor
lor
@lor@goingdark.social replied  ·  activity timestamp 2 days ago

@dangoodin

Lockdown Mode works.

Anyone who is in a position where their device may be raided, ie journalists need to turn off biometrics and when not using their phone place it in Lockdown mode, this is the new reality.

I would also recommend using a private browser, private chat and private email. Do not use anything that is scanning your docs for content.

https://www.404media.co/fbi-couldnt-get-into-wapo-reporters-iphone-because-it-had-lockdown-mode-enabled/

404 Media

FBI Couldn’t Get into WaPo Reporter’s iPhone Because It Had Lockdown Mode Enabled

Lockdown Mode is a sometimes overlooked feature of Apple devices that broadly make them harder to hack. A court record indicates the feature might be effective at stopping third parties unlocking someone's device. At least for now.
  • Copy link
  • Flag this comment
  • Block
tom jennings
tom jennings
@tomjennings@tldr.nettime.org replied  ·  activity timestamp 2 days ago

@dangoodin

Better to be a [person] that doesn't use biometrics on a device that might get seized!

  • Copy link
  • Flag this comment
  • Block
Fritz Adalis
Fritz Adalis
@FritzAdalis@infosec.exchange replied  ·  activity timestamp 2 days ago

@dangoodin
One of few, sadly.

  • Copy link
  • Flag this comment
  • Block
Kow
Kow
@Kow@infosec.exchange replied  ·  activity timestamp 2 days ago

@dangoodin you don't have to be willing for the biometrics to work. Opt for a password when possible

  • Copy link
  • Flag this comment
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.2-alpha.7 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct