This matters a lot because people are constantly asking me if they should set up a duress passcode in order to fool law enforcement.
What has not been mentioned is the 100 mile border zone . Nearly two thirds of Americans live within this area where CBP had much greater powers.
@evacide if the citizen had no legal rights b/c he hadn't yet crossed the border & thus wasn't on USAmerican soil as they claim, wouldn't USAmerican authorities be outside their jurisdiction & couldn't have seized & interrogated anyone? Besides, even if their claim was true, which seems highly unlikely, why is a citizen held contained for maybe porn, when a rapist & child abuser reigns the country?
@evacide I want to state up front that I can not an American citizen. As such, I would never advise anyone going to the US to use a duress password. That’s just asking for trouble.
That said, this is certainly a troubling development and just reinforces that I never want to visit your country. I would have zero rights and they could do pretty much anything they wanted to me. A lot of modern privacy tech has the “encryption == criminal” in the eyes of law enforcement these days.
Law enforcement has used our private data to harm us not keep us safe
@evacide the winning move is not to play.
I.e. don't have any devices/data with you when you cross a US border.
Even better, if at all possible, don't cross a US border. It's a Kafkaesque twilight zone where you're currently at the mercy of an openly fascist executive branch
@evacide great #grapheneos advertisement. Good.
@evacide I set my phone up to shut down and stop doing Face ID if I press it on the side. That effectively locks it out because they’re not getting my password.
The fascist US thought police in action. Fuck this…
@evacide Just wondering if just denying that the password was a duress password and that some coincidental bug caused the device to be reset would be an effective tactic. Wouldn’t the government have to prove that the guy in fact had set a duress password? The defendant would have to perjure themselves if they testified, but in the absence of some kind of device trace that this was the reason for a device reset the prosecution evidence would solely be circumstantial.
@evacide I think you should set it up in any case... but providing it instead of the real one is an absolutely bad idea. Either don't provide or provide the correct one.
You can gamble on them trying certain common codes and if your duress pin is among these – lucky you. You can also use fingerprint+2F-PIN (e.g., 1234) as your primary method with a different PIN (e.g. 5678) as an alternative set up, and the duress PIN happen to be the same as the 2F-PIN (1234) and hope for the LEOs to "observe" you entering it – which may be blurry enough to convince a judge that you didn't trick them but they tricked themselves.
But the best way is to have no evidence in the first place, and as long as you can get away with wiping the device at a time were you can plausibly deny police being after you, you're in a good situation – but still, the judge may think otherwise.
However this is *obviously* trickery and not how duress PINs should be used, ever. *smh*