1. 19
  1.  

  2. 6

    I was expecting to make a sarcastic “News at eleven” style comment, but instead I got very, very sad.

    1. 1

      Well, while interesting, this requires users to install an application.

      I find it somewhat more worrisome when information inserted into the dailer can be compromised through side channels such as sensors, which in the case of android requires no authorization to listen to and can not be turned of or feed invalid data. As such it seems trivial to capture pins and user ids that some organizations employ.

      https://blogs.ncl.ac.uk/security/2016/02/05/touchsignatures-identification-of-user-touch-actions-and-pins-based-on-mobile-sensor-data-via-javascript/