Microsoft’s Windows Hello fingerprint authentication has been bypassed

https://sopuli.xyz/post/6139709

Microsoft’s Windows Hello fingerprint authentication has been bypassed - Sopuli

This is why I use Linux, the fingerprint device wouldn’t be supported so this wouldn’t be an issue /s
The one on my Thinkpad works just fine :)
I got a T80s and the sensor doesn’t work.
I’ve got a T440p and I just set it up through the menu in the KDE settings, it worked right out of the box.
Mine’s not in libfprint, libfprint-tod, or libfprint-goodix.
Mmm yes security by non-functionality. A pillar of the modern cybersecurity framework.
Can’t hack a brick 🤷
But you can use a brick to hack windows.

But you can use a brick to hack windows

yes indeed, the good ol’ broken windows fallacy!

When you could have said crack, but instead said hack.
And this is why I am typing this on a 1921 Royal No. 10 typewriter.
Found Tom Hanks’s Lemmy account.
Works for my webcam. Tbh I’d like someone to hack it, would mean they would’ve written drivers for it
Nah I use fprint on my arch laptop so there is fingerprint login technology. Hopefully that doesn’t have security vulnerabilities.
It has vulnerabilities for sure. But they haven’t been found because no one cares about hacking you or the 1 other person on earth that use Arch and fingerprint security.
Security by obscurity lol
One of the major reasons I gave up on trying to run Linux on my laptop was lack of fingerprint reader support.

wouldn’t be supported so this wouldn’t be an issue

I did not expect that 😅

I have a Microsoft fingerprint reader that works fine on Linux lol
That’s funny, on my XPS Windows crashed when I tried adding a fingerprint. Works flawlessly under Arch.
Today I was fucking around with this shit. I can’t even update my distro, otherwise ecryptfs will go adios, and fingerprinting will be broken.
The fun thing about Linux is your realize physical control is ownership. You can just throw a Bootable Linux image with some utilities and remove the password from a Windows account in a second. If you really need to keep something safe, it has to be encrypted.

remove the password from a Windows account

That used to be true, but no longer works

Regardless, you can just read what’s on the disk anyway, so you don’t need to be able to log in.
Unless bitlocker is enabled by default, which is becoming more and more common

unfortunately

Unfortunately? How is encryption by default a bad thing? It’s amazingly good at protecting data from people who wouldn’t even know what encryption is.

The number of lost laptops in coffee shops protected by BitLocker is insane.

Correct answer.

Using any form of biometric ‘login’ under the US’s “justice” system is supremely ill-advised.