• 1 Post
  • 78 Comments
Joined 8 months ago
cake
Cake day: July 10th, 2024

help-circle


  • In practice, yes. IF IMPLEMENTED PROPERLY it would be extremely unlikely for an attacker to get in.

    For example with a proper implementation of TOTP it would require an attacker to guess the correct number between 0 and 999999 in less than half a minute. Most services make you wait a little bit (often less than humans notice) between attempts and don’t allow infinite attempts, so an attacker would have to be unimaginably lucky.

    There are sadly lots of huge companies that DON’T IMPLEMENT 2FA PROPERLY. Sony Entertainment (account for PlayStation) for example. So a unique and long password is still important.










  • DoidFS can use the camera to take photos and record video. It gets stored in the vault instead of your camera roll. This ensures that other apps never get access to the photo/video, even if they have “all-files access”.

    Several other apps does some version of this. If you have tried to export a photo from Signal to your camera roll, you have probably seen this before.

    DroidFS does not ask for camera permission unless you try to use this feature. The app does not need the camera for anything else, so if you don’t allow it to use the camera everything else still works.