<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Android screen lock bests&#160;FBI</title>
	<atom:link href="http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html/feed" rel="self" type="application/rss+xml" />
	<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html</link>
	<description>Brain candy for Happy Mutants</description>
	<lastBuildDate>Sat, 18 May 2013 17:22:00 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.1</generator>
	<item>
		<title>By: OoerictoO</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1373668</link>
		<dc:creator>OoerictoO</dc:creator>
		<pubDate>Mon, 19 Mar 2012 16:09:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1373668</guid>
		<description>or they could have just compelled the user to reveal their password/pattern.  recent precedents show this does not fall under 5th amendment protection.  which is a farce, IMO.  and yeah, what others said about recovery mode backup...

didn&#039;t we have this conversation last week?</description>
		<content:encoded><![CDATA[<p>or they could have just compelled the user to reveal their password/pattern.  recent precedents show this does not fall under 5th amendment protection.  which is a farce, IMO.  and yeah, what others said about recovery mode backup&#8230;</p>
<p>didn&#8217;t we have this conversation last week?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Deep Thought Lab</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372915</link>
		<dc:creator>Deep Thought Lab</dc:creator>
		<pubDate>Sat, 17 Mar 2012 17:09:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372915</guid>
		<description>Hey, we found a simple way to gain unlimited attempts at gesture unlocking an Android phone and shot a video walk-though. If the FBI had done this, they would not have to have subpoenaed Google for the phone owner&#039;s credentials. Here&#039;s our write-up:  http://blog.deepthoughtlab.com/2012/03/how-to-gain-unlimited-android-gesture.html</description>
		<content:encoded><![CDATA[<p>Hey, we found a simple way to gain unlimited attempts at gesture unlocking an Android phone and shot a video walk-though. If the FBI had done this, they would not have to have subpoenaed Google for the phone owner&#8217;s credentials. Here&#8217;s our write-up:  <a href="http://blog.deepthoughtlab.com/2012/03/how-to-gain-unlimited-android-gesture.html" rel="nofollow">http://blog.deepthoughtlab.com/2012/03/how-to-gain-unlimited-android-gesture.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: conor rynne</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372621</link>
		<dc:creator>conor rynne</dc:creator>
		<pubDate>Sat, 17 Mar 2012 02:02:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372621</guid>
		<description> could it possibly be hosted at Google?</description>
		<content:encoded><![CDATA[<p> could it possibly be hosted at Google?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: liveTexas</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372546</link>
		<dc:creator>liveTexas</dc:creator>
		<pubDate>Fri, 16 Mar 2012 23:53:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372546</guid>
		<description>Why is everyone pointing out Their &quot;unlocking strategy&quot;?
Write an App &amp; use AdWords or something !</description>
		<content:encoded><![CDATA[<p>Why is everyone pointing out Their &#8220;unlocking strategy&#8221;?<br />
Write an App &amp; use AdWords or something !</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: wysinwyg</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372294</link>
		<dc:creator>wysinwyg</dc:creator>
		<pubDate>Fri, 16 Mar 2012 20:01:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372294</guid>
		<description> RTFA.
&lt;blockquote&gt; Entering repeated incorrect patterns will cause a lock-out, requiring a Google e-mail login and password to override. Without the Google e-mail login and password, the cellular telephone’s memory can not be accessed. &lt;em&gt;Obtaining this information from Google, per the issuance of this search warrant, will allow law enforcement to gain access to the contents of the memory of the cellular telephone in question.&lt;/em&gt;&lt;/blockquote&gt;</description>
		<content:encoded><![CDATA[<p> RTFA.</p>
<blockquote><p> Entering repeated incorrect patterns will cause a lock-out, requiring a Google e-mail login and password to override. Without the Google e-mail login and password, the cellular telephone’s memory can not be accessed. <em>Obtaining this information from Google, per the issuance of this search warrant, will allow law enforcement to gain access to the contents of the memory of the cellular telephone in question.</em></p></blockquote>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mattias Björkas</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372216</link>
		<dc:creator>Mattias Björkas</dc:creator>
		<pubDate>Fri, 16 Mar 2012 18:24:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372216</guid>
		<description>I have always wondered why the Android phone lock is designed the way it is. Even if you catch an unintentional glimpse of the screen when it&#039;s being unlocked by someone, the colourful, graphichal representation of the swipe pattern simply becomes etched into your retina, after which you can easily replicate the swipe. This is a fun feature if the person unlocking is a friend, but if not, I only feel uncomfortably tempted to move into the world crime.</description>
		<content:encoded><![CDATA[<p>I have always wondered why the Android phone lock is designed the way it is. Even if you catch an unintentional glimpse of the screen when it&#8217;s being unlocked by someone, the colourful, graphichal representation of the swipe pattern simply becomes etched into your retina, after which you can easily replicate the swipe. This is a fun feature if the person unlocking is a friend, but if not, I only feel uncomfortably tempted to move into the world crime.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eugene Medvedev</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372175</link>
		<dc:creator>Eugene Medvedev</dc:creator>
		<pubDate>Fri, 16 Mar 2012 17:39:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372175</guid>
		<description>From the digital forensics POV this should be the preferred method in the first place, since software can&#039;t decide the phone is compromised and wipe everything if you imaged the whole thing.</description>
		<content:encoded><![CDATA[<p>From the digital forensics POV this should be the preferred method in the first place, since software can&#8217;t decide the phone is compromised and wipe everything if you imaged the whole thing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: lyd</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372137</link>
		<dc:creator>lyd</dc:creator>
		<pubDate>Fri, 16 Mar 2012 16:28:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372137</guid>
		<description>The lockout after 5 attempts prompts you to reset the lock by entering your google account creds.  Why wouldn&#039;t the FBI just subpoena google to surrender the account info?</description>
		<content:encoded><![CDATA[<p>The lockout after 5 attempts prompts you to reset the lock by entering your google account creds.  Why wouldn&#8217;t the FBI just subpoena google to surrender the account info?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: phisrow</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372076</link>
		<dc:creator>phisrow</dc:creator>
		<pubDate>Fri, 16 Mar 2012 14:50:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372076</guid>
		<description>The key to the encrypted blob is still on the phone somewhere(the swipe-unlock doesn&#039;t provide enough entropy for a crypto key, so most or all of the key has to be stored somewhere).
Now, depending on implementation, the stored key might be in tamper resistant memory of some kind, and liable to nuke itself if you start poking around where you don&#039;t belong...</description>
		<content:encoded><![CDATA[<p>The key to the encrypted blob is still on the phone somewhere(the swipe-unlock doesn&#8217;t provide enough entropy for a crypto key, so most or all of the key has to be stored somewhere).<br />
Now, depending on implementation, the stored key might be in tamper resistant memory of some kind, and liable to nuke itself if you start poking around where you don&#8217;t belong&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: failquail</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1372023</link>
		<dc:creator>failquail</dc:creator>
		<pubDate>Fri, 16 Mar 2012 13:26:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1372023</guid>
		<description>I was about to post something similar myself.

It&#039;s quite easy to dump image files of the internal storage to sdcard.
Of course then it&#039;s a bit more involved getting the data you want from that, but certainly not impossible.</description>
		<content:encoded><![CDATA[<p>I was about to post something similar myself.</p>
<p>It&#8217;s quite easy to dump image files of the internal storage to sdcard.<br />
Of course then it&#8217;s a bit more involved getting the data you want from that, but certainly not impossible.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SamSam</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371980</link>
		<dc:creator>SamSam</dc:creator>
		<pubDate>Fri, 16 Mar 2012 12:15:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371980</guid>
		<description>Yeah... that&#039;s totally like that movie, where the FBI didn&#039;t know the guy&#039;s password and I was like &quot;Really FBI? I &lt;i&gt;saw&lt;/i&gt; the guy type &quot;swordfish&quot; in the first &lt;i&gt;five minutes of the movie!!!&lt;/i&gt; Weren&#039;t you guys paying attention?&quot;</description>
		<content:encoded><![CDATA[<p>Yeah&#8230; that&#8217;s totally like that movie, where the FBI didn&#8217;t know the guy&#8217;s password and I was like &#8220;Really FBI? I <i>saw</i> the guy type &#8220;swordfish&#8221; in the first <i>five minutes of the movie!!!</i> Weren&#8217;t you guys paying attention?&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jackie31337</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371957</link>
		<dc:creator>jackie31337</dc:creator>
		<pubDate>Fri, 16 Mar 2012 10:45:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371957</guid>
		<description>Really, FBI? My daughter was able to defeat the screen lock on my husband&#039;s tablet when she was 7. She just watched him unlock it and copied the pattern. His finger grease on the screen probably helped, too.</description>
		<content:encoded><![CDATA[<p>Really, FBI? My daughter was able to defeat the screen lock on my husband&#8217;s tablet when she was 7. She just watched him unlock it and copied the pattern. His finger grease on the screen probably helped, too.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eugene Medvedev</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371946</link>
		<dc:creator>Eugene Medvedev</dc:creator>
		<pubDate>Fri, 16 Mar 2012 10:05:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371946</guid>
		<description>I don&#039;t understand how exactly did they manage not to open it, am I missing something?...
Encrypted storage or not, all Android phones can boot into recovery mode. While in recovery mode, a custom recovery image, usually used when rooting and customizing, can be installed. That custom recovery image allows one to back up the entire internal memory onto the SD card, and it also allows you to mount the SD card and get that backup off it without ever booting far enough to get the pattern lock. And you usually can just remove the SD card and read it separately.Even without replacing the recovery image, with most models you should be able to backup all the data with ADB once you boot into recovery mode and unlock debug functions with the ADK, why couldn&#039;t they do that?</description>
		<content:encoded><![CDATA[<p>I don&#8217;t understand how exactly did they manage not to open it, am I missing something?&#8230;<br />
Encrypted storage or not, all Android phones can boot into recovery mode. While in recovery mode, a custom recovery image, usually used when rooting and customizing, can be installed. That custom recovery image allows one to back up the entire internal memory onto the SD card, and it also allows you to mount the SD card and get that backup off it without ever booting far enough to get the pattern lock. And you usually can just remove the SD card and read it separately.Even without replacing the recovery image, with most models you should be able to backup all the data with ADB once you boot into recovery mode and unlock debug functions with the ADK, why couldn&#8217;t they do that?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: digi_owl</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371940</link>
		<dc:creator>digi_owl</dc:creator>
		<pubDate>Fri, 16 Mar 2012 09:36:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371940</guid>
		<description>reminds me of the old trick about the worn out buttons on a keypad. Sure, your missing the sequence. But you have strongly reduced the number of combinations.</description>
		<content:encoded><![CDATA[<p>reminds me of the old trick about the worn out buttons on a keypad. Sure, your missing the sequence. But you have strongly reduced the number of combinations.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Steve Mayne</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371939</link>
		<dc:creator>Steve Mayne</dc:creator>
		<pubDate>Fri, 16 Mar 2012 09:31:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371939</guid>
		<description>Not to mention that modern Android phones have the option to encrypt their entire storage - so dismantling the phone wouldn&#039;t get them any closer to their goal.  </description>
		<content:encoded><![CDATA[<p>Not to mention that modern Android phones have the option to encrypt their entire storage &#8211; so dismantling the phone wouldn&#8217;t get them any closer to their goal.  </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: elix</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371811</link>
		<dc:creator>elix</dc:creator>
		<pubDate>Fri, 16 Mar 2012 04:09:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371811</guid>
		<description>I guess they haven&#039;t heard of &lt;a href=&quot;http://xkcd.com/538/&quot; rel=&quot;nofollow&quot;&gt;the crescent wrench cipher&lt;/a&gt;...</description>
		<content:encoded><![CDATA[<p>I guess they haven&#8217;t heard of <a href="http://xkcd.com/538/" rel="nofollow">the crescent wrench cipher</a>&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shashwath T.R.</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371800</link>
		<dc:creator>Shashwath T.R.</dc:creator>
		<pubDate>Fri, 16 Mar 2012 03:45:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371800</guid>
		<description>No, that&#039;s not security by obscurity - a password is a secret, but the method by which it works is not obscure by any means.

Using (say) RSA keys is not security by obscurity, but using your own made up cryptographic system would be...</description>
		<content:encoded><![CDATA[<p>No, that&#8217;s not security by obscurity &#8211; a password is a secret, but the method by which it works is not obscure by any means.</p>
<p>Using (say) RSA keys is not security by obscurity, but using your own made up cryptographic system would be&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jhoosier</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371746</link>
		<dc:creator>jhoosier</dc:creator>
		<pubDate>Fri, 16 Mar 2012 02:21:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371746</guid>
		<description>Only if you hadn&#039;t done anything after unlocking it.  It&#039;s easily solved by wiping it on your pants, shirt, palm, whatever.</description>
		<content:encoded><![CDATA[<p>Only if you hadn&#8217;t done anything after unlocking it.  It&#8217;s easily solved by wiping it on your pants, shirt, palm, whatever.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MelSkunk</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371707</link>
		<dc:creator>MelSkunk</dc:creator>
		<pubDate>Fri, 16 Mar 2012 01:03:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371707</guid>
		<description>This is exactly why I clean my phone screen often. </description>
		<content:encoded><![CDATA[<p>This is exactly why I clean my phone screen often. </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Douglas Gardner</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371696</link>
		<dc:creator>Douglas Gardner</dc:creator>
		<pubDate>Fri, 16 Mar 2012 00:50:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371696</guid>
		<description>Couldn&#039;t they just look at the grease smears invariably left on the phone?</description>
		<content:encoded><![CDATA[<p>Couldn&#8217;t they just look at the grease smears invariably left on the phone?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel Friesen</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371678</link>
		<dc:creator>Daniel Friesen</dc:creator>
		<pubDate>Fri, 16 Mar 2012 00:22:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371678</guid>
		<description>Every security system relies on some form of obscurity. Passwords, keys, and patterns are not security by obscurity.

That said... the real downside to pattern unlock is sometimes you can find out the pattern just by looking at the grease smudges on the phone.</description>
		<content:encoded><![CDATA[<p>Every security system relies on some form of obscurity. Passwords, keys, and patterns are not security by obscurity.</p>
<p>That said&#8230; the real downside to pattern unlock is sometimes you can find out the pattern just by looking at the grease smudges on the phone.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: haineux</title>
		<link>http://boingboing.net/2012/03/15/anrdoid-screen-lock-bests-fbi.html#comment-1371653</link>
		<dc:creator>haineux</dc:creator>
		<pubDate>Thu, 15 Mar 2012 23:33:00 +0000</pubDate>
		<guid isPermaLink="false">http://boingboing.net/?p=149497#comment-1371653</guid>
		<description>Even if they are, technically, &quot;Security by obscurity,&quot; sufficiently difficult computer security schemes rapidly cause people to switch to another attack mode, in this case, judicial.</description>
		<content:encoded><![CDATA[<p>Even if they are, technically, &#8220;Security by obscurity,&#8221; sufficiently difficult computer security schemes rapidly cause people to switch to another attack mode, in this case, judicial.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
