Categories: Security

Why Your Fingerprint Login May Not Be Safe

TouchID is a very exciting concept. To think: you can access your Android cell phone without having to deal with passwords, passcodes, picture matches, or trivia responses. Instead, you simply swipe your fingertip over the phone and log on in.

Unfortunately, fingerprint scanning may not be so safe and secure. When your biometric information is compromised, there is nothing you can do to change it. In fact, using fingerprint logins could put users at risk for identity theft. The Chaos Computer Club (CCC) revealed how Apple’s Touch ID could be easily tricked by very simple means. While this may not seem like a big deal, the application trickles down into other security issues.

Read More: Firmware Detected in Devices

If fingerprint scanning is the next big thing, what’s to stop someone from lifting your fingerprint and using it on far more than your cell phone? The CCC showed ways to work around the fingerprints — and that was back in 2004. Fast forward to 2016, and everything from tanning salons to the neighborhood gym are requiring fingerprint identification. While it’s great to think that you don’t need to worry if you forget your wallet or membership card, there’s a hidden danger.

When Yahoo had thousands of compromised email accounts, what did it do? Yahoo advised its users to change their passwords immediately. If you lose your wallet, what do you do? You call your bank, cancel your old card, and request a new one. But what happens when your biometric identity, in the form of your fingerprint, is stolen? What can you do then? Not much.

Studies (and hacker groups making a point) have repeatedly shown how these scanners can be fooled with something as simple as Play Doh. The best way to install biometrics for any company would be to include two-factor authentication. Users would need to provide more than a biometric scan. Rather, the scan would bring up a user ID that would then have to be verified with a second form of authentication. A masked user ID would help ensure a higher level of protection.

Until fingerprint login is more secure, keep your important apps away from snoops with PSafe Total. Its Applock feature provides password protection so no one can browse through your apps without your permission. What’s more — you can even protect your Facebook page, so your private messages stay that way.

PSafe Newsroom

The dfndr blog is an informative channel that presents exclusive content on security and privacy in the mobile and business world, with tips to keep users protected. Populated by a select group of expert reporters, the channel has a partnership with dfndr lab's security team. Together they bring you, first-notice news about attacks, scams, internet vulnerabilities, malware and everything affecting cybersecurity.

Recent Posts

How to identify a spy app on your smartphone

In the United States, the use of spyware apps is a growing concern, affecting mobile…

56 years ago

5 trending digital scams: how AI is making fraud more dangerous

Every day, millions of mobile phone users receive malicious links through SMS, email, or social…

56 years ago

Pix Gains Momentum Abroad: Convenience and Security for Brazilian Travelers

Travel is about new experiences — and making payments without hassle is a crucial part…

56 years ago

Malicious links: what they are and how to protect yourself

Every day, millions of  cell phone users receive malicious links via SMS, email, or social…

56 years ago

Zero Trust: what it is, why it matters, and how dfndr security protects your phone with this concept

Have you heard of Zero Trust? The term is one of the most  important trends…

56 years ago

5 Reasons to Use Biometrics to Secure Mobile Devices

Mobile devices have become essential tools in both our personal and professional lives, but they…

56 years ago