← Back to context

Comment by moonchrome

2 years ago

Seems simple to defend - use a password manager.

until you have to type your password to unlock it

  • High security safe locks have had protection against this for a long time: you press up/down arrows to move from a random starting digit to the correct digit.

    On screen pin entry with jumbled number mappings does the same thing. It also makes the inter-stroke delay rather independent of position, because the brain has to search the screen (although repeated digits and previously occuring digits are quicker, which is why some jumble at every keystroke).

    Keyboards with OLED keys (like the Apple Touchbar or the Optimus[1]) might also work.

    [1] https://www.artlebedev.com/optimus/popularis/

  • Biometric unlock or PIN ? I have to type my master password on restart, hopefully you can do that off screen.

  • your password manager hopefully uses an additional factor to enable it on a new device, so definitely avoid typing that in on Twitch