Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
bfulgham
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
1.
▲
by
bfulgham
6y ago
The point of the video was that when using the device as the authenticator, attestation reveals details of the phone (such as the unique private key used to prove the phone is valid to a manufacturer). The anonymous attestation authority he
2.
▲
by
bfulgham
6y ago
That's precisely what the attestation section of the talk describes. This is all part of the WebAuthentication standard.
3.
▲
by
bfulgham
6y ago
This is, of course, an active thread of discussion in the WebAuthentication working group.
4.
▲
by
bfulgham
6y ago
Correct. The key material is stored in the Secure Enclave.
5.
▲
by
bfulgham
6y ago
Yes there is. The video covers this clearly.
6.
▲
by
bfulgham
6y ago
You should pay special attention to the section about attestation, which is not something that is done in a privacy-focused way without an anonymous attestation authority (which is part of the iOS 14 feature)