#badusb

Guessing app's PIN using Flipper Zero as #BadUSB This "App Locker" app protects access to user selected apps - in this case, Instagram - using PIN code. It is possible to guess it with unlimited attempts, because the app developers haven't implemented brute-force protection and even timeout after few incorrect entered passwords. The app only allows to set 4 digit PIN. This allows us to try 10,000 PINs with unlimited attempts. After every try is 0.5 second delay. Because of that, it would take us 84 minutes to rotate through all the PIN combinations. ✅If you decide to use such an app lock protector, make sure not to use easy to guess and common passwords. If you are a developer, I advise you to implement a brute-force protection that includes timeout. #FlipperZero #Android #bruteforce
Mobile Hacker220,922 views • 2 years ago
No more content to load
