Skip to content

Require PIN to use CS Factory Reset

Latest

Choose a tag to compare

@JurgenSchouppe JurgenSchouppe released this 15 Apr 15:57
  • Change suggested by the red4sec audit report - require PIN to execute Factory Reset.

Without this, the SafeKey could be maliciously cleared anytime from its data, assuming the user would confirm the disguised request by touching the device. Now the PIN is required for clearing (by requiring authenticated session).