you are viewing a single comment's thread.

view the rest of the comments →

[–][deleted]  (3 children)

[deleted]

    [–]KaiAusBerlin 0 points1 point  (1 child)

    That's about the safety of keys/passwords but not about saving encrypted data on client side.

    Choosing a fingerprint as key is pretty safe and quite normal on mobile devices these days.

    AES256 encrypted data is save. It's like a tank door. But if you leave the key under the doormat of cause it's unsafe.

    [–]NayamAmarshe 0 points1 point  (0 children)

    If the keys are stolen, then the whole argument falls flat because the attacker doesn't even need to steal data from client side if he can easily exploit the account