[TECHNICAL] Improve biometrical authentication security #4180
Labels
Estimation - 5 (L)
Feature request
p2-high
Escalation, on top of current planning, release blocker
Technical
Milestone
Improve the biometrical authentication to solve posible security problems.
Improve the mange of the onAuthenticationSucceeded result to prevent posible security leaks.
More info here: https://sec-consult.com/blog/detail/bypassing-android-biometric-authentication/
Manage the CryptoObject
Manage the CryptoObject obtained inside the result of the onAuthenticationSucceeded. You can find more info here:
https://medium.com/androiddevelopers/using-biometricprompt-with-cryptoobject-how-and-why-aace500ccdb7
https://developer.android.com/training/sign-in/biometric-auth#crypto
TASKS
onAuthenticationSucceeded
The text was updated successfully, but these errors were encountered: