Seems like what’s needed is the ability to load an alternate profile or some kind of demo mode based on the pin. Something that looks normal but doesn’t have any info you don’t want others to see, without actually deleting anything.
Dont think that would be as secure. Once a phone has been unlocked after reboot, even if it has been locked again, the operating system and ram can be accessed quite easily with the correct tools and border controls have those tools.
Even a Graphene phone is only properly secure before first unlock after reboot. So i would not personally rely on allowing acess to any profile. I would assume its possible, (probably trivial) to gain complete access from there.
Any duress pin use should be covered under a person’s right to avoid self incrimination.
If the phone is owned by your employer and they are the investigation target, then you might be on dodgy ground.
I had this feature on a Xiaomi phone that i had a few years ago. I could even set up the fingerprint reader to open a different profile depending on which finger i used.
Alternately, a user profile that isn’t displayed anywhere, but accessible only through a specific PIN, maybe. Not sure how you’d explain the storage space either option used, however.
I think the point is that if you load an empty profile (no photos, no videos, no apps, etc) but your phone storage is nearly full, it could throw up a red flag.
Seems like what’s needed is the ability to load an alternate profile or some kind of demo mode based on the pin. Something that looks normal but doesn’t have any info you don’t want others to see, without actually deleting anything.
Dont think that would be as secure. Once a phone has been unlocked after reboot, even if it has been locked again, the operating system and ram can be accessed quite easily with the correct tools and border controls have those tools.
Even a Graphene phone is only properly secure before first unlock after reboot. So i would not personally rely on allowing acess to any profile. I would assume its possible, (probably trivial) to gain complete access from there.
Any duress pin use should be covered under a person’s right to avoid self incrimination.
If the phone is owned by your employer and they are the investigation target, then you might be on dodgy ground.
I had this feature on a Xiaomi phone that i had a few years ago. I could even set up the fingerprint reader to open a different profile depending on which finger i used.
Sounds awesome.
Or loads a dummy profile and deletes other profiles without giving away what is happening.
Alternately, a user profile that isn’t displayed anywhere, but accessible only through a specific PIN, maybe. Not sure how you’d explain the storage space either option used, however.
It should work like truecrypt used to where there’s no sign some of the encrypted blob is not actually visible in the fake os.
I think the point is that if you load an empty profile (no photos, no videos, no apps, etc) but your phone storage is nearly full, it could throw up a red flag.