You're looking at Less Wrong's discussion board. This includes all posts, including those that haven't been promoted to the front page yet. For more information, see About Less Wrong.

Decius comments on [LINK] Using procedural memory to thwart "rubber-hose cryptanalysis" - Less Wrong Discussion

3 Post author: shminux 19 July 2012 11:54PM

You are viewing a comment permalink. View the original post to see all comments and the full post content.

Comments (15)

You are viewing a single comment's thread.

Comment author: Decius 20 July 2012 03:13:39AM 0 points [-]

The biggest flaw I can see is that it becomes trivial to forget your password. The system is thus only as secure as the backup system.

Comment author: Lapsed_Lurker 20 July 2012 08:40:47AM 0 points [-]

I think that the intention is to make forgetting your password as hard as forgetting how to ride a bicycle. Although I only remember the figure of '2 weeks' from reading about this yesterday.

Comment author: Decius 20 July 2012 05:41:48PM 0 points [-]

It's only as valid as identifying someone by how they ride their bicycle. Any number of neurological factors, including fatigue, could change how someone enters the 'password' provided.