this post was submitted on 23 May 2025
279 points (98.3% liked)

Technology

70267 readers
3889 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 10 points 1 day ago (1 children)

Why do they need an app instead of just using cell tower data? I guess you just take a flip phone then.

[–] [email protected] 19 points 1 day ago* (last edited 1 day ago) (2 children)

Apps are easier, and they can design the app so they they query a list of all your other apps. They'll know if you used any encrypted messaging apps, so later they know to search your chat logs and you cannot have plausible deniability, since they'll know which exact apps you used (unless you use a second phone for your encrypted messaging apps).

If they make it mandatory, using a flip phone is gonna be breaking the law.

Edit:

Article says:

Using a mobile application that all foreigners will have to install on their smartphones, the Russian state will receive the following information:

  • Residence location
  • Fingerprint
  • Face photograph
  • Real-time geo-location monitoring

I think they are trying to verify that you actually have your phone with you, not just handing it to someone else and then sneak into a protest to create an alibi.

I speculate they will eventually randonly ping your phone and you're expected to tap the notification to verify you are indeed the person holding the phone via facial recognition. Like a "check-in" with a probation officer type of thing.

[–] [email protected] 7 points 1 day ago (3 children)

How would they gain your fingerprint? I didn't think iOS or Android actually passed that on to apps I thought the OS handled biometric authentication and just informed the app that the fingerprint matched?

[–] [email protected] 2 points 1 day ago

Looking original in telegram:

Tap for spoiler"Предложенной депутатами поправкой для иностранных граждан вводится: 📍 обязательная регистрация по месту нахождения; 📍 дактилоскопия; 📍 биометрическое фотографирование; 📍 мониторинг геолокации абонентских устройств." Or "The amendment proposed by the deputies introduces for foreign citizens: 📍 mandatory registration at the place of residence; 📍 fingerprinting; 📍 biometric photography; 📍 monitoring of the geolocation of subscriber devices."

it will just be collected throught immigration police not just throught the app.

[–] [email protected] 3 points 1 day ago (1 children)

Yes but the fingerprint wouldn't match would it so they don't actually have to see your fingerprint they just need to get the error back from the phone OS

[–] [email protected] 2 points 1 day ago (1 children)

Nothing stopping an exta fingerprint being registered though...

[–] [email protected] 2 points 1 day ago* (last edited 1 day ago) (1 children)

Changing the database of fingerprints can, if the app is properly configured, erase any "unlock token" stored on the phone.

I just tested this with KeepassDX on android. I deleted and re-added a fingerprint, the database that I had a fingerprint setup had relocked itself requiring the full password to be typed.

[–] [email protected] 1 points 1 day ago

Interesting, didn't know that. Do you think that different enough from a timeout / reboot requirement of code? Could the app tell?

[–] [email protected] 2 points 1 day ago

zero day exploits?

[–] [email protected] 1 points 1 day ago

Holy shit, this is insane. No sane person would put up with this