• NotKyloRen
    link
    fedilink
    arrow-up
    28
    arrow-down
    1
    ·
    8 days ago

    Do a restart (even if you have to hold the power button for 10 seconds). Because at initial boot state, the contents of your phone are encrypted. Any unlocks after the initial unlock, your phone is decrypted and the key is in RAM. Only a password/pin (no fingerprint/FaceID/etc) can be used to decrypt your data.

    In lockdown mode, my understanding is that you’re simply disabling biometrics (but not encrypting anything).

    • Ulrich@feddit.org
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      2
      ·
      8 days ago

      Using lockdown is the same thing as restarting, it puts it into a BFU state.

      • NotKyloRen
        link
        fedilink
        arrow-up
        3
        ·
        8 days ago

        Evidence/source? My understanding is you inherently cannot go back to BFU (before first unlock) state once you’re in AFU unless you reboot.

        Again, I’m not talking about simply disabling biometrics unlock – BFU = your decryption key is not in memory yet (at all).