โก๐ช๐บ NEW - Security researcher Paul Moore has demonstrated how the EU age verification app can be compromised in under 2 minutes with nothing more than physical access to a device.
By editing the appโs shared preferences file an attacker can remove the encrypted PIN values, reset the rate limiting counter to zero, and disable biometric requirements entirely.
The app then accepts a new PIN and grants access to the existing age verification credentials.
His earlier analysis of the open source code also revealed that the app stores NFC biometric facial data and user selfies as unencrypted lossless PNG files on the device.
Deletion is incomplete, leaving the images at risk even after processing.
Europe is so cooked
Login to reply
Replies (7)
Clown World strikes again ! ๐
View quoted note โ
appreciated.
appreciated.
Is anyone surprised?
"I don't care what they say. Show me where the servers are. Where are the servers?" Professor Jiang
No, he did not - he just didn't understand that he's testing a DEMO app which uses MOCK authentication services where documentation literally says "For an easy introduction, the project provides pre-configured hosted services that allow you to test the Age Verification App and its core components without the need for complex local setup."
EU Age Verification Blueprint โ the dedicated technical portal
Wrong.

