Skip to main content

Scientists just proved your phone’s PIN can be cracked using its gyroscope data

Forgot PIN Android
Simon Hill / Digital Trends
It’s no secret that smartphone PIN codes are not perfect, but new research suggests they might be next to worthless. A team of scientists at Newcastle University in the U.K. was able to guess a user’s phone PIN code with nothing more than data from the device’s sensors.

In a paper published in International Journal of Information security, researchers demonstrated how a phone’s gyroscope — the sensor that tracks the rotation and orientation of your wrist — could be used to guess a four-digit PIN code with a high degree of accuracy. In one test, the team cracked a passcode with 70 percent accuracy. By the fifth attempt, the accuracy had gone up to 100 percent.

It takes a lot of data, to be sure. The Guardian notes users had to type 50 known PINs five times before the researchers’ algorithm learned how they held a phone when typing each particular number. But it highlights the danger of malicious apps that gain access to a device’s sensors without requesting permission.

“Most smartphones, tablets, and other wearables are now equipped with a multitude of sensors,” Dr. Maryam Mehrnezhad, a research fellow in the Newcastle University School of Computing Science and lead author on the paper, said. “But because mobile apps and websites don’t need to ask permission to access most of them, malicious programs can covertly ‘listen in’ on your sensor data.”

The risk extends beyond PIN codes. In total, the team identified 25 different smartphone sensors which could expose compromising user information. Worse still, only a small number — such as the camera and GPS — ask the user’s permission before granting access to that data.

It’s precise enough to track behavior. Using an “orientation” and “motion trace” data, the researchers were able to determine what part of a web page a user was clicking on and what they were typing.

“It’s a bit like doing a jigsaw — the more pieces you put together, the easier it is to see the picture,” Dr. Siamak Shahandashti, a senior research associate in the School of Computing Science and co-author on the study, said.

Mehrenzhad said the team reached out to leading browser providers to alert them of the issue and that Mozilla and Safari have implemented fixes. But she said that researchers are still working with the industry to find a better fix.

“We all clamor for the latest phone with the latest features and better user experience but because there is no uniform way of managing sensors across the industry, they pose a real threat to our personal security,” Mehrenzhad said. “It’s a battle between usability and security.”

Editors' Recommendations

Kyle Wiggers
Former Digital Trends Contributor
Kyle Wiggers is a writer, Web designer, and podcaster with an acute interest in all things tech. When not reviewing gadgets…
Visible’s affordable 5G plans just got even cheaper
The Visible logo on a smartphone.

Visible has a new offer that can help you save significant money when switching to its service. Both Visible and Visible+ packages are now available for purchase upfront on an annual basis. These new annual plans are available for new Visible customers starting today, while existing customers will gain access to them this May.

With this new deal, the Visible+ plan costs $395 per year when paid upfront instead of $540 when paid in 12 monthly installments of $45 each. This means you can save $145, which is 26%. That's an incredible savings. When paying upfront for the regular Visible plan, it will cost $275 per year, saving you $25. If you pay for it monthly, the standard Visible plan costs $25 per month (or $300 per year).

Read more
iPhone SE 4: news, rumored price, release date, and more
The Apple iPhone SE (2022) and Apple iPhone SE (2020) together.

While the spotlight always seems to be on Apple’s mainline iPhones, the iPhone SE is a great pick for those who are on a budget. If you want an iPhone that doesn't break the bank, the SE is the way to go.

The original iPhone SE came out in 2016, and then Apple revamped it in 2020 and 2022 by giving it some more modern hardware. The iPhone SE tends to get updated every two or so years rather than annually like the traditional iPhone. This means  that we should see a new iPhone SE 4 this year, but it’s not so cut-and-dried with this particular model.

Read more
Hurry! This Apple Watch just had its price slashed to $189
The app grid view on the Apple Watch SE 2.

For great smartwatch deals, head to Amazon immediately. Today, it has the Apple Watch SE (2nd gen) for $60 off bringing it down to just $189 from $249. A fantastic price for an exceptionally well-made smartwatch, this tops our list of the best Apple deals right now. If you’re keen to buy a watch that will motivate you to move more while also looking good, check it out by tapping the button below. Alternatively, read on while we explain all.

Why you should buy the Apple Watch SE (2nd gen)
One of the best smartwatches around, the Apple Watch SE (2nd gen) is best described as “simple, cheap, and brilliant”. It’s designed to help you exercise more effectively, while keeping connected with your digital life, and also staying safe.

Read more