That is the point Mobipocket is making. He claims that the credit card must be stored somewhere if it doesn't require you to input it each time you read it. However, I think MobiPocket must not have had his coffee yet, for he usually knows better. An application doesn't have to store the actual password in order to remember that it has received a valid one in the past. It just needs the accompanying hash and a bit-set saying "mission accomplished" somewhere. eReader will be hacked when they find this bit.
|