:

PANICLOCK FORCES PASSWORD AUTH WHEN MACBOOK CLOSES

INDUSTRY DESK1 MIN READ
SAT, APR 18, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A new macOS tool disables TouchID authentication when the laptop lid closes, requiring a password to unlock instead. The app was created in response to a legal case where a journalist was compelled to unlock her device using biometric authentication.

PanicLock addresses a security vulnerability in macOS biometric unlock procedures. When a MacBook lid closes and reopens, TouchID can be used to authenticate without additional verification. The tool forces password-only authentication after lid closure, preventing biometric bypass. Developer Hannah Natanson created PanicLock following her experience as a Washington Post reporter whose computer was searched by law enforcement. She was compelled to unlock her device using her fingerprint, granting access to encrypted communications with confidential sources. The app leverages legal distinctions between compelling biometric authentication and requiring passwords. While courts have ruled fingerprint authentication can be compelled in some jurisdictions, password disclosure typically requires different legal justification. PanicLock's landing page includes detailed analysis of relevant case law and legal precedents. The tool is open source and available on GitHub, gaining 119 points on Hacker News.

■ SOURCES

Hacker News

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Illinois county prosecutors secretly provided personal information about criminal defendants to federal immigration agents without warrants, public disclosure, or legislative approval.

JUST NOWIndustry Desk

Law enforcement from 22 countries arrested 58 individuals and identified 263 suspects in a coordinated crackdown on cybercrime networks run by African crime groups.

JUST NOWSecurity Desk

The Los Angeles County Museum of Art disclosed a data breach from last year that compromised customer and employee information, including social security numbers and medical records.

3H AGOSecurity Desk

A phishing-as-a-service platform called AnonyMousKIT uses voice AI agents to extract passcodes from stolen Apple devices and bypass Activation Lock security features.

5H AGOAI Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.