Live data from Hacker News

About Stolen Device Protection for iPhone

support.apple.com

81–85 of 85 posts

Re: About Stolen Device Protection for iPhone

#81

Regarding the actions that required FaceID/TouchID once the protections are enabled, what happens if the biometric authentication fails? Sometimes I can't unlock my phone with FaceID, and I have to resort to using my passcode after three attempts. Will it now allow unlimited attempts in the specific scenario covered by the new feature? (I realise this means I can still get into my phone, just that I might not be able…

This is also something I don’t understand. Would like to know the answer

Re: About Stolen Device Protection for iPhone

#82

I’ll be using this but what a stupid exception imo. I work in a big building where anyone could walk in without id and simply defeat the protection. Hell, a disgruntled coworker contractor or customer could be in on it. > When your iPhone is in a familiar location, these additional steps are not required, and you can use your device passcode like usual. Familiar locations typically include your home, work, and certai…

[deleted]

Re: About Stolen Device Protection for iPhone

#83

Way overdue feature IMHO. A reason why I didn’t want to use passcodes or keychain for passwords was that once someone knew my passcode to unlock my phone, they could access all my accounts 1Password at least uses a different password and isn’t unlockable with passcode alone

Nitpicking here. Older 1Password versions do allow unlocking using the iOS passcode if biometry fails, but I’m not sure it was ever intended as a feature. It isn’t a UI that is built into 1Password though, it’s the iOS fallback UI for that scenario (which looks very similar to the SIM PIN unlock screen).

A _lot_ of apps did and still do fall back to iOS passcode authentication when biometry fails. It does seem like more developers are disabling this, however.

Re: About Stolen Device Protection for iPhone

#84
post #51

Neat feature I guess, but how long before thieves realize that they can just look up your home or work address from the Maps or Contacts app and go stand near it to get around these restrictions?

Or for high value targets, just outright hold you hostage for an hour.

Re: About Stolen Device Protection for iPhone

#85
post #31

Earlier quoted context omitted.

This is a pretty direct response to the WSJ's iPhone theft story from last year[1], which was focused on people managing to shoulder-surf your passcode while you're in a public place, steal your phone, then use your passcode to reset your Apple ID password (thus locking you out of being able to report the phone as stolen). It apparently relied on multiple people and a certain amount of social engineering -- one party…

Yeah I saw that article too. It closes that one hole the wsj reported on but pretending there aren’t other credible threats is silly. a bad actor at work could observe the password and then steal the phone at a later date, and take it to the bathroom for instance. That’s just what I’ve come up with from there to of my head.

I agree in spirit with your stance, and it is a good solution to the shoulder surfing problem.

But generally I don’t think it’s plausible for a mass market device to counter every kind of threat, or every iteration of a more specific kind of threat.

In a workplace or home theft scenario, there are _presumably_ better ways of identifying a thief than at, say, a random bar.

My beef with this feature is that my Significant Locations haven’t been accurate for over a month, so my home location isn’t “trusted”.

Post reply on HN