Assuming the thief want both the phone and the data (because data / your identity is very valuable these days).
I never unlock my phone if anyone is nearby. Yes, I look around first before unlocking.
100% fucked.
Nice try Mr. Thief !
deleted by creator
It auto-locks in 15 seconds.
Somewhat fucked, but not to a terminal degree. Privacy: The thief would gain access to graphic material of my partner and I doing naked things that would confuse grandparents and excite therapists.
Security: My phone is logged into my emails l, so I’d have to react quickly to cut it off.
2fa: No issues, as I can easily migrate to a different device.
Billing: No issue. It takes 5 seconds to block the SIM.My main concern is the short-lived email access they would gain. While the inbox does not contain anything horrible, they would be able to reset some passwords, so if my phone was stolen my number one priorities would be to get it my PC to lock out and erase the phone, change mail password, and check All of my user accounts whether they’d been compromised.
I don’t know if you are on Android or Ios, but on Ios you can require face ID to access certain apps. My mail application also requires face ID to open.
2fa: No issues, as I can easily migrate to a different device.
How exactly? This ability would seem to negate any benefit or security of multi-factor authentication.
My phone/Android is supposed to have theft protection, meaning it will lock itself if it detects a fast movement like it being snatched out of my hand. If that doesn’t work, I’d have to get home to lock it I guess.
My screen timeout is a minute, so they likely can’t get very far before bumping the side button or just not babysitting it for 60 seconds and needing a long password or fingerprint. Any app worth looking at needs a fingerprint as well, so even if unlocked, not super valuable short of a highly coordinated, personally targeted attack. In which case Pegasus would be easier and faster.
Plus, I always “pull over” and hold my phone with two hands when in a busy public place.
I use Private Lock. It uses gyro to detect sudden movements and lock the phone based on that.
Real phone in my bag hotspotting for a burner I pull out in public is how I did things when I was paranoid.
Anything worth protecting uses 2FA and they wouldn’t have my Yubikey so … yeah, I’d be fine. Annoyed, but fine.
If they somehow managed to get it to not auto lock after 60 sec then I’d have to change passwords on 3 different emails.
Worst thing they would have is my browser history.
They can’t transfer any money without my fingerprint or password to the app.
I’m so done.
They would have to turn on airplane mode quick while they were running because as soon as it has data, I’d have their location and my phone would’ve already been marked lost / stolen by my watch and queued for factory reset.
While in airplane mode there really wouldn’t be much they could do. Anything useful is locked by Face ID. They could see my calendar and my most boring emails. They would have no passwords.
The phone itself would be useless as a phone as it couldn’t be used in another carrier.
I mean, that’s kinda the point of this question: How quickly can you issue a wipe command to your phone?
If you only have one phone no backup phones, now quickly can you access a internet device to issue a wipe command? And will you even remember the google/apple account password quickly enough in such a stressful moment?
Is this a thing, like are most thiefs not interested in selling the hardware?
To answer the question: Id be pretty fckd i guess. Passwords are gated behind a password manager but my E-Mail would be exposed.
May be overthinking it a bit, the typical opportunistic thief that would try to snatch a phone and run is just looking to see what bank apps you have installed. Usually they are looking to see if you have something like Venmo installed so they can go into your app and send themselves your money. Venmo of course will say that money was transferred from your phone so it was clearly you and there’s nothing to dispute, hence you’re fucked.
These type of thieves already know to try to keep the screen unlocked long enough to do that, afterwards they usually just toss the phone somewhere. The phone hardware itself isn’t that useful while it’s still locked down and tied to someone’s Google/Apple account, most phones are firmware locked in that fashion. Sure they could wait it out until you finally remove the phone from your Google/Apple account but every time they check it’ll keep giving out their location, not really worth it.
Nowadays current Android phones do have theft protection to prevent loss in a snatch attempt e.g. my Android has settings to auto lock it if it detects fast movement while unlocked, and it also auto locks if the entire phone itself has been set offline/airplane mode for a while.