Use iOS 17.3’s Stolen Device Protection to Reduce Harm from iPhone Passcode Thefts

Last year, a series of articles by Wall Street Journal reporters Joanna Stern and Nicole Nguyen highlighted a troubling form of crime targeting iPhone users. A thief would discover the victim’s iPhone passcode, swipe the iPhone, and run. With just the passcode, the thief could quickly change the victim’s Apple ID password, lock them out of their iCloud account, and use apps and data on the iPhone to steal money, buy things, and wreak digital havoc.

In essence, Apple allowed the passcode, which could be determined by shoulder surfing, surreptitious filming, or social engineering, to be too powerful, and criminals took advantage of the vulnerability. It’s best to use Face ID or Touch ID, especially in public, but some people continue to rely solely on the passcode.

Apple has now addressed the problem for iPhone users with the new Stolen Device Protection feature in iOS 17.3. It protects critical security and financial actions by requiring biometric authentication—Face ID or Touch ID—when you’re not in a familiar location like home or work. The most critical actions also trigger an hour-long security delay before a second biometric authentication. We recommend everyone who uses Face ID and Touch ID turn on Stolen Device Protection. The feature is not available for the iPad or Mac, but neither is as likely to be used in places like the crowded bars where many iPhones have been snatched.

How Stolen Device Protection Works

The location aspect of Stolen Device Protection is key. When you’re in a “significant location,” a place your iPhone has determined you frequent, you can do everything related to security and financial details just as you have been able to in the past, including using the passcode as an alternative or fallback.

However, when you’re in an unfamiliar location, as you would likely be if you were out in public where someone might steal your iPhone, Stolen Device Protection requires biometric authentication to:

  • Use passwords or passkeys saved in Keychain
  • Use payment methods saved in Safari (autofill)
  • Turn off Lost Mode
  • Erase all content and settings
  • Apply for a new Apple Card
  • View an Apple Card virtual card number
  • Take certain Apple Cash and Savings actions in Wallet (for example, Apple Cash or Savings transfers)
  • Use your iPhone to set up a new device (for example, Quick Start)

Some actions have even more serious consequences, so for them, Stolen Device Protection requires biometric authentication, an hour security delay—shown with a countdown timer—and then a second biometric authentication. The delay reduces the chances of an attacker forcing you to authenticate with the threat of violence. You’ll need to go through the double authentication plus delay when you want to:

  • Change your Apple ID password (Apple notes this may prevent the location of your devices from appearing on iCloud.com for a while)
  • Sign out of your Apple ID
  • Update Apple ID account security settings (such as adding or removing a trusted device, Recovery Key, or Recovery Contact)
  • Add or remove Face ID or Touch ID
  • Change your iPhone passcode
  • Reset All Settings
  • Turn off Find My
  • Turn off Stolen Device Protection

There are a few caveats to keep in mind:

  • The iPhone passcode still works for purchases made with Apple Pay, so a thief could steal your passcode and iPhone and buy things.
  • Although Apple says it’s required, you can turn off Significant Locations to require the extra biometric authentication and security delay everywhere. That would eliminate the worry about a thief using Significant Locations to go to your most recent familiar spot in an attempt to sidestep the extra authentication.
  • If you plan to sell, give away, or trade in your iPhone, make sure to turn off Stolen Device Protection first. Once it’s out of your physical control, no one else will be able to reset it.

Turn On Stolen Device Protection

Before you get started, note that Apple says you must be using two-factor authentication for your Apple ID (everyone should be anyway), have a passcode set up for your iPhone (ditto), turn on Face ID or Touch ID, enable Find My, and turn on Significant Locations (Settings > Privacy & Security > Location Services > System Services > Significant Locations), although this last one doesn’t actually seem to be required.

Then, go to Settings > Face ID/Touch ID & Passcode, enter your passcode, and tap Turn On Protection. (If it’s enabled, tap Turn Off Protection to remove its additional safeguards.)

Once Stolen Device Protection is on and you’re in an unfamiliar location, the actions listed above will require either biometric authentication or two biometric authentications separated by the hour-long security delay.

There is one group of people who should not turn on Stolen Device Protection: those for whom Face ID or Touch ID don’t work. Most people have no trouble with Apple’s biometric technologies, but some people have worn off their fingerprints or have other physical features that confuse Touch ID or, less commonly, Face ID.

If that’s you, stick with our general recommendation for discouraging possible iPhone thefts: Never enter your iPhone passcode in public where it could be observed.

(Featured image by iStock.com/AntonioGuillem)


Social Media: In iOS 17.3, Apple has introduced Stolen Device Protection to discourage iPhone thefts enabled by a revealed passcode. It requires additional biometric authentication, and we recommend that everyone who uses Face ID or Touch ID enable it.

Similar Posts

  • _Dear Friends,_

    I had a great trip up to Jasper, GA to pick up the 2003 Victory motorcycle. I took almost all two-lane roads and the weather cooperated although it was a bit chilly in the mornings. It got busier as I headed south in Florida but all in all it was a great way to spend the weekend.

    Small Dog Electronics is finishing up our 20th year in business and we are going to be changing out the 20-year anniversary banners and signs. Now that we are going to be 21 we are renewing our commitment to walking the walk as a socially responsible business. We feel that how we treat people, customers, employees, vendors or strangers is an equal measure of our success as to how we treat the planet and the profit we hope to make. Did you know that 100% of the electrical power for our S. Burlington store and about 85% of the power for our Waitsfield headquarters is generated from solar energy?

    When you form a “corporation”, if you tear down the word to its Latin base, it means to “form a body”. My high school latin teacher would be proud. As a body in society, a business has a bigger footprint than any individual. We have buildings, we consume resources, we generate waste and we have a huge impact on peoples lives. With that larger footprint comes a larger responsibility and that is the basis for our commitment to always measure our success by the triple bottom line of People, Planet and Profit.

    This week’s Kibbles & Bytes exclusive features the iPad mini 4. This model in Space Gray includes 64GB of storage and cellular capability. With the Retina display and Touch ID this incredibly thin and light iPad could be a complete solution. Because this model has cellular capability (cell contract required) you can use it anywhere where there is Wi-Fi or Cellular coverage. The iPad Mini 4 is my iPad of choice. I like the way it fits in one hand and is perfect for reading. It feels like you are holding a paperback book. This week, exclusively for Kibbles & Bytes readers we are offering the “iPad Mini 4 in Space Gray with AppleCare Plus”:http://www.smalldog.com/wag900002167 for a special price. AppleCare Plus for the iPad extends the 1-year warranty to 2-years and also provides for coverage for accidental damage (i.e. broken screen, etc.) for up to two incidents for a $49 deductible. It also extends the 90-days of free Apple technical support to 2-years. Normally, this bundle is $729.98 but we are giving Kibbles & Bytes readers the opportunity to save $40 on this bundle. You get the iPad mini 4 64GB Cellular model with AppleCare Plus for only “**$689.98!**”:http://www.smalldog.com/wag900002167

  • For the Best Mac Webcam, Use Your iPhone

    The near-ubiquity of videoconferencing is a lasting effect of the pandemic. The ease of gathering a group virtually usually more than makes up…

  • _Dear Friends_,

    Well I didn’t win the Powerball so I guess I have to stick with my day job a bit longer. Vermont finally got some winter weather and more snow is in the forecast. It has even gotten a bit cooler down here in the Keys where when it dips below 70° F the down coats and shoes come out.

    I am still struggling a bit with tropical gardening. A large caterpillar ate the leaves off one of my tomato plants overnight and for some reason I cannot get my citrus trees to blossom. I keep feeding and watering them in the hopes that my Key Limes, Myers lemon and Naval oranges will blossom but they seem to just make greenery. We did discover that bananas love coffee grounds and since Grace and I produce a lot of coffee grounds those plants are doing well.

    I upgraded myself from the original iPad mini to the iPad mini 4 before I went to Las Vegas and the differences are remarkable. Not only is it thinner and lighter but the screen is much better, the speed is a lot faster and I simply love the Touch ID. I had been trying to activate my old iPad mini with my finger after being used to that with my iPhone so it is a welcome addition for my primary reading device. I prefer the iPad mini to the full-size iPad or the iPad Pro because of the size. It feels like a paperback book in my hand and even on a crowded airplane it is comfortable to use.

    Do you know about tethering? I don’t know how many people I have talked out of buying a cellular iPad by explaining tethering. I guess that is a bit against my interests as you pay an extra $130 for cellular versions of the iPad. If you buy that cellular version you also need a cell contract which might be another $30 a month. Tethering is a much better idea. Tethering is where you share the cellular connection from your iPhone with your iPad. You activate Personal Hot Spot and boom you have your own private wireless network over cellular. The other day Comcast had an outage here in the Keys and I used tethering with my Mac to work all day. Most carriers will charge you a little more for tethering but it is less than the $30. With my iPad, I simply choose “donphone” from the wireless setup and I am connected with the same speed as if I had the cellular version of the iPad.

    This week’s Kibbles & Bytes exclusive is a “**fully configured 13-inch MacBook Air.**”:http://www.smalldog.com/wag900002125/special-save-50-on-apple-refurbished-macbook-air-and-free-hammerhead-case This Apple factory reconditioned MacBook Air carries the same 1-year Apple warranty as new Macs and we are bundling it with AppleCare so you actually get 3-years of warranty protection and 3-years of free Apple technical support instead of the normal 90-days. This MacBook Air is the same as the one I use and love. It features a 1.7GHz i7 processor, 8GB of ram and a big 512GB SSD drive. I am going to take $50 off and include a free Hammerhead neoprene case for this MacBook Air. Regular price is $1639.97 but for Kibbles & Bytes readers this week only (while supplies last) the price for this bundle is “**$1559.98.**”:http://www.smalldog.com/wag900002125/special-save-50-on-apple-refurbished-macbook-air-and-free-hammerhead-case

  • Back up for the Holidays

    The Holidays are here and I am sure many of your are busy making memories, thinking about others and capturing as many picture-perfect moments that you can. While you’re busy bustling around, are you taking the time to think about these memories? What would happen if you couldn’t go back and look up those moments? Perhaps now is the time to think about a gift for yourself and taking the time to ensure that all of the perfect moments you are capturing on video and in pictures are being safely stored on your computer.

    I know we talk about this all the time, but it’s surprising how many of us out there keep putting this important step of backing up to the side! The Holidays are the time with some of the best memories, and so many of us are capturing once in a lifetime moments. The last thing anyone wants is to have something happen to those photos. There are so many options for backing up your computer and your important files it can be a little overwhelming. There is iCloud, cloud-based storage solutions from countless companies, traditional external hard drives for back up and more! My preferred backup solutions are a combination of cloud backup and physical hard drives. It might seem a little redundant, but better to be safe than sorry when it comes to important documents and memories.

    For me, iCloud and an external hard drive are my preferred options for backing up. I use my iCloud account to keep my daily life in order, contacts and calendars most importantly. I also use iCloud for storing some of my most important memories and files, select baby photos of my kids and some important documents. The kind of things that should the worst case happen and I lost my computer or drives due to theft or fire I still have copies in the cloud. My preference for my backups is using Time Machine and my “**Seagate**”:http://www.smalldog.com/product/85305/seagate-backup-plus-slim-portable-drive-usb-3-0-2tb-blue hard drives. I keep a different drive for each of my computers and perform fairly regular backups, I am not perfect, so sometimes they are not as regular as I would like. But utilizing these drives allows me to ensure that I have entire backups of my files and data readily available. Before I started to use iCloud I would also have back ups drives of my Time Machine back up, yes, I was and am that paranoid about loosing photos of my kids. I still have a small 20gb drive that contains my oldest daughter’s first year of photos, even though I know all the photos are on my computer and backed up I still won’t delete that drive.

    In the last year we have seen a rise in alternative cloud storage and mobile storage solutions. Many companies like “*Seagate*”:http://www.smalldog.com/category/?mmfg%5B0%5D=Seagate and “*LaCie*”:http://www.smalldog.com/category/?mmfg%5B0%5D=LaCie have portable drives that allow users to access information wirelessly while on the go. This is a great solution for families with large media libraries for movies. The “**Lacie Fuel**”:http://www.smalldog.com/product/85520/lacie-fuel-wireless-battery-powered-mobile-hd-wifi-usb-3-0-1tb is great for just this. Have a long road trip? Load up the drive and the family can access the files from their iPhones or iPads quickly and easily without taking up storage on their devices. Another and perhaps more practical solution is the “**Seagate Personal Cloud**”:http://www.smalldog.com/wag900002041/mac-the-halls-save-20-on-seagate-personal-cloud-home-media-storage-3tb. This drive allows you to back up everything on your computer and access it from anywhere! No need to carry that back up drive along with you, and with tons of storage options little worry about not having enough space. So this holiday season remember, backing up is just as important as capturing those memories.