Is the “trusted phone number” inside your Apple ID a security flaw?

Imagine your iPhone gets stolen. Inside this iPhone is your SIM-Card. That SIM-Card is your only SIM-Card and it is enlisted as "trusted phone number" in your Apple Account. The iPhone is the only Apple product you own.

(Note: I believe this setup is not "special" at all, but rather common.)


The attacker now takes out the SIM and puts it in another phone where the PIN/PUK is easily cracked within less than 24h. Enabling the attacker to receive recovery messages/calls.


Apple now provides account recovery based on your enlisted "trusted phone number".


I understand that the phone itself remains safe since it has its own secure password. But the Apple ID with iCloud is at risk.


What can you do to protect yourself against this scenario?

Since it was the only Apple product and SIM you had, is it going to be hard to secure your Apple ID with email and password when your iPhone and SIM goes missing?


Gepostet am 03. Juni 2021 05:10

Antworten

Ähnliche Fragen

3 Antworten

03. Juni 2021 05:59 als Antwort auf sydney33

Hey Sydney,


such a constellation is certainly not a security risk that cannot be controlled.


Firstly - 0800 6645 451 (if necessary from a public telephone booth) have your Apple ID blocked or deleted immediately.


Secondly - have your network provider block your SIM card.


The thief may be able to read data stored on the SIM card; for this reason - if necessary - you should counter all security risks accordingly by informing your bank, PayPal, ebay et cetera and changing all passwords.


The thief now has your iPhone but what can he do with it apart from doing nonsense with a jailbreak, dismantling the iPhone or selling it as a spare part.


You'll get further information about Privacy and Security on these sites from Apple Support


https://support.apple.com/en-us/HT208650

https://support.apple.com/de-de/guide/security/sec025128f1b/1/web/1

https://support.apple.com/de-de/guide/security/secf020d1074/1/web/1


Best regards

Manfred

03. Juni 2021 06:08 als Antwort auf sydney33

Hallo,


wenn das so einfach wäre, dann hätten das schon ganz viele so gemacht. Einfach Sim raus und woanders rein. Geht trotzdem nicht. Die AppleID muss bekannt sein. Aber die sim sollte man natürlich sperren lassen - wenn die nicht geschützt ist, telefoniert der Dieb munter drauf los. Und das kann auch teuer werden. Viele Grüsse

Dieser Thread wurde vom System oder dem Community-Team geschlossen. Du kannst alle Beiträge positiv bewerten, die du hilfreich findest, oder in der Community nach weiteren Antworten suchen.

Is the “trusted phone number” inside your Apple ID a security flaw?

Willkommen in der Apple Support Community
Ein Forum, in dem Apple-Kunden sich gegenseitig mit ihren Produkten helfen. Melde dich mit deinem Apple Account an, um Mitglied zu werden.