Submitted by sirmarita t3_11cecmi in iphone

Everyone needs to do these 3 steps:

  1. Turn on Screen Time, set a distinct screen time passcode.

  2. Enable Content & Privacy Restrictions

  3. Within Content & Privacy Restrictions, set both Account Changes and Passcode Changes to Don't Allow

This prevents an attacker from changing your Apple ID password or making changes to Face ID/Touch ID.

It can't block everything, though, but it limits the damage that can be done.

0

Comments

You must log in or register to comment.

[deleted] t1_ja2otqi wrote

  • This prevents an attacker from changing your Apple ID password or making changes to Face ID/Touch ID.

It doesn’t stop them if they use the emergency reset feature as this bypasses everything.

3

dskatter t1_ja2xdp4 wrote

This seems like a lot of effort when you could just

  1. Have a good password
  2. Don’t be stupid and just have a phone unlock code longer than four digits
7

TurtleOnLog t1_ja5evma wrote

There’s a bug in iOS that lets you bypass screentime restrictions to reset the appleid password. It’s been posted about in some recent threads here.

Better advice is to use a long alphanumeric passcode instead of a short 6 digit pin, and be very careful nobody watches while you’re entering it.

1

Adorable-Employer244 t1_ja5xuj7 wrote

Apple better has fix coming in the next few days. Totally unacceptable. I need to put in iCloud password to download free app but NOT to reset the whole freaking password? Come on now. Someone needs to be fired.

0