Phone wiping after misentering passwords multiple times - Moto G Q&A, Help & Troubleshooting

Maybe I am just missing something very obvious but it seems like there is no option to wipe the phone after misentering the password multiple times (BB or iphone style)?
I know it can be done with Exchange policies but it will be a cold day in hell before I go THAT route...

nupi said:
Maybe I am just missing something very obvious but it seems like there is no option to wipe the phone after misentering the password multiple times (BB or iphone style)?
I know it can be done with Exchange policies but it will be a cold day in hell before I go THAT route...
Click to expand...
Click to collapse
It's not a standard option in Android (I for one am glad - I've accidentally wiped my work Blackberry more than once when inebriated). Android Device Manager (or the Motorola equivalent) both allow a manual remote wipe from a PC or another Android Device.
It's possible for apps to monitor incorrect password entries (no root required just a Device Administrator Permission), although I'm not sure if an automated wipe is possible without root. Take a look around the play store to see if anything meets your needs.
I use the automation app MacroDroid along with Secure Settings (both in the playstore) on my unrooted MotoG. The way I've got it set up is that 3 failures to enter correct PIN changes it to Password mode, a further 3 failures will prevent the phone from waking up (by automating a screen lock associated with the screen coming on). As-well as that it will automatically take and email to me front and rear camera photos, and the phones location on the change from Pin to Password, and again on the change to 'Lockdown' mode. I can send it an SMS with a special message in the text to get it to repeat this. I'm toying with the idea of setting it to shout 'Thief!' repeatedly at full volume when someone tries to turn on the screen when it's locked down

It is not exactly that what you were asking for. But i just wanted to mention also Cerberus here.
It brings a lot of nice features to control your phone remote.

Related

Seek Droid Reviews?

Anyone use Seek Droid?
http://www.appbrain.com/app/seek-droid/org.gtmedia.seekdroid
How's it compare to lookout or prey?
Seems like it's pretty feature rich for $.99 and reviews are good, but it's always good to hear from real, live users directly.
Lifehacker liked it
http://lifehacker.com/5745207/seek-droid-is-the-simplest-way-to-find-your-lost-android-phone
I think its the best, but I'm one of the developers. PM me if you have any questions.
I'm sure you do, but I was going to get some real user reviews here.
Give it a shot, write a review. If you dont like it, email support and we'll make it right.
I'm not sure if we have many people that are on xda using the app (yet). We are a really small company, and unlike our competition, we dont a marketing department to get our name out. Just a few developers trying to put out a good lightweight product. We love to see reviews and suggestions, so let us know what you think.
I can gave you a brief snapshot [after finishing my write up I realized it wasn't so brief]. Note: I haven't lost my phone yet so I've only been able to test it. Also, I have not tested other Droid locator apps so I have no point of reference. I've tested this on a Droid X.
Setup is a breeze. The user is asked to enter a username and secret code. The app goes through a registration process. The main screen of the app (on the phone) is organized as follows: View Website; Your SeekDroid.com Login; View Help; Current Status [Registered]; Your Secret Code; Options for Enabling remote formmating of the phone and SD card; Option for retrieving call history settings; Terms of Service; and Contact Us.
At the Seek Droid website, you're asked to enter your username and secret code. A top line menu appears, as follows: Locate; Alarm; Calls; Hide; Lock; Wipe; Help; and Log Out. Locate does just what it suggests: the webpage sends out a search command and a Google map displays the location. The Alarm options prompts you to type a message to be sent to the phone. Once the message arrives, the message pops up on the phone's screen and it beeps and will continue to beep until the screen is touched. When the screen is touched, you're taken to the slide-to-unlock screen. If your phone is secured with a password, you'll be directed to the unlock screen (pattern or keypad). Calls displays a recent call list. Hide triggers your device to hide the Seek Droid app from you list of apps (in your app drawer). Reboot is required. With Lock, you're prompted to assign a new digit lock code (digits only, not a new pattern lock). Whether your device already has a lock code or pattern lock, the new code is applied. I, for example, have a pattern lock. I changed the lock code remotely with Seek Droid and it changed it to the new code I sent. With Wipe you are given a prompt to ensure that's what you want to do. I did not test this feature. I might backup my SD card and try the wipe feature for that...I'll report the results later if I do.
I've tested the app indoors and outside, with GPS on and off. It finds it every time, usually within 3 minutes. I keep Use Wireless Networks and Enable Assisted GPS activated in the Settings screen on my device. Also, I have an app protector app that locks apps on my phone (along the lines of App Protector). I have Settings locked (requires a password to access). Seek Droid is able to change the unlock code remotely with Settings protected and unprotected.
Naturally, Seek Droid does not find my phone when it's turned off or in flight mode. Seek Droid does not provide advanced user controls like deleting individual apps, turning off/on GPS, remotely turning on your phone, etc.
Locating my phone worked with Internet Explorer, Firefox and Chrome. Javascript must be enabled.
One final comment: I encountered an issue with one of my computers locating my phone. I contacted Seek Droid support and received a response within 1 hour. Very helpful and responsive...kudos to them. After some troubleshooting, I discovered the problem rested with my computer. Seek Droid worked well from every other computers I have access to (rather than troubleshoot the problem with the one computer, I simply won't use that one to log in to Seek Droid in an emergency). So, my advice is to test the app from various computers so you know which one to use if and when you actually lose your phone.
I recommend the app based on my limited testing. I also recommend that you use this in conjunction with a device password or pattern lock (or an app protector app to prevent removal of Seek Droid). You simply want to set up controls so another person can't easily uninstall the app or deregister the device.
Price has now gone up to $1.99 and a bit peeved as I left it until today to get it, losing out 62p in the process
Anyway, after taking an aggggggge (months on and off) trying to configure Tasker to do this unsuccessfully I've now binned that idea and got this instead; setting it up alongside Tasker to receive a specific SMS to switch all the location finding stuff on (I have mobile and wifi switched off by default).
Just liked to echo the above comment in that it is really easy to use and the location is nailed down much better than all my previous attempts with Tasker.
Well worth it.
Wow, didn't notice that. I still hadn't purchased yet either and was going to. I really don't need it, I just wanted to play around with it. I'll just pass @ $1.99 and use the free version of lookout without wipe functionality and spend the $1.99 on a game I wanted or something.
Oh well.
is there a secret code default because i donwloaded the app to my phone online but never set it up
Kicknik: After installing the app and opening for the first time, you will be prompted to enter a username and a secret code of your choosing. Then, it will go through a process of registering your device (I guess it syncs up with Seek Droid). The username and secret code are then used to login to the Seek Droid website in order to locate and lock your device remotely.
My impressions:
Bought and installed a couple days ago on my Lg Optimus One. I am very satisfied.
The program installs very easily, once installed it asks you to choose a login name and a password and to set a few options: there's a few boxes to check, like the possibility to enable or disable the remote wipe of your smartphone.
Once you are done setting up you can access the seek droid website from your phone or from any device with internet access and once you are logged in you can monitor your device position (you can remotely enable gps if gps is disabled), check the last calls that were made from your device, lock your phone or wipe it to factory settings formatting internal memory and sd (of course it asks you for confirmation on the website if you click on the wipe button).
Another useful feature that can be accessed from seek droid website is the "hide" button. Once you press it the seek droid app on your phone becomes invisible (requires reboot) thus becoming even harder to uninstall (anyway even wehn visible the program requires your password to uninstall).
I tried every feature except for the wipe one and i can say it does what it says. Position through gps is accurate and is shown on a mini google map on the seek droid site. I monitored battery consumption and it seems almost unexistent.
In conclusion i think every smart needs a security program like this, and seek droid does better than other similar apps that i had tried before.
First I was using Lookout, but I rly didn't liked that story with the chinese developer that got misunderstood with his wallpaper app because of what Lookout said. Every website was telling ppl to uninstall his app. Lookout got a lot of attention, everyone installed their app and uninstalled the poor chinese app. That wasn't nice :T
Then I went to WaveSecure, from McAfee. I think it's $20 per year.
Never worked on my phone. Tryed the support, even installed a "debug version", but couldn't make it work properly on my HTC Desire. Gave up.
I was looking for another app to replace it and then I met Seek Droid. Was very cheap, no monthly fees and such, decided to give it a try.
Dude, I'm VERY satisfied. It's easy to install, got it WORKING on 5 minutes. McAfee WaveSecure didn't worked for me, but I had no issue with Seek Droid. If I had met it before, could save the $20 I paid to get WaveSecure (I should have tested it first, but saw "McAfee" on it, guessed it works.)
Didn't noticed any abnormal battery drain, I could retrieve the latest phone calls made and received, I could lock and unlock from the website, located very fast (I was using wifi when I tested).
I think that it could report the number of the SIM card and keep the alarm message on the screen, I mean, If I just lose it, I would like to keep on screen instructions to contact me :S
Currently If you "click" on the message, it will go away.
Anyway, I'm another happy customer.
It's very cheap, everyone should give it a try!
seijimaddog said:
Anyway, I'm another happy customer.
It's very cheap, everyone should give it a try!
Click to expand...
Click to collapse
Glad to hear you like it. Dont forget to review us in the Android Market.
I bought it for me (EVO) and my wife (LG Optimus S). Very reasonable price. Easy install and configuration and website control.
We also were using the new Sprint/Assurian TEP app. That has additional features--which I don't want or need (i.e., contacts backup). And, even though my wife's phone also has TEP, their app now says that the subscription has expired--which it hasn't.
I was about to cancel the TEP for her phone anyhow, and this is a nice reminder of why it's a waste for her cheap phone anyhow.
We're happy with Seekdroid and the $.99 price.
sycko,
I have Seek Droid on my Droid and my wife's Droid 2. Love the application. I was wondering if there was a way to get to get Seek Droid to work on my rooted Nook Color? There can be a general location using the WiFi instead of GPS I believe.
Thank you for your time.
How does one set this up? I bought it a while back and never got around to setting it up until today. I launch it on my EVO and it pops up a screen asking for a name and password, and anything I put in it says it's username or secret code is incorrect (obviously, since I've never set up a seekdroid account). I go to the website and it does the same thing. HOW DO I SET UP AN ACCOUNT IN THE FIRST PLACE?
Thanks.
Nevermind. Got it. (Uninstalled and reinstalled and the create account screen popped up.)
Does this work with Google Voice? I don't have text messaging, so thats the issue I have with location/alarm apps
I want to know, what if my phone got stolen and the guy instantly decides to wipe my device clean of any trackers .. will this device still be able to track after such an activity ?
Also, what if the robber doesn't wipe the device clean, but modifies/disables the internet connection on the device ? Or switches to another SIM which does NOT have internet on it ? Will this program still be helpful in any sense ?
Free today on Amazon. Don't know if this is current version, but thought I would pass that along. Clean interface, but I haven't put it through its paces yet.
Great app
I love the app. Very easy to use. I've used it to locate my phone twice.
I just installed mohan's latest ROM for the skyrocket and I am getting a message that seekdroid is not working. Any tips on how to debug. Is there a log of the failure?
I like the ROM, but consider this a must have app.
need a bit of help
sycko said:
I think its the best, but I'm one of the developers. PM me if you have any questions.
Click to expand...
Click to collapse
If seekdroid or something like that was installed on my phone. By my psycho gf. How would I totally remove it????

[Q] Android Encryption Problem

I have a phone that I use for corporate purposes so there is a password requirement for each wakescreen.
This is obviously absurd, so I used Xposed module to "nuke" the password. The coorporate app still thinks there's a password and I've never lost my phone, so that's good.
However one shortcoming of this is, if on the off chance I do lose my phone, using Prey, or Android Device manager, I cannot "lock" the phone, because the xposed module takes it out.
I'd like to do the full encryption, still keep the password "nuked", but somehow be able to reactivate the lock, or at the very least shutdown the phone remotely in case I do lose it, when it comes back on the password will be active.
I could perhaps use tasker to accomplish this, but it's a bit tricky.
TlL;dr
Password Lock must think it's on, but not. (so corporate app doesn't boot me out)
Phone must be able to be remotely locked - or turned off.
The Cerberus App, does exactly what is needed, including full wipe, reboot, etc.
https://www.cerberusapp.com/
Full device encryption on mobile devices is useless for several reasons:
https://security.stackexchange.com/...ny-advantages-to-android-full-disk-encryption

Lollipop - Enabled encryption. Not sure if it worked

Hey guys
I flashed the factory images last night effectively wiping my Nexus 5 and starting from scratch. I did not restore apps and settings either. After I manually installed a bunch of my apps back and changed around a few settings, I decided to enable encryption. However, I don't think it enabled properly.
First, I had not set a PIN lock on my phone yet at the time.
When I decided to enable encryption and go through the process, it didn't ask me to enter a PIN.
It seemingly completed encrypting the phone. When I go back to the security menu, it says "Encrypted".
However, I am not prompted to enter a PIN upon booting the phone (not talking about the lock screen PIN).
So, it seems like it didn't work but I'm not sure. Has anyone else enabled encryption yet?
and yes, I saw the performance degradation that comes with enabling encryption but I'd rather have the security.
definitely sounds like there's an issue there. Do you have a custom recovery? If so, you could boot into that, pull some data and see if it opens. If it does, yeah its not encrypted.
Not worth mentioning degradation. All encryption always has and always will have performance degradation. It's par for the course
That sounds like a good idea. If it's not encrypted, then I guess the only method is to wipe and reinstall again.
mattkroeder said:
That sounds like a good idea. If it's not encrypted, then I guess the only method is to wipe and reinstall again.
Click to expand...
Click to collapse
I think so. You can't reverse the encryption flag without a wipe I dont think
mattkroeder said:
Hey guys
I flashed the factory images last night effectively wiping my Nexus 5 and starting from scratch. I did not restore apps and settings either. After I manually installed a bunch of my apps back and changed around a few settings, I decided to enable encryption. However, I don't think it enabled properly.
First, I had not set a PIN lock on my phone yet at the time.
When I decided to enable encryption and go through the process, it didn't ask me to enter a PIN.
It seemingly completed encrypting the phone. When I go back to the security menu, it says "Encrypted".
However, I am not prompted to enter a PIN upon booting the phone (not talking about the lock screen PIN).
So, it seems like it didn't work but I'm not sure. Has anyone else enabled encryption yet?
and yes, I saw the performance degradation that comes with enabling encryption but I'd rather have the security.
Click to expand...
Click to collapse
Not sure, but i think it's designed to works just like that, the encryption key is not the PIN anymore but something (random?) that is stored somewhere on the phone.
that would protect the data in case someone tries to read it directly from the phone's memory, but useless if you don;t have a PIN/PASSWORD.
I avoided encryption before for exactly that reason (requiring a password to boot). If I lose the phone I want the person that found/stole it to be able to at least boot it. if the person is not a thief there's a contact number so they can call me to give it back. if he/she's a thief well, as long as it's on I can call it, track it, wipe it. even brick it.
by not being able to boot it, the chances of getting it back are 0 if the battery dies or is dead!
http://readwrite.com/2014/10/28/google-android-lollipop-encryption-issues
there isn't much info out there about it.
kenshin33 said:
Not sure, but i think it's designed to works just like that, the encryption key is not the PIN anymore but something (random?) that is stored somewhere on the phone.
that would protect the data in case someone tries to read it directly from the phone's memory, but useless if you don;t have a PIN/PASSWORD.
I avoided encryption before for exactly that reason (requiring a password to boot). If I lose the phone I want the person that found/stole it to be able to at least boot it. if the person is not a thief there's a contact number so they can call me to give it back. if he/she's a thief well, as long as it's on I can call it, track it, wipe it. even brick it.
by not being able to boot it, the chances of getting it back are 0 if the battery dies or is dead!
http://readwrite.com/2014/10/28/google-android-lollipop-encryption-issues
there isn't much info out there about it.
Click to expand...
Click to collapse
I went ahead and wiped the phone again. I reinstalled lollipop and made sure to enable a lockscreen PIN before I enabled encryption. It seems to have encrypted properly. It prompts me for my PIN at boot up now.
You make a good point about encryption making it more difficult for someone to get a hold of me if I lose the phone though.
Same problem here, with Nexus 5 and Android v5
My work Exchange server enforces a security policy to the phone which forces you to enable encryption. So I went ahead and did that, and the email app is still saying that encryption needs to be enabled. When I reboot the phone I never get prompted for a PIN to decrypt the device, yet in the settings screen it says it is encrypted.
I'm going to have to re-flash. Is it possible the issue is caused by leaving the bootloader unlocked? or is this is a bug?
EDIT: Update. Reflashed, but first thing I did was relock the bootloader and enable a security screenlock PIN, *then* encrypted the phone. Now it's prompting me for a PIN on boot and looks like it's worked. Hope the Exchange email policy stays happy this time, as it worked before for about a day before it complained about the lack of encryption
this worked for me also
I did what was stated below and it worked....
1. reflashed,
2. locked bootloader
3. created lock pin
4. encrypted, THEN
5. added MDM control (MAAS360) and exchange email.
It seems to work OK now.
Thanks!
JoyrexJ9 said:
Same problem here, with Nexus 5 and Android v5
My work Exchange server enforces a security policy to the phone which forces you to enable encryption. So I went ahead and did that, and the email app is still saying that encryption needs to be enabled. When I reboot the phone I never get prompted for a PIN to decrypt the device, yet in the settings screen it says it is encrypted.
I'm going to have to re-flash. Is it possible the issue is caused by leaving the bootloader unlocked? or is this is a bug?
EDIT: Update. Reflashed, but first thing I did was relock the bootloader and enable a security screenlock PIN, *then* encrypted the phone. Now it's prompting me for a PIN on boot and looks like it's worked. Hope the Exchange email policy stays happy this time, as it worked before for about a day before it complained about the lack of encryption
Click to expand...
Click to collapse
mattkroeder said:
Hey guys
I flashed the factory images last night effectively wiping my Nexus 5 and starting from scratch. I did not restore apps and settings either. After I manually installed a bunch of my apps back and changed around a few settings, I decided to enable encryption. However, I don't think it enabled properly.
First, I had not set a PIN lock on my phone yet at the time.
When I decided to enable encryption and go through the process, it didn't ask me to enter a PIN.
It seemingly completed encrypting the phone. When I go back to the security menu, it says "Encrypted".
However, I am not prompted to enter a PIN upon booting the phone (not talking about the lock screen PIN).
So, it seems like it didn't work but I'm not sure. Has anyone else enabled encryption yet?
and yes, I saw the performance degradation that comes with enabling encryption but I'd rather have the security.
Click to expand...
Click to collapse
If you set up a screen lock pin the phone will ask you then if you would like the PIN to be enabled or not at boot.
kenshin33 said:
Not sure, but i think it's designed to works just like that, the encryption key is not the PIN anymore but something (random?) that is stored somewhere on the phone.
that would protect the data in case someone tries to read it directly from the phone's memory, but useless if you don;t have a PIN/PASSWORD.
I avoided encryption before for exactly that reason (requiring a password to boot). If I lose the phone I want the person that found/stole it to be able to at least boot it. if the person is not a thief there's a contact number so they can call me to give it back. if he/she's a thief well, as long as it's on I can call it, track it, wipe it. even brick it.
by not being able to boot it, the chances of getting it back are 0 if the battery dies or is dead!
http://readwrite.com/2014/10/28/google-android-lollipop-encryption-issues
there isn't much info out there about it.
Click to expand...
Click to collapse
Sorry for OT, but how can you remotely brick your phone? Just curious in case I ever need to. Don't live in the best of neighborhoods. I can remote wipe, track, take pics. The normal lost/stolen stuff, but I haven't heard of remotely bricking a phone ever.
Nexus 5 still looking to be encrypted
Only a temp fix---Both my Nexus 7, and Nexus 5 just started asked to be encrypted again....
This is still a problem with Lollipop
thegasmaster said:
I did what was stated below and it worked....
1. reflashed,
2. locked bootloader
3. created lock pin
4. encrypted, THEN
5. added MDM control (MAAS360) and exchange email.
It seems to work OK now.
Thanks!
Click to expand...
Click to collapse
wipe efs partition (I do have a backup on my computer) and the phone is no longer a phone.
Just to be clear, you can enable encryption on Android 5.0, and it will not force you to lock the phone. (Like the PIN screen and boot lock). When you buy a Nexus 6/9 the data partition is encrypted but there's no lock set. The following is from this article;
First, the encryption doesn't help much if you haven't set a passcode. Ludwig said studies have shown that roughly have of users don't set passcodes on their devices, largely because they find it inconvenient to keep entering them dozens of times a day. Lollipop will still encrypt your data, but it will also automatically decrypt it in normal use. So if you don't have a passcode, much of your information will be available to anyone who picks up your phone.
Click to expand...
Click to collapse
So if you've enabled encryption, and gone through the process, you're phone data partition is encrypted. It's just not locked down until you use some kind of phone lock too. BTW, the article goes on to describe the limited usefulness of having an encrypted data partition and no phone lock;
Lollipop's encryption still offers some limited protection even under those circumstances—for instance, by protecting stored data against anyone who tries to read it directly from the phone's memory. That could shield user passwords and other sensitive data from attackers.
Click to expand...
Click to collapse
As to why Exchange policies don't see the phone as encrypted is probably due to another issue.
Setting PIN to be required at startup after encryption possible fix
I now have my Nexus 5 & 7 working with exchange on Lollipop using this-
1. Reflashed Lollipop
2. Let phone reinstall all my apps
3. Locked bootloader.
4. Set a screen lock PIN
5. Encrypt phone
6. Set screen lock PIN to be required on start up (this was missing before!)
7. Installed MDM control via Mass360-all policies look to be met, including encryption
8. Installed my exchange account via Gmail
//code.google.com/p/android/issues/detail?id=79342
Updated thread with solution
---
* It used to be that when I did a reboot or shutdown and restart, I would have to enter a password before the system fully started.
* But now the phone boots into the phone without putting in my password. I can reboot the phone and it will boot all the way to the Lock screen, and I can unlock the lock screen with my fingerprint or my backup password.
* I am concerned that somehow my device is either no longer encrypted or that there is some setting which has stored the boot password.
--
Solution :
For those of you who find they have this problem and have not solved it, I found a solution that works, related to a bug (feature?) in Accessibility.
Apologies if this was suggested further in the thread, and that I'm replying to an old post. But I recently had this problem and figured out a solution.
- Accessibility was enabled and for some reason this cached the boot password. So- when I removed the app (rights) and turned off accessibility, and changed (reset/reentered) the password in security settings... On next boot the phone correctly asked me for password.
YMMV.
subs said:
I posted this elsewhere... But I'm having the same problem. Any thoughts? I can post more details, but don't want to repost this everywhere that I see people having the same unresolved problem.
---
* It used to be that when I did a reboot or shutdown and restart, I would have to enter a password before the system fully started.
* But now the phone boots into the phone without putting in my password. I can reboot the phone and it will boot all the way to the Lock screen, and I can unlock the lock screen with my fingerprint or my backup password.
* I am concerned that somehow my device is either no longer encrypted or that there is some setting which has stored the boot password.
Click to expand...
Click to collapse
Hi, please try not to bump threads almost a year old. I realise that it might have taken you a while to actually reach this thread, but hear me out.
Opening a new thread is always better, since software versions, features and devices are most likely different, along with different device usage habits/users.
You say you're having "the same problem"... as.. who exactly? There's a bunch of different specific "issues" that relate to encryption. Be specific.
For instance, you mentioning fingerprint sensor leads me to presume that you are not using a Nexus 5.
Sent from my Nexus 10 using Tapatalk

Making the S8+ completely theft proof

Hey!
It's my first post here so it this isn't the best place for such a question then by all means mods pls move the thread to where it should be
Basically, where I'm currently living (Brazil), things tend to get pretty violent and phone thefts are very common. Now the thing is, if it's an iPhone usually the thieves just throw it away, as once it's locked it becomes useless. When it comes to Android though, some of them will dig deep trying to access your info like pictures, passwords, bank information, among other things. They even manage to break IMEI locks and stuff. I got my S5 stolen recently and the information theft part put me through hell. Yet, I'd much rather have an S8+ then any other iPhone currently, so my question is how could I completely theft proof it?
I'm not really worried about them restoring the phone and reselling it, more about them accessing the data inside of it. I know the SD card can be protected through cryptography (although would accept "stronger" tips if there are any). When it comes to apps, aside from the basics of trusting what you install and stuff, are apps like Cerberus, Knox 2.0, or other Samsung features I'm not aware of, any good against someone who knows what they're doing? Is there a way to disable airplane mode or power offs? Also what is probably my strongest concern: is there a way to completely not allow system changes through a computer, like the one that removes the lock screen?
Being a programmer and computer science undergrad student (although not specializing in security nor mobile), I'd have no problem if the solutions would involve some coding or tweaking, just as long as they prove to be effective.
So, would you guys have any tips on how to completely secure the data given those concerns?
The sd card can be Encrypted and if you have a password lock (fingerprint irsi etc...) then it will ask for that before it will unlock the phone.
Also they have a remote wipe. You can log i to google and remote wipe your phone when you found out its been stolen.
You can set the phone to require a password to decrypt it when it's restarted. You can encrypt the SD card too. You can set it to lock instantly when the screen turns off. And you can use only a password to unlock it (no biometrics), which is the most secure option (if you use a suitable password). Finally, you can set the phone so that you can wipe it remotely, or to wipe itself after a number of consecutive incorrect password attempts. But even without the last two measures, your data will be unreadable without your password.
Unfortunately, though, if thieves are violent enough, they may be able to coerce you into divulging the password. If they succeed, they have full access to your phone.
Gary02468 said:
You can set the phone to require a password to decrypt it when it's restarted. You can encrypt the SD card too. You can set it to lock instantly when the screen turns off. And you can use only a password to unlock it (no biometrics), which is the most secure option (if you use a suitable password). Finally, you can set the phone so that you can wipe it remotely, or to wipe itself after a number of consecutive incorrect password attempts. But even without the last two measures, your data will be unreadable without your password.
Unfortunately, though, if thieves are violent enough, they may be able to coerce you into divulging the password. If they succeed, they have full access to your phone.
Click to expand...
Click to collapse
What about stuff like that Dr. Fone Toolkit that supposedly removes the lock screen? From the quick look I took it seems it somehow patches the Android on the phone to remove the lock screen. Is there some sort of system encryption/lock to avoid that kind of stuff when connected to a computer?
xile6 said:
The sd card can be Encrypted and if you have a password lock (fingerprint irsi etc...) then it will ask for that before it will unlock the phone.
Also they have a remote wipe. You can log i to google and remote wipe your phone when you found out its been stolen.
Click to expand...
Click to collapse
Usually they just put it on airplane mode though, so google remote wipe is useless... Which is why I was looking for more of an offline fix through cryptography and such
I use smart Lockscreen protector to prevent somebody putting my phone to airline mode or shutting it down ( It won't help phones with removable battery)
If you have the phone encrypted and have the require pin on boot set. And you have the Qualcomm version that is locked down you have nothing to worry about.
Even the iPhone 7 has been jail broken or rooted the S8 with the Qualcomm chip is one of only a few phones that have not been hacked. It's actually WAY more secure than an iPhone.
lvrma said:
What about stuff like that Dr. Fone Toolkit that supposedly removes the lock screen? From the quick look I took it seems it somehow patches the Android on the phone to remove the lock screen. Is there some sort of system encryption/lock to avoid that kind of stuff when connected to a computer?
Click to expand...
Click to collapse
The phone is completely encrypted, so if you set it to require a password to restart and to turn the screen back on, then its contents are unreadable without the password regardless of how you connect to it.
lvrma said:
...
Usually they just put it on airplane mode though, so google remote wipe is useless... Which is why I was looking for more of an offline fix through cryptography and such
Click to expand...
Click to collapse
If you have a lock screen set you can lock the status of your phone(wifi state, airplane mode, power settings). This way you have to unlock it to toggle these modes.
I just ran across this, some good advice.
http://thedroidguy.com/2017/04/setu...security-features-tutorials-1071462#Tutorial1
lvrma said:
What about stuff like that Dr. Fone Toolkit that supposedly removes the lock screen? From the quick look I took it seems it somehow patches the Android on the phone to remove the lock screen. Is there some sort of system encryption/lock to avoid that kind of stuff when connected to a computer?
Click to expand...
Click to collapse
Like you, I'm interested with this topic, but unlike you, I would like the theief to have a useless phone if they cant unlock it. So that they would think twice the next time they want to steal an android. Else they would just continue stealing since you just put the phone on download mode, connect to a computer and root it.
About your question. Isnt disabling usb debugging mode on developer option block that risk? Also in my note 4, enabling knox will prevent your device from being rooted, at least thats what i understand from the description. i wonder where it is in s8.
speaking of knox, s8 has "Secure folder". its like a secured environment within a phone. Everything you put in here will be protected by knox. Apps, accounts, files, etc. And it would ask for another security to access it(pattern/pin/password).
lvrma said:
Usually they just put it on airplane mode though, so google remote wipe is useless... Which is why I was looking for more of an offline fix through cryptography and such
Click to expand...
Click to collapse
you mentioned cerberus app, it has a function than can wipe device memory and wipe sd card via SMS command. so if you are fast enough, while the thief is running away and before he pulls out your sim card from the phone, you can send an sms command to wipe data.
Since you mentioned you are a programmer, this may be interesting to you, locking download mode and recovery mode on android to prevent thief from flashing hack to your phone. but this require a bit of patience if android isnt your forte.
https://ge0n0sis.github.io/posts/20...-mode-using-an-undocumented-feature-of-aboot/
BratPAQ said:
Like you, I'm interested with this topic, but unlike you, I would like the theief to have a useless phone if they cant unlock it. So that they would think twice the next time they want to steal an android. Else they would just continue stealing since you just put the phone on download mode, connect to a computer and root it.
About your question. Isnt disabling usb debugging mode on developer option block that risk? Also in my note 4, enabling knox will prevent your device from being rooted, at least thats what i understand from the description. i wonder where it is in s8.
speaking of knox, s8 has "Secure folder". its like a secured environment within a phone. Everything you put in here will be protected by knox. Apps, accounts, files, etc. And it would ask for another security to access it(pattern/pin/password).
you mentioned cerberus app, it has a function than can wipe device memory and wipe sd card via SMS command. so if you are fast enough, while the thief is running away and before he pulls out your sim card from the phone, you can send an sms command to wipe data.
Since you mentioned you are a programmer, this may be interesting to you, locking download mode and recovery mode on android to prevent thief from flashing hack to your phone. but this require a bit of patience if android isnt your forte.
https://ge0n0sis.github.io/posts/20...-mode-using-an-undocumented-feature-of-aboot/
Click to expand...
Click to collapse
Don't put your phone anywhere besides your pocket. Get a cover that makes it look like as different phone with a cracked screen.
the easiest way to encrypt sd and phone, enable adoptable storage.
cantenna said:
the easiest way to encrypt sd and phone, enable adoptable storage.
Click to expand...
Click to collapse
How is that easier than just selecting the Settings options to encrypt the SD card and to require a password to unlock upon restart?
---------- Post added at 06:08 AM ---------- Previous post was at 05:11 AM ----------
lvrma said:
Usually they just put it on airplane mode though, so google remote wipe is useless[.] Which is why I was looking for more of an offline fix through cryptography and such
Click to expand...
Click to collapse
Yes, and even without airplane mode, they can physically enclose the phone to block all electronic signals. Encrypting the phone (and SD card), using a secure password as the sole unlock method, affords the strongest protection against all attacks (except coercing the password from you).
Gary02468 said:
How is that easier than just selecting the Settings options to encrypt the SD card and to require a password to unlock upon restart?
---------- Post added at 06:08 AM ---------- Previous post was at 05:11 AM ----------
Yes, and even without airplane mode, they can physically enclose the phone to block all electronic signals. Encrypting the phone (and SD card), using a secure password as the sole unlock method, affords the strongest protection against all attacks (except coercing the password from you).
Click to expand...
Click to collapse
oh yea, may bad, i often assume everyone on xda is here because there interested in unlocked boot loaders, root and custom kernels. My recomindation applies only to people who have unlocked pandor's box only.
the method of encyption you suggested the isnt availble for users like me but we can enable adoptable storage which does encrypt the system by other means and it is compatible with root, etc
dynospectrum said:
Don't put your phone anywhere besides your pocket. Get a cover that makes it look like as different phone with a cracked screen.
Click to expand...
Click to collapse
Where can you get/ how can you make such a cover?
Also sometimes when I'm in bad Areas, I go to developer options and turn on some of the screen update stuff, so it flashes the screen purple a lot and make it look messed up.

Forgot PIN - Sat in a drawer and died. Please help

So, I just went to a music festival and wanted to use my Mate 9 instead of my OnePlus 6t for recording. I did a format of the device and set up very few things to get it usable over the weekend - signed into Google and Facebook primarily. I did not enable developer options, or set ADB as I didn't think anything of it.
Got home, let it sit on my nightstand and upload photos to the cloud... FORGOT TO PLUG IT IN BEFORE BED.
It sat there, got tossed in a drawer while cleaning and the other day, I wanted to finish uploading the rest of the media. Plugged it in, charged it and powered on, only to get a pesky "PIN required when you restart device" even though the phone is actively recognizing my face.
I cannot for the life of me figure out the PIN that I set, and none of my videos uploaded from the concert, so I really don't want to wipe the device. I figured that there was some backdoor through Google that would allow me to log in, verify myself, and unlock the phone from the other side, but I cannot find anything.
Is there any way to recover or disable the PIN so I can get my stuff off? I've emailed Huawei, but they have yet to reply to me, and searching hasn't yielded anything helpful aside from "Do THIS if you forget your PIN to reset it" videos which show people just mindlessly wiping their devices.
Please help.
If have twrp then ur problem easy solve and wat firmware.
I don't have TWRP . It was just factory reset and I don't know what firmware. I didn't think I'd have this issue. I can't believe I didn't write the pin down. If I at least knew how long it was, that would help too. But as I type in potentials, it allows around 15 characters before telling me it's incorrect. I can't remember if this would mean it's that long, or if it allows you to type out past password character length
The only real backdoor is if you had gone in and decrypted the device at some point, in which case you might be able to use TWRP or the like to access /sdcard and extract the media.
Without that, all of the media is in credential encrypted storage, meaning that your PIN is absolutely required: the encryption key for the data is behind your PIN.
Your other options are pretty much to brute force the PIN, or give up on the media. I wouldn't be surprised if there are utilities out there for it assuming that the device was unlocked (and your PIN entry sounds like something that's close to AOSP, not EMUI, as EMUI exposes the length of the PIN, so it probably is), but they're not anything I've ever had to look for.
Yeah, so full story... I have a OnePlus 6t, but it records concert audio like crap. It's blown out and distorted. The Huawei was able to record heavy bass drops front.row by the speakers without any distortion. I dug it out of my drawer, factory reset it, loaded a few apps on for the weekend, and logged into Google and Facebook.
I did not alter many settings, turn on Dev mode, or enable ADB. I don't even know what version of EMUI or Android is on there because I don't know if it had any updates..
I was hoping that with the Android Recovery service, there was some way to select the device and reset the lock, with 2 step verification via OTP or something else similar. But the only option is built around the phone being lost/locked out, and not in the owners possession... Which sucks.
I'm still needing a way to get my media off of this device. Can anyone help?!

Categories

Resources