Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
In the meantime look into what you can disable using content restrictions under screen time in settings. You can block a lot of things from happening behind a separate PIN code like being able to even get into iCloud settings or seeing faceid in the settings list. I keep this on pretty much all the time since that report earlier this year.
^^^This.

You can disable account changes in screen time among other things, with a separate PIN. This was probably deigned to keep your kids from buying 100 pizzas or $1,000 worth of game loot, but it’s an effective secondary defense against account/ID hijacking.

It can be an annoyance, you can’t install new apps for example, and your account name in ‘Settings’ will be greyed out and inaccessible - because that’s what the setting was designed to do. Security often involves some annoyances, but this is nothing new.

Should work on iPads too.
 
What about 2FA for iCloud Drive as well? Lots of files (some with sensitive information) accessed mainly from macBook and very rarerly (but still) from iOS. I'm sure it's not uncommon.
 
If there isn’t a passcode fallback, then what happens if your Face ID / Touch ID breaks? You won’t be able to even factory reset your device… unless you use iCloud to remote wipe it?

Regardless, I think instead it should require you to enter both a form of biometrics (Face / Touch ID) AND your passcode, so it’ll be duel protected. Maybe even also your Apple ID password, so it be triple protected.

Apple should just lock the Settings.app altogether, and also allow us to lock any app(s) we want.
 
Last edited:
  • Like
Reactions: antonrg
That sounds great and worthwhile the upgrade when it gets released.

Now, Apple, please add faceid to the mail app
You should really be able to lock ANY app with FaceID. The only exception I can imagine is the phone app for emergency calls or an emergency contact.
 
  • Like
Reactions: jz0309
You should really be able to lock ANY app with FaceID. The only exception I can imagine is the phone app for emergency calls or an emergency contact.
Are people really doing this? Never heard of MDM?
My corporate mail app requires biometrics or password every time, and corp password every 48-72 hours.
And steps up based on geolocation and/or anomalies.
 
  • Disagree
Reactions: mw360
GOOD MORNING APPLE, what took you so long?


Ive already made a rant a while ago about the srupidity of passocde being superior to faceid back in November


Heres the rant



THIS WOULD NOT BE A PROBLEM IF FACEID DIDNT JUST RANDOMLY DECIDE "YOU KNOW WHAT, MY DEAR USER? I DONT FEEL LIKE WORKING THIS TIME, SO YOU NEED TO TYPE IN YOUR PASSCODE MANUALLY IF YOU WANT TO CHECK INSTAGRAM OR PAY FOR SOMETHING!"

WHO WAS THE GENIUS AT APPLE THAT CAME WITH THE IDEA "IF FACEID DOESNT RECOGNIZE FACE, IT WILL LOCK ITSELF OUT AND PEOPLE WILL NEED TO TYPE IN THEIR PASSCODE IN ORDER FOR THEM TO UNLOCK THEIR PHONE AND MAKE FACEID WORK AGAIN!"

HOW IS TYPING IN A PASSCODE SAFER THAN RECONGIZING USERS 3D SCAN OF THEIR FACE? HOOOOOW?!?!? ANYBODY CAN REMEMBER PASSCODE, BUT NOBODY CAN JUST STEAL SOMEBODY'S FACE(EXCEPT NICHOLAS CAGE AND JOHN TRAVOLTA)

Im glad Apple listened to me and finally made the right decision to making passcode inferior to faceid. Only took em 5 years ffs
 
GOOD MORNING APPLE, what took you so long?


Ive already made a rant a while ago about the srupidity of passocde being superior to faceid back in November


Heres the rant



THIS WOULD NOT BE A PROBLEM IF FACEID DIDNT JUST RANDOMLY DECIDE "YOU KNOW WHAT, MY DEAR USER? I DONT FEEL LIKE WORKING THIS TIME, SO YOU NEED TO TYPE IN YOUR PASSCODE MANUALLY IF YOU WANT TO CHECK INSTAGRAM OR PAY FOR SOMETHING!"

WHO WAS THE GENIUS AT APPLE THAT CAME WITH THE IDEA "IF FACEID DOESNT RECOGNIZE FACE, IT WILL LOCK ITSELF OUT AND PEOPLE WILL NEED TO TYPE IN THEIR PASSCODE IN ORDER FOR THEM TO UNLOCK THEIR PHONE AND MAKE FACEID WORK AGAIN!"


HOW IS TYPING IN A PASSCODE SAFER THAN RECONGIZING USERS 3D SCAN OF THEIR FACE? HOOOOOW?!?!? ANYBODY CAN REMEMBER PASSCODE, BUT NOBODY CAN JUST STEAL SOMEBODY'S FACE(EXCEPT NICHOLAS CAGE AND JOHN TRAVOLTA)

Im glad Apple listened to me and finally made the right decision to making passcode inferior to faceid. Only took em 5 years ffs
So what’s the fallback when Face ID fails?
 
Apple seems to enjoy making complex solutions(?) to existing problems. Give me a secondary access code / password for other actions than unlocking the device and can use FaceID/TouchID in place of by choice.
I can't test the current security feature yet. But I agree, that a secondary code, similar to a SIM-PUK, would be a better solution for some circumstances.
 
Last edited:
  • Like
Reactions: addamas and dk001
I get your joke but isn't Siri voice-specific?
you dont need Siri honestly, if you have the passcode, open the maps app and hit the home button. instant directions to a 'safe location' to unlock the device. I understand this is still a SIGNIFICANT step towards preventing this, and Im half joking but if you did lose your phone at a 'local bar' or something, it would be pretty easy to get directions to your house from the phone and wait across the street to unlock it.
but I just used the terminal command to 'say hey Siri get directions home' and the response was 'which location' from Siri so no, its not voice specific
 
  • Like
Reactions: dk001
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.