Skip to main content

iPhone Lockdown Mode: how to use the security feature (and why you should)

Apple takes pride in selling a promise of privacy to its customers, and to a large extent, it lives up to that promise. As cyber criminals devise new ways to target phones, with tools as sophisticated and virtually undetectable as the Pegasus spyware, Apple also keeps fortifying its devices.

One step in that direction is Lockdown Mode, an “extreme” safety measure that was introduced with iOS 16 last year. The feature blocks a lot of vectors through which a zero-click, zero-day spyware like Pegasus finds its way inside a phone. From phone calls and message attachments to shared albums and network profiles, Lockdown Mode limits those risk routes.

Lockdown Mode information page on an iPhone 14 Pro.
Joe Maring/Digital Trends

In its threat analysis report, Citizen Lab revealed that NSO Group began exploiting new zero-day vulnerabilities in iOS. Notably, Lockdown Mode thwarted at least two of those serious vulnerabilities, even though the bad actors may have eventually found their way around the shield with new flaws.

Recommended Videos

If you’re confused about what exactly Lockdown Mode is, want to know what it does, and if you should put it on your iPhone, here’s a roundup of everything you should know.

What Lockdown Mode does and how to use it

Image used with permission by copyright holder

These zero-click exploits targeted by Pegasus are deemed extremely dangerous, and even experts at Google’s Project Zero described them as “a weapon against which there is no defense.” So, how does Lockdown Mode work against it? Well, to put it simply, it reduces the attack surface.

For example, when Lockdown Mode is enabled, certain attachment types in messaging are blocked, and link previews are also disabled. As a result, users are saved from interacting with malicious packages. Likewise, some web tech is blocked, which might degrade the web surfing experience, but will strengthen security.

FaceTime calls from unknown numbers will also be canceled. Locking the phone will block all wired data transfer to a connected device, and even configuration profile sharing, like that for VPN, will also be blocked.

In order to enable Lockdown Mode, follow this path:

  1. Open the Settings apps on your iPhone
  2. Scroll down to Privacy & Security
  3. Tap on Lockdown Mode and enable the corresponding toggle

But Lockdown Mode is not a cure-all solution to keep you safe online. Experts told Motherboard that a website can identify when you have enabled it, which could (in turn) make you a more visible target. However, it’s still a strong line of defense for people who are at risk of such protracted attacks.

Do you really need to use Lockdown Mode?

iPhone app privacy report
Nadeem Sarwar / DigitalTrends

Not everyone is a high-profile target of spyware like Pegasus. As a result, they don’t need to dramatically kill some important phone features by enabling Lockdown Mode. But not doing so also means leaving oneself vulnerable to a whole bunch of exploits ready to be used by bad actors.

So, what steps should an average user take to avoid becoming the next victim? We reached out to experts at Avast and Nord for some general tips that smartphone users should integrate inyo their daily habits.

At the top of the critical importance pyramid is software updates. Earlier in March 2023, Apple patched two critical vulnerabilities targeting iOS that may have been exploited by bad actors. It is, therefore, extremely important that you download software updates as soon as they are released because they not only bring new features, but also patch critical security issues.

Take, for example, the notorious Pegasus spyware, which targeted zero-day exploits in iOS. Apple eventually fixed the flaws after being notified by hackers and also sued the spyware maker NSO Group. But despite international outcry and activism, new exploits keep popping up, which only boosts the urgency of having an extreme security measure like Lockdown Mode.

Other ways to stay safe on your iPhone

Safety check on iPhone
Nadeem Sarwar / DigitalTrends

What about phishing-related scams that end up costing users millions of dollars each year? “Be cautious when clicking links in text messages, emails, or social media messages, especially from unknown senders,” Luis Corrons, an Avast security evangelist, told Digital Trends. “Always verify the source before providing personal or sensitive information.”

Adrianus Warmenhoven, a cybersecurity expert on the Nord Security team, also stresses that you should be careful about communicating with unknown numbers. Similarly, you should avoid giving your own number out randomly, especially when it comes to signing up for online services.

You should also always stick to downloading apps from official outlets like the Google Play Store and App Store. Sideloaded apps are often brimming with malware and raise hell for your smartphone systems. While iPhones don’t allow sideloading and limit app installation to the App Store, Android has the doors left open wide open.

“Avoid using unknown Wi-Fi,” Warmenhoven also warns. Bad actors often piggyback on these public networks, which often lack adequate security measures, to break into computers. This can prove to be a costly mistake, especially if you are performing sensitive tasks like online banking. But if you really have to go online, always use a VPN service, such as the one provided by Nord.

A black iPhone 14 Pro lying on a table.
Joe Maring / Digital Trends

The concerns over wireless connectivity are not limited to Wi-Fi only. “Bluetooth can be exploited by hackers to gain access to your phone,” Avast’s Corrons says. Needless to say, keep the Bluetooth disabled when it’s not in active use for data packet transfer. It’s also advised that you set your AirDrop sharing to “contacts only” for that added dash of security.

In a similar vein, steer clear of public charging points. TThe FBI recently issued an advisory about “juice jacking,” which involves cybercriminals breaking into electronic devices using tampered USB cables. You should ideally stick to a power bank, but if that isn’t feasible, invest in a USB data blocker, as it only allows charging current to pass through an outlet and blocks its data transfer privileges.

Also keep an eye on the apps that have access to system privileges. For example, a calculator app has no right to access your phone’s location. “Apps always ask for permission to access your contacts, camera, microphone, or location, although some of them could do their job without it,” Warmenhoven says. These permissions are often exploited for surveillance or stealing data.

Illustration of people standing on a phone's screen
Generated using Dall-E 2 / Digital Trends

Wherever possible, try to protect your apps and other data behind a layer of biometric authentication. Biometric information is often stored in a secure vault within a phone, and it can’t be spoofed the way alphanumeric passwords can be cracked. Where biometric verification is not the option, the best way forward is enabling two-step verification for your logins in every app that doesn’t allow biometric sign-in.

Another safety aspect that often flies under the radar is creating backups of your smartphone data. “Regularly back up your phone’s data to the cloud or a local computer to protect yourself against data loss in case of theft, damage, or malware infection,” Corrons suggests. Both Android and Apple phones let users create a backup of their phone data and store it either in the cloud or locally.

If that sounds like a hassle, at least create a backup of data belonging to important communication apps like WhatsApp. Apple also lets you enable a feature called Advanced Data Protection that protects a huge chunk of your cloud backups behind a layer of encryption for added security.

Nadeem Sarwar
Nadeem is a tech journalist who started reading about cool smartphone tech out of curiosity and soon started writing…
The 10 best messaging apps for Android and iOS in 2024
best messaging apps.

Want to learn more about which messaging app best suits your needs? WhatsApp, Telegram, and Signal are among the most secure picks, with end-to-end encryption to keep your chats safe. But there are also unique apps like Dust, where messages self-destruct after 24 hours, and Discord, which lets gamers easily chat while playing together. Meanwhile, Snapchat and Kik are popular for younger crowds with fun filters and the ability to join large group chats.

With so many messaging apps out there offering features like video calls, file sharing, and disappearing messages, it can be hard to choose the best one. That's why we've tested 10 of the most popular options on Android and iOS. Check out the full rundown with all the must-know details. They run on the Galaxy Z Fold 6, iPhone 16, and anything else that runs on Android or iOS.
WhatsApp

Read more
The best iPhone 15 cases in 2024: our 20 favorites
A green iPhone 15 in a bush.

Even though Apple has launched the iPhone 16, last year's model isn't going anywhere yet. In fact, the iPhone 15 is now a better buy than ever since Apple is selling it at a lower price — and you can find even deeper discounts online and from many carriers.

The iPhone 15 marked a watershed transition in Apple's standard iPhone lineup. It was a significant jump ahead of its 2022 predecessor, packing in the most significant camera improvements for a standard model since the iPhone 11 adopted the dual-lens camera design in 2019. That put it ahead of its time, and it's still a compelling choice against this year's iPhone 16, especially if Apple Intelligence isn't your cup of tea.

Read more
Google Gemini arrives on iPhone as a native app
the Google extensions feature on iPhone

Google announced Thursday that it has released a new native Gemini app for iOS that will give iPhone users free, direct access to the chatbot without the need for a mobile web browser.

The Gemini mobile app has been available for Android since February, when the platform transitioned from the older Bard branding. However, iOS users could only access the AI on their phones through either the mobile Google app or via a web browser. This new app provides a more streamlined means of chatting with the bot as well as a host of new (to iOS) features.

Read more