Device Theft
Jump to:
Summary
Device Theft is a type of application attack where an adversary physically steals a computing device, such as a laptop, smartphone, or tablet, to gain unauthorized access to sensitive data or applications stored on or accessible through the device.
Key Characteristics
- Physical acquisition of a device containing valuable data or application access.
- Exploitation of stored credentials, cached sessions, or unencrypted data on the device.
- Potential for lateral movement within networks if the device is connected to corporate environments.
- Often targets mobile devices and laptops due to their portability and data storage.
- May lead to identity theft, data breaches, or unauthorized application access.
Defensive Controls
- Implement full disk encryption to protect data at rest on devices.
- Use strong authentication methods, including multi-factor authentication (MFA).
- Enable remote wipe and device tracking capabilities.
- Enforce strict access controls and session timeouts on applications.
- Educate users on physical security best practices and reporting lost or stolen devices promptly.
Related Security Solutions
Endpoint security platforms, mobile device management (MDM) solutions, encryption software, identity and access management (IAM) systems, and remote device management tools are critical in mitigating risks associated with device theft.
More in Physical & Hybrid Attacks