Mobile Devices

Cybersecurity Awareness Fact Sheet

For public distribution – Updated June 2024

Whether it’s a work or personal device, at home or on the go, mobile devices contain a treasure trove of information that could easily end up in the wrong hands if not properly secured. Follow these guidelines to lock down your devices.

Tips & Best Practices

  • Make sure devices are password or PIN protected and screen-locked. Set up the “find my device” feature to allow you to find, remotely wipe data, and/or disable the device if lost.
  • Regularly update all apps and operating systems to patch any vulnerabilities that could lead to compromise of the device.
  • Only download apps from trusted sources. Review which apps have access to your information and uninstall those you no longer use or need.
  • Disable Bluetooth, Wi-Fi, and location-sharing services when not in use.
  • Use a cellular data connection or password protected personal hotspot rather than public Wi-Fi when possible.
  • If you must use public Wi-Fi, use a trusted Virtual Private Network (VPN) and never conduct exchanges of sensitive or personal information over an unsecure Wi-Fi network. Take note that VPNs do not protect against all threats from public Wi-Fi networks.
  • Do not plug mobile devices into public USB charging ports. Always use a trusted metal pronged wall outlet charger.
  • Never leave devices unattended in insecure locations (e.g., coffee shops, airports, hotel safes).
  • Regularly create backups of important digital files stored on your devices.
  • Treat unexpected text messages (or messages over encrypted messaging applications) like possible phishing emails. Do not click on links or attachments.

Reporting & Resources

  • If your device or information is stolen, report it immediately to your home organization and the local U.S. embassy or consulate.
  • Reference CISA’s Mobile Device Checklist for more tips.

Diplomatic Security Service
U.S. Department of State