An adversary who is able to obtain unauthorized access to or misuse authorized access to cloud services (e.g. Google's Android Device Manager or Apple iCloud's Find my iPhone) or to an EMM console could use that access to wipe enrolled devices [1].
ID | Mitigation | Description |
---|---|---|
M1011 | User Guidance |
Encourage users to protect their account credentials and to enable available multi-factor authentication options. |
Google provides the ability for users to view their general account activity. Apple iCloud also provides notifications to users of account activity.