AirTag and SmartTag: How to Detect If a Bluetooth Tracker Is Following You
Phones can now warn users when an unknown Bluetooth tracker such as an Apple AirTag or Samsung SmartTag is moving alongside them for an extended period. The alerts do not automatically confirm stalking, since the same tags can be left in taxis, rental cars or borrowed bags, yet they should never be ignored.
AirTag and SmartTag are small Bluetooth devices roughly the size of a large coin. Owners attach them to keys, bags, luggage, bicycles or pet collars so the items can be located on a map through the phone app. The tags themselves contain no GPS chip, SIM card or microphone; they simply broadcast a short Bluetooth signal that nearby phones anonymously forward to the owner.
Apple’s network is called Find My and draws on millions of iPhones, while Samsung uses SmartThings Find and Galaxy devices. Google operates a similar Android Find Hub network. The more phones nearby, the more accurate and frequent the location updates become.
What the notification actually means
An iPhone running iOS 17.5 or later may display a message that an AirTag or compatible tracker is traveling with the user. Android devices show a comparable alert about an unknown tracker that has been moving together with the phone owner. The warning triggers only when the tag is separated from its registered owner and stays near the user for a prolonged time.
Users should become concerned if the same unknown tag appears repeatedly, follows them after meetings or trips, or triggers alerts near home or in locations where strangers should not have access.
Immediate steps after receiving an alert
- Take screenshots of the notification, map and timestamps before dismissing anything.
- Do not turn off Bluetooth, as it is required to locate the device.
- Move to a public area, contact a trusted person or call emergency services if the situation feels threatening.
- Search bags, clothing, strollers and recently received items.
How to locate the tracker
On iPhone, open the alert card to view the route, play a sound on the tag or scan nearby. The serial number can be read via NFC by bringing the tag close to the phone. On Android 6.0 and newer, search settings for “unknown trackers” or use the open-source AirGuard app for additional scanning of Apple and Find My networks.
Start the physical search with items that stay close to the body: bags, coats, wallets, laptop cases and car interiors including door pockets, under seats and floor mats. Never attempt to disassemble wiring or crawl under a vehicle; instead contact police or a service center.
Evidence and police involvement
Photograph the tag in place, preserve all notifications and route data, and record the serial number if displayed. Do not discard or hand the device to a suspected owner. File a police report when a tag is found inside personal property without explanation or when accompanied by threats or stalking behavior. In life-threatening situations call 112.
Reducing future risk
- Keep iOS, Android, Google services and SmartThings updated.
- Review location-sharing permissions in Find My, Google Maps and messaging apps.
- Remove unknown devices from Apple ID, Google and Samsung accounts.
- Enable two-factor authentication and change passwords after relationship changes or device loss.
Related articles
CookieTin Extension Manages Partitioned Cookies Across Firefox, Chrome and Edge
Developer Perruer2 has released CookieTin, an open-source browser extension that fully supports partitioned cookies under Firefox Total Cookie Protection and Chrome CHIPS. The tool addresses limitations in older managers like Cookie Quick Manager by correctly retrieving and deleting cookies stored with partitionKey values. It works across Firefox, Chrome and Edge using a single Manifest V3 codebase written in TypeScript and Preact. Key features include accurate cookies.txt export compatible with curl and yt-dlp, protected cookies that survive explicit deletion, and pre-save validation of browser rules for __Host- prefixes and SameSite attributes. E2E tests using Puppeteer verify handling of HttpOnly, partitioned and container cookies in all three browsers.
Kaspersky Premium for macOS Gains App Uninstall Feature to Remove Residual Files
Kaspersky Premium now includes an App Uninstall tool for macOS that locates and deletes leftover files such as caches, cookies, settings, and logs after applications are removed. The feature also identifies duplicate copies of programs and lets users remove all instances or select specific ones while preserving shared components used by other software. Survey data from Kaspersky shows that only 44 percent of macOS users delete unused applications, even though 56 percent regularly clear browser data and 54 percent remove unwanted media files. Residual files can contain sensitive information including account tokens, passwords, IP addresses, event logs, and personal documents, creating privacy risks especially when a device is sold or accessed by unauthorized parties. Deleted files can be restored from the trash or directly within Kaspersky Premium before the application session ends. The company also warns that malicious programs are frequently disguised as legitimate macOS cleaning utilities.
Bypassing VPN Detection on iPhone: Detailed Methods to Avoid App Blocks
Many iPhone users encounter apps that detect and block active VPN connections even after switching servers or protocols. The detection often occurs locally on the device by inspecting network interfaces rather than relying solely on external IP addresses. This guide explains how apps identify VPN tunnels through iOS network data and provides practical workarounds including moving the VPN to a router, configuring per-app exclusions, and using web versions of services. It also covers why protocol obfuscation and port changes fail to hide local VPN activity from applications. Additional troubleshooting addresses automatic VPN profiles, ad blockers, and iCloud Private Relay interference. The article emphasizes that no universal toggle exists in iOS to hide an active VPN from all apps.
New Obfuscation Method Dissolves Personal Data Records in Layer of Plausible Variants
A Russian information security researcher has proposed a data protection technique that renders stolen personal records unusable even after full compromise. The approach mixes real data such as phone numbers, emails, passports, addresses, INN and SNILS with vast numbers of semantically valid alternatives. Attackers receive nearly complete information including a 361-character message containing PIN codes and word order, yet lack the secret vector space and reconstruction algorithm required to identify the correct record. Without these components, brute-force attempts produce millions of plausible results with no architectural method to verify accuracy. The method is presented as an alternative to traditional encryption when data must remain accessible yet protected against extraction. A public sandbox is available for testing the approach.