By Jackson Godwin. Cybersecurity Analyst & Penetration Tester

I Audited My Own Phone and Found 7 Security Mistakes You Should Check Today
Disclaimer: This article is based on real cybersecurity best practices and is written to educate readers about protecting their smartphones from modern cyber threats.
I Thought My Phone Was Secure…
As a cybersecurity consultant, people often ask me one question.
“Jackson, your phone must be impossible to hack, right?”
I usually smile.
Because the truth is…
Cybersecurity professionals aren’t immune to making mistakes.
In fact, we sometimes become too comfortable.
We install new apps.
We test software.
We connect to different networks.
We download files for work.
Over time, small security mistakes begin to pile up.
One Saturday morning, I decided to do something I had recommended to countless clients—but had never properly done for myself.
I decided to perform a complete security audit of my own smartphone.
I expected everything to be perfect.
After all…
I work in cybersecurity.
I understand phishing attacks.
I perform penetration testing.
I advise organizations on ISO 27001 and PCI DSS.
Surely my own phone would pass with flying colours.
I couldn’t have been more wrong.
The Audit Started With One Simple Question
I placed my phone on my desk.
Opened my notebook.
Made a cup of coffee.
Then I asked myself one question.
“If someone stole this phone today, how much of my digital life would they gain access to?”
That question changed everything.
Instead of looking at my phone as a gadget…
I looked at it the way a cybercriminal would.
Immediately I began noticing things I had ignored for months.
Not because I didn’t know better.
But because I had become comfortable.
And comfort is dangerous in cybersecurity.
Your Smartphone Is More Valuable Than Your Wallet
Think about everything stored on your phone.
Your email.
Your banking app.
Your WhatsApp conversations.
Your photographs.
Your contacts.
Your passwords.
Your cloud storage.
Your work documents.
Your location history.
Your online shopping accounts.
Your social media.
Your two-factor authentication codes.
Now compare that to what’s inside your physical wallet.
Maybe some cash.
A few bank cards.
Your driver’s licence.
Which one would cause more damage if it fell into the wrong hands?
For most people…
The smartphone wins.
Yet many people spend more time protecting their wallets than protecting their phones.
The Results Shocked Me
After about thirty minutes of checking settings, permissions, installed applications, security features and account configurations…
I found seven mistakes.
None of them looked serious on their own.
But together…
They created unnecessary risk.
The scary part?
Millions of people make these exact same mistakes every single day.
You might be making some of them right now.
Let’s begin with the first one.
Security Mistake #1 — I Had Too Many Apps With Unnecessary Permissions
The first thing I checked was my app permissions.
Honestly…
I wasn’t expecting surprises.
Then I opened the permission manager.
I was shocked.
Several apps had access to:
- My location
- My camera
- My microphone
- My contacts
- My storage
Some of those apps hadn’t been opened in months.
Others had no legitimate reason to access those features.
One simple flashlight application had permission to access my location.
A photo editing app wanted access to my microphone.
A weather application had permission to read files from my storage.
Immediately, I asked myself:
“Why does this app need all of that?”
The answer was simple.
It probably didn’t.
Why App Permissions Matter
Every permission you grant gives an application access to another part of your digital life.
Most legitimate apps request permissions because they genuinely need them.
For example:
- A camera app obviously needs access to your camera.
- Google Maps needs your location.
- WhatsApp needs access to your contacts if you want to message people easily.
But not every permission request is necessary.
Sometimes developers request more access than they actually need.
Sometimes malicious applications abuse those permissions.
That’s why reviewing app permissions regularly is one of the easiest ways to improve your smartphone security.
What I Did
I went through every installed application one by one.
If an app didn’t genuinely require access to:
- Camera
- Microphone
- Location
- Contacts
- Storage
I removed the permission.
It only took about fifteen minutes.
Yet it dramatically reduced the amount of personal information available to installed apps.
That one exercise reminded me of an important cybersecurity principle.
Every permission you grant should have a clear reason.
If you can’t explain why an app needs access…
It probably doesn’t.
Ask Yourself These Questions
Take your phone right now.
Open your permission settings.
Then ask yourself:
- Does this game really need my microphone?
- Does this calculator need my contacts?
- Why does this wallpaper app know my location?
- Why does this flashlight need storage access?
You might be surprised by what you discover.
And remember…
Cybersecurity isn’t only about hackers.
Sometimes it’s about limiting unnecessary access before it becomes a problem.
The first mistake had already opened my eyes.
But what I discovered next was even more concerning.
It wasn’t about an application.
It was about something I had been using every single day without thinking.
And fixing it immediately made my phone significantly more secure.
(Continue with the next section, where we’ll uncover Security Mistake #2 and the remaining findings from the smartphone audit.)








