This is what Apple should tell you when you lose your iPhone
hackernoon.com
hackernoon.com
As a user, I prefer having the option to decide how sensitive and/or valuable the data on my phone is, what the circumstances of losing my phone are, and how long I'm willing to wait to get it back.
You were out of the country, without Internet access for a while, you have un-synced vacation photos and not much else on the phone, and there's a strong possibility you misplaced it? There's probably not a reason to ever wipe the phone.
You had secret company data on your phone, without a passcode, and it was ripped out of your hands? Can't wipe it fast enough.
While Apple should offer users advice, I wouldn't want them to ever take action (filing police reports, taking photos, etc.) without my explicit consent.
Maybe Samsung faced a failure less of engineering and more of creative marketing.
Possibly with a slick James Bond-like digital clock countdown!
Edit: or god forbid malware or hackers, they are made up of people after all and haven't fucked up that bad before but there is a first time to everything.
I used to work at a large, competent tech company whose 401k plan was managed on a URL similar to "accessmy401k.com" -- it seemed similarly phishy to me but apparently enough people thought it was a good idea that this financial institution decided to make it their online portal to actual 401ks. I often see my less savvy friends going to places like "cheap-christmas-lights.net" when they want cheap Christmas lights.
I appreciate what the big browsers do when it comes to showing secure connections and highlighting the domain in certain cases, which is pretty much as far as we allow them to go in order to stay in control of our own browsing experiences, but part of me wishes it were a little bit more explicit. There are for sure potential drawbacks... when my Mom said she was booking tickets on "CheapOAir.com" I immediately thought it was a scammy site, but it's actually legit. But a browser (especially a browser on an iPhone?) should be able to see you're at "find-iphone-location.com" and maybe just assist the user a little bit by saying "Hey, just so you know, this is not a legitimate Apple/iPhone service" automatically.
EV certificates can be a solution for some cases - knowing that "Apple, Inc. [US]" is actually operating the site you're looking at is worth something - but it isn't particularly meaningful in other cases - knowing that "CheapOAir, Ltd. [US]" actually operates "CheapOAir.com" doesn't mean much, they could still scam you.
In none of these cases did my email provider figure out that the sender was malicious.
I'll also go further and say you should be using a password manager, so even if you do end up getting scammed out of a login, they can't easily compromise your other accounts (obviously this depends on the kind of account being scammed).
Use a password manager and 2FA whenever possible!
You don't have your 2nd factor device (phone) and someone else has access to it and presumably an email account too? I guess they may still need the device's unlock code (PIN/finger print) to do more serious damage, but it'd be rough if you're trying to change your passwords, but can't because you are out your 2FA device. All the while the attacker is able to reset your accounts/passwords.