Is it a realistic threat though? You're not supposed to use your device after it has been compromised. If you don't _know_ your device has been compromised you are totally fucked anyway.
CTR mode is also malleable at bit level, while XTS is less so (this matters when an attacker can modify the encrypted contents).