Quick answer: To stop someone from accessing your phone remotely, first put the phone in airplane mode to cut the connection, then remove any unfamiliar apps and revoke their Accessibility and device-admin permissions, update your operating system, sign out unknown devices from your Google or Apple account, change your key passwords from a device you trust, and turn on two-factor authentication. If the warning signs continue after that, back up your data and do a factory reset. Signs of remote access include apps opening on their own, settings changing without you, fast battery drain, unexplained data spikes, the phone running hot, and strange pop-ups.
Remote access means someone can see or control your phone from somewhere else — reading your screen, moving through your apps, or pulling your data without touching the device. It’s alarming, but it’s also fixable. Here’s how to spot it, shut it down, and keep it from happening again.
How does someone gain remote access to your phone?
Remote access almost always starts with one of a few entry points:
- A malicious or misused app. Remote-access tools, fake “support” apps, or monitoring/stalkerware apps can hand control to someone else. These usually get installed either by tricking you into downloading them or by someone with physical access to your phone.
- Abused Accessibility permissions. On Android, the Accessibility service is powerful — it can read the screen and simulate taps. Malware frequently begs for this permission because it enables near-complete control.
- A compromised Google or Apple account. If someone has your account password, they can link devices, see your data, and push changes without ever holding your phone. This is why account security is central to stopping remote access.
- Phishing and scam “tech support.” Scammers talk victims into installing remote-desktop apps under the guise of fixing a problem, then take over.
Understanding the entry point matters because it tells you what to close off. Many of these overlap with broader compromise, so it’s worth reviewing the general signs your phone is hacked too.
What are the signs of remote access?

No single symptom is proof, but several together are a strong signal:
- Apps opening or closing by themselves, or the cursor and screen moving without your input.
- Settings changing on their own — permissions re-enabling, security features turning off.
- Fast battery drain and a phone that runs hot while you’re not using it, because background tools consume power.
- Unexplained data spikes, since remote sessions send information off your device.
- Screen flickering, lag, or the phone being slow to shut down.
- Pop-up ads, strange messages, or unfamiliar apps you didn’t install.
- Login alerts for your accounts from devices or locations you don’t recognize.
These closely mirror the signs your phone is tapped, so the two guides pair well.

How do you stop someone from accessing your phone remotely?
Work through these in order. The first step buys you time; the rest close the door for good.
1. Cut the connection. Turn on airplane mode (or turn off Wi-Fi and mobile data). Remote access needs an internet connection, so this immediately stops any live session while you clean up.
2. Remove suspicious apps. Go to Settings > Apps and scroll the full list. Uninstall anything unfamiliar, generic-sounding, or that you don’t remember installing. Common remote-access app names to watch for include remote-desktop and “quick support” style tools you didn’t set up yourself.
3. Revoke powerful permissions. On Android, open Settings > Accessibility and turn off access for anything suspicious, then check Settings > Security > Device admin apps and remove admin rights from anything you don’t trust (apps often use these to resist deletion). On iPhone, review Settings > General > VPN & Device Management and remove any unknown profiles.
4. Check your account for unknown devices. On Google, visit myaccount.google.com > Security > Your devices (and Recent security activity); on any unfamiliar device choose “Sign out” or “Don’t recognize a device? Secure account.” On Apple, open Settings > [your name], scroll to the device list, and remove anything you don’t own.
5. Change your important passwords from a device you trust — not the compromised phone. Start with your Google/Apple ID and email, since those unlock everything else.
6. Turn on two-factor authentication. This ensures a stolen password alone can’t get anyone back in. See our guide on setting up two-factor authentication on your phone.
7. Update your operating system, which patches the flaws remote-access malware relies on.
8. Run a reputable security scan to catch anything you missed, and for a thorough sweep follow how to detect and remove spy apps.
When should you factory reset?
If you’ve done the steps above and the signs continue — apps still open on their own, settings keep changing, data keeps spiking — a factory reset is the clean fix. It removes installed apps and malware and returns the phone to a known-good state. The one trap to avoid is restoring from a backup made while the phone was compromised, which can reinstall the problem. Our walkthrough on factory resetting to remove spyware covers doing it safely, and how to remove a hacker from your phone gives the broader recovery plan.
What if someone you know is behind it?
Remote access set up by a partner, ex, or someone you live with is a domestic-safety issue, not just a tech one. Removing their access can alert them and escalate the situation. Before you change anything, consider reaching out to the National Domestic Violence Hotline at 1-800-799-7233 or the National Network to End Domestic Violence (NNEDV) Safety Net project at techsafety.org to build a plan first. Our guide on whether a spouse is spying on your phone walks through this with your safety in mind.
How do you prevent remote access going forward?
A few habits keep the door closed. Install apps only from the official App Store or Google Play, and be deeply skeptical of anyone who asks you to install a “support” or “remote” app over the phone — that’s the single most common scam. Never grant Accessibility access to an app unless you’re certain it needs it. Set a strong passcode and use Face ID or fingerprint unlock so no one can load software while your phone is briefly out of sight. Keep two-factor authentication on for your main accounts, and review your account’s device list every so often. Finally, keep your phone updated — most remote-access attacks depend on flaws that updates have already fixed. For a wider privacy tune-up, see how to stop someone from tracking your phone.

Frequently asked questions
Can someone access my phone remotely with just my number?
Not in a full remote-control sense. A phone number alone can be used for phishing texts or SIM-swap attempts, but truly controlling your phone requires an app on the device or access to your linked account. That’s why removing suspicious apps and securing your account are the core fixes.
Will airplane mode stop remote access?
Yes, temporarily. Airplane mode cuts the internet connection that remote access depends on, so it halts any live session immediately. But it’s only a pause — the underlying app or account link is still there, so you need to remove the app and change passwords to stop it for good.
Does *#21# show if my phone is being accessed remotely?
No. That code only reveals call-forwarding settings, not remote-access software. It can be a minor clue about forwarded calls or texts, but it won’t detect a remote-control app. Use the app, permission, and account checks above instead.
How do I know which app is giving remote access?
Check for apps with Accessibility or device-admin permissions you didn’t grant, and look at your battery and data usage for an unfamiliar app near the top. On Android the Accessibility menu is the fastest place to spot abuse; on iPhone, check for unknown configuration profiles under Device Management.
Can iPhones be accessed remotely?
Yes, though it’s harder than on Android. The most common iPhone routes are a compromised Apple ID or an installed configuration profile, rather than a rogue app. Securing your Apple ID with a new password and two-factor authentication, and removing unknown profiles, closes the usual gaps.
Is a factory reset always necessary?
No. If removing suspicious apps, revoking permissions, and securing your account stops the symptoms, you may not need to reset. Reserve the factory reset for cases where the signs persist despite those steps, and change your passwords afterward so no one re-links the device.
Written by Samuel Smith, a consumer-technology writer and digital-privacy researcher who has worked through these remote-access lockdown steps on his own devices before writing this guide.