Apple has introduced a new feature called Impersonation Risk Detection in iOS 27 to combat social engineering threats.
What happened
The feature monitors app interactions to identify potential scams and warns users of possible threats. It analyzes interaction patterns, timing, context, and basic sensor data to determine the risk level. According to Apple, this information is analyzed on-device, and the company does not receive the data used to generate the risk level.
The feature targets social engineering schemes, which were among the most reported crimes in 2025, with over $7 billion in total losses. These schemes often involve scammers posing as bank employees, government officials, or family members to trick users into divulging personal data.
To enable Impersonation Risk Detection, users can go to the Settings app, select Privacy & Security, and toggle on the feature. The feature will then monitor app activity and provide updates on potential threats, categorized as Unknown, Medium, or High risk.
However, there are some caveats to consider, such as giving developers access to the risk threat level and potential intrusiveness. Additionally, not all apps may support the feature initially, but most are expected to receive updates soon.









