How to Remove an Unknown Device from Online Banking: A Practical Security Guide

Written by: Abigail Ivy
Published on:

How to remove unknown device from online banking

If you see a device you do not recognize in your online banking account, act quickly to remove it and protect your money.

This guide explains what the device entry means, how to delete it safely, and what to do if the login may not have been yours.

Modern banking platforms from banks, credit unions, and fintech apps often show trusted or active devices tied to your profile.

That convenience can also reveal unauthorized access before serious fraud occurs.

What an unknown device means in online banking

An unknown device is any phone, tablet, laptop, browser, or app session connected to your banking profile that you do not recognize.

Banks may label these entries as trusted devices, active sessions, remembered browsers, or approved devices.

This does not always mean fraud, but it can signal one of several issues:

  • You signed in from a device and forgot about it.
  • A family member used a shared computer.
  • Your credentials were exposed in a phishing attack.
  • Someone accessed your account using stolen login information.
  • Malware or remote access software created a session without your knowledge.

Because online banking access can expose balances, transfers, account numbers, and linked payment methods, an unfamiliar device should be treated as a security risk until verified.

How to remove unknown device from online banking

The exact menu labels vary by institution, but the removal process is usually similar.

Look for sections such as Security, Devices, Login Activity, Trusted Devices, or Account Settings.

  1. Log in using a secure device you trust.
  2. Open the security or profile settings in your banking app or website.
  3. Find the list of registered, trusted, or active devices.
  4. Select the unfamiliar device or session.
  5. Choose remove, delete, forget, revoke access, or sign out of all devices.
  6. Confirm the action if prompted.

Some banks let you remove a single device.

Others only allow you to terminate all active sessions, which is often the safest option if you suspect unauthorized access.

If you do not see a device-management screen, contact customer support immediately and ask them to revoke sessions on your behalf.

What to do immediately after removing the device

Removing the unknown device is only the first step.

You should assume that your password or session may already be compromised and take additional precautions right away.

Change your banking password

Use a strong, unique password that you have never used on another site.

Avoid reusing passwords from email, shopping, or social media accounts, since credential-stuffing attacks often target accounts with shared passwords.

Update your security settings

Review and strengthen your account protections, including:

  • Two-factor authentication (2FA) or multi-factor authentication (MFA)
  • Biometric login, if offered by the bank
  • Security questions and recovery options
  • Trusted device and browser settings
  • Notification preferences for logins and transfers

Review recent account activity

Check transaction history, transfers, bill payments, card activity, address changes, and beneficiary updates.

Pay attention to small test withdrawals or transfers, which are common before larger fraudulent transactions.

Contact the bank if anything looks suspicious

If you notice unauthorized charges, profile changes, or login events, report them to the fraud department.

Ask whether they can freeze online access temporarily, reset device trust settings, or issue a new customer ID.

How to tell whether the device entry is legitimate

Before deleting a device, verify whether it may belong to you.

Sometimes banks display device details in a way that is not immediately obvious.

Compare the device name, operating system, approximate location, and login time with your own usage.

For example, “iPhone,” “Samsung Galaxy,” “Chrome on Windows,” or “Safari on Mac” may be familiar even if the display name looks generic.

Ask yourself these questions:

  • Did I log in from a work computer, family device, or travel phone?
  • Did I enable “remember this device” during a recent login?
  • Did I replace or reset my phone and forget the old device was still listed?
  • Was this a shared or public computer that saved my session?

If the device still seems unfamiliar after checking those details, remove it and tighten account security.

What if the bank does not let you remove the device?

Some banks limit device controls for compliance or security reasons.

In that case, you may need to use alternative steps to end the session and block future access.

  • Sign out of all sessions from the security menu, if available.
  • Change your password to invalidate active logins.
  • Disable remembered devices or browser-based access.
  • Delete the banking app and reinstall it on trusted devices only.
  • Call customer support and request a security review or fraud lock.

If the bank confirms suspicious access, ask them to document the case, monitor for unauthorized transfers, and advise whether you should file a formal fraud report.

How to protect your account after the cleanup

Good account hygiene reduces the chance of another unauthorized device showing up.

Banks and cybersecurity organizations, including the Federal Trade Commission and the Cybersecurity and Infrastructure Security Agency, consistently recommend layered defenses.

Use a password manager

A password manager helps create and store unique passwords for each account.

That makes it much harder for attackers to reuse credentials across services.

Turn on alerts

Enable notifications for logins, new device sign-ins, password changes, transfers, payee additions, and card-not-present transactions.

Fast alerts make it easier to spot suspicious activity early.

Avoid public Wi-Fi for banking

Public networks can expose you to interception or fake hotspot attacks.

If you must access banking while away from home, use a mobile data connection or a trusted virtual private network from a reputable provider.

Check your email account security

Your email is often the recovery channel for banking resets.

Secure it with a unique password, MFA, and recovery settings, because an attacker who controls your email may be able to regain banking access later.

Signs the account may already be compromised

Even after removing a device, stay alert for warning signs that point to broader account abuse.

  • Password reset emails you did not request
  • New payees or linked accounts you did not add
  • Unfamiliar transfers or debit card purchases
  • Logins from cities or countries you did not visit
  • Text messages about verification codes you did not request
  • Statements delivered to a new address

If any of these appear, contact the bank right away and ask what additional steps are needed to protect deposit accounts, credit lines, and linked payment services.

How banks typically record devices and logins

Most financial institutions store device fingerprints, session timestamps, IP addresses, browser type, and authentication history.

This data helps them detect fraud patterns, prevent account takeover, and support investigations.

It also means that “unknown device” may refer to a new browser profile, a cleared cookie cache, or a mobile app installation rather than a brand-new physical device.

Still, if you do not recognize the login, the safe response is the same: remove access and secure the account.

When to escalate to identity theft recovery

If an unknown device is paired with unauthorized transactions, changes to contact information, or repeated login attempts, you may be dealing with identity theft rather than a one-time security issue.

In that situation, consider these steps:

  • Place fraud alerts or credit freezes with major credit bureaus, if appropriate.
  • Save screenshots, timestamps, and transaction records.
  • Report the incident through the bank’s fraud channels.
  • File a report with the relevant consumer protection or law enforcement authority in your country.
  • Change passwords on any account that reused the same credentials.

The sooner you act, the easier it is to stop additional financial damage and preserve evidence for recovery.