7.2.4 Ensure Warn When Visiting A Fradulent Website in Safari Is Enabled

Information

Apple uses the Google Safe Browsing API to check for fraudulent websites and report them to the user attempting visit one.

Attackers use crafted web pages to social engineer users to load unwanted content. Warning users prior to loading the content enables better security.

Solution

Profile Method:

Create or edit a configuration profile with the following information:

- The PayloadType string is com.apple.Safari
- The key to include is WarnAboutFraudulentWebsites
- The key must be set to: <true/>

Impact:

Once-compromised websites serving malware could be sanitized and remain in the database, though there is no widespread reporting of that risk.

See Also

https://workbench.cisecurity.org/benchmarks/15552

Item Details

Category: CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CM-10, 800-53|SC-7(3), 800-53|SC-7(4), 800-53|SC-18, CSCv7|7.1, CSCv7|7.4

Plugin: Unix

Control ID: 26d7d820f8ed8156abf47fa73e180b0a7d466a8cbb2d0481c33d323618d4d797