KNOX-07-017800 - The Samsung Android 7 with Knox must be configured to Disable Bixby.

Information

On MOS devices, unauthorized users (may be able to) access the device's contact database or calendar to obtain phone numbers and other information using a human voice even when the mobile device is locked. Often this information is personally identifiable information (PII), which is considered sensitive. It could also be used by an adversary to profile the user or engage in social engineering to obtain further information from other unsuspecting users.

SFR ID: FMT_SMF_EXT.1.1 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the Samsung Android 7 with Knox to disable Bixby.

On the MDM console, add all packages associated with the Bixby feature to the "Application disable list" setting in the "Android Applications" rule.

Note: Refer to the Supplemental document for additional information.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Samsung_Android_OS_7_with_Knox_2-x_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-91309r1_rule, STIG-ID|KNOX-07-017800, Vuln-ID|V-76613

Plugin: MDM

Control ID: 63e7e903a9c50ed8bd2530d0ffb3ca7dc2bad1fd6d6bc594913ba40c3e8f1284