Big Sur - Prohibit Remote Activation of Collaborative Computing Devices

Information

The inherent configuration of the macOS _IS_ in partial compliance as Apple has implemented a green light physically next to your camera that will glow when the camera is activated.

There are no indicators when the system's microphone is listening or activated. This requires additional software to be installed.

The macOS has built into the system, the ability to grant or deny access to the camera and microphone which requires the application to have an entitlement to use the device.

link:https://support.apple.com/guide/mac-help/use-the-built-in-camera-mchlp2980/mac[]

link:https://support.apple.com/guide/mac-help/control-access-to-your-camera-mchlf6d108da/mac[]

link:https://support.apple.com/guide/mac-help/control-access-to-your-microphone-on-mac-mchla1b1e1fe/11.0/mac/11.0[]

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

The technology partially meets this requirement. An appropriate mitigation for the system must be implemented for full compliance.

See Also

https://github.com/usnistgov/macos_security

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-15, CCE|CCE-85480-2

Plugin: Unix

Control ID: 3b35ab66742c2462d47a8dd2f8e5d49250d2a24ee55dc2a3c3b4cd4afc56984b