![]() On the MDM console, for the device, in the "Knox restrictions" group, unselect "allow autofill". If on the MDM console "allow autofill" is selected, or on the Samsung Android device "Autofill forms" can be enabled by the user, this is a finding.Ĭonfigure Samsung Android to disable automatic completion of Samsung Internet app text input. Verify that "Autofill forms" is disabled and cannot be enabled. Steps to Disable and Hide the Internet Browser are as follows: On the Home screen, swipe up to open the App Drawer. From the collapsed menu icon (three horizontal bars) on the toolbar, tap "Settings".Ĥ. From the "Personal" App screen, launch the "Samsung Internet" app.Ģ. On the Samsung Android device, do the following:ġ. ![]() On the MDM console, for the device, in the "Knox restrictions" group, verify that "allow autofill" is not selected. This procedure is performed on both the MDM Administration console and the Samsung Android device. ![]() Review device configuration settings to confirm that automatic completion of Samsung Internet app text input is disabled. Samsung OS 9 with Knox 3.x COBO Use Case KPE(AE) Deployment Security Technical Implementation Guide By disabling the autofill functionality, the risk of an adversary gaining further information about the device's user or compromising other systems is significantly mitigated. By allowing the use of autofill functionality, an adversary who learns a user's Samsung Android device password, or who otherwise is able to unlock the device, may be able to further breach other systems by relying on the autofill feature to provide information unknown to the adversary. The autofill functionality in the web browser allows the user to complete a form that contains sensitive information, such as personally identifiable information (PII), without previous knowledge of the information.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |