Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-260409 | KNOX-14-802300 | SV-260409r950738_rule | Medium |
Description |
---|
In some DOD operational environments, the use of the mobile device camera or microphone could lead to a security incident or compromise of DOD information. The System Administrator must have the capability to disable the mobile device camera and/or microphone based on mission needs. Alternatively, mobile devices with cameras or microphones that cannot be disabled must be prohibited from the facility by the ISSO/ISSM. If BYOAD devices are brought into facilities where the AO has determined the risk of using mobile device cameras or microphones is unacceptable, this could lead to the exposure of sensitive DOD data. SFR ID: FMT_SMF_EXT.1.1 #47 |
STIG | Date |
---|---|
Samsung Android 14 BYOAD Security Technical Implementation Guide | 2024-02-16 |
Check Text ( C-64139r950736_chk ) |
---|
Verify Samsung Android 14 BYOADs are prohibited in DOD facilities that prohibit mobile devices with cameras and microphones. If for DOD sites that prohibit mobile devices with cameras and microphones, Samsung Android 14 BYOADs have not been prohibited from the facility by the ISSO/ISSM, this is a finding. |
Fix Text (F-64046r950737_fix) |
---|
It is not possible to disable phone cameras and/or microphones when in BYOD mode. Therefore, do not allow Samsung Android 14 BYOADs in DOD facilities where mobile phone cameras and/or microphones are prohibited. |