4.5 Ensure the latest iOS device architecture is used by high-value targets

Information

This recommendation pertains to the physical device(s) used by high-value targets.

Rationale:

Physical security exploits against iOS devices are rarely demonstrated within two years of the release of the underlying architecture. For users whose physical iOS device(s) may be targeted, it is prudent to use the most recently released architecture.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Replace the device(s).
As of publication, the latest iOS device architectures are:

iPhone 11 Pro using the Apple A13 processor

iPad Pro 10.5' and 12.9' using the Apple A12X processor




Additional Information:

Apple provides the following material on identifying iOS device hardware. For iPhone, see: https://support.apple.com/en-us/HT201296. For iPad, see: https://support.apple.com/en-us/HT201471.

The term high-value targets is being used to refer to users who may be likely to experience a physical-level device attack. Examples include:

Politicians

Journalists

Activists

Civilian government or military personnel

Business executives

Wealthy individuals

See Also

https://workbench.cisecurity.org/files/3064

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-2c.

Plugin: MDM

Control ID: 9df658e42862e854f2d9d7ffde13d36b95003f57f5d0b16a53a37bf0a3fb391d