Mobile Security 5.6.x Android Application Release Notes

Prev Next

Last Updated: July 21, 2026


Trellix® Mobile Security 5.6.x Android application release includes enhancements and resolved issues.

Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current update.

Rating

The rating defines the urgency for installing this update.

This release is recommended for all environments. Apply this update at the earliest convenience.

Release details

Release Date: January 2025

For additional information about documentation and release details, visit the Customer Support Portal (login required).

End-of-Life details:

For information about the End-of-Life (EOL) dates for Trellix Mobile Security versions, see Trellix Product End-of-Life Information.

New dynamically added threats

Refer to the Trellix Threat Reference Guide for the details on new and updated threats.

System requirements

The following lists the system requirements for this release of Trellix Mobile Security:

  • The minimum OS version is Android 6.

  • Trellix Mobile Security does not support Android 32-bit emulators.

  • For standard Samsung Knox device action support, Android version 7.x and Knox version 2.7 and later are required. For Samsung Knox MTD support, Knox version 3.3 and later are required.

New or changed

  • Network Anomaly Behavior: This release introduces the Network Anomaly Behavior feature that identifies unusual network patterns on your device, helping to detect potential security risks like unauthorized data exfiltration, malware, or misuse of application permissions. It monitors traffic patterns and location-based behaviors to identify deviations from typical usage. These are the key functionalities:

    • Traffic Analysis: Monitors network traffic and adapts to new applications after a learning period, notifying you once the analysis is complete.

    • Geographic Analysis: Tracks location-based activity to detect anomalies in new countries, with notification following the learning period for accurate detection.

Note

Mark applications as trusted to exclude them from anomaly reports, and the uninstall option will be provided only for the applications that can be uninstalled.

  • Enable Android Management API (Preview): A new flag has been introduced in the App Settings tab on the Policies page of the MTD Console to enable an additional Android Management API (AMAPI). This API improves the assessment of device security information. Enabling this option will trigger the installation of the Android Device Policy on devices where it is not already installed, providing additional data for threat detection.

Note

Please note that this feature is in preview mode, disabled by default, and not yet ready for production use. Enabling this option will not trigger any additional permissions unless the checkbox is selected.

Resolved issues

This release resolves the general stability issues.