Last Updated: July 21, 2026
Trellix® Mobile Security 5.6.x Android application release includes enhancements and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release. We recommend that you always upgrade to the most current update.
Rating
The rating defines the urgency for installing this update.
This release is recommended for all environments. Apply this update at the earliest convenience.
Release details
Release Date: January 2025
For additional information about documentation and release details, visit the Customer Support Portal (login required).
End-of-Life details:
For information about the End-of-Life (EOL) dates for Trellix Mobile Security versions, see Trellix Product End-of-Life Information.
New dynamically added threats
Refer to the Trellix Threat Reference Guide for the details on new and updated threats.
System requirements
The following lists the system requirements for this release of Trellix Mobile Security:
The minimum OS version is Android 6.
Trellix Mobile Security does not support Android 32-bit emulators.
For standard Samsung Knox device action support, Android version 7.x and Knox version 2.7 and later are required. For Samsung Knox MTD support, Knox version 3.3 and later are required.
New or changed
Network Anomaly Behavior: This release introduces the Network Anomaly Behavior feature that identifies unusual network patterns on your device, helping to detect potential security risks like unauthorized data exfiltration, malware, or misuse of application permissions. It monitors traffic patterns and location-based behaviors to identify deviations from typical usage. These are the key functionalities:
Traffic Analysis: Monitors network traffic and adapts to new applications after a learning period, notifying you once the analysis is complete.
Geographic Analysis: Tracks location-based activity to detect anomalies in new countries, with notification following the learning period for accurate detection.
Note
Mark applications as trusted to exclude them from anomaly reports, and the uninstall option will be provided only for the applications that can be uninstalled.
Enable Android Management API (Preview): A new flag has been introduced in the App Settings tab on the Policies page of the MTD Console to enable an additional Android Management API (AMAPI). This API improves the assessment of device security information. Enabling this option will trigger the installation of the Android Device Policy on devices where it is not already installed, providing additional data for threat detection.
Note
Please note that this feature is in preview mode, disabled by default, and not yet ready for production use. Enabling this option will not trigger any additional permissions unless the checkbox is selected.
Resolved issues
This release resolves the general stability issues.