Package
com.samsung.android.knox.pushmanager
KnoxPushManager
Guidance
Labelled "KnoxPushManager", this is a Samsung background service that sits in the Knox part of the platform on Galaxy devices. It has no launcher icon. Samsung does not publish a page describing this package by name, so the note below reasons from the site's own data rather than from vendor documentation, and no disable rating is given for that reason. The permission set recorded here is unusually informative. The package declares the ability to receive cloud-to-device push messages, reach the internet, start at boot, run a data-sync foreground service, query all installed packages and read privileged phone state. Alongside those it holds Samsung's own Knox permissions for device registration and for Knox enhanced attestation. That combination suggests, but does not establish, a device-side receiver for Samsung's Knox cloud services: the path by which a service in the cloud reaches a device rather than waiting for the device to check in. Samsung Knox Guard can send notifications to enrolled devices, and Knox attestation is documented as a service a server calls, but that documentation describes the administrator's side and does not name any on-device component, so the connection is inference rather than fact. For Android Enterprise, EMM and kiosk use, no public Samsung configuration or policy reference for this package was found for this note, and there is nothing here for an administrator to set. The practical handling on Knox-managed hardware is to leave it in place: a component holding Knox registration and attestation permissions is not a sensible debloat target when its exact role is undocumented, and the consequences of removing it cannot be predicted from the sources available. Version note: it is long-standing rather than new. Samsung's own 2021 application list for the Galaxy S21+ records it at version 1.1.00.35, and the builds recorded here run from 1.2.00.3 to 1.4.02.5 across API 31 to API 37. The package versions recorded here changed over that period, but no source establishes whether its role changed with them, and that is flagged here rather than answered.
Package intelligence
Observed signing, permission, version and size signals from contributing devices - descriptive of that sample, not a verdict. These come from the v2 Package Search sync, which not every device has contributed to yet, so for some packages this detail is partial or not present at all.
- Signed by the device maker's own signing key (Samsung), so it is an OEM preinstall, but 2 different certificates appear across the fleet, so OEMs ship their own builds of it. It also signs the Android framework, so it is a platform-level key on its device(s). Inferred from the certificate appearing only on Samsung devices (508 packages, 10196 observations).
- Its largest observed manifest declares 19 permissions: 1 runtime (user-granted), 4 signature or system-level, 8 install-time and 6 vendor or uncatalogued.
- Never reported as user-facing, so it runs as a background or system component rather than an app the user opens.
Declared permissions (19)
Largest permission set observed for this package. Text is Android's own published description where one exists; platform permissions Android does not document show their granted protection level (in grey) instead; vendor or unknown constants show the name only.
| Permission | Description |
|---|---|
ACCESS_NETWORK_STATE |
Allows the app to view information about network connections such as which networks exist and are connected. |
ACCESS_WIFI_STATE |
Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. |
FOREGROUND_SERVICE |
Allows the app to make use of foreground services. |
FOREGROUND_SERVICE_DATA_SYNC |
Allows the app to make use of foreground services with the type "dataSync" |
INTERACT_ACROSS_USERS |
Signature or privileged system permission. |
INTERNET |
Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. |
MANAGE_USERS |
Signature or privileged system permission. |
POST_NOTIFICATIONS |
Allows the app to show notifications |
QUERY_ALL_PACKAGES |
Allows an app to see all installed packages. |
READ_PRIVILEGED_PHONE_STATE |
Signature or privileged system permission. docs ↗ |
REAL_GET_TASKS |
Signature or privileged system permission. |
RECEIVE_BOOT_COMPLETED |
Allows the app to have itself started as soon as the system has finished booting. This can make it take longer to start the phone and allow the app to slow down the overall phone by always running. |
WAKE_LOCK |
Allows the app to prevent the phone from going to sleep. |
com.google.android.c2dm.permission.RECEIVE |
- |
com.samsung.android.knox.permission.KNOX_DEVICE_REGISTRATION_REQUEST_INTENT_INTERNAL |
- |
com.samsung.android.knox.permission.KNOX_ENHANCED_ATTESTATION |
- |
com.samsung.android.knox.permission.KPM_OPERATION_REQUEST_INFORM_ACTION_INTERNAL |
- |
com.samsung.android.security.permission.SAMSUNG_KEYSTORE_PERMISSION |
- |
com.samsung.permission.WIFI_FACTORY_TEST |
- |
Manage on devices
ADB commands for this package (the inverse of each is included so you can undo). Run from an authorised shell or wire the equivalent into your DPC. Verify on a test device first - this database doesn’t yet classify which packages are safe to change. --user 0 targets the current user; drop it (and use a privileged shell) to act device-wide.
/system, so Restore re-adds it (-k keeps app data)Seen on
Each record is a device profile (make + model + Android version). Each unique handset that syncs against a matching profile will increase the observations of a package, thereby increasing confidence that a package is expected to be on a device.
| OEM | Model | Android | Provenance | Observations | Last seen |
|---|---|---|---|---|---|
| Samsung | SM-A125F | Android 12 | OEM Samsung | 1 | 21 Jan 2026 |
| Samsung | SM-A135F | Android 14 | OEM Samsung | 3 | 21 Jan 2026 |
| Samsung | SM-A137F | Android 14 | - | 1 | 17 Jan 2026 |
| Samsung | SM-A236B | Android 14 | OEM Samsung | 2 | 10 Apr 2026 |
| Samsung | SM-A266B | Android 15 | - | 2 | 21 Aug 2025 |
| Samsung | SM-A266B | Android 16 | - | 1 | 26 Jan 2026 |
| Samsung | SM-A346B | Android 15 | OEM Samsung | 1 | 27 Jul 2026 |
| Samsung | SM-A515F | Android 13 | - | 1 | 30 Jun 2025 |
| Samsung | SM-A528B | Android 13 | - | 1 | 19 Jun 2025 |
| Samsung | SM-A536B | Android 15 | - | 1 | 19 Jun 2025 |
| Samsung | SM-A536B | Android 16 | OEM Samsung | 1 | 29 Jul 2026 |
| Samsung | SM-A556B | Android 15 | - | 1 | 1 Jul 2025 |
| Samsung | SM-A566B | Android 16 | OEM Samsung | 3 | 12 Sep 2026 |
| Samsung | SM-F721B | Android 15 | - | 1 | 9 Jul 2025 |
| Samsung | SM-F766B | Android 16 | - | 1 | 11 Nov 2025 |
| Samsung | SM-F971B | Android 17 | OEM Samsung | 1 | 18 Sep 2026 |
| Samsung | SM-G766B | Android 15 | - | 1 | 17 Oct 2025 |
| Samsung | SM-G766B | Android 16 | OEM Samsung | 1 | 5 Sep 2026 |
| Samsung | SM-G780F | Android 13 | OEM Samsung | 1 | 29 Dec 2025 |
| Samsung | SM-G973U | Android 12 | OEM Samsung | 2 | 10 Jun 2026 |
| Samsung | SM-G991B | Android 15 | OEM Samsung | 1 | 19 Apr 2026 |
| Samsung | SM-N986B | Android 13 | - | 9 | 17 Jul 2025 |
| Samsung | SM-S721U | Android 15 | - | 5 | 5 Aug 2025 |
| Samsung | SM-S731B | Android 16 | OEM Samsung | 1 | 11 Aug 2026 |
| Samsung | SM-S906B | Android 15 | - | 1 | 2 Jun 2025 |
| Samsung | SM-S908U | Android 16 | OEM Samsung | 2 | 17 Sep 2026 |
| Samsung | SM-S921B | Android 15 | OEM Samsung | 2 | 22 Jul 2025 |
| Samsung | SM-S921B | Android 16 | OEM Samsung | 1 | 17 Sep 2026 |
| Samsung | SM-S921U | Android 15 | - | 1 | 19 Jun 2025 |
| Samsung | SM-S926B | Android 16 | OEM Samsung | 1 | 14 Apr 2026 |
| Samsung | SM-S928B | Android 16 | OEM Samsung | 2 | 12 Jun 2026 |
| Samsung | SM-S928U1 | Android 15 | - | 1 | 12 Sep 2025 |
| Samsung | SM-S931B | Android 15 | - | 1 | 20 Sep 2025 |
| Samsung | SM-S931B | Android 16 | - | 1 | 23 Nov 2025 |
| Samsung | SM-S936B | Android 16 | - | 1 | 18 Dec 2025 |
| Samsung | SM-S937B | Android 15 | - | 1 | 25 Aug 2025 |
| Samsung | SM-S938B | Android 15 | - | 2 | 25 Aug 2025 |
| Samsung | SM-S942B | Android 17 | OEM Samsung | 1 | 25 May 2026 |
| Samsung | SM-S948U | Android 16 | - | 1 | 9 Sep 2026 |
| Samsung | SM-T636B | Android 15 | - | 2 | 12 Oct 2025 |
| Samsung | SM-T976B | Android 13 | - | 1 | 21 Jul 2025 |
| Samsung | SM-X716B | Android 15 | - | 1 | 27 Jun 2025 |
| Samsung | SM-X910 | Android 14 | - | 1 | 26 Jun 2025 |
| Samsung | SM-X910 | Android 15 | - | 1 | 12 Sep 2025 |
Known labels
Locale-aware display names seen in the wild.
| Label | Locale | Seen |
|---|---|---|
| KnoxPushManager | en-gb | 26 |
| KnoxPushManager | en | 20 |
| KnoxPushManager | en-us | 18 |
| KnoxPushManager | it-IT | 5 |
| KnoxPushManager | nl-nl | 5 |
| KnoxPushManager | de-de | 3 |
| KnoxPushManager | en-nl | 3 |
| KnoxPushManager | fr-fr | 2 |
| KnoxPushManager | it-it | 2 |
| KnoxPushManager | es-ES | 2 |
| KnoxPushManager | en-GB | 2 |
| KnoxPushManager | es-es | 2 |
| KnoxPushManager | es-us | 2 |
| KnoxPushManager | 2 | |
| KnoxPushManager | ru-ru | 1 |
| KnoxPushManager | en-US | 1 |
| KnoxPushManager | en-au | 1 |
| KnoxPushManager | es-US | 1 |
| KnoxPushManager | fr-FR | 1 |
| KnoxPushManager | pl-PL | 1 |
| KnoxPushManager | pl-pl | 1 |