18.9.24.4 Ensure 'Default Protections for Popular Software' is set to 'Enabled' - winzip64.exe

Information

This setting determines if recommended EMET mitigations are applied to the following popular software:

7-Zip

Adobe Photoshop

Foxit Reader

Google Chrome

Google Talk

iTunes

Microsoft Live Writer

Microsoft Lync Communicator

Microsoft Photo Gallery

Microsoft SkyDrive

mIRC

Mozilla Firefox

Mozilla Thunderbird

Opera

Pidgin

QuickTime Player

RealPlayer

Safari

Skype

VideoLAN VLC

Winamp

Windows Live Mail

Windows Media Player

WinRAR

WinZip

The recommended state for this setting is: Enabled.

Rationale:

Applying EMET mitigations to popular software packages will help reduce the reliability of exploits that target them.

Solution

To establish the recommended configuration via GP, set the following UI path to Enabled:

Computer Configuration\Policies\Administrative Templates\Windows Components\EMET\Default Protections for Popular Software

Note: This Group Policy path does not exist by default. An additional Group Policy template (EMET.admx/adml) is required - it is included with Microsoft Enhanced Mitigation Experience Toolkit (EMET).

Impact:

EMET mitigations will be applied to the listed popular software that is installed on the computer.

Default Value:

User configured.

See Also

https://workbench.cisecurity.org/files/2700

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(2), CSCv6|8.4

Plugin: Windows

Control ID: ce77e35d24f0b01b3cea567b7cde8c2625a6fbf6aa07310a2b5e9a24aedff8f8