1.1 (L1) Ensure 'Open 'safe' files after downloading' is 'Disabled'

Information

The Safari browser contains a feature which causes all files considered 'safe' to be automatically opened once they have finished downloading.

Rationale:

This feature is meant to be a benefit but having the browser automatically open files that could be malicious and downloaded by mistake is a security risk.

Solution

Follow the below steps to set Open 'safe' files after downloading to Disabled:

1. Click Safari.
2. Click Preferences.
3. Click General.
4. Uncheck the Open 'safe' files after downloading checkbox.

To configure the plist follow the below steps:

1. Open the com.apple.Safari.plist.
2. Find the token <key>AutoOpenSafeDownloads</key>
3. Ensure this token is immediately followed by <false/>

Default Value:
Enabled.

See Also

https://workbench.cisecurity.org/files/1822

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(3), CSCv6|7

Plugin: Unix

Control ID: 781e36f41f9fc6cd26095bbb44d35d3fe0fc8e65f7e39e8343823be1a3cd06dc