1.135 WN10-CC-000180

Information

Autoplay must be turned off for non-volume devices.

GROUP ID: V-220827RULE ID: SV-220827r958804

Allowing autoplay to execute may introduce malicious code to a system. Autoplay begins reading from a drive as soon as you insert media in the drive. As a result, the setup file of programs or music on audio media may start. This setting will disable autoplay for non-volume devices (such as Media Transfer Protocol (MTP) devices).

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> 'Disallow Autoplay for non-volume devices'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869