1.113 WN16-CC-000250

Information

AutoPlay must be turned off for non-volume devices.

GROUP ID: V-224932
RULE ID: SV-224932r958804

Allowing AutoPlay to execute may introduce malicious code to a system. AutoPlay begins reading from a drive as soon as media is inserted into the drive. As a result, the setup file of programs or music on audio media may start. This setting will disable AutoPlay for non-volume devices, such as Media Transfer Protocol (MTP) devices.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> AutoPlay Policies >> 'Disallow Autoplay for non-volume devices'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23093

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-18(4)

Plugin: Windows

Control ID: 2f4f0da209aa30e94426af85af0c8193e9ef982a0c827caacfaba805b2e11e79