STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to General Application (GAPP) Security Requirements Guide

V-288284

CAT II (Medium)

The application must be configured to block and quarantine malicious code upon detection.

Rule ID

SV-288284r1252437_rule

STIG

General Application (GAPP) Security Requirements Guide

Version

V1R0.1

CCIs

CCI-001243

Discussion

Malicious code protection mechanisms include, but are not limited to, antivirus and malware detection software. To minimize potential negative impact to the organization that can be caused by malicious code, it is imperative that malicious code is identified and eradicated. Applications providing this capability must be able to perform actions in response to detected malware. Responses include blocking, quarantining, deleting, and alerting. Other technology- or organization-specific responses may also be employed to satisfy this requirement. Malicious code includes viruses, worms, Trojan horses, and spyware. This requirement applies to applications providing malicious code protection.

Check Content

Review the anti-malware application documentation and deployed configuration to determine whether malicious code is blocked and quarantined upon detection. 

If the anti-malware application malicious code protection mechanisms are not configured to block and quarantine malicious code upon detection, this is a finding.

Fix Text

Configure the anti-malware application to block and quarantine malicious code upon detection.