STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← All Controls

SC-18 (4)

System and Communications ProtectionRev 5system

Mobile Code

Control Statement

Prevent the automatic execution of mobile code in [Assignment: software applications] and enforce [Assignment: actions] prior to executing the code.

Supplemental Guidance

Actions enforced before executing mobile code include prompting users prior to opening email attachments or clicking on web links. Preventing the automatic execution of mobile code includes disabling auto-execute features on system components that employ portable storage devices, such as compact discs, digital versatile discs, and universal serial bus devices.

CCI Identifiers (4)

CCI-002460Enforce organization-defined actions prior to executing mobile code.CCI-001171Defines software applications in which automatic mobile code execution is to be prohibited.CCI-001172Defines actions to be enforced before executing mobile code.CCI-001170Prevents the automatic execution of mobile code in organization-defined software applications.

Linked STIG Checks (193)

Across 22 STIGs. Click to expand.