Skip to content
arrow_back
search
ISM-0341 policy ASD Information Security Manual (ISM)

Disable Automatic Execution for Removable Media

Ensure removable media cannot run programs automatically when inserted.

record_voice_over

Plain language

This control ensures that when you plug in a USB stick or other portable storage device, no programmes will run automatically. This is important because harmful software could sneak onto your computer without you knowing, potentially leading to data breaches or other security incidents.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Nov 2021

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Automatic execution features for removable media are disabled.
policy ASD Information Security Manual (ISM) ISM-0341
priority_high

Why it matters

If removable media can auto-run, malware may execute on insertion without user action, causing compromise of systems, credentials and data.

settings

Operational notes

Verify AutoRun/AutoPlay is disabled via policy on all endpoints, and routinely test with removable media to ensure nothing executes on insertion.

Mapping detail

Mapping

Direction

Controls