Skip to content
arrow_back
search
ISM-1290 policy ASD Information Security Manual (ISM)

Controlled Unpacking of Archive Files for Filtering

Ensure unpacked archive files do not disrupt system filters or cause unavailability.

record_voice_over

Plain language

This control is about making sure that when you open archive files, like zip files, on your computer systems, nothing from inside causes problems. If you don’t handle these properly, your system's security filters might miss harmful content, leading to viruses or malware infiltrating your systems, potentially shutting down operations.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Archive files are unpacked in a controlled manner to ensure content filter performance or availability is not adversely affected.
policy ASD Information Security Manual (ISM) ISM-1290
priority_high

Why it matters

Uncontrolled archive unpacking can cause filter bypass or resource exhaustion (e.g., archive bombs), degrading content filter performance/availability and disrupting operations.

settings

Operational notes

Enforce controlled unpacking limits (nesting depth, file count and total size) and regularly test with content filters to prevent archive bombs and performance degradation.

Mapping detail

Mapping

Direction

Controls