Skip to content
arrow_back
search
ISM-1486 policy ASD Information Security Manual (ISM)

Restrict Java Processing in Web Browsers

Ensure web browsers are set to block Java from running online.

record_voice_over

Plain language

This control means you need to set up your web browsers so that they don't run Java from websites. It's important because Java can be a way for hackers to sneak into your computer and steal information or cause damage. By stopping browsers from processing Java, you reduce the risk of getting a virus or being hacked while surfing the web.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2021

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML1, ML2, ML3

Official control statement

Web browsers do not process Java from the internet.
policy ASD Information Security Manual (ISM) ISM-1486
priority_high

Why it matters

Allowing Java in browsers exposes systems to drive-by download attacks, risking data breaches or malware infections.

settings

Operational notes

Verify browser policy keeps Java disabled and remove/uninstall any Java browser plug-ins. Recheck after browser updates.

Mapping detail

Mapping

Direction

Controls