Skip to content
arrow_back
search
ISM-1797 policy ASD Information Security Manual (ISM)

Ensure Software Updates are Securely Signed

Make sure software updates and patches are securely signed to verify they are authentic and untampered.

record_voice_over

Plain language

Ensuring software updates are securely signed means making sure the updates you install are safe and come from a trusted source. This is important because if updates aren’t verified for authenticity, hackers could take control of your systems by sneaking malicious software in through those updates.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2025

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Installers, patches and updates are digitally signed or provided with cryptographic checksums as part of software development.
policy ASD Information Security Manual (ISM) ISM-1797
priority_high

Why it matters

Unchecked software updates can enable attackers to inject malicious code, compromising systems and causing data breaches.

settings

Operational notes

Verify update signatures or cryptographic checksums before install; quarantine and report any unsigned or mismatched packages.

Mapping detail

Mapping

Direction

Controls