GEN008480 - The system must have USB Mass Storage disabled unless needed - modinfo

Information

USB is a common computer peripheral interface. USB devices may include storage devices that could be used to install malicious software on a system or exfiltrate data.

Solution

Prevent the USB drivers from loading:
# echo 'exclude: usb_ac' >> /etc/system
# echo 'exclude: usb_as' >> /etc/system
# echo 'exclude: hid' >> /etc/system
# echo 'exclude: scsa2usb' >> /etc/system
# echo 'exclude: usbprn' >> /etc/system
# echo 'exclude: usbser_edge' >> /etc/system

The system must be restarted for these changes to take effect.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_x86_V2R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-227978r603266_rule, STIG-ID|GEN008480, STIG-Legacy|SV-26970, STIG-Legacy|V-22579, Vuln-ID|V-227978

Plugin: Unix

Control ID: eb61b2b0e6a3db2b540369b59e7432e7d55dfab3cb5fe81f7ecae25716c5df95