General: Windows Defender SmartScreen must be enabled (Desktop)

4d189e65-af8b-463f-95d1-3880b7c459ec

Windows Defender SmartScreen helps protect systems from programs downloaded from the internet that may be malicious. Enabling SmartScreen can block potentially malicious programs or warn users.

Remediation

Configure the policy value for:
Computer Configuration
|_ Administrative Templates
|_ Windows Components
|_ File Explorer
|_ Configure Windows Defender SmartScreen to "Enabled" with "Warn and prevent bypass" selected.

Windows 10 includes duplicate policies for this setting. It can also be configured under:
Computer Configuration
|_ Administrative Templates
|_ Windows Components
|_ Windows Defender SmartScreen
|_ Explorer
|_ Configure Windows Defender SmartScreen to "Enabled" with "Warn and prevent bypass" selected.

Desktop:
W11: https://www.stigviewer.com/stig/microsoft_windows_11/2023-09-29/finding/V-253395 / https://www.stigviewer.com/stig/microsoft_windows_10/2023-09-29/finding/V-220836
W10: https://www.stigviewer.com/stig/windows_10/2021-08-18/finding/V-220836 /

Nist 800-53: SI-16
CSCv7: 8.3