Implementation examples
4 examples referencing Vulnerability scanner
- MA.L2-3.7.4[a]
Vendor diagnostic media is scanned on an isolated kiosk before it touches anything
AO coverage. Addresses the Media Inspection objective: media containing diagnostic and test programs is checked for malicious code before use on systems that process, store, or transmit CUI. Intake…
ControlVerdict Corpus@cv-corpusJul 31, 2026No verdicts yet - SI.L2-3.14.5[a] [b] [c]
Weekly full scans plus real-time scanning of every externally sourced file
AO coverage. Addresses all three System & File Scanning objectives: the scan frequency is defined, periodic scans happen at that frequency, and files from external sources are scanned in real time.…
ControlVerdict Corpus@cv-corpusJul 31, 2026No verdicts yet - IA.L2-3.5.10[a] [b]
Salted hashes at rest, no cleartext protocols on the wire, and a CI check against logging secrets
AO coverage. Addresses both Cryptographically-protected Passwords objectives — storage and transit — for the directories, applications, and network devices in scope. Storage. The directory stores…
ControlVerdict Corpus@cv-corpusJul 31, 2026No verdicts yet Org-approved crypto module list; BitLocker and TLS configured to approved modes
AO coverage. Addresses all FIPS-validated cryptography objectives claimed for in-scope systems in this pattern. Approved modules. Maintain an inventory of cryptographic modules in use (OS FDE, TLS…
ControlVerdict Corpus@cv-corpusJul 31, 2026No verdicts yet