Windows Defender Exploit Guard

Published: June 6, 2022, 2 a.m.

b'

This week, Adam and Andy talk about Windows Defender Exploit Guard. This is a set of protections built into Windows Server and 10/11 operating systems that provide additional device hardening rules. This conversation was spawned by the current Follina vulnerability (CVE-2022-30190) where an Attack Surface Reduction (ASR) rule can prevent the attack from happening. ASR rules are part of Window Defender Exploit Guard. Dive in to learn all about it!

\\n

-------------------------------------------

\\n

Youtube Video Link: https://youtu.be/ldFWF9GuMZY

\\n

-------------------------------------------

\\n

Documentation:

\\n

https://msrc-blog.microsoft.com/2022/05/30/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/

\\n

https://www.bleepingcomputer.com/news/security/windows-msdt-zero-day-vulnerability-gets-free-unofficial-patch/

\\n

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/attack-surface-reduction-rules-reference?view=o365-worldwide

\\n

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/controlled-folders?view=o365-worldwide

\\n

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/exploit-protection?view=o365-worldwide

\\n

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/network-protection?view=o365-worldwide

\\n

-------------------------------------------

\\n

Contact Us:

\\n

Website: http://bluesecuritypod.com

\\n

Twitter: https://twitter.com/bluesecuritypod

\\n

Linkedin: https://www.linkedin.com/company/bluesecpod

\\n

Youtube: https://www.youtube.com/c/BlueSecurityPodcast

\\n

Instagram: https://www.instagram.com/bluesecuritypodcast/

\\n

Facebook: https://www.facebook.com/bluesecpod

\\n

Twitch: https://www.twitch.tv/bluesecuritypod

\\n

-------------------------------------------

\\n

Andy Jaw

\\n

Twitter: https://twitter.com/ajawzero

\\n

LinkedIn: https://www.linkedin.com/in/andyjaw/

\\n

Email: andy@bluesecuritypod.com

\\n

-------------------------------------------

\\n

Adam Brewer

\\n

Twitter: https://twitter.com/ajbrewer

\\n

LinkedIn: https://www.linkedin.com/in/adamjbrewer/

\\n

Email: adam@bluesecuritypod.com

\\n\\n--- \\n\\nSend in a voice message: https://podcasters.spotify.com/pod/show/blue-security-podcast/message'