Torrent Invites! Buy, Trade, Sell Or Find Free Invites, For EVERY Private Tracker! HDBits.org, BTN, PTP, MTV, Empornium, Orpheus, Bibliotik, RED, IPT, TL, PHD etc!



Results 1 to 3 of 3
Like Tree2Likes
  • 2 Post By Laxus

Thread: Windows 10 will try to combat ransomware by locking up your data

  1. #1
    Extreme User
    Laxus's Avatar
    Reputation Points
    111729
    Reputation Power
    100
    Join Date
    Mar 2014
    Posts
    3,448
    Time Online
    252 d 12 h 22 m
    Avg. Time Online
    1 h 38 m
    Mentioned
    304 Post(s)
    Quoted
    52 Post(s)
    Liked
    4874 times
    Feedbacks
    46 (100%)

    Windows 10 will try to combat ransomware by locking up your data

    But how to protect files from users who have access to those files remains tricky.

    The latest Windows 10 build, today's 16232, contains a few new security features. In addition to the richer control over exploit mitigation that Microsoft announced earlier this week, the new build also includes a trial of a new anti-ransomware capability.

    The long-standing approach that operating systems have used to protect files is a mix of file ownership and permissions. On multi-user systems, this is broadly effective: it stops one user from reading or altering files owned by other users of the same system. The long-standing approach is also reasonably effective at protecting the operating system itself from users. But the rise of ransomware has changed the threats to data. The risk with ransomware comes not with another user changing all your files (by encrypting them); rather, the danger is that a program operating under a given user's identity will modify all the data files accessible to that user identity.

    In other words, if you can read and write your own documents, so can any ransomware that you run.

    Microsoft's attempt to combat this is called "Controlled folder access," and it's part of Windows Defender. With Controlled folder access, certain directories can be designated as being "protected," with certain locations, such as Documents, being compulsorily protected. Protected folders can only be accessed by apps on a whitelist; in theory, any attempt to access a Protected folder will be blocked by Defender. To reduce the maintenance overhead, certain applications will be whitelisted automatically. Microsoft doesn't exactly specify which applications, but we imagine that apps from the Store would automatically be allowed access, for example.

    In principle, this should impede the ability of ransomware to encrypt user data. In practice, we'll have to see just how robust Controlled folder access is. To be effective, such a safeguard would need, for example, to prevent malicious Word macros from accessing a Protected folder, even though Word itself should be allowed to read and write to the Documents directory. If ransomware can readily get a trusted application to do its dirty work for it, the protection will likely be circumvented sooner rather than later.

    In the new build, Application Guard for Edge—the new system for running Edge in a special virtual machine to protect the operating system from browser-based flaws—also takes a big step forward in usability. Previously, these virtualized Edge sessions were ephemeral, with no ability to, for example, store cookies or passwords or create bookmarks. This was useful for visiting highly suspect sites, but it made the feature less than practical for routine browsing.

    In today's Windows build, a separate set of persistent data is now maintained for the virtualized browser sessions. This allows a much more normal browsing experience while still offering the safeguards that virtualization provides.

  2. #2
    User
    Wrestlingfan's Avatar
    Reputation Points
    1041
    Reputation Power
    35
    Join Date
    Jun 2017
    Posts
    21
    Time Online
    13 h 59 m
    Avg. Time Online
    N/A
    Mentioned
    4 Post(s)
    Quoted
    0 Post(s)
    Liked
    35 times
    Feedbacks
    0
    Why am I thinking the bad guys might use this to their advantage?

  3. #3
    ~Carpe Diem~
    WallE's Avatar
    Reputation Points
    128635
    Reputation Power
    100
    Join Date
    Jun 2017
    Posts
    4,605
    Time Online
    79 d 6 h 29 m
    Avg. Time Online
    45 m
    Mentioned
    656 Post(s)
    Quoted
    76 Post(s)
    Liked
    2432 times
    Feedbacks
    6 (100%)
    privacy to the max for issues I say. I want no1 to have access to my personal infos scary


Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •