Battle Double whitelist better than 1, WHHL with MD in MAX or Avast in hardened mode?

Compare list
WHHL + MD on MAX vs WHHL + Avast free in Hardened mode
Platform(s)
  1. Microsoft Windows

LennyFox

Level 7
Thread author
Jan 18, 2024
307
I am intrigued by an idea launched by a ForgottenSeer.

He (Max90) states that Windows with SAC or WDAC-ISG (as implemented by WHHL) with Avast Free in hardened mode would be stronger than SAC or WHHL with Microsoft Defender in MAX settings (ConfigureDefender).

Because the whitelists of WDAC-ISG and MD MAX are from same company, the chance of sneaking through whitelists from two different companies, would be lower.

Somehow this idea of two different whitelists appeals to me (since Avast free offers an option to show only security related popups).

All input and thoughts welcome.
 

LennyFox

Level 7
Thread author
Jan 18, 2024
307
@Moonhorse and @Andy Ful

I honestly don't know what is best. Using MD on Max has the practical benefit of using no third-party security software (and has a smaller attack surface). Using Avast in hardened mode theoretically has a point (the overlapping cross section of two populations or area's is always smaller than the two populations or area's it is a join of). So I really appreciate additional viewpoints on this.
 
Last edited:

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top