Hot Take Malfunction after the latest update of Microsoft Defender

Files in the cache are generally harmless but sometimes malicious scripts can run in the browser which Defender would miss but an AV that scans cache yet doesn't have HTTPS scanning would detect the script. Not always because I think most executed scripts are not cached and reside only in browser memory which could only be detected via HTTPS scanning/TLS decryption.
I don't know. In more than a decade of surfing the web, I never encountered a single website with malicious script. And I surf everywhere, from legit to piracy websites. Maybe because I use uBlock Origin, maybe I'm just lucky, no idea. One thing I'm certain though, none of the antivirus software I ever used, detect a single script on the website, regardless of HTTPS scanning or not. In fact, HTTPS scanning is the first thing I disable if security product offers it. I'm not willing to decrease security of encrypted connection.
 
I don't know. In more than a decade of surfing the web, I never encountered a single website with malicious script. And I surf everywhere, from legit to piracy websites. Maybe because I use uBlock Origin, maybe I'm just lucky, no idea
I use uBOL, but I visit priated drama websites loaded with tons of malvertisement.
Just visiting, without downloading anything, lands some cache files matching some signatures for MD and Avast.
They are completely harmless, but they get detected either by real-time protection, or more commonly, by manually running quick scan of either MD or Avast.
 
I don't know. In more than a decade of surfing the web, I never encountered a single website with malicious script. And I surf everywhere, from legit to piracy websites. Maybe because I use uBlock Origin, maybe I'm just lucky, no idea. One thing I'm certain though, none of the antivirus software I ever used, detect a single script on the website, regardless of HTTPS scanning or not. In fact, HTTPS scanning is the first thing I disable if security product offers it. I'm not willing to decrease security of encrypted connection.
Most are blocked by adblockers as most of them are redirection scripts. Some are things that are loaded about which which you would have absolutely zero clue. First-party scripts are also impossible to detect in real time without emulation by the AV engine of the HTML file. AVs with HTTPS scanning do that.
But those are not as common, and a first-party compromised site infection mostly requires users to input credit card details for attackers to steal so users not doing that are usually safe anyway.
I'm not a fan of HTTPS scanning either because of the speed impact, CPU usage, QUIC downgrading, potential security issues, etc.
Anyway, these are additional talking points. I was just informing that Defender's real-time protection doesn't scan browsers cache folders at all. This is an info almost nobody knows, so I think it's worth sharing this info even though the impact of not scanning the cache is not huge. Maybe it improves browsing speed and definitely results in less CPU and disk activities.
 
Anyway, these are additional talking points. I was just informing that Defender's real-time protection doesn't scan browsers cache folders at all. This is an info almost nobody knows, so I think it's worth sharing this info even though the impact of not scanning the cache is not huge. Maybe it improves browsing speed and definitely results in less CPU and disk activities.
So browsers installing outside the usual location, such as Yandex stable, and developer versions of Edge, Chrome, and others may lead to slower browsing and higher work by MD?
 
So browsers installing outside the usual location, such as Yandex stable, and developer versions of Edge, Chrome, and others may lead to slower browsing and higher work by MD?
I only checked the stable versions of Edge, Chrome, Firefox and Brave. So don't know about other editions or browsers like Opera, Yandex, etc.