F
ForgottenSeer 823865
@Noche this link obviously is about the business version, you don't have all this on home version...
@Noche this link obviously is about the business version, you don't have all this on home version...
Would be the web filter component.Web Protection
Prevents access to malicious websites, ad networks, scammer networks, and bad neighborhoods
seems to be MBAE component?- Application Hardening
Reduces vulnerability exploit surface and proactively detects fingerprinting attempts used by advanced attacks
- Exploit Mitigation
Proactively detects and blocks attempts to abuse vulnerabilities and remotely execute code on the endpoint
Obviously, the real-time signature engine.Payload Analysis
Identifies entire families of known malware with heuristic and behavioral rules
what they means exactly, BB? i don't remember it had one; i admit didn't use my license since a while...- Behavior Monitoring
Detects and blocks ransomware via behavioral monitoring technology
- Application Behavior Protection
Prevents applications from being leveraged to infect the endpoint
ML in the real-time engine or now MBP has active cloud scanner?Anomaly Detection
Proactively identifies viruses and malware through machine learning techniques
No, Maybe free version as seccondary scannerIs it even worth to try to install it on my PC?
but im looking for replacement MBAMHello, good choice, HitmanPro is outstanding!
Signature based is becoming obsolete
It will never be obsolete as long as user:
signatures are the best thing going for average joe
- refuse to change their behaviors
- do not want to learn how OS security works
- want the security software to do all the work
average software vendor only gives what average joe is willing to pay for
"Modern" Signatures + Behavior Blocker >>>>>>>>> Default Deny
Default-Deny is a security policy (very effective) that should be used in some kind of environments, but not in a PC home user scenario, except if the user in question only does basic stuff, otherwise it will just annoy him prompting to have it removed.
Default-Deny has no value for the advanced user, except as a hobby, dont fool yourselfs thinking that the average security forum user needs to be told that he is gonna run a file, what the advanced user needs is a way to know if the file is clean or have some way to protect him in the case of a bad jugdgement; a default-deny solution doesnt help in neither.
If I want and need to run a file with a unknown reputation in what way Default-Deny is gonna protect me? It wont, so I simple dont bother with it and neither the industry, I bet that vendors like Kaspersky would love to ditch Signatures and the cost associated, but they wont because it is a reliable form of protection, not just a policy.
Exactly. Even doing basic stuff isn't enough , a properly tighten default-deny strategy will break even Windows Update. So basically hampering the user experience. Which mean "hey remove the s***t you installed on my computer" kind of call.Default-Deny is a security policy (very effective) that should be used in some kind of environments, but not in a PC home user scenario, except if the user in question only does basic stuff, otherwise it will just annoy him prompting to have it removed.
Exact again, however the only "default-deny" valid mechanism will be SRP , reason it is heavily used in corporations to prevent users to do s**t on the company endpoints and compromise the whole network.Default-Deny has no value for the advanced user, except as a hobby, dont fool yourselfs thinking that the average security forum user needs to be told that he is gonna run a file, what the advanced user needs is a way to know if the file is clean or have some way to protect him in the case of a bad jugdgement; a default-deny solution doesnt help in neither.
SRP will protect you because you won't be able to run the file unless you whitelisted it yourself.If I want and need to run a file with a unknown reputation in what way Default-Deny is gonna protect me? It wont, so I simple dont bother with it and neither the industry, I bet that vendors like Kaspersky would love to ditch Signatures and the cost associated, but they wont because it is a reliable form of protection, not just a policy.
Exactly. Even doing basic stuff isn't enough , a properly tighten default-deny strategy will break even Windows Update. So basically hampering the user experience. Which mean "hey remove the s***t you installed on my computer" kind of call.
Exact again, however the only "default-deny" valid mechanism will be SRP , reason it is heavily used in corporations to prevent users to do s**t on the company endpoints and compromise the whole network.
SRP will protect you because you won't be able to run the file unless you whitelisted it yourself.
Why do you think over the years i switched from annoying HIPS/Anti-exe to various form of SRPs, Windows 10's SRP/Applocker being the latest.
works very well, one of the few things i can credit MS with. Of course it is not invulnerable, but quite close if properly set. and if on top you have good security habits, being infected is almost null.SRP will always win.
Why do you think Microsoft put so much effort into theirs and then incorporate it into their OS ?
Indeed, the only case they would work is that you don't do anything on your computer and keep it in the same state before those tools are installed (which is out-of-scope of 99.9% of home users).Anti-executble, application control, whitelisting-only, so on... those are joker solutions