Live data from Hacker News

MS Windows Defender and DeCSS

arch13.com

191–200 of 211 posts

Re: MS Windows Defender and DeCSS

#191
post #96

Maybe this is a good time to ask a dumb question.... how do yall disable windows defender? I spent a weekend on it last year and couldn't figure it out. Best I could surmise is that I need to wipe my hard drive and install a sketchy copy of "mad max edition" windows 10 enterprise, which I would have to download on TPB or some other Warez site.

Stopping by later in the day to offer a solution to my own question in case someone else is struggling with the same:

https://github.com/AveYo/LeanAndMean

If you can run as TrustedInstaller, it becomes feasible to rip all of this kind of bullshit out.

Just got my latest patched Win10 Pro copy running totally free of defender. Service is properly stopped. I was able to stop it like you would any other with TI privileges. Local admin just gets denied.

Re: MS Windows Defender and DeCSS

#192
post #132
post #120

Earlier quoted context omitted.

Care to elaborate? I'm using Windows as a primary dev machine for years and I've encountered no problems aside from the infuriating update-related restarts. What am I missing? This is an actual, emotionless, genuine question? Always looking to find new ways to procrastinate by trying out new tools ;)

You don't use Windows Update Manager or timed firewall rules to make sure Update doesn't ever interfere with your work?

No I don't. The restarts are fucking infuriating but, at least in my case, they've never been catastrophic. My computer is usually running all the time but when I finish working on some thing I always ^S everything and usually `git push --all; git push --tags`.

Re: MS Windows Defender and DeCSS

#193
post #132

Earlier quoted context omitted.

You don't use Windows Update Manager or timed firewall rules to make sure Update doesn't ever interfere with your work?

If your OS defaults to interrupting your work with its update policies, it's doing it wrong. Just because you can delay it doesn't make it acceptable.

Agreed. The fuck-your-work-restart behavior is infuriating.

Re: MS Windows Defender and DeCSS

#194
post #193

Earlier quoted context omitted.

If your OS defaults to interrupting your work with its update policies, it's doing it wrong. Just because you can delay it doesn't make it acceptable.

Agreed. The fuck-your-work-restart behavior is infuriating.

This is one of the biggest reasons I no longer boot Windows at all, combined with the rather good support for gaming on Linux nowadays.

When I boot up my Windows install for the first time in months and it wants to waste ten, twenty minutes of my time installing updates and not letting me use my computer, I just don't bother next time. When I play a game, and Windows wants to pester me in the background to reboot for updates, it makes me wish I hadn't bothered. If a game or application doesn't work on Linux, I just don't use it. It's not worth the time.

Re: MS Windows Defender and DeCSS

#195

Earlier quoted context omitted.

To turn it off permanently, there's a registry entry: https://itty.bitty.site/#Disable_Real_Time_Protection_Perman... I'm not sure whether or not it works on non-pro versions of Windows.

This does not work anymore. https://www.pcgamer.com/permanently-disabling-windows-10s-bu...

...oh. Uh, that's super bad. I didn't know because I'm on LTSC.

Re: MS Windows Defender and DeCSS

#196
post #22

Earlier quoted context omitted.

I had to get signed permission from our IT contractors to disable it. But then again, I was trying to get a PDF of a Categorical Logic paper from an Italian university’s website and the filters kept blocking for pornography and sending emergency messages to the contractor to audit my computer.

Sounds weird... Do you know to what extent those are correlated? That is: is the contractor told every time the filter thinks it has found adult entertainment? Or was your case exceptional?

This reply is really delayed, but our office rather small and so the contractor is notified and the event logged every time the filter thinks it blocks adult entertainment. I was being stubborn and repeatedly trying to access the site via other directories, link patches, etc. and that’s why the contractor was actually notified in real time.

Re: MS Windows Defender and DeCSS

#197
post #165

Earlier quoted context omitted.

Especially given how common media files are as an attack vector.

pledge(4)ing an image or video viewer under OpenBSD doesn't look difficult at all. Also, you can convert your PNG images to Farbleld (+.gz | +.xz) without losing quality. And the farbleld image format it's more difficult to exploit.

I think running pledge(2) on Windows is quite difficult. :)

(At least, I'm assuming the question here is "What should Windows Defender do?" I agree that the answer to "What should OpenBSD's built-in antivirus do?" is "Literally not even exist," which it already does.)

Re: MS Windows Defender and DeCSS

#198
post #130

Earlier quoted context omitted.

Outside of highly regulated environments, technical staff usually have local admin rights. Is it a risk? Yes, although one that can be minimized. Letting people do what they need to do with minimal interference is an important part of keeping employees happy.

Even if they're not supposed to, most people do, or at least they know an admin login. All it takes is one frustrated person who knows someone higher up and the login is on a sticky note in a drawer. Technical security measures are not and will never be a substitute for proper training.

> Technical security measures are not and will never be a substitute for proper training.

What would proper training achieve to solve GGP's problem of his machine becoming unusable every week?

Re: MS Windows Defender and DeCSS

#199

Earlier quoted context omitted.

So control over all the computers in a country comes down to just a few keys held by "approved" manufacturers; or rather a single key, held by the government, which signs the list of approved manufacturer keys. Then all they need to do is require that ISPs only allow packets to be sent by computers that have passed a Measured/Trusted Boot check, and suddenly all online activity is restricted to "approved" computers,…

> So control over all the computers in a country comes down to just a few keys Notice that I didn't mention "country" anywhere. There's no country restriction. > or rather a single key, held by the government, which signs the list of approved manufacturer keys Hum, no. The single key is held by Microsoft. And yeah, that's basically what the Trusted Computing Consortium was designing at the early 00. But people pushed…

> There's no country restriction.

The technology may not care about countries, but countries care about technology. If (or rather when) a government passes a law limiting internet access to approved operating systems and hardware, the ISPs in that country will logically have to listen for signed updates to the whitelist.

In practice the list might be very short, containing just intermediate keys representing Microsoft, Apple, Google, a few commercially-backed Linux distros, and the CPUs that support them (with the necessary TPMs). The intermediate keyholders would have the responsibility to revoke approval of versions / model numbers that have known vulnerabilities which allow arbitrary user-controlled code to run.

Re: MS Windows Defender and DeCSS

#200
post #189

Earlier quoted context omitted.

Yes, once there was a time when C++ was an IDE-oriented language. I don't know if it was because the good IDE sellers went bankrupt or if it's the change that caused their failure, but it isn't anymore. About the dependency tracking, Windows isn't good for dealing with lots of files. It's performance isn't great (but improved a lot recently), it has locking and time based inconsistencies, and it brings a load of help…

I actually do pretty mundane, boring stuff with computers - web dev, some finance & trading, lots of backend. It isn't all that exciting to an average person but I'm fine with it, it gives me pleasure to do it and I don't care what anybody says about it ;) Again, genuine question, what instability do you imply there is in the Windows environment? Since Win 10 I don't recall ever being fucked by updates (again, not in…

My W10 computer at work already had the OS reinstalled 2 times in the less than 2 years I've had it. Since the beginning of the pandemic I've kept a W10 VM at home for work, it has much less small problems, but I've already had to delete it and reinstall once.

On my experience, Windows 10 is even a regression over 7. There have been too many updates that fucked up computers at random (looks like MS is rolling updates slowly nowadays, so not everybody gets the broken ones), and the system likes to break at random by itself.

In comparison, the last time I remember reinstalling Linux due to a software mess-up is about a decade ago, when a dual-booting computer got a Windows virus that messed with the entire disk. I have many more Linux computers than Windows, and yet, those only need any attention when some hardware breaks.

Post reply on HN