{"id":207052,"date":"2018-07-30T00:30:00","date_gmt":"2018-07-29T22:30:00","guid":{"rendered":"https:\/\/www.borncity.com\/blog\/?p=207052"},"modified":"2018-07-29T00:55:38","modified_gmt":"2018-07-28T22:55:38","slug":"windows-10-sicherheitsfeatures","status":"publish","type":"post","link":"https:\/\/borncity.com\/blog\/2018\/07\/30\/windows-10-sicherheitsfeatures\/","title":{"rendered":"Windows 10: Sicherheitsfeatures"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2015\/01\/win102.jpg\" width=\"58\" align=\"left\" height=\"58\"\/>Heute noch kurz ein paar Informationssplitter zu Sicherheitseinstellungen, die wohl in Windows 10 Einzug halten sollen. Diese Informationen sind mir in den letzten Tagen per Twitter unter die Augen gekommen. <\/p>\n<p><!--more--><\/p>\n<h2>Verbesserungen beim Defender System Guard<\/h2>\n<p>Die erste Information betrifft den Windows Defender System Guard, der einen auf Virtualisierung basierenden Speicher-Integrationsschutz (memory integrity protection) erhalten hat. Das geht aus <a href=\"https:\/\/twitter.com\/WDSecurity\/status\/1020348107199000578\" target=\"_blank\">diesem aktuellen Tweet<\/a> hervor (interessant sind die Nachfragen zum Tweet).&nbsp; <\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"de\">\n<p lang=\"en\" dir=\"ltr\">Virtualization-based memory integrity protection defends against increasingly sophisticated attacks like WannaCry. In the future, memory integrity protection will be turned on by default in Windows 10 devices that meet hardware and firmware requirements. <a href=\"https:\/\/t.co\/ixWXvsHaxp\">https:\/\/t.co\/ixWXvsHaxp<\/a><\/p>\n<p>\u2014 Windows Defender Security Intelligence (@WDSecurity) <a href=\"https:\/\/twitter.com\/WDSecurity\/status\/1020348107199000578?ref_src=twsrc%5Etfw\">20. Juli 2018<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script> <\/p>\n<p>Das Ganze soll gegen Angriffe wie WannaCry &amp; Co. sch\u00fctzen. Chris Riggs von Microsoft hat bereits im Februar 2018 <a href=\"https:\/\/techcommunity.microsoft.com\/t5\/Windows-Insider-Program\/Windows-Defender-System-Guard-Making-a-leap-forward-in-platform\/td-p\/167303\" target=\"_blank\">hier<\/a> was zu diesem Thema geschrieben. Das Thema Core-Isolation und Memory Integrity hat bei Windows 10 V1803 zu Problemen gef\u00fchrt (siehe den Blog-Beitrag <a href=\"https:\/\/borncity.com\/blog\/2018\/07\/05\/windows-10-v1803-hcvi-verursacht-pltzlich-teiberfehler-39\/\">Windows 10 V1803: HCVI verursacht pl\u00f6tzlich Teiberfehler 39<\/a>).<\/p>\n<h2>\u00c4nderungen beim Windows kernel pool allocator<\/h2>\n<p>In den Windows 10 Insider Preview Builds 17723 (Fast Ring) und 18204 (Skip Ahead) ist der heap-backed pool allocator (mit Randomisierung) nun standardm\u00e4\u00dfig aktiviert. Das geht aus einer Serie <a href=\"https:\/\/twitter.com\/epakskape\/status\/997527812096475136\" target=\"_blank\">an Tweets<\/a> hervor, auf die ich <a href=\"https:\/\/twitter.com\/PhantomofMobile\/status\/1023250384838483968\" target=\"_blank\">hier hingewiesen<\/a> wurde. <\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"de\">\n<p lang=\"en\" dir=\"ltr\">Some exciting changes to the Windows kernel pool allocator started showing up in Windows 10 Build 17672 (fast ring): the heap-backed pool allocator (currently off-by-default).<\/p>\n<p>Friday challenge: which registry settings enable this feature? Answer to follow next week :) <a href=\"https:\/\/t.co\/hJbypSnfHo\">pic.twitter.com\/hJbypSnfHo<\/a><\/p>\n<p>\u2014 Matt Miller (@epakskape) <a href=\"https:\/\/twitter.com\/epakskape\/status\/997527812096475136?ref_src=twsrc%5Etfw\">18. Mai 2018<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>  <\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"de\">\n<p lang=\"en\" dir=\"ltr\">Woot! The heap-backed pool allocator (with randomization) is enabled by default in Windows 10 Build 17723 (Fast Ring) and 18204 (Skip Ahead). Great work by <a href=\"https:\/\/twitter.com\/mamyun?ref_src=twsrc%5Etfw\">@mamyun<\/a> &amp; team :) <a href=\"https:\/\/t.co\/hUTyZMDeBF\">pic.twitter.com\/hUTyZMDeBF<\/a><\/p>\n<p>\u2014 Matt Miller (@epakskape) <a href=\"https:\/\/twitter.com\/epakskape\/status\/1022557117998231552?ref_src=twsrc%5Etfw\">26. Juli 2018<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script> <\/p>\n<p>Das d\u00fcrfte die Ausnutzung von Sicherheitsl\u00fccken im Windows-Kernel erschweren. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Heute noch kurz ein paar Informationssplitter zu Sicherheitseinstellungen, die wohl in Windows 10 Einzug halten sollen. Diese Informationen sind mir in den letzten Tagen per Twitter unter die Augen gekommen.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[426,161,3694],"tags":[4328,4313,4378],"class_list":["post-207052","post","type-post","status-publish","format-standard","hentry","category-sicherheit","category-virenschutz","category-windows-10","tag-sicherheit","tag-virenschutz","tag-windows-10"],"_links":{"self":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/207052","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/comments?post=207052"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/207052\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/media?parent=207052"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/categories?post=207052"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/tags?post=207052"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}