Securing your Microsoft Machine

I use firefox mainly. Chrome on the laptop at home (because wifey uses firefox and the machine is dog slow with multiple accounts).

I was just finding that Chrome was buggy on linux, I hate that I cannot set it up to run in Incognito mode by default, and I was pretty sure that there was some bug that was causing my iMac to randomly reboot.

Firefox is rock solid on all platforms. I’ll live with the small percentage of increased security risk.

EMET 4.0 has been released

http://www.microsoft.com/en-us/download/details.aspx?id=39273

You should probably install this :tup:

IN your experience are corporations rolling this out to their PCs?

I have

Some info on enterprise deployment there.

Basically this helps mitigate exploits getting code execution even when anti virus doesn’t detect whatever payload it might try and execute or whatever application doesn’t have the patch fixing some 0day

Yep, deployment through SCCM would be a breeze with this especially with an MSI file. I’d need to push out .Net Framework 4 for machines though.

Don’t really see any issues you would deploy it then enabled it for a select list of applications…

If you ever ran into an issue just disable it on whatever application…

But I would opt in all browsers, java, adobe, and whatever else might open internet content.

apparently there is ADMX templates too…can’t find em though.

Ok found the ADMX files, greated a GPO for them. Now creating an SCCM package for deployment and then I’m going to start testing some stuff.

We have been doing standard image audits for customers and writing hardening guides we now include EMET as a recommendation for all customers.

I still don’t QUITE know how to explain it in laymans terms to people on what it actually does.

I usually just explain that there are 0day bugs and exploits in the wild that can compromise systems and often times the bugs are taken advantage of on the internet before there is ever a patch.

EMET helps stop these threats before the vendors can release a patch

Definitely pitching this as a mitigation tool and to be added to standard images. Might help some of the risk with running apps that require out-of-date runtimes.

Deployed to two machines so far and both claim the the EMET client isn’t running when you open the GUI. I have the .Net framework 4 as a prerequisite before EMET gets installed. Not sure what the problem is.

Here - http://www.darkoperator.com/blog/2013/8/28/deploying-emet-40-in-small-to-medium-environments-using-wsus.html

Deploying EMET with WSUS

bump keep your shit updated and don’t run java applets that randomly pop up

new thread, “how to secure vbulletin”

JK, nice job getting us back up and running monkey

So I have 2 machines at my home office that just ran out of anti-virus. What should I get for them? One is my laptop and the other is a tower that is in getting a new power supply, fan for the hard drive and a few other things. I was using AVG trial that I had and I refuse to use McAfee ever again. Anybody have a good deal to share at the moment?

Microsoft Security Essentials its free

I like free :slight_smile:

The issue comes down to this all of anti virus vendors are about the same unless you pay for some crazy high end corporate antivirus which is marginally better.

It’s extremely easy to get around anti virus so its only protecting you from shitty hackers/or old stuff