Windows 10 and Windows 11 users can take advantage of a more aggressive blocklist now. The operating system received the feature in the latest Microsoft Defender update.
Microsoft Defender update enhances security with new blocklist
Windows Defender has been available as a built-in antivirus for Windows 10 and earlier for several years now. The antivirus has grown quite popular with Windows users thanks to being lightweight and effective. Additionally, Microsoft continues to make it even better.
The latest Microsoft Defender update has added the option to block drivers with “security vulnerabilities”. Microsoft VP David Weston announced the addition on Twitter over the weekend. First, navigate to Device Security and select Core Isolation Details. Finally, toggle Microsoft Vulnerable Driver Blocklist to on to enable it.
You can only turn the feature on if you are using a Hypervisor-protected Code Integrity (HVCI)-enabled device. When enabled, the security feature will block third-party drivers that have been flagged for security vulnerabilities. You can enable HVCI through the Core Isolation window in the Windows Security window by turning on Memory Integrity.
Ultimately, what matters here is that this feature should help cut down on the security issues surrounding third-party drivers. This new Microsoft Defender update is just another way the tech giant is making its free, built-in antivirus stand out from the myriad of other paid options out there.
What is this blocklist?
As ZDNet reports, the more aggressive blocklist added in the latest Microsoft Defender update will be curated by Microsoft and certain OEM partners. As a result, it should be updated whenever new exploits are discovered. The list will block drivers marked as exploitable. These exploits can include things like elevated access to the Windows kernel. Consequently, they could cause irreparable damage to your machine if accessed.
These kinds of exploits usually act as tunnels for malware, or the certificates used to sign malware. They often allow the malware to avoid the Windows Security Model. Thus giving those hostile programs access to the deeper levels of your hardware.
While you will need to rely on a Microsoft Defender update to keep the blocklist up-to-date, Microsoft has proven reliable when it comes to its built-in security suite. Windows Defender has quickly become one of the best antivirus programs available on computers, especially because of how little it interferes with device performance.
Hopefully, seeing Microsoft continue to dedicate resources to the service is a sign that it will continue to be a solid option for users in the coming years.
Leave a Reply