3 ms·
And that’s before Windows Defender falsely identifies your executable as a random threat and moves it to quarantine without asking. Who do you have to bribe to
by codeflo 5y ago
And that’s before Windows Defender falsely identifies your executable as a random threat and moves it to quarantine without asking. Who do you have to bribe to prevent that?
- jussij 5y agoThis does seem to happen far too many times than it should and it can get frustrating. Over the period of several years this happened to me on at least half a dozen occasions and recently in a two week period it happened three times. Fortunately, in my experience this has always been fairly easy to fix, as it just requires submitting a false threat report to Microsoft Defender: https://www.microsoft.com/en-us/wdsi/filesubmission https://www.microsoft.com/en-us/wdsi/filesubmission Each time this happens I just copy my stock standard false report into the fields of that link and within 24 hours Windows Defender is updated.
- AceJohnny2 5y agoReminds me of a Coding Horror (?) story where a client kept asking the developer to have their app window be on top (most visible.) Poor developer kept trying to explain that whatever method they used to be on top, anyone else could use to be also on top of their app. Anyways, there is no general heuristic to distinguish a good actor trying to prove their legitimacy from a bad actor trying to fake legitimacy. This is the essence of parasitism.
- bluedino 5y agoClose - Raymond Chen https://devblogs.microsoft.com/oldnewthing/20110310-00/?p=11253 https://devblogs.microsoft.com/oldnewthing/20110310-00/?p=11...
- kryogen1c 5y agothis post is a treasure, thanks for sharing. walls and ladders - ill remember that.
- hoseja 5y agoHe also calls Windows security an "airtight hatch" and I laugh at the hubris.
- Stratoscope 5y agoNot really. Here is what he actually wrote: https://devblogs.microsoft.com/oldnewthing/20060508-22/?p=31283 https://devblogs.microsoft.com/oldnewthing/20060508-22/?p=31... He doesn't quite come out and say what "being on the other side of this airtight hatchway" means - it appears only in the title. But the post makes it clear what it alludes to: if you're already in a position to execute arbitrary code on the target machine in the security context you want, then you don't need to jump through further hoops, because you're already there.
- rblatz 5y agoIt's a Hitchhikers Guide to the Galaxy reference.
- AceJohnny2 5y agoThat's a much better written (and backed up) story than the one I remember, which I recall being in the Coding Horror "fireside tale" style. Maybe Raymond's was the original!
- gruez 5y ago>Who do you have to bribe to prevent that? It's covered in the article: buy an EV code signing certificate.
- viraptor 5y agoThese are different things. SmartScreen can be solved with a certificate. Being classified as a virus/malware is a separate process.