Skip to content

Commit 1451c06

Browse files
authored
Merge pull request #2042 from YongRhee-MSFT/docs-editor/attack-surface-reduction-rules-1732743585
Update attack-surface-reduction-rules-reference.md
2 parents a8768b0 + 394c4ea commit 1451c06

File tree

1 file changed

+1
-4
lines changed

1 file changed

+1
-4
lines changed

defender-endpoint/attack-surface-reduction-rules-reference.md

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -15,7 +15,7 @@ ms.collection:
1515
- m365-security
1616
- tier2
1717
- mde-asr
18-
ms.date: 11/18/2024
18+
ms.date: 12/02/2024
1919
search.appverid: met150
2020
---
2121

@@ -528,9 +528,6 @@ Dependencies: Microsoft Defender Antivirus
528528

529529
This rule prevents malware from abusing WMI to attain persistence on a device.
530530

531-
> [!IMPORTANT]
532-
> File and folder exclusions don't apply to this attack surface reduction rule.
533-
534531
Fileless threats employ various tactics to stay hidden, to avoid being seen in the file system, and to gain periodic execution control. Some threats can abuse the WMI repository and event model to stay hidden.
535532

536533
> [!NOTE]

0 commit comments

Comments
 (0)