Skip to content

Commit 634c6cf

Browse files
committed
Update evaluate-exploit-protection.md
1 parent fdcdc13 commit 634c6cf

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

defender-endpoint/evaluate-exploit-protection.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -57,12 +57,12 @@ Services
5757

5858
## Application compatibility list
5959

60-
The following table lists specific products that have compatibility issues with the mitigations that are included in exploit protection. You must disable specific incompatible mitigations if you want to protect the product by using exploit protection. Be aware that this list takes into consideration the default settings for the latest versions of the product. Compatibility issues can introduced when you apply certain add-ins or additional components to the standard software.
60+
The following table lists specific products that have compatibility issues with the mitigations that are included in exploit protection. You must disable specific incompatible mitigations if you want to protect the product by using exploit protection. Be aware that this list takes into consideration the default settings for the latest versions of the product. Compatibility issues can introduced when you apply certain add-ins or other components to the standard software.
6161

6262
| Product | Exploit protection mitigation |
6363
| -------- | -------- |
6464
| .NET 2.0/3.5 | EAF/IAF |
65-
| 7-Zip Console/GUI/File Manager | EAF |
65+
| 7-Zip Console/GUI/File Manager | EAF |
6666
| AMD 62xx processors | EAF |
6767
| Avecto (Beyond Trust) Power Broker | EAF, EAF+, Stack Pivot |
6868
| Certain AMD (ATI) video drivers | System ASLR=AlwaysOn |
@@ -80,7 +80,7 @@ The following table lists specific products that have compatibility issues with
8080
| SolarWinds Syslogd Manager | EAF |
8181
| Windows Media Player | MandatoryASLR, EAF|
8282

83-
ǂ EMET mitigations might be incompatible with Oracle Java when they are run by using settings that reserve a large chunk of memory for the virtual machine (that is, by using the -Xms option).
83+
ǂ EMET mitigations might be incompatible with Oracle Java when they're run by using settings that reserve a large chunk of memory for the virtual machine (that is, by using the -Xms option).
8484

8585
## Enable exploit protection for testing
8686

@@ -101,7 +101,7 @@ You can set mitigations in a testing mode for specific programs by using the Win
101101
- Use **Add by program name** to have the mitigation applied to any running process with that name. Specify a file with an extension. You can enter a full path to limit the mitigation to only the app with that name in that location.
102102
- Use **Choose exact file path** to use a standard Windows Explorer file picker window to find and select the file you want.
103103

104-
4. After selecting the app, you'll see a list of all the mitigations that can be applied. Choosing **Audit** will apply the mitigation in test mode only. You'll be notified if you need to restart the process, app, or Windows.
104+
4. After selecting the app, you'll see a list of all the mitigations that can be applied. Choosing **Audit** applies the mitigation in test mode only. You are notified if you need to restart the process, app, or Windows.
105105

106106
5. Repeat this procedure for all the apps and mitigations you want to configure. Select **Apply** when you're done setting up your configuration.
107107

@@ -144,7 +144,7 @@ You can disable **audit mode** by replacing `-Enable` with `-Disable`.
144144

145145
## Review exploit protection audit events
146146

147-
To review which apps would have been blocked, open Event Viewer and filter for the following events in the Security-Mitigations log.<br/><br/>
147+
To review which apps would be blocked, open Event Viewer and filter for the following events in the Security-Mitigations log.
148148

149149
|Feature|Provider/source|Event ID|Description|
150150
|---|---|--|---|

0 commit comments

Comments
 (0)