Giter Club home page Giter Club logo

Comments (6)

undergroundwires avatar undergroundwires commented on June 18, 2024 1

Once the evaluation is complete, or if you manually switch Smart App Control on or off, you won't be able to return to evaluation mode unless you reinstall or reset Windows.

https://support.microsoft.com/en-us/topic/what-is-smart-app-control-285ea03d-fa88-4d56-882e-6698afdb7003#ID0EFL

I interpret this as it can still be turned on/off but "evaluation mode" cannot be reactivated. It's not so worrying if that's the case. It would be rare someone to be "evaluated".

However Federal Office for Information Security in Germany states as you say, that it cannot be re-enabled.

Not risking it, it's best to exclude it from any recommendation level than.

from privacy.sexy.

undergroundwires avatar undergroundwires commented on June 18, 2024

Is there any resource/docs/reference to any privacy implication with this feature? Any network communication evidence will also suffice.

from privacy.sexy.

drwetter avatar drwetter commented on June 18, 2024

As far as I understood it, if activated or running in evaluation mode(!) and the program doesn´t contain a valid MS signature, it queries the cloud service with a file hash (and more info) -- each time when an "untrusted program" is started. It has a local cache though so that doesn´t happen every time.

Details see the PDF (first link) . Chapter 2 is the summary and you should have a look @ chapter 6 also : More than the technical considerations, the internal documentation of SAC performed in this project raises two important questions. On the one hand, there is a real concern about the privacy of user’s information. On the other hand, there is a real concern about the position of Microsoft Defender Antivirus in the Windows 11 operating system.
At first, concerning data disclosure, SAC is nothing but an automatic notification mechanism to the Microsoft cloud-based backend. It discloses metadata about the executable files executed on the user’s system but also information on the system itself (from Microsoft Defender Antivirus’ version and configuration to the operating system)

I am not a expert regarding that but I found it worth for you to have a look at it.

from privacy.sexy.

undergroundwires avatar undergroundwires commented on June 18, 2024

I missed the first resource. Thank you for clarification. It's highly reputable, if they raise privacy concerns, then we should add it. I guess "Privacy over security" category is the right place. I wonder if we should recommend it on "Strict" or not recommend at all.

from privacy.sexy.

drwetter avatar drwetter commented on June 18, 2024

No prob.

it seems not that easy to me. AFAIU if you completely switch that off you can't just switch it on again when you change your mind. A reinstallation would be required.

Better would be IMHO users should make an informed decision which means a hint would be appropriate that undo the setting means reinstallation

from privacy.sexy.

undergroundwires avatar undergroundwires commented on June 18, 2024

I did more research and come up with these docs. This can be changed before release. Your feedback would be appreciated:

See docs

image
image
image

from privacy.sexy.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.