HotCakeX / Harden-Windows-Security

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Personal, Enterprise, Government and Military security levels | Read The Rationale https://github.com/HotCakeX/Harden-Windows-Security/blob/main/Rationale.md
https://hotcakex.github.io
MIT License
1.87k stars 148 forks source link

[Bug]: Running the script clears out all the entries in Controlled Folder Access Allow list #152

Closed agpt8 closed 1 year ago

agpt8 commented 1 year ago

Tools category

Harden Windows Security Module

Does your system meet the requirements?

Is your Windows installation genuine?

Please explain the bug

I ran the script recently and I noticed that the Controlled Folder Access Exclusion list had been cleared. There were some 15 exclusions prior to running this script and all of them were gone. This was confirmed when I checked the output of Confirm-SystemCompliance. The count said 15 and the apps were listed before I ran the script.

image

Also, when I try to view the Allow list in the app, I get the following message:

image

This is related to #151

Is clearing the Allow list by design or a bug? Is it possible to preserve this list somehow when the script is run again?

HotCakeX commented 1 year ago

The same policy I mentioned here will restore them: https://github.com/HotCakeX/Harden-Windows-Security/issues/151#issuecomment-1794826641

Adding it to the optional overrides 🙂

HotCakeX commented 1 year ago

Hi, the issue is now fixed, thanks for reporting it, please run the script or module again and use the optional overrides in the Microsoft Security Baselines category.

Release notes: https://github.com/HotCakeX/Harden-Windows-Security/releases/tag/Hardening-Module-v.0.2.3