Windows Search Protocol Vulnerability - Workarounds
Purpose
This solution applies the temporary workaround for the Windows Search Protocol Vulnerability, as released by Microsoft.
Reference: Windows Search Zero-Day Added to Microsoft Protocol Nightmare
Associated Content
Content | Type | Function |
---|---|---|
Search-MS Registry Key | Role | This role is used to detect the computers in need of a workaround. |
ProVal - Development - Workaround - Windows Search Protocol Vulnerability [G] | Internal Monitor | This monitor set detects computers with the Search-MS Registry Key role enabled and executes the Workaround - Windows Search Protocol Vulnerability [Param][Autofix][DV] script to apply the autofix/workaround. |
Workaround - Windows Search Protocol Vulnerability [Param][Autofix][DV] | Script | The primary purpose of this script is to back up the HKEY_CLASSES_ROOT/search-ms registry keys and remove them from the computer. It can also be executed manually to restore the key when needed. |
Windows Search Protocol Registry Key Audit [Script][Role] | Dataview | This serves to track the progress of the workaround being applied by the [Workaround - Windows Search Protocol Vulnerability |