Skip to main content

Windows Search Protocol Vulnerability - Workarounds

Purpose

This solution applies the temporary workaround for the Windows Search Protocol Vulnerability, as released by Microsoft.
Reference: Windows Search Zero-Day Added to Microsoft Protocol Nightmare

Associated Content

ContentTypeFunction
Search-MS Registry KeyRoleThis role is used to detect the computers in need of a workaround.
ProVal - Development - Workaround - Windows Search Protocol Vulnerability [G]Internal MonitorThis monitor set detects computers with the Search-MS Registry Key role enabled and executes the Workaround - Windows Search Protocol Vulnerability [Param][Autofix][DV] script to apply the autofix/workaround.
Workaround - Windows Search Protocol Vulnerability [Param][Autofix][DV]ScriptThe primary purpose of this script is to back up the HKEY_CLASSES_ROOT/search-ms registry keys and remove them from the computer. It can also be executed manually to restore the key when needed.
Windows Search Protocol Registry Key Audit [Script][Role]DataviewThis serves to track the progress of the workaround being applied by the [Workaround - Windows Search Protocol Vulnerability