Skip to content

Comment on Ask HN: Current Best Practice for Securing Windows?

Comments

This is partially a joke, but maybe use a STIG hardened image?

Partly a joke, but with a grain of good advice. However, it doesn't really work. I live in a different country, and hence am not available for in-person troubleshooting when something goes wrong. I'm really looking for a set up and forget option.

Just something like, have Windows Defender set up, make these sensible changes and for the most part it'll be fine.

To be clear, I don't need to protect them from standard call center scams, egregious phishing attempts or so. They seem to be good enough at identifying those very obvious ones.

I was about to say the same thing. If users are elderly and not self sufficient remove their ability to run executables not in a trust list.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.