- Local time
- 9:02 AM
- Posts
- 187
- OS
- Windows 11 Pro 23H2
Why are so many posters not getting the difference between MS Defender Sandbox and Windows Sandbox?
The former is a sandbox to protect MS Defender's processes. The latter is a simple sandboxing application to test applications and comparable to more feature-rich VMs. Windows Sandbox is enabled via GPO on Windows 10/11 Pro versions. A couple of members' posts reflect the correct understanding of the difference while the rest are sorely mistaken.
The reasons MS Defender Sandbox isn't enabled by default is a typical MS mystery, reflective of the many features it rolls out and then abandons. And MS's documentation is of course sketchy and often hard to find, leaving most users uncertain or completely in the dark. See my post #3 above.
Here is a 2018 post from MS. Good luck finding any more recent documentation.
Here's an August 2020 article questioning what happened to MS Defender's Sandbox by Joe Stocker is the CEO of Patriot Consulting, a Microsoft Partner specializing in Microsoft Cybersecurity:
The former is a sandbox to protect MS Defender's processes. The latter is a simple sandboxing application to test applications and comparable to more feature-rich VMs. Windows Sandbox is enabled via GPO on Windows 10/11 Pro versions. A couple of members' posts reflect the correct understanding of the difference while the rest are sorely mistaken.
The reasons MS Defender Sandbox isn't enabled by default is a typical MS mystery, reflective of the many features it rolls out and then abandons. And MS's documentation is of course sketchy and often hard to find, leaving most users uncertain or completely in the dark. See my post #3 above.
Here is a 2018 post from MS. Good luck finding any more recent documentation.
Windows Defender Antivirus can now run in a sandbox | Microsoft Security Blog
Windows Defender Antivirus has hit a new milestone: the built-in antivirus capabilities on Windows can now run within a sandbox.
www.microsoft.com
Here's an August 2020 article questioning what happened to MS Defender's Sandbox by Joe Stocker is the CEO of Patriot Consulting, a Microsoft Partner specializing in Microsoft Cybersecurity:
What happened to Defender running in a Sandbox? MP_FORCE_USE_SANDBOX
A colleague asked me today “Does Microsoft Defender run itself in a sandbox by default, or does that need to be manually enabled?”He was referring to a breakthrough feature first announ…
thecloudtechnologist.com
Last edited:
My Computer
System One
-
- OS
- Windows 11 Pro 23H2
- Computer type
- Laptop
- Manufacturer/Model
- Lenovo IdeaPad L340
- CPU
- Intel Core i3-8145U
- Memory
- 16GB
- Hard Drives
- 500 GB M2 1 TB HDD
- Internet Speed
- 400 MB
- Browser
- Chrome | Edge
- Antivirus
- Microsoft Defender | Block unknown executables | Various ASR rules enabled