Why you shouldn't just use Windows Firewall

Why you shouldn't just use Windows Firewall

The PC Security Channel

4 года назад

162,271 Просмотров

Ссылки и html тэги не поддерживаются


Комментарии:

@pcsecuritychannel
@pcsecuritychannel - 23.05.2020 15:26

This video shouldn't be misinterpreted as advice not to use any firewall especially if you're using a laptop and connecting to random Wifi networks.
Also, since everyone is asking why I ran the sample in a Win 7 environment (yes, this happens the same way in Windows 8/10). The purpose here isn't to bash Windows Firewall.
It is a demonstration of the problem with a security model relying on the firewall on the same system the malware is executing from a cybersecurity perspective with real backdoor example.

Ответить
@PunkrockNoir-ss2pq
@PunkrockNoir-ss2pq - 18.12.2023 17:11

💯

Ответить
@handlehaggler
@handlehaggler - 10.12.2023 07:36

Keeping a firewall on a network level??

Ответить
@lev2727
@lev2727 - 22.10.2023 23:41

Someone clearly has a rather limited knowledge about firewalls and security in general. As an IT security guy for over 17 years this was quite painful to watch.

Ответить
@IBM7094XD
@IBM7094XD - 19.08.2023 19:16

Off windows firewall WHY MY PC IS HAVE VIRUS

Ответить
@rcarter-ip8xd
@rcarter-ip8xd - 14.08.2023 01:09

Great video, have been looking for something along these lines for sometime, also caught your video on Win11 and agree with the concerns you posed. Because of the risks of using Windows Firewall I installed Norton 360 and use that instead about five years ago. One feature I liked about Norton was the ease at which you could block out bound traffic from specific apps. And for a while I thought I had plugged most of the holes that Windows Telemetry was using. But nearly two years ago I noticed NF was not logging blocked traffic on the Window Telemetry settings I had entered, and wondered if MS had moved telemetry services deeper into the OS in order to bypass any firewall. But my knowledge doesn't take many any further than that, so I'm not sure what MS is doing now, but I do know the amount telemetry being collected has only increased. And you can't disable it any longer either. So, if you could add some suggestions on alternative firewalls, preferably hardware ones, that would allow someone to block outbound traffic, that would be great. Keep up the work and I'll share the links.

Ответить
@CHAUVELINwastaken
@CHAUVELINwastaken - 05.08.2023 04:20

How do I stop it from blocking my game bruh

Ответить
@aaronk9910
@aaronk9910 - 06.07.2023 07:23

Correct me if I'm wrong but you can't add a Firewall rule if you are not local admin and if you are local admin you f... Up a long time ago

Ответить
@ionutturcutvoda3545
@ionutturcutvoda3545 - 05.05.2023 20:25

I use NetLimiter which allows me to control every program or application that tries to access the internet.

Ответить
@debangshughosh834
@debangshughosh834 - 29.04.2023 15:46

Since i use a pirated version of Windows 8.1 pro, i have granted firewall control to Avast free anti-virus.
It is a good or bad decision bro ?

Ответить
@vladislavkaras491
@vladislavkaras491 - 04.04.2023 13:39

Really great video!
Thanks!

Ответить
@Sedokun
@Sedokun - 04.03.2023 19:27

Right. Lets run Malware with admin privileges and expect nothing will go wrong.

Ответить
@havkacik
@havkacik - 01.03.2023 22:12

I wonder wheter Win 11 firewall behaves the same

Ответить
@NightOwlGames
@NightOwlGames - 04.02.2023 07:22

touch wood i never have problems using windows defender and firewall, i have Malwarebytes and Glary Utilitites, im always using my pc 24/7 have done for the last 15 years...... i litterally never have any serious problems, i admit defender was useless in windows 7 and XP used Avast back then when Avast was trusted that is! not anymore!

Ответить
@mkatakm
@mkatakm - 01.02.2023 12:56

cmd.exe needs administrative privilege to run firewall commands, so never disable UAC.

Ответить
@nozkciregaming
@nozkciregaming - 27.01.2023 04:18

sir can you give a video with free antivirus to protect our device pc thankyou sir.

Ответить
@TwitterScott
@TwitterScott - 17.12.2022 20:29

Back in the day, I used ZoneAlarm. Currently, I don't run a firewall. As I actually forgot how important they are

Ответить
@markazjamal6479
@markazjamal6479 - 08.11.2022 15:17

Glasswire very good firewall

Ответить
@mrtwinky2007
@mrtwinky2007 - 27.07.2022 04:16

still waiting on your test of ZoneAlarm Firewall and Antivirus

Ответить
@MF-le7fp
@MF-le7fp - 25.07.2022 10:17

Please consider doing a video on this particular threat against Komodo firewall. Thanks. Great channel! 👍

Ответить
@thesilentgeneration
@thesilentgeneration - 23.06.2022 12:32

Who knows how to set up an off pc fire wall? I don't.

Ответить
@greeny8214
@greeny8214 - 17.06.2022 22:36

I have no issue with windows firewall

Ответить
@PushyPawn
@PushyPawn - 12.06.2022 21:14

Trust MS to call their paperwall a firewall.

Ответить
@TheSpanjaMan
@TheSpanjaMan - 29.05.2022 11:17

Does this affect people who use standard account with admin separated? Can this get past UAC?

Ответить
@seanleastria4478
@seanleastria4478 - 23.05.2022 17:50

The end say not trying to bash Windows Firewall. But that is not even a question when it comes to objective reporting. The question is whether or not users should simply disable it and use something else.

Ответить
@stefantomas
@stefantomas - 21.05.2022 00:27

Why is this so misleading? Executing the "netsh advfirewall firewall add rule" requires elevation, so unless you disabled UAC you will be perfectly protected by Windows firewall. Also it seems that in order to execute the Fire.exe you would need to disable the AV as well.

Ответить
@arnimkrause5696
@arnimkrause5696 - 08.05.2022 16:42

I use Private Firewall on my laptop. It lets nothing through that's not part of the operating system and lets you know if something is trying to get onto your system. It's a learning curve to use it.

Ответить
@rickastley6009
@rickastley6009 - 04.04.2022 13:11

is Forcepoint ThreatSeeker bad?

Ответить
@AndreiDeiu13
@AndreiDeiu13 - 01.04.2022 23:32

But an antivirus can block that no? So will never get through

Ответить
@pineappleroad
@pineappleroad - 24.03.2022 05:56

It took me until now to realise that the ISP supplied router does not seem to have a built in firewall, at least as far as i can tell
The router which i am using as an access point does have a firewall though, although because i had it in access point mode, the firewall was automatically turned off (since in access point mode the WAN port becomes another LAN port)
Just now i switched a few Ethernet cables around so everything is now connected through the router that i was using as an access point, and changed the router back over to router mode, so now the ISP supplied router is basically being used as a modem
All the devices i have were already either connected to Ethernet, or the router which i used to have set up as an access point, this router is upstairs, while the ISP supplied router is in the kitchen, the WiFi signal of the ISP supplied router drops out in certain areas of the living room, and does not reach upstairs, whereas the router i have upstairs covers all parts of the house except for the kitchen, but this doesn’t bother me, as I don’t have any devices in the kitchen that connect to WiFi

Ответить
@sallyhardwick6287
@sallyhardwick6287 - 21.03.2022 13:56

My firewall: windows firewall has blocked some of the features of this app

Me: oh- WELL AT LEAST MY FIREWALL IS WORKING 😃

Ответить
@Ambassador-For-Christ
@Ambassador-For-Christ - 17.03.2022 07:38

I use Private Firewall, It is not being updated any more since 2015 I believe, but I don't see any need for it to be updated. I would love to see The PC Security Channel test it against Ransomware, like he did with the Comodo Firewall...PLEEEEEEESE?!?!

Ответить
@michaelp.3369
@michaelp.3369 - 11.03.2022 23:08

You should have gave some resolutions. As in firewalls that are available. But it was a good video thank you very much.

Ответить
@nixxblikka
@nixxblikka - 26.02.2022 17:41

Hmm not to sure what to think about this video. So statement

a) do not rely on your Windows firewall
b) have you firewall separeted from windows

Both statements are true, however isolated and therefore lead to a wrong conclsion, namely c) disable the forewall. Why? At home you have in 99% a firewall in your router. So you are not at risk, and can leave it as is. At public windows firewall provides more protection than no firewall at all. At least to me, the headlien and the video give th eimpression of: "Disable windows firewall" What is missing is: Use somehting else, if you are not at home!

Ответить
@Lithiumbattery
@Lithiumbattery - 26.01.2022 08:34

microsoft windows sux that's why i started learning Linux, its history, and its prevalent use in supercomputers and everyday computer device (cell phone, etc)

Ответить
@171151
@171151 - 06.01.2022 18:15

Any comments on Windows Firewall Control? Malearebytes purchased it.

Ответить
@matox01tekk
@matox01tekk - 12.11.2021 05:49

does it still happens in windows 11 firewall ?

Ответить
@MTGeomancer
@MTGeomancer - 11.11.2021 05:37

Wouldn’t a separate hardware firewall have to be manually configured for every application you run? Otherwise it would rely on UPnP which is pretty easy for malware to abuse?

I’m no expert though. I do have an external firewall but it is UPnP based so not sure it does much.

Ответить
@Jixxor
@Jixxor - 28.10.2021 22:10

My Norton subscription ran out and my ISP provides users with a Security Solution by F-Secure. I got it, since well it is free and sure can't be that bad right, and then saw it has no dedicated firewall. It uses Windows Firewall. They claim it's safe because they still provide an AV solution that scans for infections etc but now I am really unsure.

Ответить
@TheOuttabody
@TheOuttabody - 25.10.2021 16:15

In my opinion, COMODO firewall is the best firewall. You cannot bypass the COMODO firewall by making any entries or changes to COMODO firewall on a command-line level. That crap only happens with the native Windows firewall.

If you want, you can set the firewall in a way that it prompts a popup for any and every network access and waits for your input. That way, you know that there is no network access granted to an app behind your back that you are not aware of!

Isn’t interesting that Microsoft tries to market and advertise its native firewall as an effective security tool to try to convince you that you won’t need a third party firewall? Are you shitting me!? If for nothing else, you need a third party firewall for your privacy against Microsoft so that you can block the heck out of everything that has no business, requesting internet access as if it were a cloud-based operating system.

If you’re not interested in installing the other security features that comes with the free COMODO firewall, you can simply unselect them during installation. You will then only have the firewall as I, myself, was not interested in installing anything other than the firewall. I wanted to keep things simple and bloat-free, but later on, just out of curiosity, I decided to give the other features a try and ended up keeping the “Auto Containment” and the “HIPS” features simply because they were not resource hoggers!

The “Auto Containment” is the same thing as Sandboxie. And the HIPS (Host Intrusion Protection System) is extremely useful and effective.

When you execute an app, the HIPS informs you of what that app is doing “under the hood” by letting you know if it is accessing other system files or making any changes in the Windows registry. Every step of the way, you can either allow or block access. When it’s you who’s launching the app, of course, you’re going to go ahead and allow access through the HIPS. And you can also select the option for the HIPS to remember your answers so that you don’t have to keep having the same popups for the very same app. The beauty of the HIPS is that nothing can run covertly in your system when you have the HIPS active. As soon as some unknown file or app tries to make any chances or tries to run any system file, the HIPS will alert you and keep things on hold until you make a decision (allow or block).

Ответить
@alfawolve869
@alfawolve869 - 22.10.2021 21:02

This only happened if the malware can pass defender antivirus for windows right?

Ответить
@gettyfeet9119
@gettyfeet9119 - 02.10.2021 16:03

So what do you recommend? Also how do I get that test Trojan?? My ex. 😳 I mean I wanna “test” it in other firewalls 🤫

Ответить
@user-zd8bt1cn3b
@user-zd8bt1cn3b - 12.09.2021 17:14

LOVE ARMA 3

Ответить
@divane1171
@divane1171 - 30.08.2021 16:51

Windows 7

Ответить
@cammy85
@cammy85 - 29.08.2021 00:49

Windows Firewall + Simplewall works great!! Older versios allowed you to disable Windows Frewall, but now they coexist and you can block all telematry as well. Nothing is allowed unkess you approve it.

Ответить
@colonelpanic7865
@colonelpanic7865 - 19.08.2021 00:46

Don't use Windows Firewall,
Just stick to those antivirus suites that you're used to,
I guess on the other hand, it's better than nothing at all,
But, I'd get something better fast...

Ответить
@sahalmaharoof3949
@sahalmaharoof3949 - 26.07.2021 06:24

Can i use my office software in home free??

Ответить
@AquinoSamuel
@AquinoSamuel - 06.07.2021 04:08

You need administrator privileges to run 'netsh'.

Ответить
@coolmonkey5269
@coolmonkey5269 - 02.07.2021 14:32

i was using kaspersky total fiewall before.. no detections... clean system
now using mcafee total firewall... i get many warning - blocked unsafce connection
is it true that kaspersky failed to detect
or mcafee is false signals 🙄

Ответить