Windows Script Host - Security Concerns

Security Concerns

Windows applications and processes may be automated using a script in Windows Script Host. Viruses and malware could be written to exploit this ability. Thus, some suggest disabling it for security reasons. Alternatively, antivirus programs may offer features to control .vbs and other scripts which run in the WSH environment.

Since version 5.6 of WSH, scripts can be digitally signed programmatically using the Scripting.Signer object in a script itself, provided a valid certificate is present on the system. Alternatively, the signcode tool from the Platform SDK, which has been extended to support WSH filetypes, may be used at the command line.

By using Software Restriction Policies introduced with Windows XP, a system may be configured to execute only those scripts which have been digitally signed, thus preventing the execution of untrusted scripts.

Read more about this topic:  Windows Script Host

Famous quotes containing the words security and/or concerns:

    Of course we will continue to work for cheaper electricity in the homes and on the farms of America; for better and cheaper transportation; for low interest rates; for sounder home financing; for better banking; for the regulation of security issues; for reciprocal trade among nations and for the wiping out of slums. And my friends, for all of these we have only begun to fight.
    Franklin D. Roosevelt (1882–1945)

    For some years now, there has been proof that the devastating effects of the traumatization of children take their inevitable toll on society—a fact that we are still forbidden to recognize. This knowledge concerns every single one of us, and—if disseminated widely enough—should lead to fundamental changes in society; above all, to a halt in the blind escalation of violence.
    Alice Miller (20th century)