Microsoft's Enhanced Mitigation Experience Toolkit (EMET) is a shim you can apply to executables on your system to help stop them from being used to attack the system if vulnerabilities are discovered. For example, if you have EMET applied to Java it has notably been able to prevent several zero-day attacks from working. This is what it's intended for.
If you don't use it, I highly encourage you to check it out. We've used it for years.
"The Enhanced Mitigation Experience Toolkit (EMET) is a utility that helps prevent vulnerabilities in software from being successfully exploited. EMET achieves this goal by using security mitigation technologies. These technologies function as special protections and obstacles that an exploit author must defeat to exploit software vulnerabilities. These security mitigation technologies do not guarantee that vulnerabilities cannot be exploited. However, they work to make exploitation as difficult as possible to perform.
The new EMET 4.0 also provides a configurable SSL/TLS certificate pinning feature that is called Certificate Trust. This feature is intended to detect man-in-the-middle attacks that are leveraging the public key infrastructure (PKI). "
http://support.microsoft.com/kb/2458544
Login to the community
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.