Thanks to @oldschoool &
@SecurityNightmares
My setup for all Microsoft Programs (Edge + Office + Explorer + Script interpreters used as Lolbin)
Block remote images - ON
Block untrusted fonts - ON
Control flow guard (CFG) - ON
Code integrity guard -
ON
Block child process creation -
OFF
Data execution prevention (DEP) - ON
Disable extension points - ON
Force randomization for images (Mandatory ASLR) - ON
Randomize memory allocations (Bottom-up ASLR) - ON
Validate exception chains (SEHOP) - ON
Validate handle usage - ON
Validate heap integrity - ON
Validate image dependency integrity - ON
My setup for all non-Microsoft Programs (FileZilla + SyncBack + Albelli* + WebBuilder**)
Block remote images - ON
Block untrusted fonts - ON
Control flow guard (CFG) - ON
Code integrity guard -
OFF
Block child process creation -
ON
Data execution prevention (DEP) - ON
Disable extension points - ON
Force randomization for images (Mandatory ASLR) - ON
Randomize memory allocations (Bottom-up ASLR) - ON
Validate exception chains (SEHOP) - ON
Validate handle usage - ON
Validate heap integrity - ON
Validate image dependency integrity - ON
* A photo book creation program my girlfriend uses which I have installed to prevent security tweaks breaking it
** A WYSIWYG html editor for simple websites I made for a few friends