• The second “optional non-security” October cumulative update for Win10 version 1809 breaks MS Defender Advanced Threat Protection

    Microsoft just acknowledged that KB 4520062, the second October cumulative update for Win10 version 1809 breaks ATP:

    Microsoft Defender Advanced Threat Protection might stop running

    The Microsoft Defender Advanced Threat Protection (ATP) service might stop running and might fail to send reporting data. You might also receive a 0xc0000409 error in Event Viewer on MsSense.exe.
    Affected platforms:
    • Client: Windows 10, version 1809; Windows 10 Enterprise LTSC 2019
    • Server: Windows Server, version 1809; Windows Server 2019
    Next steps: At this time, we suggest that devices in an affected environment do not install KB4520062. We are working on a resolution and estimate a solution will be available in mid-November.

    Opened: October 17, 2019 05:14 PM PT

    Martin Brinkmann has details on ghacks.net.

    Ponder for a moment. This is an “optional non-security” update that breaks a major security feature, used by a large percentage (if not a majority) of Win10 Enterprise customers. Who in blue blazes is testing this stuff?

    There’s a reason why we’re on MS-DEFCON 1, eh?

    Thx, @Zerafa