A kind reminder we would like all registered users to weigh in on one of our forum's security policies.
Please take a moment to read this thread and place a vote.
https://forum.palemoon.org/viewtopic.php?f=17&t=32935

Improve Pale Moon security on Windows with LUA & SRP

General project discussion.
Use this as a last resort if your topic does not fit in any of the other boards but it still on-topic.
Forum rules
This General Discussion board is meant for topics that are still relevant to Pale Moon, web browsers, browser tech, UXP applications, and related, but don't have a more fitting board available.

Please stick to the relevance of this forum here, which focuses on everything around the Pale Moon project and its user community. "Random" subjects don't belong here, and should be posted in the Off-Topic board.
User avatar
Garland
Moonbather
Moonbather
Posts: 56
Joined: 2023-09-26, 20:39

Improve Pale Moon security on Windows with LUA & SRP

Post by Garland » 2025-06-27, 18:10

Windows users can improve Pale Moon security for free by installing it on an admin account and running it on a standard user account, which is also called a limited user account (LUA). Windows Pro and Enterprise users can further improve security for free using a software restriction policy (SRP). I am bringing up a PC running Windows 10 Pro, and it is as relevant today as it was for Windows XP. Note, however, that these strategies are difficult to achieve with the portable version of Pale Moon.

Tutorial: http://www.mechbgon.com/srp/
Reference: http://technet.microsoft.com/en-us/libr ... 57006.aspx
Discussion: https://www.wilderssecurity.com/threads ... rp.200772/

User avatar
Moonchild
Pale Moon guru
Pale Moon guru
Posts: 38494
Joined: 2011-08-28, 17:27
Location: Sweden

Re: Improve Pale Moon security on Windows with LUA & SRP

Post by Moonchild » 2025-06-27, 19:06

I think most users here are already aware; Pale Moon by default installs in a location that requires administrative privileges (unlike Chrome which will plant iself in user areas or Firefox which will do so if no elevation privileges can be automatically obtained). Running as a standard user with UAC elevation privileges will protect you by default from unauthorized program manipulation.
SRP is usually unnecessary and just complicating matters.
"There is no point in arguing with an idiot, because then you're both idiots." - Anonymous
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite

User avatar
moonbat
Knows the dark side
Knows the dark side
Posts: 5707
Joined: 2015-12-09, 15:45

Re: Improve Pale Moon security on Windows with LUA & SRP

Post by moonbat » 2025-07-02, 00:21

Garland wrote:
2025-06-27, 18:10
Note, however, that these strategies are difficult to achieve with the portable version of Pale Moon.
The portable version (of any software, not just Pale Moon) by definition is not meant to be installed, you run it off a USB stick on computers where you don't have admin access.
"One hosts to look them up, one DNS to find them and in the darkness BIND them."

Image
KDE Neon on a Slimbook Excalibur (Ryzen 7 8845HS, 64 GB RAM)
AutoPageColor|PermissionsPlus|PMPlayer|Pure URL|RecordRewind|TextFX
Jabber: moonbat@hot-chili.net