If this check box is selected, Kaspersky Embedded Systems Security reduces the risks that vulnerabilities will be exploited in processes in the list of protected processes.
If this check box is cleared, Kaspersky Embedded Systems Security does not protect device processes from exploits.
If this mode is selected, Kaspersky Embedded Systems Security terminates a protected process upon detecting an exploit attempt if an active impact reduction technique has been applied to the process.
If this mode is selected, Kaspersky Embedded Systems Security reports exploits by displaying a terminal window. The compromised process continues to run.
If Kaspersky Embedded Systems Security detects an exploit in a critical process while the application is running in Terminate on exploit mode, the component switches to Notify only mode.
In the Preventing actions block, configure the following settings:
If this check box is selected, Kaspersky Embedded Systems Security displays a terminal window with an explanation of why protection was activated and an indication of the process in which an exploit attempt was detected.
If the check box is cleared, Kaspersky Embedded Systems Security displays a terminal window when an exploit attempt or termination of a compromised process is detected. A terminal window is displayed regardless of the status of the Kaspersky Security Exploit Prevention Service. The check box is selected by default.
If this check box is selected, Kaspersky Embedded Systems Security will reduce the risk of vulnerabilities being exploited in processes that have already been started, regardless of whether the Kaspersky Security Service is running. Kaspersky Embedded Systems Security will not protect processes added after the Kaspersky Security Service is stopped. If the service is restarted, exploit impact reduction will be stopped for all processes.
If this check box is cleared, Kaspersky Embedded Systems Security does not protect processes from exploits when the Kaspersky Security Service is stopped.
The check box is selected by default.
Click OK in the Exploit Prevention window.
Kaspersky Embedded Systems Security saves and applies the configured process memory protection settings.