I have teredo and IPv6 disabled and yet it is connecting out to do IPV6 teredo tests.pic.twitter.com/AEq3Wh6F9o
You can add location information to your Tweets, such as your city or precise location, from the web and via third-party applications. You always have the option to delete your Tweet location history. Learn more
I have teredo and IPv6 disabled and yet it is connecting out to do IPV6 teredo tests.pic.twitter.com/AEq3Wh6F9o
Also note this is a system with minimal software install, all default windows store apps removed, and nothing running on it.
Here you can see I have SmartScreen disabled and yet it is still connecting to SmartScreen.pic.twitter.com/5OmER5shea
Here you can see I have telemetry disabled, plus the tracking-related services are disabled plus a few reg hacks. Still connects.pic.twitter.com/dyg6M1iFyK
And here you can see I have every policy set to not sync settings plus I have the sync-related services disabled. Still connects.pic.twitter.com/iEKJOXI6ua
Error reporting disabled, service disabled, still connects.pic.twitter.com/2DcFb7FcDJ
And with every possible setting to block connections to MS (except updates) here are a bunch of advertising-related connections.pic.twitter.com/7rt9KzpXXC
Note that during that time here is a list of apps that connected to the internet. All the ad-related connections were from System.pic.twitter.com/zNzX5JMTKQ
So it seems like Microsoft doesn't even honor it's own Group Policy settings.
But the big problem here is that people will use third-party apps to block all this and inadvertently block security-related stuff.
If you search for Windows 10 on github, the first few pages of results are tools to defeat spying.
And on an unrelated note, I deleted Paint 3D and Microsoft silently reinstalled it and added a firewall rule to allow it to connect out.pic.twitter.com/s9apK32R8a
Just adding a note to this thread that my initial testing wasn't tightly controlled or documented and still needs to be verified.
also, do your packet captures with "netsh trace start capture=yes tracefile=file persist=yes" if not external
Since people are still retweeting this, you really should read go this follow-up article: https://xa.to/3y
Seems like what you have disabled is incomplete https://twitter.com/withinrafael/status/866476315708227584 …
That is the document I used.
But for disabling telemetry, they require a bunch of additional settings to be disabled in addition to what you have disabled.
Which I did, of course.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.