Skip to main content
  1. Home
  2. Computing
  3. Evergreens

How to turn on Windows 10 Ransomware protection

Add as a preferred source on Google

Few malware attacks are as annoying or potentially costly as ransomware. Once your computer becomes infected, ransomware locks you out of valuable files and demands that you send payments in exchange for releasing them. Even major corporations have been attacked, with some actually making enormous payouts to get their digital property back.

Yep, that’s scary — but there are ways you can protect your devices. One of the newer, easier-to-enable options offered by Windows 10 is enabling its innate ransomware protection with controlled file access. Let’s walk through how to turn it on and what this means for your Windows 10 security going forward.

Recommended Videos

Step 1: Head to Windows Security

Screenshot showing windows security search.
Image used with permission by copyright holder

Once you have logged into Windows 10, head down to the search bar on the left side of the Windows 10 taskbar and type in Security.

Look at the results and choose the Windows Security App to begin.

Once Windows Security has opened, look to the left-side menu and select Virus & Threat Protection, which has a shield icon.

Step 2: Manage your ransomware protection

Screenshot showing the Ransomware protection section.
Image used with permission by copyright holder

Once in Virus & Threat Protection, scroll down until you find the section called Ransomware Protection. This will list any important protection updates you might need, as well as give you an option to Manage Ransomware Protection. Select this to continue.

Step 3: Make sure Controlled Folder Access is enabled

Screenshot showing the Controlled Folder Access feature turned on.
Image used with permission by copyright holder

You will now open a window dedicated to Ransomware Protection. Here, look for the section that says Controlled Folder Access.

You should see a toggle to turn Controlled Folder Access On. Make sure it is toggled to On, and your ransomware protection will automatically begin, keeping any suspicious software from accessing and locking or messing with your files.

You may get a User Account Control window pop-up that asks if you are sure you want to enable this type of protection (for this and other steps here). Again, this is a native Windows option from Microsoft, so trusting it is not a problem. However, it may change the way that you manage files in some ways, so let’s take a look at managing app access.

Step 4: Let certain apps have access as needed

Image showing button for adding an allowed app.
Image used with permission by copyright holder

Look under Controlled Folder Access once you have enabled it, and you will see an option that says Allow an App Through Controlled Folder Access. On default settings, the Controlled Folder Access mode will block file access from any app it doesn’t recognize, which is likely to include most or all third-party apps you are using. That’s a problem if an app really does need access to one of your files (a PDF editing tool, for example). Choose this option to allow a specific app to use your files.

On the next screen, choose Add an Allowed App to begin. If you recently ran into a blocking problem, you can choose Recently Block Apps to quickly locate the program in question. Otherwise, choose Browse All Apps, and choose the app you know you want to allow through. You can manage this list over time as you get used to ransomware protection.

Step 5: Set up file recovery

The OneDrive logo.
Image used with permission by copyright holder

Finally, if you haven’t set up Microsoft’s cloud solution OneDrive yet, the Ransomware Protection window will have a suggestion at the bottom to set up OneDrive. This will allow you to store important files in the OneDrive cloud as well as on your local hard drive. That means that even if Ransomware locks you out of local files, you can access those same files safely from OneDrive while wiping your computer (we highly recommend taking it into an expert, too) and getting rid of the malware.

OneDrive’s base service is free and does include individual file recovery, so this costs nothing to set up and is a good idea if you are worried about losing access to your files. If you have already set up OneDrive, you will instead see an option to View Files so you can make sure that your most important files are already in OneDrive.

While you’re at it, why not take a look at our top suggestions for free antivirus software that can keep your computer protected without adding annoying bloatware?

Tyler Lacoma
If it can be streamed, voice-activated, made better with an app, or beaten by mashing buttons, Tyler's into it. When he's not…
Lenovo’s next ThinkBook looks unbelievably thin in this leak
Say hello to Aeroblade, the ThinkBook that could redefine how thin a laptop can get.
Lenovo ThinkBook Aeroblade front view

Lenovo might have a new obsession, and it's all about being thin. Windows Latest got its hands on marketing images of an unannounced Lenovo laptop, and buried in the files is a name we've never seen before: Aeroblade. The device itself is clearly branded as a ThinkBook, so this could launch as the ThinkBook Aeroblade.

If you're not familiar, ThinkBook sits just below the premium ThinkPad lineup and is built for small and medium businesses who want that ThinkPad look without the ThinkPad price tag.

Read more
Apple fixed three Mac Screen Sharing flaws, and now it’s patching another one
macOS 26.6.1 arrives roughly 10 days after Apple shipped three separate Screen Sharing security fixes in macOS 26.6.
MacBook Pro on Table

Apple has released macOS Tahoe 26.6.1 to fix a Screen Sharing vulnerability that could let an attacker on the same network authenticate without valid credentials.

The timing makes this update more interesting than its small version number suggests. Apple’s security notes for macOS 26.6, released July 27, already listed three separate vulnerabilities affecting Screen Sharing Server.

Read more
Dell’s iconic XPS lineup may be heading into Google’s Googlebook ecosystem
Dell's iconic XPS lineup may be heading to Google's laptop platform for the first time.
Googlebook featured image.

A fresh benchmark leak suggests Dell is quietly building its first Googlebook under the XPS name, joining Lenovo and Asus as the hardware partner for Google's upcoming laptop platform (via Chrome Unboxed).

The leak trail started with an internal board codenamed "Mica" showing up in Chromium's development pipeline. It was tied to Qualcomm's "Bluey" architecture built specifically for Snapdragon X-series Googlebooks. 

Read more