That's why Microsoft added the ability to turn on Windows Defender in sandbox mode.Even if an attacker or a malicious application exploits a vulnerability in Defender, it will not affect other parts of the machine.
Google Project project researcher Zero Tavis Ormandy discovered and published many vulnerabilities last year that talked about the Windows Defender sandbox on Twitter that this is a 'game changer' feature.
Currently, Windows Defender running on Windows 10 version 1703 (aka Creators Update) or newer has been supported with the sandbox feature, and is not enabled by default, but you must turn it on manually by following these steps:
Microsoft is gradually launching Preview in Windows Insider that supports the sandbox feature for Defender Antivirus.This feature will also be released soon to all users.
See more: