The "Block DLL Policy" technique is an effective strategy for preventing non-Microsoft-signed DLLs from being loaded into system processes. This policy can be applied both when creating new processes and implemented in our local process.
You can run with cargo run or the compiled binary directly:
cargo run
target/release/block_dll_policy.exe