Gets the list of attribute GUIDs.
The GUID values will not modify the calculated HSI value.
a SecurityAttr
the GUIDs, which may be empty