top of page
Kim & Tom
Admin
Wdac Enthousiasts
More actions
Profile
Join date: Oct 16, 2023
Posts (8)
Feb 6, 2026 ∙ 8 min
AppControl for Business - Managed Installers Part 3: How ConfigMgr and Intune Actually Implement It and defining your own
In Part 1 , we explained how Managed Installers work: AppLocker policy defines trusted processes, those processes tag files with NTFS Extended Attributes, and WDAC Rule Option 13 tells your policy to trust those tagged files. In Part 2 , we covered the backlog problem and how security catalogs solve it. Now it's time to look at how managed installers are actually configured in ConfigMgr and Intune environments. Both platforms have built-in support for setting up managed installers for their...
40
0
Jan 26, 2026 ∙ 2 min
Every Microsoft DfE 2025 Attack Campaign Blocked: Measuring Application Allowlisting Effectiveness
AppControl.AI analyzed all Microsoft Defender for Endpoint threat intelligence reports published in 2025 to measure the real-world effectiveness of Windows application allowlisting. The results are now available in our yearly report.
171
0
Nov 21, 2025 ∙ 7 min
The Managed Installer Backlog Problem (And How to Solve It)
Why existing applications create operational challenges and what to do about them In Part 1 , we covered how Managed Installers work and why they make AppControl for Business/WDAC deployment feasible. The core benefit is straightforward: instead of creating explicit allow rules for thousands of individual files, you trust your deployment process. Files written by managed installer processes receive NTFS Extended Attributes that WDAC recognizes as trusted. This works well for applications...
298
0
bottom of page