The real cost of a stalled application control project
A half-finished application control rollout is the most expensive kind there is. The budget is spent, the posture has not moved, and the meter is still running.
Empowering Microsoft WDAC
WDACManager Blog
Practical guidance on WDAC, Intune ACfB, Application Abstraction, policy lifecycle design, and controlled enterprise rollout.
16 posts in WDAC
This archive supports navigation and internal linking.
A half-finished application control rollout is the most expensive kind there is. The budget is spent, the posture has not moved, and the meter is still running.
A properly signed file can appear unsigned in WDAC audit events depending on how it was loaded. Policies built purely from those events end up bloated.
Native image DLLs generate a flood of events that look like a problem. They are not.
Application control projects do not fail because the technology is hard. They fail because the environment was not ready for the control before it was introduced.