Skip to content
Topic
App Control
Everything we have written on this, in the context of App Control for Business.
- 3 min
Fundamentals
The missing control plane for App Control for Business
- 4 min
Fundamentals
Every application control product identifies files the same way
- 5 min
Policy design
Policy options that mean the opposite of what they read
- 5 min
Policy design
Managed installer is not a convenience flag. It is a trust channel
- 6 min
Policy design
One policy estate, a profile per business unit
- 5 min
Policy design
Servers are critical assets. Endpoints are critical entry points
- 5 min
Fundamentals
Seven Windows security layers, and the gap each one closes
- 4 min
Fundamentals
AppLocker and App Control, and why you probably need both
- 5 min
Compliance
The Essential Eight is being retired. What that means for application control
- 6 min
Policy design
Catalog files do not remove hash management, they move it
- 6 min
Operations
What changes when the fleet gets big
- 5 min
Fundamentals
Agent based application control, or the engine already in Windows
- 5 min
Threats
Software supply chain risk stops at the endpoint
- 3 min
Policy design
An application that updates itself, and three ways out
- 5 min
Threats
The execution techniques have not changed. The list around them has
- 6 min
Drivers
Windows stopped trusting cross-signed kernel drivers. What broke, and what to do
- 4 min
Fundamentals
You verify every user. Do you verify every executable?
- 8 min
Fundamentals
App Control vs antivirus vs XDR, and why you need all three
- 7 min
Threats
EDR killers, and what they tell you about where enforcement belongs
- 4 min
Operations
The application control lifecycle, stage by stage
- 4 min
Operations
Application control is not an endpoint team project
- 7 min
Fundamentals
Stop asking what is dangerous. Decide what belongs.
- 9 min
Deployment
Signed and unsigned App Control policies, and where each belongs
- 4 min
Drivers
A blocklist is not a deployment plan
- 11 min
Policy design
Choosing App Control rule levels, and using version rules properly
- 7 min
Policy design
Base and supplemental App Control policies, and how they really combine
- 9 min
Troubleshooting
App Control event IDs, and reading the CodeIntegrity log properly
- 9 min
Deployment
Audit mode to enforcement, and what audit mode does not tell you
- 8 min
Fundamentals
What is App Control for Business, and what happened to WDAC
See what your fleet would actually block
Walk through a real policy against a real environment with us. We will show you what audit mode surfaces, what would break on day one, and how long a staged rollout takes.