Forum Discussion

s_emangard's avatar
s_emangard
Copper Contributor
May 28, 2025

WDAC: Unable to deploy Vulnerable driver blocklist

Hello,

 

I tried to deploy the Microsoft Vulnerable driver blocklist with an Intune WDAC policy but i always faced an error using the XML provided by Microsoft : https://aka.ms/VulnerableDriverBlockList

MS doc: https://learn.microsoft.com/en-us/windows/security/application-security/application-control/app-control-for-business/design/microsoft-recommended-driver-block-rules

Thanks and regards

2 Replies

  • Avrilol's avatar
    Avrilol
    Iron Contributor

    Applications and Services Logs > Microsoft > Windows > DeviceManagement-Enterprise-Diagnostics-Provider

  • Will-Dale's avatar
    Will-Dale
    Iron Contributor

    The error message "WDAC: Unable to deploy Vulnerable driver blocklist" typically indicates an issue with the Windows Defender Application Control (WDAC) policy deployment, specifically related to the XML configuration for blocking vulnerable drivers.

Resources