Another week has passed and for many of us, the return to school drop-offs and homework nagging is looming. This week has seen the release of Unattended access in Remote Help for Windows (and some interesting pre-reqs), find out more in the Microsoft content below.
Community Content
Whilst not strictly Intune related, I’m sure most of you spend a lot of your time in the security console. If you have E5 licensing, you get the Hunting Agent now which you can learn about here from Michael Frank
https://michaelsendpoint.com/security/SecurityCopilot/HuntingAgent.html
A new addition to Windows recovery, you can now do a point-in-time restore on your devices. Find out how to configure it with Intune and use it in your environment in this post from Jan Mulder
Did you know you can do a device-bound passkey on macOS for Edge and Chrome? Me neither! If this sounds interesting, Jan Bakker has you covered here
We have the second part of the AVD automation series from Niels Kok here, this one covers (and includes scripts) on building your machines using Terraform and PowerShell!
Now custom compliance is here for macOS, you can use this script from Nick Benton to check Defender is running properly as part of your compliance checks
https://www.oddsandendpoints.co.uk/posts/macos-custom-defender-compliance/
For those of you on Business Premium licensing, you may have noticed Defender for Business is lacking some features of the full-fat MDE. Learn what is missing and some options for you here with Rahul Jindal
https://rahuljindalmyit.blogspot.com/2026/08/defender-for-business-understanding.html
If you manage devices in the EU, I imagine this SSO blocking pop-up has caused you many issues! Fortunately you can now manage it with Intune as covered in this post from Mr T-Bone
Central Accept Of “Continue To Sign In” Dialog, Now A Supported Way With Intune
I imagine you want control over AI on your managed devices and no reason why this shouldn’t extend to your iOS/iPadOS devices as well. This post from Peter van der Woude shows how to manage Apple Intelligence via Intune policies
There is still no easy way to control your applications on Intune. I personally prefer AppLocker, but it isn’t native and WDAC is a nightmare. The best native option is App Control for Business, but it’s still risky business. Fortunately Dustin Gullett has you covered with this comprehensive post
https://zerototrust.tech/app-control-for-business-hope-is-not-a-deployment-strategy/
As mentioned earlier, unattended access for Remote Help (Windows) is finally here. Mads Johansen looks at it here
https://evil365.com/intune/RemoteHelp-UnattendedAccess/
OS Compliance is great in theory, but it’s such an overhead most people just end up with a minimum OS version which went end of life 5 years ago. What if there was a way to automate it? You’re in luck, Jeroen Burgerhout has you covered here
https://www.burgerhout.org/p/automating-intune-os-version-compliance-with-azure-automation
McAfee remains a nightmare on your OEM images and it feels like a constant battle to remove it. Kevin Malinoski has an updated post on removing it with Intune here
McAfee: The Shadow IT That Ships From the Factory (….and how to remove it with Intune)
Next, after some thorough testing, Niall Brady gives some final thoughts on Windows 365 reserve
On the subject of Windows 365, Jörgen Nilsson looks at what to do if you need to preserve a machine for an investigation here
Sander Rozemuller covers how to troubleshoot a device without a compliance policy assigned in this post
https://rozemuller.com/why-does-this-intune-device-have-no-compliance-policy-assigned/
Video Content
Now for the video content, starting with a look at how to review, manage and remediate your security vulnerabilities using Intune and MDE from Chander Mani Pandey
A regular thing I hear is people not wanting to use Defender and Intune because they don’t want to rely on just one vendor. Learn why this isn’t something you should worry about here from Jonathan Edwards
Jonathan also looks at the upcoming end-of-life of the memberof attribute in Entra dynamic groups
Microsoft Content
As mentioned earlier, we start this weeks Microsoft news with the official announcement of Unattended Support for Remote Help on Windows from Rodolfo Bermudez and Kara Wang
If you’re using Managed Home Screen and noticed the exit PIN has gone missing, here is the fix from the Intune Support Team
Some exciting news, device association for device prep is now here! Learn all about it here with Maggie Dakeva
That’s it for this week, have a tremendous weekend!