Intune Newsletter – 28th August 2026

Another week has passed and for many of us, the return to school drop-offs and homework nagging is looming.  This week has seen the release of Unattended access in Remote Help for Windows (and some interesting pre-reqs), find out more in the Microsoft content below.


Community Content

Whilst not strictly Intune related, I’m sure most of you spend a lot of your time in the security console.  If you have E5 licensing, you get the Hunting Agent now which you can learn about here from Michael Frank

https://michaelsendpoint.com/security/SecurityCopilot/HuntingAgent.html


A new addition to Windows recovery, you can now do a point-in-time restore on your devices.  Find out how to configure it with Intune and use it in your environment in this post from Jan Mulder

How to Manage Point-in-Time Restore with Microsoft Intune


Did you know you can do a device-bound passkey on macOS for Edge and Chrome?  Me neither!  If this sounds interesting, Jan Bakker has you covered here

How to create a Microsoft 365 device-bound passkey on macOS


We have the second part of the AVD automation series from Niels Kok here, this one covers (and includes scripts) on building your machines using Terraform and PowerShell!

Automate AVD Hybrid part 2


Now custom compliance is here for macOS, you can use this script from Nick Benton to check Defender is running properly as part of your compliance checks

https://www.oddsandendpoints.co.uk/posts/macos-custom-defender-compliance/


For those of you on Business Premium licensing, you may have noticed Defender for Business is lacking some features of the full-fat MDE.  Learn what is missing and some options for you here with Rahul Jindal

https://rahuljindalmyit.blogspot.com/2026/08/defender-for-business-understanding.html


If you manage devices in the EU, I imagine this SSO blocking pop-up has caused you many issues!  Fortunately you can now manage it with Intune as covered in this post from Mr T-Bone

Central Accept Of “Continue To Sign In” Dialog, Now A Supported Way With Intune


I imagine you want control over AI on your managed devices and no reason why this shouldn’t extend to your iOS/iPadOS devices as well.  This post from Peter van der Woude shows how to manage Apple Intelligence via Intune policies

Managing Apple Intelligence on iOS and iPadOS devices


There is still no easy way to control your applications on Intune.  I personally prefer AppLocker, but it isn’t native and WDAC is a nightmare.  The best native option is App Control for Business, but it’s still risky business.  Fortunately Dustin Gullett has you covered with this comprehensive post

https://zerototrust.tech/app-control-for-business-hope-is-not-a-deployment-strategy/


As mentioned earlier, unattended access for Remote Help (Windows) is finally here.  Mads Johansen looks at it here

https://evil365.com/intune/RemoteHelp-UnattendedAccess/


OS Compliance is great in theory, but it’s such an overhead most people just end up with a minimum OS version which went end of life 5 years ago.  What if there was a way to automate it?  You’re in luck, Jeroen Burgerhout has you covered here

https://www.burgerhout.org/p/automating-intune-os-version-compliance-with-azure-automation


McAfee remains a nightmare on your OEM images and it feels like a constant battle to remove it.  Kevin Malinoski has an updated post on removing it with Intune here

McAfee: The Shadow IT That Ships From the Factory (….and how to remove it with Intune)


Next, after some thorough testing, Niall Brady gives some final thoughts on Windows 365 reserve

Final thoughts on Windows 365 Reserve


On the subject of Windows 365, Jörgen Nilsson looks at what to do if you need to preserve a machine for an investigation here

Windows 365 – Placing a Cloud PC Under Review


Sander Rozemuller covers how to troubleshoot a device without a compliance policy assigned in this post

https://rozemuller.com/why-does-this-intune-device-have-no-compliance-policy-assigned/


Video Content

Now for the video content, starting with a look at how to review, manage and remediate your security vulnerabilities using Intune and MDE from Chander Mani Pandey


A regular thing I hear is people not wanting to use Defender and Intune because they don’t want to rely on just one vendor.  Learn why this isn’t something you should worry about here from Jonathan Edwards

Jonathan also looks at the upcoming end-of-life of the memberof attribute in Entra dynamic groups


Microsoft Content

As mentioned earlier, we start this weeks Microsoft news with the official announcement of Unattended Support for Remote Help on Windows from Rodolfo Bermudez and Kara Wang

https://techcommunity.microsoft.com/blog/IntuneCustomerSuccess/remote-help-on-windows-unattended-support-with-remote-sign-in-is-here/4549772


If you’re using Managed Home Screen and noticed the exit PIN has gone missing, here is the fix from the Intune Support Team

https://techcommunity.microsoft.com/blog/IntuneCustomerSuccess/support-tip-restore-the-managed-home-screen-exit-pin/4549102


Some exciting news, device association for device prep is now here!  Learn all about it here with Maggie Dakeva

https://techcommunity.microsoft.com/blog/IntuneCustomerSuccess/introducing-device-association-for-windows-autopilot-device-preparation/4550603


That’s it for this week, have a tremendous weekend!

Leave a Comment