Hi Everyone,
We have observed multiple instances where users are installing portable applications (for example, standalone .exe or .msi packages) at user level without administrator privileges. Although these installations do not require admin rights, they pose security and compliance risks from an endpoint control perspective.
We would like to understand:
-
Is it possible via Hexnode to block the download of .exe and .msi files from browsers?
-
Can we restrict the execution or installation of portable applications (user-level installs) even without administrator rights?
Kindly share the feasible approach and recommended best practices to prevent unauthorized portable application usage on managed Windows endpoints.