Airlock vs Microsoft AppLocker™
Not all application whitelists are created equal
Microsoft AppLocker™
Performs application control that is heavily reliant on user & folder exemptions to function, often resulting is a decreased level of security.
Airlock Digital
Enforces easily configurable and secure application whitelists, that also apply to administrative users.
User Permissions
Exclusion Management
Ease of Management
Centralised Logging
Bypasses
Event Troubleshooting
Feature Improvements
Maturity
Application Libraries (.DLL)
TLDR; Not all application whitelists provide the same level of security, ensure you understand the limitations
Airlock vs AppLocker is an independent (publication) and is not affiliated with, nor has it been authorized, sponsored, or otherwise approved by Microsoft® Corporation.
References:
1 https://github.com/microsoft/AaronLocker
2 https://docs.microsoft.com/en-us/windows/security/threatprotection/windows-defender-application-control/applocker/applocker-overview
3 https://www.microsoft.com/en-us/msrc/windows-securityservicing-criteria
4 https://github.com/api0cradle/UltimateAppLockerByPassList
5 https://airlockdigital.roadmap.space
6 https://docs.microsoft.com/en-us/windows/security/threatprotection/windows-defender-application-control/wdac-andapplocker-overview
7 https://www.cyber.gov.au/acsc/view-all-content/publications/essential-eight-maturity-model
8 https://technet.microsoft.com/en-us/library/ee460950(v=ws.11).aspx