I am trying to find a way to add a known executable to endpoint, as a threat.
For example... app.exe... is it possible to add that name, path, etc to a list of unwanted programs to SCEP?
I can see how to do threat overrides, however I was hoping to do the opposite against a list of executable names, paths, hashes, or whatever is available.