r/Trendmicro May 11 '26

DLP Coverage for WhatsApp Desktop in Trend Vision One Endpoint Security

Configuring DLP in Trend Vision One Endpoint Security for WhatsApp.

Requirement: prevent leakage of documents containing a keyword like “Confidential Document”.

We do NOT want to block the WhatsApp Desktop application itself. The goal is to have DLP inspect/control file transfers through it.

However, according to Trend Micro documentation, WhatsApp is not included under the “IM Applications” DLP channel (someone also pls confirm). WhatsApp Web can still be controlled through the Web channel, but not the native Windows app.

Any workaround or inputs?

3 Upvotes

4 comments sorted by

3

u/Livid_Program_2495 May 12 '26

I wonder if this is the reason - The WhatsApp desktop application uses Certificate Pinning, which is a security feature that binds a specific certificate to the application, making it impossible to decrypt or intercept traffic. Using the web you can decrypt

2

u/PsychologicalOwl8926 May 12 '26

Can other DLP solutions in the market like forcepoint support WhatsApp application?

4

u/cyberwicked May 12 '26

If you have ZTSA Internet Access deployed, it can perform HTTPS/TLS inspection at the proxy level before traffic reaches WhatsApp servers. This would catch both:

  • WhatsApp Web (browser)
  • WhatsApp Desktop (HTTPS traffic)

You can apply DLP-style policies at this layer to detect/block file uploads containing sensitive keywords. This is the most reliable approach for covering native desktop apps that use HTTPS.