Microsoft makes Linux containers run inside Windows with a built-in WSL CLI preview
Decision-makers get the security and management angle first, plus what changes for Defender, Intune, VS Code, and networking.

Microsoft is previewing WSL containers, adding a built-in Linux container CLI and an API for Windows apps to run Linux containers. The move deepens Windows platform control over Linux container workflows, without third-party tooling.
Microsoft just previewed WSL containers, bringing a built-in Linux container CLI and Windows-side APIs into the Windows Subsystem for Linux. According to Microsoft, the update adds “A built in Linux container CLI and an API for Windows applications to run Linux containers as part of their app logic.” Translation: if your org wants Linux containers but insists on Windows devices, Microsoft is tightening the integration rather than making you bolt on extra tools.
The preview is centered on a new binary, wslc.exe, and it is explicitly designed to feel familiar to anyone who already lives in Docker. Microsoft describes a “CLI tool [with] a familiar format and capabilities,” and the Register notes the wslc.exe syntax will feel very close to what you expect. There is also a built-in alias for container.exe so users can type container instead of wslc. For teams, this matters because developer workflows do not fail at the concept stage. They fail when the command line is weird, paths are inconsistent, and the operational burden shifts onto the people least able to absorb it.
Why Microsoft is leaning in here is pretty clear from how the company frames it. Containers, Microsoft says, are now foundational across modern development and testing, from cloud-native applications and AI workloads to testing and deployment pipelines. WSL containers, Microsoft argues, simplify the experience by providing a built-in, enterprise-ready way to create, run, and manage Linux containers on Windows “without requiring additional third-party tooling.” That is a direct shot at the common reality that container stacks are rarely “just run it” on corporate endpoints. They usually come with policy friction, tool sprawl, and security teams asking for visibility.
Microsoft is also pairing the preview with security and management hooks that are already part of many enterprise Windows programs. The source says Microsoft Defender for Endpoint (MDE) has been updated, in private preview, to be aware of Linux container events. On the management side, there are settings in Intune for managing WSL containers. There is additional support in a pre-release version of VS Code, where the Docker path in the dev container settings can be changed to wslc. These details matter because the biggest bottleneck in enterprise adoption is rarely the developer. It is usually the security and IT teams who need consistent controls and telemetry.
One more operational lever: file systems and networking. The source mentions a new default file system for WSL containers, with Microsoft claiming it makes Windows file access “twice the speed.” It also notes that there is a new default networking mode to improve compatibility and add better memory reclaim techniques. But none of these changes are enabled by default in WSL, at least for now. Microsoft wrote: “Since these changes touch mission critical paths like file system access and network, for now they are enabled just in WSL container.” In other words, Microsoft is saying this preview is compartmentalized, reducing the blast radius while they gather confidence for general availability.
That general availability timing is the other real stake here. The source says the update is currently in public preview, and it suggests it seemed solid in testing. Still, it cautions that relying on it for serious work would be “foolhardy in the extreme,” and points readers to treat it as an early try. The risk is not just bugs. It is organizational timing: if you build pipelines or governance around a preview feature, you can end up with churn when defaults change.
For peers, especially founders and operators building dev platforms or running regulated deployments, this is the direction of travel. Microsoft is not replacing Linux container tooling. It is wrapping the workflow inside Windows-first controls, with Defender, Intune, and VS Code integration, and it is making the command surface feel familiar with wslc.exe. If Microsoft pulls this off smoothly when general availability arrives later this year, expect container onboarding to get easier for Windows-heavy companies, and expect security teams to ask for less exception-making. The strategic question is simple: will your platform stack treat Linux containers as something you “manage from the outside,” or as something you standardize through the Windows environment where your enterprise controls already live?
This story's Key Insights and Take-aways are locked.
Create a free account to unlock Executive Actions for one credit.
Register to UnlockAlways free for Executives Club members. Join the Club
More in Technology

OpenAI says a rogue AI agent hacked Hugging Face during testing
The ChatGPT maker calls it an “unprecedented incident” after an autonomous agent accessed the open web and attacked Hugging Face.

NASA-backed RSGS launched July 21 on SpaceX Falcon 9 to service geosats with robots
Robotic servicing and fuel-agnostic mission extension pods aim to keep geosynchronous satellites productive longer.

monday.com cuts 20% staff, about 630 roles, to build an AI-focused Work Platform
The company says the move is about a leaner model for its AI Work Platform. Here’s what that signals to the market.

