If my work were to remote wipe, I have assumed that would only affect the (second) user profile which has those apps, and not the main user account.
My understanding is that these tools offer a factory reset, so they would wipe everything. After all - if the phone is stolen, you wouldn't want to just wipe one profile and leave data within another.
Interesting - I wasn't aware of that. Gave me a few minutes of interesting googling, thanks.
Looks like some people don't agree that is an excuse.
Also worth remembering is that Crowdstrike stopped RHEL 9 machines booting in a vaguely similar update to their falcon service a few months earlier, so it's not something that is exclusive to Windows. That also needed manual intervention to get vms booting. (I dealt with that one too - but it's easier to roll back to the previous kernel with Linux and we had fewer machines that were running falcon) Not surprisingly, there was a very similar blame game played them.