Close Menu
NotesleuNotesleu
    Facebook X (Twitter) Instagram
    NotesleuNotesleu
    • Home
    • General News
    • Cyber Attacks
    • Threats
    • Vulnerabilities
    • Cybersecurity
    • Contact Us
    • More
      • About US
      • Disclaimer
      • Privacy Policy
      • Terms and Conditions
    NotesleuNotesleu
    Home»Cybersecurity»Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol

    Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol

    By NotesleuNo Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Reddit Copy Link

    In a significant move aimed at fortifying the security features of Windows 11, Microsoft has unveiled plans to phase out the NT LAN Manager (NTLM) authentication protocol. The tech giant is set to focus on strengthening the Kerberos authentication protocol, which has been the default choice since the year 2000, signaling a pivotal shift in its authentication methods to bolster cybersecurity.

    Microsoft’s strategy involves introducing innovative features for Windows 11, notably Initial and Pass Through Authentication Using Kerberos (IAKerb) and a local Key Distribution Center (KDC) for Kerberos. IAKerb will empower clients to authenticate using Kerberos across a wide array of network topologies, ensuring seamless and secure communication. The introduction of a local KDC for Kerberos extends its support to local accounts, enhancing the overall accessibility and security of the authentication process.

    Originally introduced in the 1990s, NTLM was designed to offer authentication, integrity, and confidentiality to users. Operating as a single sign-on (SSO) tool, NTLM employed a challenge-response protocol, verifying a user’s knowledge of the associated account password to the server or domain controller. However, with the advent of Windows 2000, Microsoft transitioned to Kerberos as the primary authentication protocol due to its advanced security features.

    The fundamental distinction between NTLM and Kerberos lies in their authentication mechanisms. While NTLM relies on a three-way handshake between the client and server, Kerberos employs a two-part process involving a ticket granting service or key distribution center, enhancing the efficiency and security of the authentication process. Furthermore, Kerberos utilizes encryption, a superior method compared to NTLM’s password hashing.

    Apart from inherent security vulnerabilities, NTLM has been susceptible to relay attacks, enabling malicious actors to intercept authentication attempts and gain unauthorized access to network resources. To mitigate these risks, Microsoft is actively addressing hard-coded NTLM instances within its components, preparing for the eventual elimination of NTLM in Windows 11. These changes will be seamlessly integrated and enabled by default, requiring minimal configuration in most scenarios.

    Matthew Palko, Microsoft’s senior product management lead in Enterprise and Security, emphasized that these security enhancements are a part of the company’s ongoing efforts to encourage the use of Kerberos over NTLM. Although NTLM will still be available as a fallback option to maintain existing compatibility, the transition signifies a substantial leap forward in Windows 11’s security infrastructure, ensuring a safer digital environment for users worldwide.

    Found this news interesting? Follow us on Twitter  and Telegram to read more exclusive content we post.

    Post Views: 54
    Featured
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleMassive Balada Injector Attacks Continue to Plague WordPress Sites Worldwide
    Next Article Cutting-Edge AI Algorithm Thwarts Cyberattacks on Unmanned Military Vehicles

    Related Posts

    Cyber Attacks December 26, 2025

    2 Million Affected by SQL Injection and XSS Data Breach

    December 26, 2025
    Cyber Attacks December 26, 2025

    Cybersecurity Experts Uncover ToddyCat’s Expanded Arsenal of Data Theft Tools

    December 26, 2025
    Tech December 26, 2025

    “I Had a Dream” and Generative AI Jailbreaks

    December 26, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    About Us
    About Us

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Popular Post

    Complete HTML Handwritten Notes

    NKAbuse Malware Exploits NKN Blockchain for Advanced DDoS Attacks

    Advanced Python Mastery: For the Serious Developer

    Complete C++ Handwritten Notes From Basic to Advanced

    Google Introduces New Features Empowering Users to Manage Online Information

    © 2025 Notesleu. Designed by NIM.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.