Close Menu
NotesleuNotesleu
    Facebook X (Twitter) Instagram
    Tuesday, February 17
    Facebook X (Twitter) Instagram
    NotesleuNotesleu
    • Home
    • General News
    • Cyber Attacks
    • Threats
    • Vulnerabilities
    • Cybersecurity
    • Contact Us
    • More
    NotesleuNotesleu
    Home»Cybersecurity»Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol
    Cybersecurity

    Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol

    By securnerd3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Follow Us
    Google News

    In a significant move aimed at fortifying the security features of Windows 11, Microsoft has unveiled plans to phase out the NT LAN Manager (NTLM) authentication protocol. The tech giant is set to focus on strengthening the Kerberos authentication protocol, which has been the default choice since the year 2000, signaling a pivotal shift in its authentication methods to bolster cybersecurity.

    Microsoft’s strategy involves introducing innovative features for Windows 11, notably Initial and Pass Through Authentication Using Kerberos (IAKerb) and a local Key Distribution Center (KDC) for Kerberos. IAKerb will empower clients to authenticate using Kerberos across a wide array of network topologies, ensuring seamless and secure communication. The introduction of a local KDC for Kerberos extends its support to local accounts, enhancing the overall accessibility and security of the authentication process.

    Originally introduced in the 1990s, NTLM was designed to offer authentication, integrity, and confidentiality to users. Operating as a single sign-on (SSO) tool, NTLM employed a challenge-response protocol, verifying a user’s knowledge of the associated account password to the server or domain controller. However, with the advent of Windows 2000, Microsoft transitioned to Kerberos as the primary authentication protocol due to its advanced security features.

    The fundamental distinction between NTLM and Kerberos lies in their authentication mechanisms. While NTLM relies on a three-way handshake between the client and server, Kerberos employs a two-part process involving a ticket granting service or key distribution center, enhancing the efficiency and security of the authentication process. Furthermore, Kerberos utilizes encryption, a superior method compared to NTLM’s password hashing.

    Apart from inherent security vulnerabilities, NTLM has been susceptible to relay attacks, enabling malicious actors to intercept authentication attempts and gain unauthorized access to network resources. To mitigate these risks, Microsoft is actively addressing hard-coded NTLM instances within its components, preparing for the eventual elimination of NTLM in Windows 11. These changes will be seamlessly integrated and enabled by default, requiring minimal configuration in most scenarios.

    Matthew Palko, Microsoft’s senior product management lead in Enterprise and Security, emphasized that these security enhancements are a part of the company’s ongoing efforts to encourage the use of Kerberos over NTLM. Although NTLM will still be available as a fallback option to maintain existing compatibility, the transition signifies a substantial leap forward in Windows 11’s security infrastructure, ensuring a safer digital environment for users worldwide.

    Found this news interesting? Follow us on Twitter  and Telegram to read more exclusive content we post.

    Post Views: 70

    Related Posts

    • Woman Found with £2bn in Bitcoin Jailed for Money Laundering
    • Indian Authorities Collaborate with Tech Giants in Massive Crackdown on Microsoft and Amazon Tech Support Scams
    • Unpatched Citrix Servers Remain Vulnerable to CVE-2023-3519 RCE Attacks: Over 15,000 at Risk
    • PyQt Mastery: From Beginner to Advanced
    Follow on Google News
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Add A Comment
    Leave A Reply Cancel Reply

    Recent Post

    Complete HTML Handwritten Notes

    July 22, 2024

    Complete C++ Handwritten Notes From Basic to Advanced

    July 21, 2024

    Complete Python Ebook From Basic To Advanced

    July 20, 2024

    Top 7 Open-Source LLMs for 2024 and Their Uses

    July 18, 2024
    About Us
    About Us

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Latest

    Complete HTML Handwritten Notes

    July 22, 2024

    Complete C++ Handwritten Notes From Basic to Advanced

    July 21, 2024

    Complete Python Ebook From Basic To Advanced

    July 20, 2024
    Popular Post

    Nigerian Man Admits Guilt in $6 Million Business Email Compromise Scheme

    September 24, 20233 Views

    “I Had a Dream” and Generative AI Jailbreaks

    October 10, 202334 Views

    Cisco Uncovers Actively Exploited Zero-Day Vulnerabilities in IOS XE, Urges Immediate Action

    October 21, 202313 Views
    • Contact Us
    • About US
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 Notesleu. Designed by NIM.

    Type above and press Enter to search. Press Esc to cancel.