Jump to content
  • Microsoft is making Windows 11 23H2, 22H2 less secure than 24H2 by killing a VBS feature

    Karlston

    • 229 views
    • 2 minutes
     Share


    • 229 views
    • 2 minutes

    Microsoft is planning to remove a security feature on versions of Windows 11 older than 24H2. The company has confirmed that it is deprecating VBS enclaves on the likes of Windows 11 23H2 and 22H2. The same is happening to Server 2022 and 2019/2016 as well. This essentially makes the older versions of Windows 11 and Windows Server less secure.

     

    The company writes:

     

    VBS enclaves are being deprecated on Windows 11, version 23H2 and earlier versions of Windows. Support for VBS enclaves will continue for Windows 11, version 24H2 and later.

    VBS enclaves are being deprecated on Windows Server 2022 and earlier versions of Windows Server. Support for VBS enclaves will continue for Windows Server 2025 and later.

    VBS enclaves was released in July last year where the company also talked about the system requirements of the feature. As the name suggests, VBS enclaves is based on VBS or Virutalization-based Security.

     

    VBS is an essential security feature on Windows 11 which Microsoft has pointed out several times in the past. So we are unsure why the company is removing one of the VBS features on the slightly older OSes. Microsoft also does not state the reason.

     

    The tech giant typically removes older standards to improve the security of its software or introduces newer and improved ones. For example, it updated the way it collects user data on Edge recently, and is also gradually killing off ActiveX on Office apps.

     

    For those of you wondering how VBS enclaves helps, the feature is meant to improve the memory safety of apps by creating virtual trust levels (VTL) inside a software-based Trust Execution Environment (TEE).

     

    VBS Enclaves

     

    However, it is not infallible as Microsoft had to patch CVE-2025-21370 VBS enclaves local elevation of privilege (LPE) vulnerability back in January. On the topic of memory safety, Microsoft also began integrating Rust in the Windows kernel back in 2024 on Windows 11 version 23H2.

     

    You can view the list of deprecated features here on Microsoft's official website.

     

    Source


    Hope you enjoyed this news post.

    Thank you for appreciating my time and effort posting news every day for many years.

    News posts... 2023: 5,800+ | 2024: 5,700+ | 2025 (till end of March): 1,357

    RIP Matrix | Farewell my friend  :sadbye:


    User Feedback

    Recommended Comments

    There are no comments to display.



    Join the conversation

    You can post now and register later. If you have an account, sign in now to post with your account.
    Note: Your post will require moderator approval before it will be visible.

    Guest
    Add a comment...

    ×   Pasted as rich text.   Paste as plain text instead

      Only 75 emoji are allowed.

    ×   Your link has been automatically embedded.   Display as a link instead

    ×   Your previous content has been restored.   Clear editor

    ×   You cannot paste images directly. Upload or insert images from URL.


  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...