Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Microsoft Moves Closer to Disabling NTLM

Microsoft Moves Closer to Disabling NTLM

Posted on February 2, 2026February 2, 2026 By CWS

The New Know-how LAN Supervisor (NTLM) authentication protocol is nearing its finish and can not be enabled within the subsequent model of Home windows Server, Microsoft says.

The legacy protocol has been current in Home windows for over three many years, however it’s prone to varied sorts of assaults, together with relay, replay, and man-in-the-middle assaults, and Microsoft deprecated NTLM in favor of stronger, Kerberos-based alternate options.

Though it not receives updates or enhancements, NTLM remains to be used, exposing organizations to assaults because of the lack of authentication, weak cryptography, and restricted diagnostic information.

“Regardless of its deprecated standing, NTLM continues to be prevalent in environments the place fashionable protocols, corresponding to Kerberos, are usually not possible because of legacy dependencies, community limitations, or ingrained software logic,” Microsoft notes.

The tech large’s objective is to fully take away NTLM, and it’s taking a three-phase strategy to disable it by default on Home windows Server and Home windows purchasers.

Now, organizations can use the improved NTLM auditing options of Home windows Server 2025 and Home windows 11, variations 24H2 and later, to know the place and why the protocol remains to be used of their environments.Commercial. Scroll to proceed studying.

The subsequent section will contain overcoming hurdles confronted when eliminating NTLM, associated to area controllers, native account authentication, and the hardcoded NTLM utilization. The options shall be launched within the second half of the yr, for Home windows Server 2025 or Home windows 11, model 24H2 and later.

Directors may have IAKerb and native Key Distribution Middle (KDC) (pre-release) for Kerberos authentication with out NTLM fallback and Microsoft will replace core Home windows options to barter Kerberos first, thus lowering NTLM’s utilization.

The subsequent main releases of Home windows Server and related Home windows shopper will nonetheless have NTLM, however it will likely be disabled by default and would require express re-enablement via new coverage controls. Constructed-in assist for NTLM solely circumstances may also be included.

“Disabling NTLM by default doesn’t imply fully eradicating NTLM from Home windows but. As a substitute, it signifies that Home windows shall be delivered in a secure-by-default state the place community NTLM authentication is blocked and not used robotically,” Microsoft explains.

In accordance with the tech large, disabling NTLM represents a significant step towards a passwordless, phishing-resistant future, however requires that organizations start or speed up their NTLM discount efforts via audits, dependency mapping, migration to Kerberos, NTLM-off configurations testing, and enabling Kerberos upgrades as they develop into out there.

Associated: Microsoft Patches Workplace Zero-Day Doubtless Exploited in Focused Assaults

Associated: New ‘Reprompt’ Assault Silently Siphons Microsoft Copilot Knowledge

Associated: Microsoft Names New Working CISOs in Strategic Transfer to Strengthen Cyberdefense

Associated: Microsoft Unveils Safety Enhancements for Id, Protection, Compliance

Security Week News Tags:Closer, Disabling, Microsoft, Moves, NTLM

Post navigation

Previous Post: Japan, Britain to Boost Cybersecurity and Critical Minerals Cooperation as China’s Influence Grows
Next Post: Over 1,400 MongoDB Databases Ransacked by Threat Actor

Related Posts

EU Cybersecurity Agency ENISA Launches European Vulnerability Database EU Cybersecurity Agency ENISA Launches European Vulnerability Database Security Week News
Critical Chrome Vulnerability Earns Researcher ,000 Critical Chrome Vulnerability Earns Researcher $43,000 Security Week News
Ahold Delhaize Data Breach Impacts 2.2 Million People Ahold Delhaize Data Breach Impacts 2.2 Million People Security Week News
Facial Recognition’s Trust Problem – SecurityWeek Facial Recognition’s Trust Problem – SecurityWeek Security Week News
Critical Cisco ISE Vulnerabilities Allow Remote Code Execution  Critical Cisco ISE Vulnerabilities Allow Remote Code Execution  Security Week News
SonicWall Warns of Trojanized NetExtender Stealing User Information SonicWall Warns of Trojanized NetExtender Stealing User Information Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Researchers Find 341 Malicious ClawHub Skills Stealing Data from OpenClaw Users
  • DynoWiper Data-Wiping Malware Attacking Energy Companies to Destroy Data
  • 30 Wind and Solar Farms in Poland Faced Coordinated Cyberattacks
  • OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link
  • Microsoft Begins NTLM Phase-Out With Three-Stage Plan to Move Windows to Kerberos

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Researchers Find 341 Malicious ClawHub Skills Stealing Data from OpenClaw Users
  • DynoWiper Data-Wiping Malware Attacking Energy Companies to Destroy Data
  • 30 Wind and Solar Farms in Poland Faced Coordinated Cyberattacks
  • OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link
  • Microsoft Begins NTLM Phase-Out With Three-Stage Plan to Move Windows to Kerberos

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark