Microsoft to require SMB signing by default in Windows 11


San Francisco, Jun 5 (IANS): Microsoft has said that it will require SMB (Server Message Block) signing (aka security signatures) by default for all connections to defend against NTLM relay attacks in Windows 11, starting with the latest Windows build (Enterprise edition) rolling out to Insiders in the Canary Channel.

Such attacks require network devices (including domain controllers) to impersonate malicious servers under the attackers' control and elevate privileges so they can gain complete control over the Windows domain.

"This changes legacy behaviour, where Windows 10 and 11 required SMB signing by default only when connecting to shares named SYSVOL and NETLOGON and where Active Directory domain controllers required SMB signing when any client connected to them," Microsoft said in a blogpost.

SMB signing aids in the detection of malicious authentication requests by confirming the identities of the sender and receiver via signatures and hashes embedded at the end of each message.

Meanwhile, Microsoft has announced that it will no longer support its virtual assistant Cortana in Windows as a standalone app, starting in late 2023.

This change will only affect Cortana in Windows and will continue to be available in Outlook mobile, Teams mobile, Microsoft Teams display, and Microsoft Teams rooms, the tech giant stated on a support page.

 

  

Top Stories


Leave a Comment

Title: Microsoft to require SMB signing by default in Windows 11



You have 2000 characters left.

Disclaimer:

Please write your correct name and email address. Kindly do not post any personal, abusive, defamatory, infringing, obscene, indecent, discriminatory or unlawful or similar comments. Daijiworld.com will not be responsible for any defamatory message posted under this article.

Please note that sending false messages to insult, defame, intimidate, mislead or deceive people or to intentionally cause public disorder is punishable under law. It is obligatory on Daijiworld to provide the IP address and other details of senders of such comments, to the authority concerned upon request.

Hence, sending offensive comments using daijiworld will be purely at your own risk, and in no way will Daijiworld.com be held responsible.