SecurNerd
    What's Hot

    Google just launched a new AI and has already admitted at least one demo wasn’t real

    December 8, 2023

    BLUFFS Bluetooth Vulnerabilities Open Door to Adversary-in-the-Middle Threats

    December 5, 2023

    Qilin Ransomware’s Latest Variant Targets VMware ESXi Servers with Advanced Linux Encryptor

    December 4, 2023
    Facebook Twitter Instagram
    Facebook Twitter Instagram
    SecurNerd
    • Home
    • AI
    • General News
    • Science
    • Tech
    • Contact Us
    • More
      • About US
      • Disclaimer
      • Privacy Policy
      • Terms and Conditions
    SecurNerd
    Home»Cybersecurity»Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol
    Cybersecurity

    Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol

    securnerdBy securnerdOctober 15, 2023Updated:October 15, 202303 Mins Read18 Views
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Reddit Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    In a significant move aimed at fortifying the security features of Windows 11, Microsoft has unveiled plans to phase out the NT LAN Manager (NTLM) authentication protocol. The tech giant is set to focus on strengthening the Kerberos authentication protocol, which has been the default choice since the year 2000, signaling a pivotal shift in its authentication methods to bolster cybersecurity.

    Microsoft’s strategy involves introducing innovative features for Windows 11, notably Initial and Pass Through Authentication Using Kerberos (IAKerb) and a local Key Distribution Center (KDC) for Kerberos. IAKerb will empower clients to authenticate using Kerberos across a wide array of network topologies, ensuring seamless and secure communication. The introduction of a local KDC for Kerberos extends its support to local accounts, enhancing the overall accessibility and security of the authentication process.

    Originally introduced in the 1990s, NTLM was designed to offer authentication, integrity, and confidentiality to users. Operating as a single sign-on (SSO) tool, NTLM employed a challenge-response protocol, verifying a user’s knowledge of the associated account password to the server or domain controller. However, with the advent of Windows 2000, Microsoft transitioned to Kerberos as the primary authentication protocol due to its advanced security features.

    The fundamental distinction between NTLM and Kerberos lies in their authentication mechanisms. While NTLM relies on a three-way handshake between the client and server, Kerberos employs a two-part process involving a ticket granting service or key distribution center, enhancing the efficiency and security of the authentication process. Furthermore, Kerberos utilizes encryption, a superior method compared to NTLM’s password hashing.

    Apart from inherent security vulnerabilities, NTLM has been susceptible to relay attacks, enabling malicious actors to intercept authentication attempts and gain unauthorized access to network resources. To mitigate these risks, Microsoft is actively addressing hard-coded NTLM instances within its components, preparing for the eventual elimination of NTLM in Windows 11. These changes will be seamlessly integrated and enabled by default, requiring minimal configuration in most scenarios.

    Matthew Palko, Microsoft’s senior product management lead in Enterprise and Security, emphasized that these security enhancements are a part of the company’s ongoing efforts to encourage the use of Kerberos over NTLM. Although NTLM will still be available as a fallback option to maintain existing compatibility, the transition signifies a substantial leap forward in Windows 11’s security infrastructure, ensuring a safer digital environment for users worldwide.

    Found this news interesting? Follow us on Twitter  and Telegram to read more exclusive content we post.

    Featured
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    securnerd
    • Website
    • Facebook
    • Twitter
    • Instagram

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Related Posts

    Google just launched a new AI and has already admitted at least one demo wasn’t real

    December 8, 2023

    BLUFFS Bluetooth Vulnerabilities Open Door to Adversary-in-the-Middle Threats

    December 5, 2023

    Zyxel Addresses 15 Security Vulnerabilities Across NAS, Firewall, and AP Devices with Latest Patches

    December 1, 2023
    Add A Comment

    Leave A Reply Cancel Reply

    Top Posts

    Apple Takes Stand Against U.K. Surveillance Proposals, Considers Withdrawal of iMessage and FaceTime Services

    July 22, 20232,637 Views

    Apple’s Market Value Skyrockets by $71 Billion Amid Speculation of In-house ‘Apple GPT’ to Challenge OpenAI

    July 23, 2023894 Views

    Android Malware Developers Utilize Stealthy APK Compression to Bypass Detection Measures

    August 20, 2023810 Views

    Apple Store Blocks Twitter’s iOS App Rebranding to ‘X’ Due to Minimum Character Regulations

    July 29, 2023760 Views
    Don't Miss
    2 Mins Read

    Google just launched a new AI and has already admitted at least one demo wasn’t real

    By securnerdDecember 8, 2023

    Google recently unveiled Gemini, its latest suite of powerful AI models, but the tech giant…

    BLUFFS Bluetooth Vulnerabilities Open Door to Adversary-in-the-Middle Threats

    December 5, 2023

    Qilin Ransomware’s Latest Variant Targets VMware ESXi Servers with Advanced Linux Encryptor

    December 4, 2023

    Zyxel Addresses 15 Security Vulnerabilities Across NAS, Firewall, and AP Devices with Latest Patches

    December 1, 2023
    Stay In Touch
    • Facebook
    • Twitter
    • Instagram
    • LinkedIn
    • Telegram
    About Us
    About Us

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Latest

    Google just launched a new AI and has already admitted at least one demo wasn’t real

    December 8, 2023

    BLUFFS Bluetooth Vulnerabilities Open Door to Adversary-in-the-Middle Threats

    December 5, 2023

    Qilin Ransomware’s Latest Variant Targets VMware ESXi Servers with Advanced Linux Encryptor

    December 4, 2023
    Popular Post

    Microsoft’s Ongoing Struggles with Cybersecurity: A $2.4 Trillion Giant’s Failures

    September 23, 20231 Views

    Ukrainian Authorities Detect Russian Hacker Campaign Seeking Evidence of War Crimes

    September 25, 20231 Views

    Zyxel Addresses 15 Security Vulnerabilities Across NAS, Firewall, and AP Devices with Latest Patches

    December 1, 20231 Views

    Ethos Technologies Data Breach Settlement Offers Compensation of Up to $5,200 for Affected Individuals

    September 23, 20232 Views

    New Sophisticated and Modular ‘Deadglyph’ Malware Unleashed in Government Cyberattacks

    September 24, 20232 Views

    Nigerian Man Admits Guilt in $6 Million Business Email Compromise Scheme

    September 24, 20233 Views

    Microsoft Unveils Security Copilot Early Access Program, Revolutionizing Threat Response

    October 23, 20233 Views

    Meta Introduces Ad-Free Subscriptions in Europe, Adapting to Privacy Regulations

    October 31, 20234 Views

    Ukraine Enhances Wartime Efforts Through Advanced Cyber Intelligence Strategies

    August 10, 20235 Views

    Critical Security Flaws Exposed in Nagios XI Network Monitoring Software

    September 20, 20235 Views
    Facebook Twitter Instagram LinkedIn Telegram
    © 2023 SecurNerd. Powered by Codelivly.

    Type above and press Enter to search. Press Esc to cancel.