Microsoft rolls out Administrator Protection in Windows 11 KB5067036
Security Tool/Service
Summary
Hide ▲
Show ▼
Microsoft is rolling out Administrator Protection in the KB5067036 preview update for Windows 11 24H2 and 25H2, adding a control that reduces the risk of malware making silent admin-level changes. The feature requires Windows Hello verification before actions such as installing software, changing system settings, or accessing sensitive data. It matters because it narrows free-floating admin rights and raises the bar for privilege abuse on affected PCs.
Related Happenings
Windows 11 BitLocker bypass YellowKey security flaw
Vulnerability
First: 14.05.2026 10:27
Last: 14.05.2026 10:27
Sources 1
About this happening:
**YellowKey** is a **Windows BitLocker security feature bypass** tracked as **CVE-2026-45585** that can expose **BitLocker-protected drives** through the **Windows Recovery Enviro...
Windows 11 BitLocker bypass YellowKey security flaw
VulnerabilityAbout this happening: **YellowKey** is a **Windows BitLocker security feature bypass** tracked as **CVE-2026-45585** that can expose **BitLocker-protected drives** through the **Windows Recovery Enviro...
Latest development: 20.05.2026 10:31
Microsoft assigned CVE-2026-45585 to YellowKey, a Windows BitLocker security feature bypass, and recommended removing autofstx.exe from the Session Manager BootExecute REG_MULTI_SZ value, reestablishing BitLocker trust for WinRE, and moving already encrypted devices from TPM-only to TPM+PIN to require a pre-boot PIN.
Bitwarden adds passkey login for Windows 11 sign-in
Security Tool/Service
First: 05.03.2026 00:34
Last: 05.03.2026 00:34
Sources 1
About this happening:
**Bitwarden** added **passkey login** for **Windows 11**, expanding passwordless sign-in and reducing phishing exposure for users who store credentials in the vault.
Bitwarden adds passkey login for Windows 11 sign-in
Security Tool/ServiceAbout this happening: **Bitwarden** added **passkey login** for **Windows 11**, expanding passwordless sign-in and reducing phishing exposure for users who store credentials in the vault.
Microsoft rolls out native Sysmon monitoring to Windows 11 Insider builds
Security Tool/Service
First: 04.02.2026 14:58
Last: 04.02.2026 14:58
Sources 1
About this happening:
Microsoft has started rolling out **built-in Sysmon** to select **Windows 11 Insider** builds, adding native **security monitoring** and **Windows Event Log** capture without a se...
Microsoft rolls out native Sysmon monitoring to Windows 11 Insider builds
Security Tool/ServiceAbout this happening: Microsoft has started rolling out **built-in Sysmon** to select **Windows 11 Insider** builds, adding native **security monitoring** and **Windows Event Log** capture without a se...
Microsoft Windows 11 FIDO2 sign-in may prompt for PIN after WebAuthn-aligned updates
Security Tool/Service
First: 26.11.2025 16:43
Last: 26.11.2025 16:43
Sources 1
About this happening:
**Windows 11** FIDO2 sign-ins may now prompt users to create or enter a **PIN** after recent **WebAuthn**-aligned updates, changing passwordless authentication behavior on managed...
Microsoft Windows 11 FIDO2 sign-in may prompt for PIN after WebAuthn-aligned updates
Security Tool/ServiceAbout this happening: **Windows 11** FIDO2 sign-ins may now prompt users to create or enter a **PIN** after recent **WebAuthn**-aligned updates, changing passwordless authentication behavior on managed...
Passwork 7 release with updated credential organization and access control
Security Tool/Service
First: 23.11.2025 16:45
Last: 23.11.2025 16:45
Sources 1
About this happening:
**Passwork 7** introduces updated **credential organization**, **access control**, and **administrative controls** for enterprise password and secrets management, improving how or...
Passwork 7 release with updated credential organization and access control
Security Tool/ServiceAbout this happening: **Passwork 7** introduces updated **credential organization**, **access control**, and **administrative controls** for enterprise password and secrets management, improving how or...
Timeline
-
29.10.2025 01:31 1 articles · 7mo ago
Microsoft releases KB5067036 with Administrator Protection rollout
Initial DisclosureMicrosoft released the KB5067036 optional preview cumulative update for Windows 11 24H2 and 25H2, beginning the rollout of Administrator Protection and an updated Start Menu. The update is part of the optional non-security preview cycle and advances Windows 11 24H2 systems to build 26100.5074 and Windows 11 25H2 systems to 26100.7019; Administrator Protection requires Windows Hello integrated authentication before actions that need administrator privileges.
Show sources
- Windows 11 KB5067036 update rolls out Administrator Protection feature — www.bleepingcomputer.com — 29.10.2025 01:31