Windows 11 Insider Preview adds secure batch-file execution controls
Security Tool/Service
Summary
Hide ▲
Show ▼
Microsoft is adding a more secure batch-file and CMD-script execution mode in Windows 11 Insider Preview builds, which matters for enterprise scripted workflows that need stronger integrity during execution. The new controls can stop batch files from being modified while they run and can reduce repeated signature validation when code integrity is enabled. Administrators can enable the behavior through LockBatchFilesInUse, and policy authors can also use LockBatchFilesWhenInUse. The update strengthens operational security for scripted automation without changing the basic workflow model.
Related Happenings
Claude Code deny-rule bypass fix (version 2.1.90)
Security Patch Release
First: 08.04.2026 12:16
Last: 08.04.2026 12:16
Sources 1
About this happening:
**Anthropic** released **Claude Code version 2.1.90** last week to fix a command-parsing flaw that could let **user-configured deny rules** silently stop applying when a command e...
Claude Code deny-rule bypass fix (version 2.1.90)
Security Patch ReleaseAbout this happening: **Anthropic** released **Claude Code version 2.1.90** last week to fix a command-parsing flaw that could let **user-configured deny rules** silently stop applying when a command e...
Microsoft KB5084597 hotpatch for Windows 11 RRAS RCE flaws
Security Patch Release
First: 14.03.2026 23:48
Last: 14.03.2026 23:48
Sources 1
About this happening:
**Microsoft** released **KB5084597** as an **out-of-band hotpatch** for **Windows 11 Enterprise** devices, closing **RRAS remote-code-execution** flaws that affect hotpatch-manage...
Microsoft KB5084597 hotpatch for Windows 11 RRAS RCE flaws
Security Patch ReleaseAbout this happening: **Microsoft** released **KB5084597** as an **out-of-band hotpatch** for **Windows 11 Enterprise** devices, closing **RRAS remote-code-execution** flaws that affect hotpatch-manage...
Windows Autopatch enables hotpatch security updates by default for eligible devices
Security Tool/Service
First: 11.03.2026 11:15
Last: 11.03.2026 11:15
Sources 1
About this happening:
Microsoft is changing **Windows Autopatch** to enable **hotpatch security updates** by default, speeding security-fix rollout for eligible devices and reducing restart-related del...
Windows Autopatch enables hotpatch security updates by default for eligible devices
Security Tool/ServiceAbout this happening: Microsoft is changing **Windows Autopatch** to enable **hotpatch security updates** by default, speeding security-fix rollout for eligible devices and reducing restart-related del...
Microsoft March 2026 Patch Tuesday (83 CVEs)
Security Patch Release
First: 11.03.2026 03:08
Last: 11.03.2026 03:08
Sources 1
About this happening:
**Microsoft** released its **March 2026 Patch Tuesday** update with **83 CVEs** across its product range, reducing exposure to a broad set of flaws that includes issues Microsoft...
Microsoft March 2026 Patch Tuesday (83 CVEs)
Security Patch ReleaseAbout this happening: **Microsoft** released its **March 2026 Patch Tuesday** update with **83 CVEs** across its product range, reducing exposure to a broad set of flaws that includes issues Microsoft...
BlackSanta EDR killer malware activity targeting HR departments
Malware Activity
First: 11.03.2026 00:57
Last: 11.03.2026 00:57
Sources 1
About this happening:
The **BlackSanta** malware operation has run for **more than a year**, targeting **HR departments** and using an **EDR killer** to weaken host defenses before payload execution. T...
BlackSanta EDR killer malware activity targeting HR departments
Malware ActivityAbout this happening: The **BlackSanta** malware operation has run for **more than a year**, targeting **HR departments** and using an **EDR killer** to weaken host defenses before payload execution. T...
Timeline
-
27.02.2026 22:00 2 articles · 2mo ago
Microsoft rolls out secure batch-file execution controls in Windows 11 Insider builds
Initial DisclosureMicrosoft rolled out new Windows 11 Insider Preview builds that add a more secure batch-file and CMD-script processing mode. Administrators can enable the mode with LockBatchFilesInUse under HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor, and policy authors can use LockBatchFilesWhenInUse in an application manifest. When code integrity is enabled, signature validation is required only once instead of per statement, improving security and performance for enterprise scripted workflows.
Show sources
- Microsoft testing Windows 11 batch file security improvements — www.bleepingcomputer.com — 27.02.2026 22:00
- Microsoft testing Windows 11 batch file security improvements — www.bleepingcomputer.com — 27.02.2026 22:00