logo

Microsoft to Disable NTLM by Default as a Step Towards More Secure Authentication

ID: 62eba31f-b09e-5f00-baa1-871939053e6b

STIX ID: report--62eba31f-b09e-5f00-baa1-871939053e6b

Feed Name: cybersecurityNews.com

Date Published: 2026-02-03

Date Updated: 2026-04-21

Author: Abinaya

...
...

Microsoft announced a three-phase roadmap to reduce and ultimately disable NTLM authentication by default in future Windows releases: Phase 1 (available now) for visibility and auditing, Phase 2 (second half of 2026) to reduce NTLM usage by preferring Kerberos, and Phase 3 to disable NTLM by default while retaining policy re-enablement for legacy support; the guidance urges organizations to audit NTLM usage, map application dependencies, and test NTLM-disabled configurations to minimize disruption.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.