logo

Microsoft shows venerable and vulnerable NTLM security protocol the door

ID: d2d6a71c-1326-5d14-88e3-3f4207fd0586

STIX ID: report--d2d6a71c-1326-5d14-88e3-3f4207fd0586

Feed Name: The Register (Security)

Date Published: 2024-06-06

Date Updated: 2026-04-26

Author: Richard Speed

...
...

Microsoft has placed NTLM authentication on its Deprecated Features list, ending active development and signaling a phased retirement while advising admins to replace NTLM calls with Negotiate/Kerberos; NTLM will continue to function in the next Windows Server and annual Windows releases. The move reflects NTLM’s long-known security weaknesses and follows an April 2024 update that spiked NTLM traffic for some domain controllers; Microsoft is monitoring usage reductions to determine when it can safely disable NTLM.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.