logo

Microsoft tightens Windows enterprise activation security

ID: 7fb23eaa-f78a-5c7b-a4f1-627ff3bee445

STIX ID: report--7fb23eaa-f78a-5c7b-a4f1-627ff3bee445

Feed Name: Help Net Security

Date Published: 2026-07-24

Date Updated: 2026-07-24

Author: Anamarija Pogorelec

...
...

Microsoft will require TPM-backed attestation for on-premises Windows Key Management Service (KMS) in the next Windows Server LTSC release, replacing software-only trust with hardware-backed verification. The KMS server will use its TPM to generate attestation proving identity and integrity, and Microsoft advises administrators to inventory KMS hosts, confirm TPM support and certification, and plan upgrades; readiness messaging in Windows Server 2025 will begin in August 2026, and guidance for virtual KMS hosts will follow.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.