logo

Microsoft rolls out hardware-accelerated BitLocker in Windows 11

ID: f34610ce-f1e1-53d0-abf0-d65f8610ef5c

STIX ID: report--f34610ce-f1e1-53d0-abf0-d65f8610ef5c

Feed Name: Bleeping Computer

Date Published: 2025-12-23

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Microsoft is introducing hardware-accelerated BitLocker in Windows 11 24H2/25H2, offloading XTS-AES-256 cryptographic operations to SoC components (HSM/TEE) to significantly reduce CPU usage (about 70% fewer CPU cycles per I/O in tests) and improve security by keeping keys in hardware rather than CPU/memory. Initial support targets Intel vPro systems with Intel Core Ultra Series 3 (Panther Lake), with broader SoC support planned; users can verify by running `manage-bde -status` and checking for Hardware accelerated under Encryption Method, while unsupported algorithms, enterprise policies, custom key sizes, or certain FIPS configurations will trigger a fallback to software-based BitLocker.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.