Beginning in October 2026, Windows quality updates start enabling memory integrity protection on eligible devices with little or no additional configuration. On machines where Virtualization-based Security is not already running, those same updates enable VBS too. Memory integrity is the layer that allows only trusted kernel-mode code and drivers to run, which is how it stops an attacker who is tr

Microsoft has announced that beginning in October 2026, Windows quality updates will automatically enable memory integrity protection on eligible devices. This change will also activate Virtualization-based Security (VBS) on machines where it is not already running, as VBS is a prerequisite for memory integrity.
Memory integrity is a security feature designed to prevent attackers from compromising the Windows kernel and gaining control of core operating system functions. It achieves this by ensuring that only trusted kernel-mode code and drivers are allowed to execute. The activation will occur through a standard patch, meaning the security posture of a device fleet can change between update cycles without requiring explicit configuration changes from administrators.
Existing administrator and user policies will remain in effect. This means that devices where memory integrity has been explicitly disabled will not be automatically re-enabled by this rollout. However, for devices where it is not enabled by default, users and organizations can still manually review, configure, and activate the feature using existing Windows security and management tools.
Before enabling the protection, Windows will assess each device for eligibility. This evaluation considers hardware capabilities, compatibility, and performance considerations. This readiness check is why the rollout is limited to "eligible devices." While Microsoft states this evaluation helps identify compatible systems, it does not guarantee that every incompatible kernel driver in an environment will be detected. Organizations running unusual kernel-level software are advised to assume responsibility for potential compatibility issues.
Beyond its role in blocking rootkits and other kernel-level attacks, memory integrity is also a foundational component for hotpatch updates, which allow for the installation of security updates without requiring a system reboot. Devices that remain unprotected by memory integrity will therefore not benefit from this servicing model. For devices that are skipped by the automatic rollout, manual enablement using standard Windows security and management tools remains an option.

A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). [...]

Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company's hardware wallets

A critical arbitrary file upload vulnerability in the Elementor Pro WordPress plugin, tracked as CVE-2026-32475, is being actively exploited to compromise websites. The flaw exists in the plugin's form submission handling function, allowing attackers to upload malicious files.

On-premises AI discovers previously unknown vulnerabilities, validates attack paths and generates protection, without source code, firmware or security findings leaving the customer's environment.

OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated the activity as model "misalignment" rather than a security breach. [...]

Plus: Tens of millions of US and Canadian drivers’ licenses go up for sale on the dark web, the US military finally tries to tackle the risk online ad data poses to troops, and more.