City
Epaper

New Microsoft Windows 11 security tool will frustrate password hackers

By IANS | Updated: September 23, 2022 15:05 IST

New Delhi, Sep 23 Microsoft has unveiled a new security feature in Windows 11 that will make it ...

Open in App

New Delhi, Sep 23 Microsoft has unveiled a new security feature in Windows 11 that will make it extremely diffficult for hackers to steal user credentials.

Called the SMB authentication rate limiter, it is available in Windows 11 Insider and Windows Server Insider builds and makes it more time-consuming for cyber criminals to target the server with password-guessing attacks.

"If your organisation has no intrusion detection software or doesn't set a password lockout policy, an attacker might guess a user's password in a matter of days or hours. A consumer user who turns off their firewall and brings their device to an unsafe network has a similar problem," said Microsoft security expert Ned Pyle.

The company said that the SMB server service now defaults to a two-second default between each failed inbound New Technology LAN Manager (NTLM) authentication.

SMB refers to the Server Message Block (SMB) network file-sharing protocol, while Windows NTLM is a suite of security protocols offered by Microsoft to authenticate users' identity and protect the integrity and confidentiality of their activity.

"This means if an attacker previously sent 300 brute force attempts per second from a client for 5 minutes (90,000 passwords), the same number of attempts would now take 50 hours at a minimum. The goal here is to make a machine a very unattractive target for attacking local credentials through SMB," informed Pyle.

SMB refers to the Server Message Block (SMB) network file-sharing protocol. Windows and Windows Server come with the SMB server enabled. NTLM refers to the NT Lan Manager (NTLM) protocol for client-sever authentication with, for example, Active Directory (AD) NTLM logons.

Microsoft is rolling out several secure defaults in Windows 11, including a default account lockout policy to mitigate RDP and other brute force password attacks.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: NT LAN ManagerNed pylemicrosoft
Open in App

Related Stories

NationalBITS Pilani Placement 2025: Over 80% Students Placed, Average Salary Rises to Rs 19.4 Lakh

InternationalIsrael: Massive Fire After Iranian Missile Hits Building Near Microsoft Office in Beer Sheva (Watch Videos)

TechnologyIT Layoffs 2025: Microsoft, Google, Apple Among 284 Tech Companies That Cut Jobs in First 5 Months

TechnologyMicrosoft Layoffs: Satya Nadella-led Company Sacks Over 6,000 Employees Across Key Positions

TechnologyWhy Is Skype Shutting Down? Microsoft's Video-Calling Platform to Retire on May 5

Technology Realted Stories

TechnologyMini car sales to remain below 100,000 units for 2nd year in S. Korea

TechnologySamsung to invest $309 billion over next 5 years

TechnologySouth Korea's SK to pour $87.9 billion into domestic investment through 2028

Technologye-Jagriti empowers consumers: 2.75 lakh users registered, 1.3 lakh complaints filed since January launch

TechnologyCorporate bond issuances rise 8 pc to Rs 6.3 lakh crore till October this fiscal: SBI report