What and WhyWindows updates released in July 2026 will complete the final deployment phase of protections for a Kerberos information disclosure vulnerability (CVE‑2026‑20833). Beginning with this phase, Audit mode is removed, leaving Enforcement mode as the only available option for Kerberos RC4 usage on Windows domain controllers. Environments with remaining RC4 dependencies might experience authentication issues unless those dependencies are remediated or explicitly configured before the July...
Applies to: Windows
Source: mc.merill.net — data via Merill Fernando's open archive (MIT).