Windows memory integrity auto-enables on eligible devices from October 2026
Microsoft will automatically enable Windows memory integrity protection on eligible devices starting in October 2026, with quality updates also activating Virtualization-based Security where it is currently off. The change arrives as a patch, allowing fleets to improve security between update cycles without change requests. Devices where memory integrity was previously disabled will not be altered, and administrators retain control via existing policies and tools. Before enabling protection, Windows evaluates hardware capabilities, compatibility, and performance to determine eligibility. Microsoft acknowledges the check may not catch every incompatible kernel driver, and memory integrity also underpins reboot-free hotpatch updates, which unprotected devices will miss.