Microsoft to turn on VBS memory integrity by default in Windows 11 next October
Microsoft confirmed that starting in October 2026, memory integrity protection built on Virtualization-based Security will be switched on by default for eligible Windows 11 PCs. The feature runs Windows as a guest OS under Hyper-V to isolate the kernel from tampering, but Microsoft has previously acknowledged it can hurt gaming performance. Organizations will retain the ability to disable it, though the default posture is shifting toward security-first.