Views
3

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

Update Summary

KB5083769 updates Windows 11 version 25H2 and 24H2 to OS Builds 26200.8246 and 26100.8246 with the latest security fixes, quality improvements, and new Secure Boot and Remote Desktop protections. It also includes the Windows 11 servicing stack update KB5088467.

Update Details

Security

  • Adds known vulnerable kernel drivers to the Microsoft vulnerable driver blocklist.
  • Improves protection against phishing attacks using Remote Desktop (.rdp) files by showing requested settings before connection and adding a one-time warning.
  • Addresses a BitLocker recovery issue that could occur after Secure Boot updates.
  • Includes Secure Boot certificate update rollout improvements and device targeting enhancements.
  • Security hardening for Secure Boot and driver trust protections.

Bug Fixes

  • Fixes a device reset failure that could occur when using Keep my files or Remove everything after the March 2026 hotpatch update.
  • Improves SMB compression over QUIC reliability to reduce timeouts.
  • Fixes an issue where Remote Desktop warning dialogs might display incorrectly on multi-monitor setups with mixed scaling.

New Features

  • Windows Security can now display Secure Boot certificate update status with badges and notifications on supported devices.
  • Secure Boot certificate updates use additional high-confidence device targeting data for phased rollout.

Known Issues

  • Devices with an unrecommended BitLocker Group Policy configuration might be prompted for the BitLocker recovery key on the first restart after installation.
  • Remote Desktop warning dialogs might not display correctly in some multi-monitor scaling configurations.

Hints

  • Commercial devices have the new Windows Security Secure Boot status enhancements disabled by default.
  • Microsoft recommends auditing BitLocker group policies for explicit PCR7 inclusion before installing this update.
  • Affected BitLocker devices may need policy changes, gpupdate /force, and a BitLocker suspend/resume cycle to update bindings.
  • If the incompatible BitLocker policy remains, Microsoft recommends temporarily suspending BitLocker before installing the Secure Boot update.
  • Backup applications using blocked vulnerable drivers may fail and should be updated to versions that use newer drivers.
  • The update includes only new changes if previous updates are already installed.
  • The servicing stack update is KB5088467.
Product Information

Vendor: Microsoft

Product: Windows 11

Version: OS Builds 26200.8246 and 26100.8246

Release date: Apr 14, 2026