On October 14, 2025, Microsoft will stop providing security updates for Windows 10 PCs unless users enroll in the Extended Security Updates program. Upgrading to Windows 11 on machines older than five years may result in an error message about CPU compatibility, as Microsoft will not change the requirement for a Trusted Platform Module (TPM) version 2.0. While automatic upgrades may be hindered, there are workarounds for most PCs designed for Windows 10.
To upgrade, the computer must boot using UEFI, support Secure Boot, and have an enabled TPM (version 1.2 is acceptable). Users can check their system's BIOS mode and TPM status using the System Information utility and the Trusted Platform Module Management tool, respectively. If UEFI is not an option or if the PC lacks a TPM, an undocumented hack can be used to bypass compatibility checks.
A new restriction with the Windows 11 version 24H2 update requires CPUs to support SSE4.2 and PopCnt instructions, making upgrades impossible for PCs built in 2008 or earlier. Most Intel CPUs from 2009 and AMD CPUs from 2013 should meet this requirement.
Users can bypass CPU checks and accept any TPM version through a registry edit, which requires running the Setup program from the current Windows installation. The process involves creating a registry key and modifying its value. Alternatively, the Rufus utility can be used to create a bootable USB drive that circumvents compatibility checks, but it cannot bypass the restrictions for very old CPUs lacking support for SSE4.2 and PopCnt instructions.