cryptographic

Winsage
December 25, 2025
Microsoft has introduced a hardware-accelerated BitLocker encryption system for Windows 11, which shifts the encryption workload from software to dedicated accelerator units in future CPU microarchitectures. This new system is available in Windows 11 version 25H2 and Windows Server 2025 following the September update. Initial testing shows that certain workloads can achieve double the storage performance and reduce CPU usage by over 70%. The encryption processing is offloaded to a fixed-function cryptography engine within the system on chip (SoC), and encryption keys are hardware-wrapped for enhanced security. The initial rollout focuses on Intel vPro platforms with Core Ultra Series 3 "Panther Lake" processors, with plans to extend support to other vendors. Performance data indicates that while sequential read and write speeds are similar between software and hardware approaches, random 4K operations show significant improvements, with hardware-accelerated BitLocker being 2.3 times faster in RND4K Q32T1 tests and demonstrating a 40% speed increase for single-queue random reads and a 2.1 times speed increase for single-queue random writes.
Winsage
December 25, 2025
Microsoft has introduced hardware-accelerated BitLocker encryption in Windows 11 (25H2) and Windows Server (2025 with the September Update), enhancing performance and efficiency. This feature, revealed at Ignite 2025, utilizes UFS Inline Crypto Engine technology to address performance issues associated with software-based encryption, which historically reduced SSD performance by up to 45%. The new technology can deliver up to twice the storage performance in certain workloads and is compatible with TCG Opal-compliant storage devices. Future implementations will use Intel Core Ultra series 3 CPUs with crypto offloading capabilities. Supported devices with NVMe drives will use hardware-accelerated BitLocker with the XTS-AES-256 algorithm by default, resulting in up to 70% fewer CPU cycles for BitLocker workloads and improved battery life for mobile devices. Performance tests show significant improvements, with read speeds increasing from 1632 MB/s to 3746 MB/s and write speeds from 1510 MB/s to 3530 MB/s.
Winsage
December 24, 2025
Microsoft is enhancing Windows 11 with hardware-accelerated BitLocker to improve security and performance, particularly for resource-intensive tasks like gaming and video editing. BitLocker, which encrypts sensitive data, traditionally relied on the Trusted Platform Module (TPM) for managing encryption keys. With advancements in NVMe storage technology, Microsoft is now using system-on-a-chip (SoC) components with hardware security modules (HSMs) and trusted execution environments (TEEs) to offload cryptographic operations, leading to improved performance and reduced CPU usage. Devices supporting NVMe drives and crypto offload-capable SoCs will automatically use hardware-accelerated BitLocker with the XTS-AES-256 algorithm. This update applies to various encryption scenarios, and hardware-accelerated BitLocker has shown a reduction in CPU cycles by approximately 70% compared to software-based versions. The new implementation also enhances security by using hardware-protected keys, minimizing the risk of cyberattacks targeting CPU and memory. The updated BitLocker feature is available with Windows 11 24H2, following the September updates, and will also be included in Windows 11 25H2. Initial support is rolling out with Intel vPro systems featuring Intel Core Ultra Series 3 processors, with plans to expand to other SoC vendors. Users can check their BitLocker mode by executing the command manage-bde -status. If unsupported configurations are detected, BitLocker will revert to software-based mode.
Winsage
December 19, 2025
Microsoft has announced the phased discontinuation of the RC4 encryption cipher, with full implementation expected by mid-2026. RC4, created in 1987, has been increasingly recognized as a vulnerability, exploited in various high-profile cyberattacks. Microsoft plans to disable RC4 by default in Windows Kerberos authentication, encouraging organizations to transition to more secure alternatives like AES-256. This decision follows years of warnings from the cybersecurity community and aims to eliminate long-standing cryptographic weaknesses. The transition will require organizations to audit and upgrade their infrastructures, as many legacy applications still depend on RC4. Disabling RC4 is expected to reduce the success rates of attacks exploiting weak encryption. Microsoft has introduced tools to help administrators identify hidden RC4 usage. The change reflects a commitment to zero-trust architectures and aligns with recommendations from organizations like NIST. Experts recommend a multi-step approach for organizations to navigate this transition effectively.
BetaBeacon
December 8, 2025
Blockchain games use distributed ledgers to store assets and data, including progress tracking and digital economies. Blockchain technology and cryptocurrency integration have transformed digital entertainment, leading to the development of popular Web3 RPG titles like Axie Infinity. Games built on blockchain networks require devices with minimum requirements for Android version compatibility, CPU and GPU performance, RAM, storage, wallet integration, network connectivity, security, and battery life.
AppWizard
November 26, 2025
CISA has issued a warning about spyware targeting users of instant messaging applications, particularly highlighting the Sturnus trojan, which poses significant risks to Android smartphone users. Sturnus, identified as a banking trojan, can bypass encrypted messaging by capturing messages after they are decrypted on the smartphone screen, rather than cracking the encryption itself. Security expert Aditya Sood noted that Sturnus uses a combination of plaintext, RSA, and AES-encrypted communication, complicating detection efforts. The trojan can read everything displayed on the smartphone screen in real time, including sensitive messages and contacts. CISA also identified tactics used by cyber threat actors, such as phishing, zero-click exploits, and impersonation to gain unauthorized access to messaging apps. Users are advised to keep Google’s Play Protect activated, avoid unauthorized app stores, and be cautious with accessibility permissions to protect against these threats.
Winsage
November 18, 2025
Microsoft is enhancing the security framework of Windows through the Secure Future Initiative, focusing on trust, privacy, and enterprise controls. Key features include the introduction of Post-Quantum Cryptography (PQC) APIs for quantum-safe encryption, and an upgrade to BitLocker with hardware-accelerated support for improved disk encryption, set to roll out on new Windows 11 devices in Spring 2026. Microsoft is also integrating passkey manager support with Windows Hello, allowing users to choose from various passkey managers. Windows 11 employs App Control for Business to ensure only trusted applications run, while Microsoft Intune’s Managed Installer helps IT teams manage business applications. Additionally, Sysmon functionality will be integrated into Windows 11 and Windows Server 2025 for better threat detection. Microsoft is implementing Zero Trust DNS for encrypted name resolution and supporting Wi-Fi 7 for Enterprise with WPA3-Enterprise authentication. The Windows Resiliency Initiative (WRI) includes stricter driver standards, a shift in antivirus enforcement from kernel to user mode, and new safeguards like driver isolation and DMA remapping to enhance system stability.
Search