Microsoft will require users to verify their age when purchasing games rated R18+ on Xbox and Microsoft Store starting in August 2026 to comply with Australian regulations.
The Independent and Yahoo will earn a commission from purchases made via links in this article. Pricing and availability are subject to change.
Windows 11 includes Microsoft's built-in Defender, but its security measures are basic. Effective antivirus solutions provide comprehensive threat analysis, advanced malware protection, and additional privacy features such as VPNs and password managers. No antivirus can protect against every threat, so users should download applications from trusted sources and use strong, unique passwords.
The best antivirus apps for 2026 include:
- Bitdefender Total Security: £42.49 for the first year, rated 5/5, includes a limited VPN, offers multi-device coverage, excellent malware detection, and built-in tools for phishing and ransomware protection.
- Malwarebytes Plus: £29.99 annually for the basic package, rated 4/5, includes a VPN in the 'plus' bundle costing £49.99, focuses on malware removal and identity protection features.
- McAfee Premium: Rated 4/5, includes unlimited VPN, compatible with various platforms, offers a firewall, ransomware protection, and AI-powered scam detection.
- F-Secure Total: Rated 4/5, includes a password manager and deep scanning capabilities, but the basic plan covers only a single device.
- Sophos Home Premium: Rated 4/5, allows coverage for up to ten devices under one subscription, features real-time scanning and parental controls, but does not include a password manager.
Most antivirus applications offer free trials. The testing involved installing each application on a Windows 11 PC and conducting scans, while also reviewing reports from independent security testing labs.
An attacker is testing stolen passwords against a company with inadequate firewall protection, highlighting the flaws in traditional security measures. Modern attacks, including ransomware and phishing, have evolved, necessitating advanced threat protection (ATP) that incorporates artificial intelligence (AI) for improved threat detection and response. AI-driven ATP identifies attacks that conventional tools miss, such as fileless malware and targeted phishing, by learning normal operating patterns and flagging deviations. Traditional security relies on known malware signatures, which are ineffective against zero-day attacks and polymorphic malware that changes its identity. Cloud misconfigurations and hybrid security gaps further complicate security. AI enhances detection by focusing on malicious behaviors rather than just file signatures, allowing for rapid identification of threats. Automated incident response can isolate affected endpoints and terminate malicious processes quickly. Behavioral analytics and threat intelligence integration improve ATP effectiveness by understanding user behavior and recognizing attack patterns. AI-powered ATP significantly reduces breach containment time and false positives, shifting the focus from reactive cleanup to proactive prevention. Best practices for maximizing ATP include integrating it into existing security operations, keeping machine learning models updated, and regularly testing defenses against real-world threats.
An attacker is testing stolen passwords against a company that incorrectly believes its firewall is sufficient protection. Traditional defenses have become inadequate due to the speed and sophistication of modern attacks, including ransomware groups renting tools and phishing kits being easily accessible. Advanced threat protection (ATP) was designed to address these challenges, especially with the integration of artificial intelligence (AI). AI-powered ATP identifies attacks that conventional tools overlook, such as fileless malware and targeted phishing attempts, by learning the normal behavior of an organization’s environment and flagging anomalies.
Traditional security relies on identifying known malware through established fingerprints, which fails against novel threats like zero-day attacks and polymorphic malware. The rise of remote work and cloud services has introduced new risks due to misconfigurations and inconsistent security rules. AI enhances threat detection by focusing on malicious behavior rather than matching files against known threats, allowing for rapid detection and automated incident response.
Behavioral analytics establishes a baseline for users and devices, flagging deviations that may indicate insider threats or credential theft. Integrating threat intelligence provides insights into emerging threats and helps prioritize alerts. AI-driven ATP can contain breaches faster, significantly reducing the financial impact and dwell time of attackers. Best practices for maximizing ATP include integrating with security operations, ensuring comprehensive coverage, updating models regularly, conducting real-world testing, securing AI systems, and maintaining human oversight.
A stolen laptop can lead to a significant data breach, particularly when taken from public places. Windows 11 has introduced BitLocker, a full-disk encryption feature that became mandatory for Australian businesses in 2026. The Office of the Australian Information Commissioner reported 766 notifiable data breaches in the latter half of 2024, with unauthorized access to devices being a major cause. Full-disk encryption is crucial for compliance with the Essential Eight framework, which mandates data protection on portable devices.
BitLocker ensures that data on an encrypted drive becomes unreadable if the drive is removed and connected to another computer. It aligns with the Essential Eight framework, requiring evidence of encryption rather than just claims of protection.
There are three types of encryption on Windows 11: Device Encryption, BitLocker Drive Encryption, and File-Level Encryption. BitLocker is available only on Windows 11 Pro and higher editions.
To use BitLocker, certain prerequisites must be met, including having Windows 11 Pro or higher, a Trusted Platform Module (TPM) 2.0, UEFI firmware with Secure Boot enabled, and local administrator rights.
The process to enable BitLocker involves confirming the edition, checking TPM status, enabling BitLocker through Windows Settings or PowerShell, and backing up the recovery key. Organizations can deploy BitLocker fleet-wide using Microsoft Intune, and additional security measures like TPM+PIN can be implemented for pre-boot authentication.
Common pitfalls during BitLocker rollout include skipping recovery key backup and assuming that Home edition machines are covered. Troubleshooting common BitLocker issues involves identifying symptoms and applying appropriate fixes. Advanced tips for enhancing security include suspending BitLocker before maintenance and auditing compliance at the fleet level.
BitLocker is integral to protecting data on portable devices, and compliance documentation is essential for proving that every device has an active recovery key.
CVE-2026-41089 is a critical vulnerability in the Windows Netlogon service, rated 9.8 on the CVSS scale, allowing unauthenticated attackers to execute arbitrary code with SYSTEM-level privileges on domain controllers. It affects all supported versions of Windows Server configured as domain controllers, from Windows Server 2012 R2 to the latest release. Microsoft addressed this vulnerability on May 12, 2026, during a broader update that included 138 fixes, but it went largely unnoticed until early June when active exploitation was confirmed. The vulnerability is characterized as a stack-based buffer overflow and is considered "wormable" due to its ability to self-propagate across systems without user intervention. Organizations are advised to patch all domain controllers and audit network access to mitigate exposure.
Google Play Protect is a security feature integrated within the Google Play Store that scans installed applications for malicious behavior, verifies apps before download, and can disable or remove harmful software. Its primary limitation is its focus on apps from the Google Play Store, leaving users who install APK files from third-party sources at risk. Modern cyber threats include phishing links, counterfeit login pages, and social engineering techniques, which Google Play Protect does not fully address. Dedicated antivirus applications offer real-time threat detection, privacy protection, and additional features such as monitoring excessive app permissions and dark web credential leaks. For business users, mobile security platforms provide advanced capabilities like enforcing corporate policies and detecting zero-day threats. While Google Play Protect is sufficient for many users, those handling sensitive information or seeking enhanced protection should consider additional antivirus solutions. Best practices for cybersecurity include downloading apps from trusted sources, keeping software updated, and using strong passwords.
Cybercrime has shifted focus from targeting individual devices to stealing credentials and personal data for identity theft. In 2024, consumer losses due to fraud reached billion, a 25% increase from the previous year, with over a million identity theft reports filed. Stolen passwords and session cookies are central to most breaches, making credential theft the primary enabler of attacks. Password reuse is a significant vulnerability, with 65% of individuals reusing passwords, leading to increased risk of account takeovers through credential stuffing. Bitdefender offers features like Scam Protection Pro, which protects against fraud across email, chat, and SMS, and identity monitoring in Ultimate Security that alerts users to data leaks in real-time. In 2025, researchers identified approximately 2 billion unique leaked credentials, emphasizing the need for identity protection alongside traditional antivirus solutions.
An advertiser has invested in editorial consideration for a deal that offers two years of Surfshark's VPN and antivirus service for less than .49 per month. Customers opting for the two-year Surfshark One plan receive an additional three months at no extra cost, totaling 27 months of coverage for .33, which breaks down to .49 per month. This offer coincides with Amazon Prime Day and is presented as a cost-effective subscription for long-term security solutions. Surfshark is recognized as the best-value VPN, offering three plans: Starter, One, and One Plus, with the One plan being the optimal choice for most users. It includes antivirus protection, data breach notifications, and a private search engine.
Avast One is the flagship consumer security suite from Avast (Gen Digital), combining antivirus, firewall, VPN, and privacy utilities into a single subscription for Windows, macOS, Android, and iOS. It offers four primary areas: device security, online privacy, identity protection, and performance tools. Device security includes real-time antivirus, Web Shield, Mail Shield, and Ransomware Shield. The online privacy component features a full VPN service with bank-grade encryption and a no-logs policy. Identity protection includes data breach monitoring and, in some markets, credit monitoring. Performance tools assist with disk cleanup and system optimization.
Avast One has three plan tiers: Avast One Essential (free), Avast One Individual (paid, supports multiple devices), and Avast One Family (paid, supports up to 30 devices). Pricing varies based on promotions, with Avast One Individual typically around per year and Avast One Family ranging from to 0 per year. The suite can be downloaded directly from Avast's website, with installers available for various platforms. Avast One includes automatic updates and is designed to operate lightly on modern hardware, with options to minimize system impact during scans.
Customer support includes self-help documentation, community forums, and direct support for paying customers. Avast One aims to appeal to both non-technical users and power users, providing a user-friendly interface while allowing for advanced configurations. The product is positioned as a comprehensive solution for households looking to secure multiple devices with a single subscription.