Microsoft is committed to security through its Secure Future Initiative (SFI), which employs 34,000 engineers to enhance cybersecurity. The November 2025 SFI Progress Report outlines advancements in security, including principles of Secure by Design, Secure by Default, and Secure Operations integrated into Windows and Surface products. Key updates include:
- Windows 11 introduces passwordless sign-in with Passkeys and FIDO2 credentials to reduce phishing risks.
- Phishing-resistant multi-factor authentication (MFA) is now widely used, lowering account compromise risks.
- Windows Hotpatch allows security updates without device restarts, achieving 81% compliance within 24 hours of Patch Tuesday.
- Windows 11 features quick machine recovery for automatic, cloud-connected recovery from boot failures.
Surface devices lead in security by enabling all recommended features by default and developing memory-safe firmware to address vulnerabilities. Notably, 70% of security vulnerabilities are linked to memory safety issues, and Surface uses Rust-based UEFI firmware to enhance defenses. Surface also develops Windows drivers in Rust to eliminate memory safety bugs and shares innovations through the Open Device Partnership to improve security across the ecosystem.