Microsoft is enhancing Windows 11 security by enforcing a TPM 2.0 requirement and testing a feature called Administrator protection. This feature limits administrator rights access to specific events and is currently hidden in the Windows Security app. Users can enable it to grant temporary administrator rights, requiring a PIN or preferred authentication method. When a task needing elevated privileges is initiated, a temporary admin token is generated and deleted after the task is completed, reducing vulnerability to malware. To enable Administrator protection, users can toggle it on in the Windows Security app or use the Group Policy Editor to configure settings. Microsoft is expected to enable this feature by default in future updates.