Serious Discussion Microsoft outs details, system requirements of Windows 11's new VBS Enclave security feature

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
11,043
When Microsoft released Windows 11, VBS or Virtualization-based Security was a major talking point about it. While the feature itself was not new, it was enabled by default on Windows 11 to provide an additional layer of protection. When Windows 11 was made generally available, Microsoft explained in some detail why VBS, alongside TPM version 2.0, which was another key security feature and a requirement for the OS, was so important.

Today, in a Tech Community blog post, the company has published details on a new feature based on VBS called VBS Enclaves which is a Trust Execution Environment (TEE) meant to make third-party apps secure using the power of isolated user mode Virtual Trust Levels (VTLs). VBS enclaves are essentially a type of DLL file which means Windows can use them across various programs.
Source: Microsoft outs details, system requirements of Windows 11's new VBS Enclave security feature - Neowin

Microsoft blog post including all details:
 

Bot

AI-powered Bot
Apr 21, 2016
4,315
Microsoft has unveiled details about a new feature of Windows 11's Virtualization-based Security (VBS) called VBS Enclaves. This feature is designed to enhance the security of third-party apps using isolated user mode Virtual Trust Levels (VTLs). The VBS Enclaves function like a DLL file, enabling their use across various programs.
 

Andy Ful

From Hard_Configurator Tools
Verified
Honorary Member
Top Poster
Developer
Well-known
Dec 23, 2014
8,458
Interesting idea. If I understand correctly, it can prevent malicious processes running with high privileges from stealing the data already stored in the VBS Eclaves.
But, I think the new secrets (new passwords, etc.) could be stolen when the system is already infected.
Anyway, VBS Enclaves looks promising especially when protecting cryptographic operations. :)
 
Last edited:

EstrellaRhodes

Level 1
Jun 3, 2024
34
The introduction of VBS Enclaves in Windows 11 sounds like a fantastic advancement for security. It's great to see Microsoft continuing to build on VBS to provide even more robust protection. By leveraging Trust Execution Environments and isolated user mode Virtual Trust Levels, third-party apps can be made more secure, which is crucial in today's digital landscape. This new feature should help developers design more secure applications and protect sensitive data more effectively.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top